CSRF in crashlytics.com

Disclosed: 2014-09-08 14:55:13 By defmax To x
Unknown
Vulnerability Details
Hello Sir This is N B Sri Harsha I Have Found An CSRF in http://try.crashlytics.com/ POC ;- <form method="POST" action="http://try.crashlytics.com/list/" class="validatable" id="beta_form"> <input id="validate" class="clear validate validate-name validate-message" placeholder="your name" name="name" type="text"> <input id="validate" class="clear validate validate-message" placeholder="[email protected]" name="email" type="text"> <input name="sitereferral" value="" type="hidden"> <input value="" id="emailVerify" type="submit"> </form>
Actions
View on HackerOne
Report Stats
  • Report ID: 13856
  • State: Closed
  • Substate: resolved
  • Upvotes: 1
Share this report