HTTP OPTION Method is Enabled on portswigger.net

Disclosed: 2016-12-27 17:54:08 By wragg-s To portswigger
Low
Vulnerability Details
Enabled OPTION method on web server allows unauthorized blind submission of privileged GET requests.
Actions
View on HackerOne
Report Stats
  • Report ID: 191220
  • State: Closed
  • Substate: not-applicable
  • Upvotes: 5
Share this report