Response Manipulation lead to bypass verification code while making appointment at `█████████`

Disclosed: 2023-08-30 15:46:47 By mo3giza To mars
Medium
Vulnerability Details
## Steps To Reproduce: 1. Go to this URL ███ 2. Make an appointment 3. Choose send verification code to email 4. Enter random code 5. Intercept the request using burp 4. Click do intercept response and forward 5. Change false to true ## Impact bypass verification code
Actions
View on HackerOne
Report Stats
  • Report ID: 1943252
  • State: Closed
  • Substate: resolved
  • Upvotes: 8
Share this report