Content Spoofing in error message

Disclosed: 2017-05-17 14:28:51 By codertom To weblate
Low
Vulnerability Details
Hi Weblate, I found a content spoofing ###Steps to reproduce 1. Go to https://hosted.weblate.org/translate/debian-reference/translations/fr/?type=Sorry for the inconvenience we where having some trouble in our system because of some hackers, please don't log in for you to make safe of your credential or just go to this updated website: http://evil.weblade.org/attack.php and no other than website As you could now see your application tells a user something wrong with your application that would degrade the reputation of your application in some way. Thanks, Tom
Actions
View on HackerOne
Report Stats
  • Report ID: 223456
  • State: Closed
  • Substate: resolved
  • Upvotes: 4
Share this report