Improper Certificate Validation

Disclosed: 2018-01-02 09:02:23 By srssingh To portswigger
Low
Vulnerability Details
1) Obtained a key from PortSwigger official site. 2) Downloaded latest version of burp 1.7.29 from PortSwigger and activated license. 3) Downloaded previous version of burp v1.7.17 and used same key for the activation. And, I was able to activate license on the old version of BurpSuite. ## Impact Single license can be used for multiple users.
Actions
View on HackerOne
Report Stats
  • Report ID: 294891
  • State: Closed
  • Substate: informative
Share this report