No rate limiting in starting up a bot.
Low
Vulnerability Details
hi security team,
I was able to start up a bot numerous times.
1. Goto https://chaturbate.com/b/username
2. Choose a bot and capture the request.
3. Send to intruder and repeat the step numerous times.
4. I did this 196times
5.I was able to activate a bot numerous times
6. My room was flooded with message which i will show your in the screenshot below.
Thanks.
## Impact
Bruteforcing.
Actions
View on HackerOneReport Stats
- Report ID: 418151
- State: Closed
- Substate: resolved
- Upvotes: 14