Making any Report Failed to load

Disclosed: 2015-05-09 14:06:12 By atom To security
Unknown
Vulnerability Details
Hello, I found a way to make any report failed to load using this code with Hex Character: ```_www.%40ebаy.com_ ``` I was testing for Homographic Issue using Hex Characters and I listed all of hex character and tried to bypass. Then, when I paste the list and comment it in a report I experienced report failed to load then I paste each code with hex character one by one. I figured out that ```%40``` causes the report failed to load. To reproduce this issue: - Create a sample report then add a comment using the code above. - Then, Refresh and you will receive a message ```Report Failed to load``` Regards, @atom
Actions
View on HackerOne
Report Stats
  • Report ID: 59369
  • State: Closed
  • Substate: resolved
  • Upvotes: 6
Share this report