subdomain take over at recommendation.algolia.com

Disclosed: 2019-08-14 13:53:03 By badcracker To algolia
Medium
Vulnerability Details
##Description hello sir, your subdomain recommendation.algolia.com cname is recommendation.us and recommendation.us is for sell which can lead to subdomain take over ##steps to reproduce 1. check the cname of recommendation.algolia.com 2. see that the cname "recommendation.us" is for sell using lookup tool ##poc: {F555251} ## Impact Attackers are able to purchase recommendation.us then they will be able to takeover recommendation.algolia.com and post porn pictures or phishing forums
Actions
View on HackerOne
Report Stats
  • Report ID: 673273
  • State: Closed
  • Substate: resolved
  • Upvotes: 24
Share this report