subdomain takeover at status0.stripo.email

Disclosed: 2019-12-23 09:03:35 By haxorpunk To stripo
Medium
Vulnerability Details
Hi , The subdomain status0.stripo.email was pointed at uptimerobot.com whereas it was not being used , but having Cname record as stats.uptimerobot.com . Hence anyone can takeover it. I have parked it with atest account on uptimerobot.com {F634639} {F634636} thanks ## Impact Anyone can use this subdomain on uptimerobot.com with a false message.
Actions
View on HackerOne
Report Stats
  • Report ID: 737695
  • State: Closed
  • Substate: resolved
  • Upvotes: 36
Share this report