Back to directory
WRITEUP #1974

Stormshield SNS cleartext password leak

OtherUse of GET request Method With sensitive query strings
byMehdi Alouache
Program
Stormshield
Published
Nov 7, 2022
Added to HackDex
Nov 8, 2022
Read Full Writeuphttps://medium.com/@mehdi.alouache/stormshield-sns-cleartext-password-leak-b436ef312fe9
RELATED WRITEUPS
Data Theft in Salesforce: Manipulating Public Links
OtherSOQL injection
When Certificates Fail: A Story of Bypassed MFA in Remote Access
Other2FA / MFA bypass
SSTI in Bug Bounty Program: The Time I Played with Handlebars and Broke Stuff
OtherSSTI
Ghost In The Ppl Part 1: Byovdll
OtherUse-After-Free
Part 2: From Byovdll To Arbitrary Code Execution In Lsass
OtherUse-After-Free

Built with ❤️ by Shubham Rawat