Back to directory
WRITEUP #4085

Simple & Sweet: Bypass email update restriction to change emails of team members

Logic BugLogic flawBroken authorization
by@sunilyedla2(Sunil Yedla)
Program
-
Published
Jan 19, 2021
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://sunilyedla.medium.com/simple-sweet-bypassing-email-update-restriction-to-change-emails-of-team-members-6ce5770e7929
RELATED WRITEUPS
Logic Flaw: I Can Block You from Accessing Your Own Account
Logic BugLogic flaw
“Like” Bypass on Customer Reviews — €500 bounty
Logic BugLogic flaw
CVE-2024-45195: Apache OFBiz Unauthenticated Remote Code Execution (Fixed)
RCEForced browsing
How 1 Exposed Honeywell API Gave us Control Over an Internal Engineering System
ReconMissing authentication
Interesting Business Logic Error leads to Pre-Account Takeover via Verification bypass on GoogleVRP
Auth BypassAccount takeover

Built with ❤️ by Shubham Rawat