Back to directory
WRITEUP #4126

Finding bugs on Chess.com

RCELack of rate limitingBruteforceCSRF
by@seqrity9(Seqrity)
Bounty
180
Program
Chess.com
Published
Jan 7, 2021
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/bugbountywriteup/finding-bugs-on-chess-com-739a71fbdb31
RELATED WRITEUPS
Unlocking the Weak Spot: Exploiting Insecure Password Reset Tokens
RCEBruteforce
Vulnerabilities in Homepage Dashboard
RCESSRF
SSD Advisory – XenForo RCE Via CSRF
RCECSRF
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
[2,500$ Bug Bounty Write-Up] Remote Code Execution (RCE) via unclaimed Node package
RCEDependency confusion

Built with ❤️ by Shubham Rawat