Back to directory
WRITEUP #5830

Bypassing Hotstar Premium with DOM manipulation and some JavaScript

Logic BugLogic flawPayment bypass
by@OpSecX(OpSecX)
Program
Hotstar
Published
Sep 7, 2018
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://opsecx.com/index.php/2018/09/07/bypassing-hotstar-premium-with-dom-manipulation-and-some-javascript/
RELATED WRITEUPS
Logic Flaw: I Can Block You from Accessing Your Own Account
Logic BugLogic flaw
“Like” Bypass on Customer Reviews — €500 bounty
Logic BugLogic flaw
Race Condition About The User Version and Ignored
Race ConditionPayment bypass
Interesting Business Logic Error leads to Pre-Account Takeover via Verification bypass on GoogleVRP
Auth BypassAccount takeover

Built with ❤️ by Shubham Rawat