Back to directory
WRITEUP #6021

Ribose — IDOR with Simple CSRF Bypass — Unrestricted Changes and Deletion to other Photo Profile

IDOR
by@YokoAcc(YoKo Kho)
Program
Ribose
Published
Apr 18, 2018
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@YoKoKho/ribose-idor-with-simple-csrf-bypass-unrestricted-changes-and-deletion-to-other-photo-profile-e4393305274e
RELATED WRITEUPS
Zomatoooo! IDOR in Saved Payments
IDOR
How I got my first $13500 bounty through Parameter Polluting (HPP)
IDORXSS
The Butterfly Effect: Turning Overlooked - Misconfigurations into Zero Click Account Takeover
APIGraphQL
A Creative Way To Get Someones YouTube Videos Deleted + A Copyright Strike Against Their YouTube Channel
IDORBroken Access Control
Bypassing ACLs – IDOR exploitation via HPP
IDORHTTP parameter pollution

Built with ❤️ by Shubham Rawat