Wednesday 23 November 2016

Yahoo Web Security Bug Bounty : Phpmyadmin access make data on risk

Yahoo Web Security Bug Bounty :  Phpmyadmin access make data on risk



 

Little Insight: 


 Vulnerability in Yahoo bug bounty  data on risk 


Vulnerable Website: 

http://tw.page.games.yahoo.net/phpmyadmin/setup/index.php?page=form&formset=Left_frame#tab_Left_tables


Impact: As you can see in the following screenshot I managed to login into phpmyadmin




 


Reward For  Phpmyadmin access  Vulnerability  : 500$

 

More Information

Thank you for your report, normally this would be out of scope but we felt this was a good find and we awarded a discretionary bounty.

The vulnerability mentioned here has been confirmed patched by the Yahoo Security Team.

 

40 comments:

  1. Replies
    1. The best Bluetooth keyboards bluetooth keyboard. Logitech K780 Multi-Device Wireless Bluetooth Keyboard Razer's first productivity keyboard blurs the line between gaming and office gear, and that's a good thing. Pros. Razer Orange switches.

      Delete
  2. Vulnerability has been patched before this post has been published. Thanks for the information.

    ransomware data recovery

    ReplyDelete
  3. Nice article excellent information thanks for sharing.


    Download Instagram Plus Apk

    ReplyDelete
  4. Steps to Download McAfee

    Go to McAfee.com/Activate.
    By then move to My Account > Sign-in and fill your Email capabilities.
    Followed by Downloads portion >
    Select your working structure > Antivirus.
    click Save and pick the downloading organizer.
    visit:
    mcafee.com/activate

    ReplyDelete
  5. Replies
    1. The best laptop you can buy overall is the MacBook Air. From budget options to machines for video editing, here are all of the best laptops that are affordable and come with great performance. If you're looking for a new budget-friendly best budget laptops

      Delete
  6. wonderful blog post i really like to read it thanks for sharing sharing also share it on OGWhatsApp

    ReplyDelete
  7. Really impressed! Everything is very open and very clear clarification of issues. It contains truly facts. Your website is very valuable. Thanks for sharing.

    notepad++ download 64 bit

    ReplyDelete
  8. 123movies. looking for in this blog does not exist.

    ReplyDelete
  9. movies123 Sorry, the page you were looking for in this blog does not exist.

    ReplyDelete
  10. Nice write up,it very helpful. The bug would made you loos most data's. Love from Instagram plus community

    ReplyDelete
  11. Best Packers and Movers in Pakistan
    Punjab packers and movers are the best moving company in Pakistan, offering high-quality .House Moving, office shifting, Home Moving and goods, moving services at affordable prices all over the Pakistan.House Moving

    ReplyDelete
  12. The best budget gaming chair we've tested? That's the GTRacing Pro (£149). It's a classic design that makes compromises in all the right A good gaming chair therefore adapts to the body of the person sitting and supports him or her. On this page you will find the best cheap gaming chairs best budget gaming chair

    ReplyDelete
  13. Nice article excellent information thanks for sharing.
    if anyone want to play a game with me so send to challange me. Clash of Lights

    ReplyDelete
  14. If anybody want see the real racing game so please check it. Blackmart

    ReplyDelete
  15. That is why I use Google and use security



    FMWA

    ReplyDelete
  16. wavepad-sound-editor-crack secret's a person-pleasant and complete software program this is well suited with both experts and beginners. it is very clean to operate software and does no longer calls for any particular ability to be operated with. It presents you with a gaggle of exceptional functions and effects. additionally, it lets in you to edit your audios, split them, rip them, or maybe permit you to mix special audio clips to make a new tune. it's miles the great audio enhancing software program you could use to increase your productivity and creativity. Wavepad sound editor is available in a completely intuitive and expert-searching interface this is both smooth to apprehend and easy to function.

    ReplyDelete
  17. still do see the app in Google Play. Do you? Here's the link highways or with powerful

    ReplyDelete
  18. https://ziapc.org/
    I will try some of these sites on this Blog Commenting site exactly what I look for. Such good information shared with as these sites are really helpful for my website for doing SEO thanks for sharing your post.

    ReplyDelete
  19. I wonder who uses yahoo, I use Google lol GBWhatsApp APK

    ReplyDelete
  20. Well, If you want to share your stories with your friends then you need to download the latest version of Instagram Mod Apk.

    ReplyDelete
  21. useful information, i was searching of this kind of information, thank you very much for sharing with us.
    Rat Removal Melbourne | Rodent Control

    ReplyDelete
  22. GB Instagram APK latest version is now available at this website.

    ReplyDelete
  23. Vulnerability in Yahoo is a thing of the past and now it has a very strong AI-based security system that can find bugs in nanoseconds and delete the bugs. Buy Assignment Online

    ReplyDelete
  24. Great, your post is helping me a lot. Thanks for the detailed info on this topic. It’s hard to find nowadays to know about the basics but you did it so much well. I would love to see more about GB WhatsApp 2022. Keep sharing and updating. Also share more posts with us. Thank you.

    ReplyDelete
  25. Instapro Apk is the amazing and version of Official Instagram. That allow you to download photos and video directly in your android storage.

    ReplyDelete
  26. So nice I am enjoying for that post as for u latest version of this Security tool Available.
    Recuva Pro Crack
    windowsup.net

    ReplyDelete
  27. I like your all post. You have done really good work. Thank you for the information you provide, it helped me a lot. I hope to have many more entries or so from you.
    Very interesting blog.
    Gravit Designer Pro Crack
    Ummy Video Downloader Crack
    MacDrive Pro Crack
    WebcamMax Crack
    Panda Dome Premium Crack
    Camtasia Studio Crack
    NTLite Crack
    iMazing Crack
    downloadpc.co

    ReplyDelete
  28. I like your all post. You have done really good work. Thank you for the information you provide, it helped me a lot. I hope to have many more entries or so from you in indian train simulator mod apk

    ReplyDelete
  29. Bug bounty is a great appreciation for the penetration tester that make your site secure by find and fixing bugs in your site... Anyway I have used laravel for my web application. It is secured framework. Click on jpg to pdf to visit my website.

    ReplyDelete