Collected research
cat ~/footstep.ninja/blog.txt
A help desk product returned the password reset token in the JSON body of the reset request itself, instead of only by email. Requesting a reset for an agent account handed the attacker that token, which could be pasted into the reset URL for any team name to take the account over; the user endpoint was not affected.
Record
- Researcher
- Shuaib Oladigbolu
- Published by
- footstep.ninja
- Topic
- Other
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Shuaib Oladigbolu, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .