[Little Bragging] Logitech Subdomain Breached

Keeper
11 years ago | edited 11 years ago

0

It was not long ago, couple of months (February 9th to be precise) that I managed to authorize myself into a subdomain of logitech’s official website. What I am able of performing with the privileges I escalated is: Coldfusion panel access, modifying products information, upload files without restriction and even the possibility of further rooting the VPS.

As I said it was some time ago, but felt like sharing it here and brag a bit. The articles that there are on the web about it, are all bulgarian so I don’t think anyone would understand them.

7replies
5voices
222views
Kabue
11 years ago

0

xD niiiice! Really great job, congratulation ^_^. And thanks for sharing here. So what happened with it? Did you report it or used it for anything =)
-Kabue

kurderQ8
11 years ago

0

Verey good. and nice video kurderQ8


0

Congratulation to u @Keeper ! that’s great

Keeper
11 years ago

0

No, haven’t reported it simply because they do not offer bug bounty programs or hall of fame pages. Though, I never disclose the vulnerability and things around it, just posting what I managed to achieve. So I do not cause damage or anything to the site itself.

Kabue
11 years ago

0

So are you just going to leave it as it is, and not doing anything with it?? :)
-Kabue

Keeper
11 years ago

0

Yes, I don’t benefit from it. Just wanted to see if I can get in.

[HUNON]
11 years ago

0

very nice video, congrats keeper!

that is pretty amazing to see.

You must be logged in to reply to this discussion. Login
1 of 8

This site only uses cookies that are essential for the functionality of this website. Cookies are not used for tracking or marketing purposes.

By using our site, you acknowledge that you have read and understand our Privacy Policy, and Terms of Service.

Dismiss