Article 50B64 NordVPN quietly plugged vuln where an HTTP POST request without authentication would return detailed customer data

NordVPN quietly plugged vuln where an HTTP POST request without authentication would return detailed customer data

by
from www.theregister.com - Articles on (#50B64)
Story ImageFiddle with some numbers and voila

A vulnerability in NordVPN's payments platform allowed anyone to view users' payment information and email addresses, a startling HackerOne entry has revealed."

External Content
Source RSS or Atom Feed
Feed Location http://www.theregister.co.uk/headlines.atom
Feed Title www.theregister.com - Articles
Feed Link https://www.theregister.com/
Reply 0 comments