Open Redirect Vulnerability in MeetUp



Hello friend today i am sharing mt find in MeetUp a popular social meeting site here is the POC :-




Open redirect issue:

1) Go to this URL:

http://www.meetup.com/account/bio/?returnUri=https%3A%2F%2Fwww.google.com.pk

After user enter the bio info The victim will be redirected.

Impacts:

The attacker can force the user to install trojans,malwares, etc. into his system.
And can conduct phishing attacks.

it can be misused to conduct phishing attacks.

And i was acknowledged For reporting this bug to them but there was no reward but i got acknowledged that is some thing to count 
Share on Google Plus
Unknown

About Unknown

Hi , This is Osama Mahmood and i will share all my knowledge and skills on #infosec with you and hope you will enjoy learning new and unique things. follow me on twitter @OsamaMahmood007
    Blogger Comment
    Facebook Comment

0 comments:

Post a Comment