Vulnerabilities in developer.apple.com

0
47

Posted by YGN Ethical Hacker Group on Jul 01

Vulnerabilities via URL Redirector in developer.apple.com

1. VULNERABILITY DESCRIPTION

Arbitrary URL Redirect
======================

POC (Browsers: All)
https://developer.apple.com/membercenter/urlRedirect.action?fullURL=http://attacker.in/malware_exists_in_this_page

Issue References:
OWASP Top 10 A10 –
https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project
CWE 601 – http://cwe.mitre.org/data/definitions/601.html

Cross Site…

Source: Vulnerabilities in developer.apple.com