Same vulnerability on multiple regional domains

Questions or requests about submissions
Locked
amlnspqr
Posts:291
Joined:Thu Feb 18, 2016 3:29 pm
Same vulnerability on multiple regional domains

Post by amlnspqr » Wed Mar 02, 2016 7:55 pm

Say "Foo ltd" has its main website foo.com and some other regional ones: foo.us, foo.de, foo.ru etc.

I found an XSS issue at foo.com, and then noticed all the other are vulnerable too.

Should I report all of them, or just foo.com is enough?

R3NW4
Posts:23
Joined:Thu Nov 26, 2015 4:45 pm

Re: Same vulnerability on multiple regional domains

Post by R3NW4 » Wed Mar 02, 2016 8:18 pm

wtf question is that :P
duplicate is on same domain and same parameter so report all of them i have sent more than 50 jobomas subdomains all approved and patched :D

User avatar
x1admin
Site Admin
Posts:3102
Joined:Sun Nov 15, 2015 7:04 pm

Re: Same vulnerability on multiple regional domains

Post by x1admin » Thu Mar 03, 2016 7:05 am

report all

Locked

Who is online

Users browsing this forum: Google [Bot] and 2 guests