Report Email Alerts Open Bug Bounty: 176,557 coordinated disclosures
Total Vulnerabilities Fixed: 78,613
167,874 vulnerable websites, 16,265 VIP websites
4,071 security researchers, 5,466 notification subscribers

Open Bug Bounty ID

OBB-190193

gamepass.nfl.com Security Vulnerability

On the 31.10.2016 security researcher TvM Helped patch 475 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 22 recommendations
disclosed XSS vulnerability affecting gamepass.nfl.com website.

On our side, we have notified website owner via all reasonable communication channels about the vulnerability, so it can be patched as quickly as possible.

Currently the vulnerability is patched and does not represent any security risk for the website or its visitors.

Vulnerability Details


gamepass.nfl.com Description

Watch NFL Games Live | NFL Game Pass - NFL.com. Users outside the USA can watch NFL games online, streaming in HD quality. Watch both live and post game recaps.

Vulnerable URL:

Other details:

Patched:Yes, at 13.09.2017
Latest check for patch:13.09.2017 08:01 GMT
Vulnerability type:XSS
Vulnerability status:Publicly disclosed
Alexa RankUnknown / Not calculated
VIP website status:No
Check gamepass.nfl.com for malware:Click here
Check gamepass.nfl.com SSL connection:Click here (Grade: A) Refresh Results

Mirror: Click here to view the mirror

Coordinated Disclosure Timeline

Vulnerability submitted via Open Bug Bounty31 October, 2016 21:23 GMT
Vulnerability existence verified and confirmed 1 November, 2016 09:54 GMT
Generic security notifications sent to website owner1 November, 2016 09:54 GMT
Notification sent to subscribers (without technical details)1 November, 2016 10:17 GMT
Vulnerability details disclosed by researcher24 January, 2017 10:15 GMT
Vulnerability patched by the website owner13 September, 2017 08:01 GMT

User Comments:

Please login via twitter to be the first one to comment.


Latest Vulnerabilities on *.gamepass.nfl.com

OBB-ID Reported by Status Reported on
patched
31.10.2016

Latest Vulnerabilities Reported by TvM

OBB-ID Vulnerability Status Reported
unpatched
06.07.2017
patched
06.07.2017
patched
21.06.2017
unpatched
19.06.2017
unpatched
26.05.2017
patched
22.05.2017
unpatched
22.05.2017
unpatched
22.05.2017
patched
22.05.2017
unpatched
19.05.2017
unpatched
19.05.2017
unpatched
19.05.2017
unpatched
18.05.2017
patched
18.05.2017
patched
18.05.2017
unpatched
18.05.2017
patched
18.05.2017
unpatched
18.05.2017
patched
18.05.2017
unpatched
17.05.2017


LATEST VIP SUBMISSIONS

ykt.ru
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 19.11.2017
ratemyprofessors.com
Reported by Chris5389 Helped patch 14 vulnerabilities
Received 1 Coordinated Disclosure badges
on 19.11.2017
geonames.org
Reported by TAHA Helped patch 59 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 10 recommendations
on 19.11.2017
ilmeteo.it
Reported by TAHA Helped patch 59 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 10 recommendations
on 19.11.2017
quotidiano.net
Reported by TAHA Helped patch 59 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 10 recommendations
on 19.11.2017
finecooking.com
Reported by LewisWildgoose Helped patch 75 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 2 recommendations
on 19.11.2017
icmai.in
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 19.11.2017
goodfood.com.au
Reported by TAHA Helped patch 59 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 10 recommendations
on 19.11.2017
bvcenadim.digemid.minsa.gob.pe
Reported by Y4r4G_ Helped patch 16 vulnerabilities
Received 1 Coordinated Disclosure badges
Received 1 recommendations
on 19.11.2017
pantone.com
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 18.11.2017



LATEST SUBMISSIONS

northeastjobs.org.uk
Reported by malwrforensics Helped patch 15 vulnerabilities
Received 1 Coordinated Disclosure badges
on 19.11.2017
directory.uwa.edu.au
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 19.11.2017
binar-trade.net
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 19.11.2017
ca.zinio.com
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 19.11.2017
razmerok.ru
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 19.11.2017
manegehoeren.rukplaza.com
Reported by drok3r Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 19.11.2017
moscow.russia.hostelhotel.cn
Reported by drok3r Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 19.11.2017
guanajuato.mexico.topdestination.ch
Reported by drok3r Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 19.11.2017
isla-mujeres.mexico.topdestination.ru
Reported by drok3r Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 19.11.2017
nxnotes.com
Reported by OmniGooch Helped patch 1229 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 19.11.2017