Malware Related > Compromised Servers

Server Leaks Personal Information

(1/1)

kreykh:
http://www.unitedresources.biz/sail/sailcalendar.aspx
This site if browse manually to their Calendar of Events page and provide a random ID/Password, than click on My Info leaks badly  the real members' info, including Home Addresses, CC (partial), Phones, etc Very buggy server...Likely, I did accidentally exploit the  Session or Cookie prediction flaw.. :o.
P.S. The link above might not work directly. You need to go http://www.sailthesounds.com/Training.htm and Click on "Enroll in Class".. 

SysAdMini:
I suggest contacting site owner.

https://www.unitedresources.biz/ContactUs.aspx

Navigation

[0] Message Index

Go to full version