Public
OLX
bug reports.
4,419
Bug Reports -
$2,030,173
Paid Out
Last Updated:
12th September, 2017
Team
Bounty
Title
OLX
-
OLX is vulnerable to clickjaking
OLX
-
Subdomain Takeover (http://docs.olx.ph/ , http://calendar.olx.ph/, http://sites.olx.ph/)
OLX
-
Reflected XSS in olx.pt
OLX
-
Combined attacks leading to stealing user's account
OLX
-
yaman.olx.ph/wordpress is using a very vulnerable version of WordPress and contains directory listing
OLX
-
Server Version Of https://www.olx.ph/
OLX
-
olx.ph is vulnerable to POODLE attack
OLX
-
Reflected XSS in [olx.qa]
OLX
-
Multiple vulnerabilities in http://blog.dubizzle.com/uae
OLX
-
CSRF in delete advertisement on olx.com.eg
OLX
-
Reflective XSS at dubai.dubizzle.com
OLX
-
Reflective XSS at m.olx.ph
OLX
-
Reflected XSS in OLX.in
OLX
-
Directory Listing of all the resource files of olx.com.eg
OLX
-
Reflected XSS at m.olx.ph
OLX
-
Name, email, phone and more disclosure on user ID (API)
OLX
-
Full path disclosure vulnerability at http://corporate.olx.ph
OLX
-
Stored XSS in buy topup OLX Gold Credits
OLX
-
XSS and Open Redirect on https://jobs.dubizzle.com/
OLX
-
Bypassing Phone Verification For Posting AD On OLX
OLX
-
XSS and HTML Injection https://sharjah.dubizzle.com/
OLX
-
full path disclosure vulnerability at https://security.olx.com/*
OLX
-
Full Account Takeover
OLX
-
[Critical] Delete any account
OLX
-
these are my old reports and still i have not receive any good replys, these all are Cross Site Scripting(XSS) issues: POC1: https://www.youtube.com/w
OLX
-
XSS on Meta Tag at https://m.olx.ph
OLX
-
Unauthorised access to olx.in user accounts.
OLX
-
Stored XSS on contact name
OLX
-
XSS on Home page olx.com.ar via auto save search text
OLX
-
xss yaman.olx.ph
OLX
-
REFLECTED CROSS SITE SCRIPTING IN OLX
OLX
-
Reflected XSS at yaman.olx.ph
OLX
-
Manipulating joinolx.com Job Vacancy alert subscription emails (HTML Injection / Script Injection)
OLX
-
XSS yaman.olx.ph
OLX
-
cross-site scripting in get request
OLX
-
Reflected Cross Site scripting Attack (XSS)
OLX
-
XSS @ *.letgo.com
OLX
-
Arbitrary File Reading
OLX
-
Reflected XSS in www.olx.ph
OLX
-
stored XSS in olx.pl - ogloszenie TITLE element - moderator acc can be hacked
OLX
-
SQLi in Payment Request
OLX
-
Updating and Deleting any Ads on OLX Philippines
OLX
-
CSRF in account configuration leads to complete account compromise
OLX
-
XSS @ yaman.olx.ph
OLX
-
XSS @ *.olx.com.ar