关键字【Valve】的搜索结果共25记录

公开时间 奖金 作者 标题 厂商 漏洞类型
2019-01-07 $200.0 ronak_9889 Comment restriction in subsection "Workshop" of domain "steamcommunity.com" can be bypassed using IDOR Valve Insecure Direct Object Reference (IDOR)
2019-01-07 $750.0 xpaw Reflected XSS on help.steampowered.com Valve Cross-site Scripting (XSS) - Reflected
2019-01-07 $750.0 tvmpt XSS @ store.steampowered.com via agecheck path name Valve Cross-site Scripting (XSS) - Reflected
2019-01-07 $500.0 romesful CSRF | Ban or unban users in broadcast's chat Valve Cross-Site Request Forgery (CSRF)
2019-01-07 $750.0 mvc Stored XSS in the guide's GameplayVersion (www.dota2.com) Valve Cross-site Scripting (XSS) - Stored
2019-01-07 $750.0 zemnmez code injection, steam chat client Valve Code Injection
2019-01-07 $7500.0 zemnmez XSS in steam react chat client Valve Cross-site Scripting (XSS) - Stored
2018-10-31 $20000.0 moskowsky Getting all the CD keys of any game Valve Improper Access Control - Generic
2018-08-28 $750.0 yalter Buffer overflows in demo parsing Valve Classic Buffer Overflow
2018-08-28 $1000.0 chippy Malformed Skybox .TGA in Half-Life (GoldSRC) leads to Access Violation Valve Classic Buffer Overflow
2018-07-27 $25000.0 moskowsky SQL Injection in report_xml.php through countryFilter[] parameter Valve SQL Injection
2018-07-19 $12500.0 chippy Malformed .BSP Access Violation in CS:GO can lead to Remote Code Execution Valve Classic Buffer Overflow
2018-07-02 $750.0 milkgames resetreportedcount & updatetags doesn't verify appid param Valve Improper Authentication - Generic
2018-07-02 $500.0 delite Suspended users can bypass UGC upload ban Valve Improper Access Control - Generic
2018-07-02 $1000.0 alyssa_herrera ImageMagick GIF coder vulnerability leading to memory disclosure Valve Information Disclosure