Delivered-To: info@designerliving.com
Received: by 2002:a05:7001:b50b:b0:4fe:3cab:8579 with SMTP id bg11csp684267mac;
        Wed, 23 Aug 2023 12:04:32 -0700 (PDT)
X-Received: by 2002:a05:6512:11e3:b0:4ff:8c26:2e89 with SMTP id p3-20020a05651211e300b004ff8c262e89mr8499069lfs.2.1692817472220;
        Wed, 23 Aug 2023 12:04:32 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1692817472; cv=none;
        d=google.com; s=arc-20160816;
        b=Rcau42Ulk94CfE5Q117PhGnWOt7enjCWxBK/yuwj3S5W/T0i2nksktNdx+6E33cgde
         K3V+ONBOcbu9qf2L1PCbV8j7r2Uu7gAhZel3OXv5N2r9O0PZnTnoxvI/Q3QMCjdAYYkp
         NRGJzpKqx8/tmofSlqbm6+p8iYAJcG1tgf3S2JtxEgJ6k1JUIZNeips8yPuz5tUBbNYt
         fV4oDIHlfkKqXjfRC6qYm8SYF/ulD8X9z7UHxPFX7YJBFuT/BpPCjzvUBVdYUepxowOV
         JzxqICPIPf2Ubz+xSgPhHldu8ZWy7K2CZZcTUtk5cGRG8T+NN+s5XDZJb6Y2H7WTKAPU
         VKbA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816;
        h=to:subject:message-id:date:from:in-reply-to:references:mime-version
         :dkim-signature;
        bh=Km4qhfvHgZXLpkjckxQ1gUKApEMADLVx/tGOoDOLKZU=;
        fh=vJi7lx0dvuvAXUniDY+Yagdo8S59JHMqydPCeDFh3Vg=;
        b=o6lw06nzos2Cq7uEoCI+H31lu34MbI7RJIIo6LTzBOgLqJXlY+92vPHGwIvRKs7tVe
         uEBRj0fAssUNXEB+fZk64mhVoWes68KqD0ch0NPpY0/TR525zgIgtL75zpjLR0sWtFsr
         RVKfdwLMj445YaheCl8Gny6EXtXjuIcAOmR4W6EcfxXyRINGqJyv9/Pj+5UF1iyyLFCE
         73V9kmEQtpOUubeZhWIvpcyC8jIjUiOcrOKnoW25mb0s14YBItWE951nd2IJCdFrFYEK
         1TXgpq6/unZ5jXb5ax5V0760U8usZIOYwaT6RMX56nYpJdfsMzo4CQeymRvg3Ou51q7Z
         rRlQ==
ARC-Authentication-Results: i=1; mx.google.com;
       dkim=pass header.i=@gmail.com header.s=20221208 header.b=ArBcaFSK;
       spf=pass (google.com: domain of eastonjose114@gmail.com designates 209.85.220.41 as permitted sender) smtp.mailfrom=eastonjose114@gmail.com;
       dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com
Return-Path: <eastonjose114@gmail.com>
Received: from mail-sor-f41.google.com (mail-sor-f41.google.com. [209.85.220.41])
        by mx.google.com with SMTPS id i6-20020ac25b46000000b005008ad9de8dsor2568913lfp.20.2023.08.23.12.04.32
        for <info@designerliving.com>
        (Google Transport Security);
        Wed, 23 Aug 2023 12:04:32 -0700 (PDT)
Received-SPF: pass (google.com: domain of eastonjose114@gmail.com designates 209.85.220.41 as permitted sender) client-ip=209.85.220.41;
Authentication-Results: mx.google.com;
       dkim=pass header.i=@gmail.com header.s=20221208 header.b=ArBcaFSK;
       spf=pass (google.com: domain of eastonjose114@gmail.com designates 209.85.220.41 as permitted sender) smtp.mailfrom=eastonjose114@gmail.com;
       dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
        d=gmail.com; s=20221208; t=1692817471; x=1693422271;
        h=to:subject:message-id:date:from:in-reply-to:references:mime-version
         :from:to:cc:subject:date:message-id:reply-to;
        bh=Km4qhfvHgZXLpkjckxQ1gUKApEMADLVx/tGOoDOLKZU=;
        b=ArBcaFSKWMIhZI6SASDm5U7RALWG7KiZcJrZVe2GvKoWvMu6Bf6ihixwJRDc+jAv3i
         kiwq9AxGuTetvgxzjII0r8WEoh2MTe/lqwc4ZxacpK/q0JVbmdqa2BWXjpE4pQUz6zfM
         Bjnq0KOhwrzser4WUwgq0SxPhhRNSHg80cc+qGyV536wUfsS6sSiB/xYXI/oZhvCZLBV
         F9/veP1USN6FBSoLiGWxiEAQA/jrJsj+qwwUEFvDudjJh/efgBao/iNN1QGxCjgfibVf
         ca+fq+ybuHPyrtsWQFW7RtzKci3GC4eVuCZnIygYU3JHm921YELrRVF3XEYuCrHRw356
         qUZA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
        d=1e100.net; s=20221208; t=1692817471; x=1693422271;
        h=to:subject:message-id:date:from:in-reply-to:references:mime-version
         :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to;
        bh=Km4qhfvHgZXLpkjckxQ1gUKApEMADLVx/tGOoDOLKZU=;
        b=PA4HGYORcUq+V0z5sNCiQQTj2ciV1cWfGA4wuaauq9cQy9Ah02Pb7o3x0rjlPqkZjH
         n1VqwR+P/iLgApxJSsB/6sh8mSD5kZLkxd0NTbvmJ0TcXXMfnKKeVPuSJF1f9XOtERQc
         IUsOOEnAXoEt5HQOU/mJMx067NTNO2lpSWn0YsLR1zRM6IRpwm5KMtapDJn3oy3vl21o
         UCB/uh3eS2Xb/NqCa1atb5VVpOQkZbWrFWra4ClLcH4odfqOxi8qdF2cEzmLX4GCSX7M
         q1164aWxlGSmCOcmnahE873qwB+2wFTBSTImlDEw8TQTkR9blk7jjAwIoRsYXsmXGK/x
         gE8A==
X-Gm-Message-State: AOJu0YyI8Y3E7bOm/gRyGhhOWOgNBwSRGImvhdoaffhziVK4uJCxJ4n0
	wDAdapckT0V1cMaC7LBCG+PGD/u4dl/HngJ2Ur7rno6wi/A=
X-Google-Smtp-Source: AGHT+IH6s7Ca6bb3Gp0wc1IanfyJzUfpD8LYP/eQr1AqMe69b72cuDBCvp6Eul9wwAeP+o2mgOd4gpJcaIU3Qx+hMEM=
X-Received: by 2002:a2e:940d:0:b0:2bc:d38e:65ab with SMTP id
 i13-20020a2e940d000000b002bcd38e65abmr3647099ljh.37.1692817471029; Wed, 23
 Aug 2023 12:04:31 -0700 (PDT)
MIME-Version: 1.0
References: <CACx2VcHycLhOSXaFSDUedqAWudQ8o1WsffuUMR0JberimuY6pg@mail.gmail.com>
 <CACx2VcGukosvO7dvMtuDdDnG3MoTJ_qH79a-p7gvBE=veBswRg@mail.gmail.com> <CACx2VcEL3Y63cUMe+T791TWqOH=WekKr0nUUDPp5RjxuNftzeQ@mail.gmail.com>
In-Reply-To: <CACx2VcEL3Y63cUMe+T791TWqOH=WekKr0nUUDPp5RjxuNftzeQ@mail.gmail.com>
From: Easton Jose <eastonjose114@gmail.com>
Date: Thu, 24 Aug 2023 00:04:18 +0500
Message-ID: <CACx2VcFTOPEn7xVXKLUW1QCOv7O76MfLvcogWz34S5+6yHNqZA@mail.gmail.com>
Subject: Re: Vulnerability Report-Broken Authentication
To: info@designerliving.com
Content-Type: multipart/alternative; boundary="00000000000007c76606039bc83a"

--00000000000007c76606039bc83a
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

Hi Team,

I hope you are well. I've reported a security vulnerability on your website
a long time ago and still haven't heard back from you. I'd really
appreciate it if you can verify my findings and update me regarding the
bounty for the report.

Looking forward to hearing from you.

On Tue, Jun 20, 2023 at 11:29=E2=80=AFPM Easton Jose <eastonjose114@gmail.c=
om>
wrote:

> Hi Team,
>
> I believe that you have had an opportunity to read our previous email
> regarding the vulnerability report. As it's been long already and your te=
am
> hasn't responded to the vulnerability report submitted by me, I was
> expecting $500 for responsible disclosure of vulnerability.
>
> Furthermore I would like to publicly disclose vulnerability reports on ou=
r
> blogs for research and educational purposes. If you have any concerns do
> let me know.
>
> On Wed, Jun 14, 2023 at 11:53=E2=80=AFPM Easton Jose <eastonjose114@gmail=
.com>
> wrote:
>
>> Hi Team,
>>
>> Any update regarding the report and bounty?
>>
>> On Fri, Jun 9, 2023 at 1:49=E2=80=AFAM Easton Jose <eastonjose114@gmail.=
com>
>> wrote:
>>
>>> Hey Team,
>>>
>>> I'm a penetration tester and bug bounty hunter. I have found a potentia=
l
>>> vulnerability in the site. Please review the report below.
>>>
>>> Vulnerability: Broken Authentication & Session Management
>>> We have observed that when we change "password" from one browser in
>>> place of session expiration from another browser it just updates the
>>> password from another browser and the old session gets updated without
>>> being logged out. The flows goes like this:
>>> Broken Authentication and Session Management > Failure to Invalidate
>>> Session > On Password Change
>>> Steps:
>>> 1- Login from two browsers at a time [From Chrome browser and from
>>> Mozilla Firefox].
>>> 2- Change password in settings from chrome browser.
>>> 3- Now Check Mozilla Firefox.
>>> 4- Your Session got "updated" in place of expiration.
>>>
>>> Same goes with when using two different computer systems.
>>> 1- Login from two computers at a time
>>> 2- Change password in settings from computer A.
>>> 3- Now Check computer B.
>>> 4- Your Session got "updated" in place of expiration.
>>>
>>> Recommendations: If Session is Updating from one Browser/Computer so
>>> other should expire first to renew session after login.
>>>
>>> If you require any additional information, please let me know. I'll be
>>> waiting to hear from your side regarding the report and bounty.
>>>
>>> --
>>> Regards,
>>> Easton
>>>
>>

--00000000000007c76606039bc83a
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">Hi Team,<br><br>I hope you are well. I&#39;ve reported a s=
ecurity vulnerability on your website a long time ago and still haven&#39;t=
 heard back from you. I&#39;d really appreciate it if you can verify my fin=
dings and update me regarding the bounty for the report.<br><br>Looking for=
ward to hearing from you.<br></div><br><div class=3D"gmail_quote"><div dir=
=3D"ltr" class=3D"gmail_attr">On Tue, Jun 20, 2023 at 11:29=E2=80=AFPM East=
on Jose &lt;<a href=3D"mailto:eastonjose114@gmail.com">eastonjose114@gmail.=
com</a>&gt; wrote:<br></div><blockquote class=3D"gmail_quote" style=3D"marg=
in:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1e=
x"><div dir=3D"ltr">Hi Team,<br><br>I believe that you have had an opportun=
ity to read our previous email regarding the vulnerability report. As it&#3=
9;s been long already and your team hasn&#39;t responded to the vulnerabili=
ty report submitted by me, I was expecting $500 for responsible disclosure =
of vulnerability.<br><br>Furthermore I would like to publicly disclose vuln=
erability reports on our blogs for research and educational purposes. If yo=
u have any concerns do let me know.<br></div><br><div class=3D"gmail_quote"=
><div dir=3D"ltr" class=3D"gmail_attr">On Wed, Jun 14, 2023 at 11:53=E2=80=
=AFPM Easton Jose &lt;<a href=3D"mailto:eastonjose114@gmail.com" target=3D"=
_blank">eastonjose114@gmail.com</a>&gt; wrote:<br></div><blockquote class=
=3D"gmail_quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rg=
b(204,204,204);padding-left:1ex"><div dir=3D"ltr">Hi Team,<br><br>Any updat=
e regarding the report and bounty?</div><br><div class=3D"gmail_quote"><div=
 dir=3D"ltr" class=3D"gmail_attr">On Fri, Jun 9, 2023 at 1:49=E2=80=AFAM Ea=
ston Jose &lt;<a href=3D"mailto:eastonjose114@gmail.com" target=3D"_blank">=
eastonjose114@gmail.com</a>&gt; wrote:<br></div><blockquote class=3D"gmail_=
quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,=
204);padding-left:1ex"><div dir=3D"ltr"><div dir=3D"ltr"><div dir=3D"ltr">H=
ey Team,<br><br>I&#39;m a penetration tester and bug bounty hunter. I have =
found a potential vulnerability in the site. Please review the report below=
.<br><br>Vulnerability: Broken Authentication &amp; Session Management<br>W=
e have observed that when we change &quot;password&quot; from one browser i=
n place of session expiration from another browser it just updates the pass=
word from another browser and the old session gets updated without being lo=
gged out. The flows goes like this:<br>Broken Authentication and Session Ma=
nagement &gt; Failure to Invalidate Session &gt; On Password Change<br>Step=
s:<br>1- Login from two browsers at a time [From Chrome browser and from Mo=
zilla Firefox].<br>2- Change password in settings from chrome browser.<br>3=
- Now Check Mozilla Firefox.<br>4- Your Session got &quot;updated&quot; in =
place of expiration.<br><br>Same goes with when using two different compute=
r systems.<br>1- Login from two computers at a time<br>2- Change password i=
n settings from computer A.<br>3- Now Check computer B.<br>4- Your Session =
got &quot;updated&quot; in place of expiration.<br><br>Recommendations: If =
Session is Updating from one Browser/Computer so other should expire first =
to renew session after login.<br><br>If you require any additional informat=
ion, please let me know. I&#39;ll be waiting to hear from your side regardi=
ng the report and bounty.<br><div><br></div>--<br><div dir=3D"ltr"><div dir=
=3D"ltr">Regards,<div>Easton</div></div></div></div></div>
</div>
</blockquote></div>
</blockquote></div>
</blockquote></div>

--00000000000007c76606039bc83a--
