Same bug different platform

At the moment I am on a break from the Bug hunting so thought of writing this article about a bug I found couple of months ago.

If you have read my previous article it’s same as that bug but the platform was different.

So, the bug was on web version of facebook(facebook.com). Normally, facebook gives a page new experience for the celebrities, business person. So, I was testing I could find something in page new experience.

Then I started facebook live as a page named Urotropine which was already on page new experience and I set age restriction for <25 and restricted to men and when I shared that live video the video was shared publically instead of restricting the people age below 25 who are men which leads to the clash of content inappropriate user could get access to those post.

Timeline:

Feb11, 2022: Initial report

Feb11, 2022: Triaged

Feb24, 2022: $XXXX+ Fixed

POC: https://youtu.be/oyjLYdb3GSk

--

--

--

Nepali🇳🇵

Love podcasts or audiobooks? Learn on the go with our new app.

Recommended from Medium

Community

Medium: Fix the Partner Program

On This Juneteenth Please no Social Media Warriors

MAP Protocol Image Contest: “M”

Cyberspace impact user’s behavior.

The MonkeyBall Weekly Recap

There’s Big Money In Legal Services

Self-Image

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Prajwol Dhungana

Prajwol Dhungana

Nepali🇳🇵

More from Medium

How I Create Message Signature using Frida Hooking?

Security, Your Utmost Concern.

Achievement Unlocked: CVE-2022–31395

Burp Academy Labs — Bypassing Authentication