One of the car vulns has been publishedhttps://kb.cert.org/vuls/id/174715/
-
-
It is funnier than that actually, this was used in the account creation process. Had an api to check if the email address you provided was being used. But ‘all’ Apis required auth. So how does one auth before you have an account? Only one answer: hardcoded admin creds
-
I don’t think such an api should exist but if one really feels the need for it just remove the auth requirement from it. Don’t waste your time creating any account for it.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.