diff --git a/submissions/description/insufficient_security_configurability/business_logic_bypass/guidance.md b/submissions/description/insufficient_security_configurability/business_logic_bypass/guidance.md index e69de29b..c7a67751 100644 --- a/submissions/description/insufficient_security_configurability/business_logic_bypass/guidance.md +++ b/submissions/description/insufficient_security_configurability/business_logic_bypass/guidance.md @@ -0,0 +1,5 @@ +**Guidance** + +Provide a step-by-step walkthrough with a screenshot on how you exploited the vulnerability. This will speed up triage time and result in faster rewards. Please include specific details on where you identified the vulnerability, how you identified it, and what actions you were able to perform as a result. + +Attempt to escalate the vulnerability to perform additional actions. If this is possible, provide a full Proof of Concept (PoC). \ No newline at end of file diff --git a/submissions/description/insufficient_security_configurability/no_account_lockout/guidance.md b/submissions/description/insufficient_security_configurability/no_account_lockout/guidance.md index e69de29b..c7a67751 100644 --- a/submissions/description/insufficient_security_configurability/no_account_lockout/guidance.md +++ b/submissions/description/insufficient_security_configurability/no_account_lockout/guidance.md @@ -0,0 +1,5 @@ +**Guidance** + +Provide a step-by-step walkthrough with a screenshot on how you exploited the vulnerability. This will speed up triage time and result in faster rewards. Please include specific details on where you identified the vulnerability, how you identified it, and what actions you were able to perform as a result. + +Attempt to escalate the vulnerability to perform additional actions. If this is possible, provide a full Proof of Concept (PoC). \ No newline at end of file diff --git a/submissions/description/server_security_misconfiguration/fingerprinting_banner_disclosure/software_versions_disclosed_in_response_headers/guidance.md b/submissions/description/server_security_misconfiguration/fingerprinting_banner_disclosure/software_versions_disclosed_in_response_headers/guidance.md index e69de29b..c7a67751 100644 --- a/submissions/description/server_security_misconfiguration/fingerprinting_banner_disclosure/software_versions_disclosed_in_response_headers/guidance.md +++ b/submissions/description/server_security_misconfiguration/fingerprinting_banner_disclosure/software_versions_disclosed_in_response_headers/guidance.md @@ -0,0 +1,5 @@ +**Guidance** + +Provide a step-by-step walkthrough with a screenshot on how you exploited the vulnerability. This will speed up triage time and result in faster rewards. Please include specific details on where you identified the vulnerability, how you identified it, and what actions you were able to perform as a result. + +Attempt to escalate the vulnerability to perform additional actions. If this is possible, provide a full Proof of Concept (PoC). \ No newline at end of file diff --git a/submissions/description/server_security_misconfiguration/misconfigured_security_headers/insecure_content_security_policy/guidance.md b/submissions/description/server_security_misconfiguration/misconfigured_security_headers/insecure_content_security_policy/guidance.md index e69de29b..c7a67751 100644 --- a/submissions/description/server_security_misconfiguration/misconfigured_security_headers/insecure_content_security_policy/guidance.md +++ b/submissions/description/server_security_misconfiguration/misconfigured_security_headers/insecure_content_security_policy/guidance.md @@ -0,0 +1,5 @@ +**Guidance** + +Provide a step-by-step walkthrough with a screenshot on how you exploited the vulnerability. This will speed up triage time and result in faster rewards. Please include specific details on where you identified the vulnerability, how you identified it, and what actions you were able to perform as a result. + +Attempt to escalate the vulnerability to perform additional actions. If this is possible, provide a full Proof of Concept (PoC). \ No newline at end of file diff --git a/submissions/description/using_components_with_known_vulnerabilities/unpatched_javascript_libraries/guidance.md b/submissions/description/using_components_with_known_vulnerabilities/unpatched_javascript_libraries/guidance.md index e69de29b..c7a67751 100644 --- a/submissions/description/using_components_with_known_vulnerabilities/unpatched_javascript_libraries/guidance.md +++ b/submissions/description/using_components_with_known_vulnerabilities/unpatched_javascript_libraries/guidance.md @@ -0,0 +1,5 @@ +**Guidance** + +Provide a step-by-step walkthrough with a screenshot on how you exploited the vulnerability. This will speed up triage time and result in faster rewards. Please include specific details on where you identified the vulnerability, how you identified it, and what actions you were able to perform as a result. + +Attempt to escalate the vulnerability to perform additional actions. If this is possible, provide a full Proof of Concept (PoC). \ No newline at end of file