Amitkhandebharadprivilege escalation allow the app admin to add the user as organization admin (on Microsoft own…cant wait to disclose how i was able to promote my self as organization admin account using application adminApr 276Apr 276
Amitkhandebharadprivilege escalation allow the team manager to delete the adminwhoami:Oct 7, 20234Oct 7, 20234
AmitkhandebharadPrivilege escalation lets manager promote the user as adminwhoami:Oct 3, 20238Oct 3, 20238
Amitkhandebharad\Privilege escalation allow user to promote self as admininfo: here i was able to promote myself as admin by forging the request.Aug 21, 20232Aug 21, 20232
Amitkhandebharadlet's takeover the super admin account by escalating privilege 💀info : there is 3 privileges.Mar 27, 20233Mar 27, 20233
Amitkhandebharadidor allow attacker to add any user in our org and also allow to change that user detailsstep: intercept the request while demote the user in our orgDec 31, 2022Dec 31, 2022
Amitkhandebharadprivillege esclation allow modrator to demote the admin on zoaffected url :https://accounts.zoho.in/Dec 31, 2022Dec 31, 2022
Amitkhandebharadidor allow to download any users audit logsaffected url: https://rpt.clicktime.com/Dec 31, 2022Dec 31, 2022
Amitkhandebharadidor allow to get victim processing details and api keysinfo: idor allow to get other users processing details and api keys leaksDec 31, 2022Dec 31, 2022