Freshbooks Security is Weak!
Posted by JamesWilson on Sun, 09/14/2008 - 06:57
Watch in this screencast where I show how easy it is to get escalation of privileges on Freshbooks.
I log in as a client who has received an invoice (bill), and I proceed to delete that bill, even though I should not have that ability.
I log in as a client who has received an invoice (bill), and I proceed to delete that bill, even though I should not have that ability.
- JamesWilson's blog
- Login to post comments


Won first place in ACTE (Alabama Council for Technology in Education) programming competition, 2001.
Judged ACTE programming competition, 2005.


