Website Auth Flaw

s0eViL

n00b
Joined
Nov 11, 2011
Messages
54
Question if you may on network security, i have discovered a security flaw in a new website my company has created that we use to record MAC addresses, serials and various other vanilla config data. the flaw allows an unauthenticated user to view and download this data, my question is: can a hacker use MAC addresses to hack a system, is this really such a big flaw that i have to report it? the reason i don't really want to report it is that i use this hole in to automate my work via scripting and if they patch it i would have to do this work manually, so do you think i should report it or not??
 
You should report any possible disclosure of sensitive data.

That said, MACs are pretty much useless since they're insecure themselves.
 
Back
Top