FIS
- Points – $20,000 per vulnerability
The following URLs are now out of Scope effective immediately.
Please refrain from using IDAdminUsers@fisglobal.com during your testing.*
Start app in: https://oa-beta.fisglobal.com/oa/fi/10177#/beginApp
Consumer redirected to portal: https://ap-uat1.fisglobal.com/everest/auth/login
Testing of App Portal shall only take place at the urls mentioned above, as all of the other urls/environments below are out of scope, and should not undergo testing under any circumstances.
Effective immediately, the list outlined below is now out of scope. Please re-review the bounty brief in detail and adjust your testing, and all scanners accordingly to make sure you are only testing and submitting in-scope bugs.
Any pending submissions submitted before the out of scope changes/this announcement will be reviewed and processed accordingly.
apuat-aaa.fisglobal.com
apuat-arvest.fisglobal.com
ID-UAT3.fisglobal.com
apuat-associated.fisglobal.com
xxxapuat-bankiowa.fisglobal.com
xxxapuat-classicbank.fisglobal.com
xxxapuat-fcbca.fisglobal.com
xxxapuat-firstoptionbank.fisglobal.com
xxxapuat-fnbgranbury.fisglobal.com
xxxapuat-highlands.fisglobal.com
xxxapuat-icbc.fisglobal.com
xxxapuat-bankofeastman.fisglobal.com
ID-UAT2.fisglobal.com
xxxapuat-plainscapitol.fisglobal.com
xxxapuat-primesouth.fisglobal.com
xxxapuat-riverwindbank.fisglobal.com
apuat-summit.fisglobal.com
xxxapuat-superiornational.fisglobal.com
xxxapuat-troybankandtrust.fisglobal.com
apuat-unitedbankshares.fisglobal.com
ap.acg.aaa.com
creditportal.arvest.com
lendportal.associatedbank.com
applicant.bankofeastman.com
applynowportal.bankIowa.com
loanportal.classic.bank
loanapps.fcbca.com
loansap.firstoptionbank.com
oaportal.fnbgranbury.com
portal.highlandscommunitybank.com
applicationportal.icbc-uscards.com
portal.orientalbank.com
myloanportal.plainscapital.com
applicantportal.primesouth.com
apply.riverwindbank.com
loanportal.snb-t.com
loanportal.troybankandtrust.com
loanportal.bankwithunited.com
If you have any questions on the change in the scope, please reach out to support@bugcrowd.com.