Bug #2001

URGENT : Lack of security

Added by Edwin Brasseur almost 2 years ago. Updated 12 months ago.

Status:Closed Start date:03/30/2015
Priority:Immediate Due date:
Assignee:Edwin Brasseur % Done:

100%

Category:Bugs Spent time: -
Target version:-

Description

By accessing GoAutoDial HTTP service on https://IP_OF_SERVER/index.php/go_carriers_ce/go_get_carrier/view/CARRIERNAME

This without any login. you have full access of the carrier config. INCLUDING LOGIN & PASSWORD on source code of the page.

It need to be fixed very quickly.

History

Updated by Chris Lomuntad almost 2 years ago

Hi Edwin,

Thank you for reporting this bug. We will inform you once we're done updating our GIThub repo.

Cheers,
Chris

Updated by suman das over 1 year ago

Its still there.. Please fix it ASAP.

Updated by Levy Ryan Nolasco 12 months ago

  • Status changed from New to Closed
  • Assignee changed from Demian Biscocho to Edwin Brasseur
  • % Done changed from 0 to 100

Hi,

This issue has been resolved. Please update using the latest GIThub repo.

Also available in: Atom PDF