Project

General

Profile

Actions

Bug #2001

closed

URGENT : Lack of security

Added by Edwin Brasseur about 9 years ago. Updated about 8 years ago.

Status:
Closed
Priority:
Immediate
Category:
Bugs
Target version:
-
Start date:
03/30/2015
Due date:
% Done:

100%

Estimated time:

Description

By accessing GoAutoDial HTTP service on https://IP_OF_SERVER/index.php/go_carriers_ce/go_get_carrier/view/CARRIERNAME

This without any login. you have full access of the carrier config. INCLUDING LOGIN & PASSWORD on source code of the page.

It need to be fixed very quickly.

Actions #1

Updated by Chris Lomuntad about 9 years ago

Hi Edwin,

Thank you for reporting this bug. We will inform you once we're done updating our GIThub repo.

Cheers,
Chris

Actions #2

Updated by suman das almost 9 years ago

Its still there.. Please fix it ASAP.

Actions #3

Updated by Levy Ryan Nolasco about 8 years ago

  • Status changed from New to Closed
  • Assignee changed from Demian Biscocho to Edwin Brasseur
  • % Done changed from 0 to 100

Hi,

This issue has been resolved. Please update using the latest GIThub repo.

Actions

Also available in: Atom PDF

Go to top