Project

General

Profile

Bug #2001

URGENT : Lack of security

Added by Edwin Brasseur over 3 years ago. Updated over 2 years ago.

Status:
Closed
Priority:
Immediate
Category:
Bugs
Target version:
-
Start date:
03/30/2015
Due date:
% Done:

100%

Estimated time:

Description

By accessing GoAutoDial HTTP service on https://IP_OF_SERVER/index.php/go_carriers_ce/go_get_carrier/view/CARRIERNAME

This without any login. you have full access of the carrier config. INCLUDING LOGIN & PASSWORD on source code of the page.

It need to be fixed very quickly.

History

#1 Updated by Chris Lomuntad over 3 years ago

Hi Edwin,

Thank you for reporting this bug. We will inform you once we're done updating our GIThub repo.

Cheers,
Chris

#2 Updated by suman das over 3 years ago

Its still there.. Please fix it ASAP.

#3 Updated by Levy Ryan Nolasco over 2 years ago

  • Status changed from New to Closed
  • Assignee changed from Demian Biscocho to Edwin Brasseur
  • % Done changed from 0 to 100

Hi,

This issue has been resolved. Please update using the latest GIThub repo.

Also available in: Atom PDF

Go to top