#10 Bypassing authorization

Slēgta
sindre atvēra pirms 5 gadiem · 0 komentāri
sindre komentēja pirms 5 gadiem

User privilege validation is mostly performed on the client side. In this case it allows outside users without project access to perform task-deliveries and accept tasks. This must be done by sending a plain HTTP request instead of interacting through the client web page.

User privilege validation is mostly performed on the client side. In this case it allows outside users without project access to perform task-deliveries and accept tasks. This must be done by sending a plain HTTP request instead of interacting through the client web page.
sindre pievienoja atskaites punktu Required fixes pirms 5 gadiem
sindre pievienoja etiķeti
broken access control
pirms 5 gadiem
sindre pievienoja etiķeti
bug
pirms 5 gadiem
sindre pievienoja etiķeti
webpy
pirms 5 gadiem
Pierakstieties, lai pievienotos šai sarunai.
Notiek ielāde…
Atcelt
Saglabāt
Vēl nav satura.