#10 Bypassing authorization

Fechado
aberto por sindre 5 anos atrás · 0 comentários

User privilege validation is mostly performed on the client side. In this case it allows outside users without project access to perform task-deliveries and accept tasks. This must be done by sending a plain HTTP request instead of interacting through the client web page.

User privilege validation is mostly performed on the client side. In this case it allows outside users without project access to perform task-deliveries and accept tasks. This must be done by sending a plain HTTP request instead of interacting through the client web page.
sindre adicionou esta issue para o marco Required fixes 5 anos atrás
sindre adicionou a etiqueta
broken access control
5 anos atrás
sindre adicionou a etiqueta
bug
5 anos atrás
sindre adicionou a etiqueta
webpy
5 anos atrás
Acesse para participar desta conversação.
Carregando…
Cancelar
Salvar
Ainda não há conteúdo.