Project

General

Profile

Actions

Feature #235

open

[Security Audit Round 2 ]

Added by Kalyan Battula 12 months ago. Updated 11 months ago.

Status:
New
Priority:
High
Assignee:
-
Category:
-
Target version:
Start date:
01/05/2024
Due date:
08/05/2024 (about 12 months late)
% Done:

23%

Estimated time:
(Total: 37:00 h)
Deployed In:
Category:

Description

Security Audit Round 2


Subtasks 23 (17 open6 closed)

Feature #241: [Security Audit Round 2 ] Password Returned in ResponseClosedKalyan Battula01/05/2024

Actions
Feature #245: [Security Audit Round 2 ] Insecure Data Storage (Reopened)ResolvedRaju Kuthadi 01/05/202402/05/2024

Actions
Feature #248: [Security Audit Round 2 ] Framework Obsolete Version in usage (Repeated)ResolvedVasu Malladi01/05/2024

Actions
Feature #250: [Security Audit Round 2 ] Sensitive Information Disclosure (Repeated)ResolvedVasu Malladi01/05/2024

Actions
Feature #254: [Security Audit Round 2 ] OTP Bypass (Repeated)ClosedKalyan Battula01/05/2024

Actions
Feature #256: [Security Audit Round 2 ] Improper Session Management / Session Expiration too longer (Repeated)Ready for ProdHarish Beechani 01/05/2024

Actions
Feature #258: [Security Audit Round 2 ] Weak Password Policy (Repeated) Ready for ProdHarish Beechani 01/05/2024

Actions
Feature #260: [Security Audit Round 2 ] OTP Bruteforce (Reapeated)ClosedKalyan Battula01/05/2024

Actions
Feature #261: [Security Audit Round 2 ] Application Logic Bypass (Reapeated)Ready for ProdHarish Beechani 01/05/2024

Actions
Feature #263: [Security Audit Round 2 ] Client side bypass / Improper server side validationReady for Prod01/05/2024

Actions
Feature #265: [Security Audit Round 2 ] Host Header InjectionResolved01/05/2024

Actions
Feature #267: [Security Audit Round 2 ] Default pages disclosed Ready for ProdUday Kumar Dara01/05/2024

Actions
Feature #268: [Security Audit Round 2 ] Cross Origin Resource Sharing (CORS) MisconfigurationReady for ProdVasu Malladi01/05/2024

Actions
Feature #269: [Security Audit Round 2 ] Security headers are not Implemented (Repeted)Ready for ProdHarish Beechani 07/05/2024

Actions
Feature #379: [Security Audit Round 2 ] Security headers are not Implemented login screenResolvedUma Maheswarachari Melpati07/05/2024

Actions
Feature #272: [Security Audit Round 2 ] Improper Error HandlingReady for ProdUday Kumar Dara01/05/2024

Actions
Feature #275: [Security Audit Round 2 ] Cross-Site Request Forgery (CSRF) (Repeated)ClosedVasudev Mamidi 06/05/202408/05/2024

Actions
Feature #381: [Security Audit Round 2 ] Cross-Site Request Forgery UI (CSRF) (Repeated)ClosedRaju Kuthadi 06/05/202408/05/2024

Actions
Feature #278: [Security Audit Round 2 ] Sensitive Data Passed Through URL Parameters (Repeated)Ready for ProdPavan kumar Siddamsetti01/05/2024

Actions
Feature #282: [Security Audit Round 2 ] Technology/Version DisclosureReady for ProdUday Kumar Dara01/05/2024

Actions
Feature #284: [Security Audit Round 2 ] Clickjacking Attack (Repeated)ClosedKalyan Battula01/05/2024

Actions
Feature #286: [Security Audit Round 2 ] Port misconfiguration (Repeated)Ready for ProdUday Kumar Dara01/05/2024

Actions
Feature #347: [Security Audit Round 2 ] Stopping future dates in entire applicationResolvedKarthik Daram02/05/2024

Actions
Actions

Also available in: Atom PDF