Project

General

Profile

Actions

Feature #241

closed

Feature #235: [Security Audit Round 2 ]

[Security Audit Round 2 ] Password Returned in Response

Added by Kalyan Battula 12 months ago. Updated 11 months ago.

Status:
Closed
Priority:
High
Category:
-
Target version:
Start date:
01/05/2024
Due date:
% Done:

0%

Estimated time:
Deployed In:
Category:

Description

Password Returned in Response
observation : New
CWE : CWE_204
Description :
Some applications return passwords submitted to the application in clear form in later
responses. This behavior increases the risk that users' passwords will be captured by an
attacker.
Affected Path(s) :
https://his-user-management-service.satragroup.in/master/user-profile *-Applicable to
entire application
Impact :
Vulnerabilities that result in the disclosure of users' passwords can result in
compromises that are extremely difficult to investigate due to obscured audit trails. Even
if the application itself only handles non-sensitive information, exposing passwords puts
users who have re-used their password elsewhere at risk.
Evidence/Proof Of Concept :
Step 1: Password Returned in Response as shown in below screenshot

Recommendation :
It is recommended not to disclose passwords in later response.


Files

clipboard-202405011227-ei7ou.png (83.3 KB) clipboard-202405011227-ei7ou.png Kalyan Battula, 01/05/2024 12:27 PM
Actions #1

Updated by Vasudev Mamidi 12 months ago

  • Assignee set to Harish Beechani
Actions #2

Updated by Sivakanth Kesiraju 12 months ago

  • Target version set to Security Audit
Actions #3

Updated by Harish Beechani 12 months ago

  • Status changed from New to Resolved
Actions #4

Updated by Harish Beechani 11 months ago

  • Status changed from Resolved to Ready for Prod
Actions #5

Updated by Kalyan Battula 11 months ago

  • Status changed from Ready for Prod to Closed
  • Assignee changed from Harish Beechani to Kalyan Battula
Actions

Also available in: Atom PDF