-
Type:
Bug
-
Status: Open
-
Priority:
Low
-
Resolution: Unresolved
-
Affects Version/s: None
-
Fix Version/s: None
-
Component/s: None
-
Labels:
-
Environment:Production
-
Bug Severity:Low
-
Module:BenAdmin - Security
-
Reported by:Harbinger
[Security Test - Web] Employee Search page shows server error when any script is provided as input to Search Employee field.
Malicious user can enter any scripts through application to generate Server Errors.
Test Environment: Production - VM 208...
Tool Used : Tamper Data - Fire Fox plugin
Field | Original Value | New Value |
---|---|---|
Module | Parent values: BenAdmin(10100) | Parent values: BenAdmin(10100)Level 1 values: Security(10112) |
Environment | Production [ 10005 ] | |
Severity | Medium [ 13102 ] |
Issue Category | EBS [ 10350 ] | Harbinger [ 10700 ] |
Bug Severity | Low [ 16703 ] |
Labels | Security |
Environment_New | Production [ 18442 ] |
Link | This issue relates to DEV-13718 [ DEV-13718 ] |