• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Corp Intranet: 3rd party application security vulnerability

robphelan

Diamond Member
so, we have a 3rd party application for trouble ticket tracking.

If I launch it using Chrome, I log in using userid/pw and it's fine.

But if I open another tab in Chrome and do the same, I'll get a GET method error along with my userid/pw in plain text.

This doesn't happen in IE - so, what did they do wrong?
 
The only thing that they may be clearly doing wrong is logging off userid/passwords. That is a pretty big no-no. Other than that, it is hard to tell what, if anything, is being done incorrectly.
 
Back
Top