#3
Severity: medium Participants:
isecurity upsecurit
Visibility: Public Weakness: Weak Password Recovery Mechanism for Forgotten Password (CWE-640) Reported To: UpSecurIT

Ahmed Whitehat (isecurity)

50

Reputation

50.00

Accuracy

2018-02-25

Reported

Session Token    State: ( Resolved )

Summary:

Session token is not getting expire after changing a password from profile private setting.


Protect your economy today!

The challenge is the speed and quality of implementation and a multidimensional strategy.

Try UpSecurIT