Anonymous | Login
Project:
RSS
  
News | My View | View Issues | Roadmap | Summary

View Revisions: Issue #35981 All Revisions ] Back to Issue ]
Summary 0035981: [SERQA 2847] Buttons for customer and locations are not blocked in synchronized mode.
Revision 2017-05-12 10:35 by jonibc
Description Buttons for customer and locations are not blocked in synchronized mode.
If the user click the button, it is possible to click it again, sending multiple requests.

A malicious user can block the whole server if thousands of requests are made.

It is reproducible in livebuilds.
Revision 2017-05-12 09:15 by jonibc
Description Buttons for customer and locations are not blocked in synchronized mode.
If the user click the button, it is possible to click it again, sending multiple requests.

A malicious user can block the whole server if thousands of requests are made.

It is reproducible in livebuilds.


Copyright © 2000 - 2009 MantisBT Group
Powered by Mantis Bugtracker