Activity

From 01 May 2023 to 30 May 2023

30 May 2023

04:39 PM Bug #16604 (Closed): [MW-10][BE] Sensitive Field Not Emptied
Description:
After a failed attempt to log in to the application, the login form is automatically repopulated with p...
Nor Khairun Aqila Jesmen
04:38 PM Bug #16603 (Closed): [MW-9][BE] Sensitive Field Forms Autocomplete
Description:
Autocomplete feature is not set to "off" on username field.
Fixes:
Use autocomplete="off" at the lo...
Nor Khairun Aqila Jesmen
04:35 PM Bug #16602 (Closed): [MW-2][BE] Poor Error Handling
Description:
The application returns error message containing stack traces. If reproduced, some error conditions can...
Nor Khairun Aqila Jesmen
04:33 PM Bug #16601 (Closed): [MW-1 & MW-4][BE] Stored Cross-Site Scripting (XSS)
Description:
Stored cross-site scripting vulnerabilities arise when user input is stored and later embedded into the...
Nor Khairun Aqila Jesmen
04:30 PM Bug #16599 (Closed): [MA-3][Android] Cleartext Storage of Sensitive Information in Log Files
Description:
The application exposes sensitive information within log files which are stored on the local device in ...
Nor Khairun Aqila Jesmen
04:28 PM Bug #16598 (Closed): [MA-2][Android] Allowance of Application Data Backup
Description:
The application has android:allowBackup being set to "true" in AndroidManifest.xml
Recommendation:
...
Nor Khairun Aqila Jesmen
04:26 PM Bug #16597 (Closed): [MA-5][IOS] Lack of Screen Caching Prevention
Description:
The application may expose sensitive information via the app switcher.
Recommendation:
Overlay an i...
Nor Khairun Aqila Jesmen
04:18 PM Bug #16595 (Closed): [MA-5][Android] Lack of Screen Caching Prevention
Description:
The application may expose sensitive information via the app switcher.
Recommendation:
Overlay an i...
Nor Khairun Aqila Jesmen
 

Also available in: Atom