Uploaded image for project: 'Apache Fineract'
  1. Apache Fineract
  2. FINERACT-516

Add current password field to prevent unauthorized users from changing password of the current user #2428

Attach filesAttach ScreenshotAdd voteVotersWatch issueWatchersCreate sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Open
    • Major
    • Resolution: Unresolved
    • None
    • None
    • User Management

    Description

      Reported by Nenge1

      Link,
      Mifos dropdown->profile>change password (check the screenshot)

      Allowing user to enter only new password increase vulnerability because the username is visible.

      Attachments

        Activity

          This comment will be Viewable by All Users Viewable by All Users
          Cancel

          People

            Unassigned Unassigned
            santoshmath Santosh Math

            Dates

              Created:
              Updated:

              Slack

                Issue deployment