Uploaded image for project: 'Apache Fineract'
  1. Apache Fineract
  2. FINERACT-516

Add current password field to prevent unauthorized users from changing password of the current user #2428

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Open
    • Major
    • Resolution: Unresolved
    • None
    • None
    • User Management

    Description

      Reported by Nenge1

      Link,
      Mifos dropdown->profile>change password (check the screenshot)

      Allowing user to enter only new password increase vulnerability because the username is visible.

      Attachments

        Activity

          People

            Unassigned Unassigned
            santoshmath Santosh Math
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

            Dates

              Created:
              Updated: