We're updating the issue view to help you get more done. 

web-ui is exposed to "Forced Browsing"

Description

WEB UI includes vulnerability commonly known as Forced Browsing

https://www.owasp.org/index.php/Forced_browsing

Please see screenshots.

Workaround

None

Acceptance Test

None

Status

Assignee

Unassigned

Reporter

Yuval Dori

Labels

None

Priority

Medium

SalesForce Case ID

11978

Fix versions

None

Commitment Version/s

None

Due date

None

Product

XAP

Edition

Open Source

Platform

All