WebApp Sec mailing list archives
Social Security Number in Hidden field
From: Jyotiranjan Acharya <jyotiranjan121 () gmail com>
Date: Sun, 23 Nov 2014 14:12:51 -0600
Hello, There is an application which is present in an intranet. When, the Admin of the application loads the user information page, a field called SSN appears. It shows ###-##-####. But the actual SSN remains in a hidden field. Do you think there should be a security issue with this ? Regards Jyoti This list is sponsored by Cenzic -------------------------------------- Let Us Hack You. Before Hackers Do! It's Finally Here - The Cenzic Website HealthCheck. FREE. Request Yours Now! http://www.cenzic.com/2009HClaunch_Securityfocus --------------------------------------
Current thread:
- Social Security Number in Hidden field Jyotiranjan Acharya (Nov 23)
- Re: Social Security Number in Hidden field Robin Wood (Nov 23)
- Re: Social Security Number in Hidden field snipe (Nov 23)
- Re: Social Security Number in Hidden field Abhay Rana (Nov 23)
- Re: Social Security Number in Hidden field Lorne Kates (Nov 23)
- Re: Social Security Number in Hidden field Antti Virtanen (Nov 24)
- RE: Social Security Number in Hidden field Jeffory Atkinson (Nov 24)
- RE: [EXT] RE: Social Security Number in Hidden field Hambleton, Robert F (Nov 24)
- Re: Social Security Number in Hidden field snipe (Nov 23)
- Re: Social Security Number in Hidden field Robin Wood (Nov 23)