Uploaded image for project: 'ZABBIX BUGS AND ISSUES'
  1. ZABBIX BUGS AND ISSUES
  2. ZBX-21798

The old password is not verified during password change.

XMLWordPrintable

    • Icon: Incident report Incident report
    • Resolution: Unresolved
    • Icon: Trivial Trivial
    • None
    • 5.0.28, 6.0.9
    • None
    • None

      Steps to reproduce:

      1. User changes it's password.

      Result:
      Only new password is required.
      Expected:
      Old password should be verified as there is risk other people open the zabbix web with remembered session. 

      If the old password is not verified, the user account may be stolen.

            zabbix.dev Zabbix Development Team
            onlybee biyurong
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated: