Uploaded image for project: 'Magnolia'
  1. Magnolia
  2. MAGNOLIA-986

Invalid Login does not return status 401

    XMLWordPrintable

Details

    • Bug
    • Resolution: Won't Fix
    • Major
    • None
    • 3.0 RC2
    • security
    • None
    • JBoss, Linux, Magnolia 3.0, FireFox

    Description

      I use the same login script like the Magnolia Admin login.

      • In the Browser look for a page where you have NO access rights. The login prompt shows up. With a correct login, the status returned is 403, correct.
      • In the Browser look for a page, where you have access rights. But this time type an invalid login. You will get a white page and the status returned is 200 instead of 401.

      Checklists

        Acceptance criteria

        Attachments

          Activity

            People

              scharles Sameer Charles
              giancarlo Giancarlo Berner
              Votes:
              0 Vote for this issue
              Watchers:
              0 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Checklists

                  Bug DoR
                  Task DoD