covid-19-ro-help
covid-19-ro-help copied to clipboard
Changing the password without prior verification of the old password
Starting point: http://dev.rohelp.ro/en/admin/auth/user/6/change/
Expected: Change your password after prior verification of the old password
Actual: The user is permitted to change the password without prior verification of the old password by typing the old password
Steps performed/Reproduction:
- Log in
- Go to Authentication & Authorization Menu
- Select the Users submenu
- Click on your user
- Simple click on
this form
-
Type in the new password twice for both fields
-
Click on
Change password
- Password changed successfully