Skip to content

Unsafe_Object_Binding @ /Controllers/PasswordResetsController.cs #28

@msant262

Description

@msant262

Checkmarx (SAST): Unsafe_Object_Binding
Security Issue: Read More about Unsafe_Object_Binding
Checkmarx Project: Nova-8/Damm-Vulnerable-CSharp-API
Repository URL: https://github.com/Nova-8/Damm-Vulnerable-CSharp-API
Branch: master
Scan ID: 2f22541b-da6c-459f-9285-99da61e0ed7d


The passwordResetRequest at /Controllers/PasswordResetsController.cs in line 63 may unintentionally allow setting the value of SaveChanges in Post, in the object /Controllers/PasswordResetsController.cs at line 86.

Result 1:
Severity: MEDIUM
State: TO_VERIFY
Status: RECURRENT
Attack Vector:

    1. passwordResetRequest: /Controllers/PasswordResetsController.cs[63,65]
    2. SaveChanges: /Controllers/PasswordResetsController.cs[86,19]
    Review result in Checkmarx One: Unsafe_Object_Binding

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions