<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z0000975vP9CAIOkta Classic EngineAuthenticationAnswered2024-05-22T09:00:22.000Z2023-04-21T20:56:18.000Z2023-04-26T16:27:58.000Z

juo9g (juo9g) asked a question.

Buffer Overflow

I tried testing okta page, the forgot password field in okta page is accepting any characters without a threshold value which can lead to Security vulnerabilities: An attacker could exploit this by inputting large amounts of data in the username field in an attempt to cause a buffer overflow or other security vulnerabilities that could compromise the security of the system.

 

Can anyone help with this?


  • Hi @juo9g (juo9g)​ , Thank you for reaching out to the Okta Community!

     

    Penetration/Vulnerability testing of production is not recommended before opening a request with the appropriate teams and could result in loss of service if IPs get blocked as a result of unauthorized activity causing legitimate traffic to be blocked.

     

    If you are interested in performing tests, please reach out to your Okta Customer Success Manager or Account Executive.  

     

    In the meantime, please review our compliance documentation and policies here:

    https://trust.okta.com/security/ 

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Community members help others by clicking Like or Select as Best on responses. Try it today.

    Expand Post
    Selected as Best
  • Hi @juo9g (juo9g)​ , Thank you for reaching out to the Okta Community!

     

    Penetration/Vulnerability testing of production is not recommended before opening a request with the appropriate teams and could result in loss of service if IPs get blocked as a result of unauthorized activity causing legitimate traffic to be blocked.

     

    If you are interested in performing tests, please reach out to your Okta Customer Success Manager or Account Executive.  

     

    In the meantime, please review our compliance documentation and policies here:

    https://trust.okta.com/security/ 

     

     

    If my answer helped, remember to mark it as best to increase its visibility for other members of the Okta Community who might have the same questions as you. 

     

    Hope my answer helps! 

    --------------------------------

    Community members help others by clicking Like or Select as Best on responses. Try it today.

    Expand Post
    Selected as Best
This question is closed.
Loading
Buffer Overflow