Bug 357102 - Microsoft Outlook/OWA logout bypassed by pressing back button repeatedly
Summary: Microsoft Outlook/OWA logout bypassed by pressing back button repeatedly
Status: RESOLVED NOT A BUG
Alias: None
Product: konqueror
Classification: Applications
Component: khtml (show other bugs)
Version: unspecified
Platform: RedHat Enterprise Linux Linux
: NOR normal
Target Milestone: ---
Assignee: Konqueror Developers
URL:
Keywords: reproducible
Depends on:
Blocks:
 
Reported: 2015-12-23 14:52 UTC by oxitech
Modified: 2015-12-23 22:08 UTC (History)
0 users

See Also:
Latest Commit:
Version Fixed In:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description oxitech 2015-12-23 14:52:44 UTC
When testing Microsoft Outlook Web Access i pressed logout. Consequently i pasted ( accidently ) the url as in https://webmail.com/owa/ into the adressbar and pressed enter. To my amazement i was logged on to outlook webmail again.

Reproducible: Always

Steps to Reproduce:
1. Logon to Outlook Webmail, press Logout/Signout ("Afmelden" in Dutch)
2. Refresh ... close the tab 
3. Keep pressing the back button, you're now in OWA again ... OR ... open a new tab and copy/past the URL like /owa and same result.


Expected Results:  
Login screen
Comment 1 oxitech 2015-12-23 14:55:03 UTC
Konqueror version reported 4.10.5 on RHEL7/7.1
Comment 2 oxitech 2015-12-23 21:59:55 UTC
This is reportedly due to the OWA service and how it works with some authentication services.
Comment 3 oxitech 2015-12-23 22:07:19 UTC
See for reference ... https://support.microsoft.com/en-us/kb/927907
Comment 4 oxitech 2015-12-23 22:08:24 UTC
set to resolved, validated to not be browser specific
Comment 5 oxitech 2015-12-23 22:08:46 UTC
set to resolved, validated to not be browser specific