Oracle Access Manager (OAM 18.104.22.168.x) Access Portal Service Extension ESSODirectSubmit Does not Work When The User Has A Double Quote In The Password (")
(Doc ID 2320451.1)
Last updated on NOVEMBER 02, 2017
Applies to:Oracle Access Manager - Version 22.214.171.124.170418 and later
Oracle Access Portal - Version 126.96.36.199.0 and later
Information in this document applies to any platform.
OAM BP 188.8.131.52.170418
Webgate Iplanet (OTD) 184.108.40.206.0
ESSODirectSubmit does not work when the user has a double quote in his password (")
This feature can be used after installing the following patches:
<Patch:24758508> for OAM
<Patch:25742669> for OTD Webgate
This feature is working just fine except when the password contains a double quote because the HTML that is returned back to perform form fill does not escape this particular character to ". The bottom line is that the code will need to make sure that passwords are HTML-safe, otherwise the browser itself could truncate it.
To view full details, sign in with your My Oracle Support account.
Don't have a My Oracle Support account? Click to get started!