I have been testing VPN connection to SFOS device. I have two access points, one on LAN side and the second on WAN side. I have connected VPN and logged to Admin Console then disconnected VPN and switched WiFi.
I was surprised that after refreshing browser - admin console still worked. Isn't it a change for someone to successfully make XSS attack on console if I can stay logged in even when my ip address changed ? Can anyone confirm that behavior?
This thread was automatically locked due to age.