The vulnerability described in the article is fixed and does not carry any danger. The publication is written for the purpose of academic education of readers and demonstrate the importance of information security issues. The described vulnerability was present at E-GOV for several years and allowed access to passwords of users of e-government in Kazakhstan.
"Recently, critical vulnerabilities have been closed on the e-government portal of the Republic of Kazakhstan.
Since the bug is already closed and its disclosure is no longer a threat, it was decided to discuss it with you, since from a technical and academic point of view the case is of great interest to researchers. Another important point: in certain circles, such errors, particularly this one, are known for a very long time, and their presence raises many questions to the level of competence of the responsible persons. "