diff options
| author | justdave%syndicomm.com <> | 2001-12-30 13:46:24 +0000 |
|---|---|---|
| committer | justdave%syndicomm.com <> | 2001-12-30 13:46:24 +0000 |
| commit | 668ec7dae535ce543f13ef5a36830da7421e1e68 (patch) | |
| tree | 0d6cc71e092992eb066e89bdfa33937e6b95409f /process_bug.cgi | |
| parent | d4f9c9fca320fa792f45e98204a1a7232f7c81a0 (diff) | |
| download | bugs-668ec7dae535ce543f13ef5a36830da7421e1e68.tar bugs-668ec7dae535ce543f13ef5a36830da7421e1e68.tar.gz bugs-668ec7dae535ce543f13ef5a36830da7421e1e68.tar.bz2 bugs-668ec7dae535ce543f13ef5a36830da7421e1e68.tar.xz bugs-668ec7dae535ce543f13ef5a36830da7421e1e68.zip | |
SECURITY FIX for bug 109679: It was possible to send arbitrary SQL to buglist.cgi by altering the HTML form before submitting.
Patch by Dave Miller <justdave@syndicomm.com>
r= dkl, gerv
Diffstat (limited to 'process_bug.cgi')
0 files changed, 0 insertions, 0 deletions
