]> git.ipfire.org Git - thirdparty/bugzilla.git/commit
[SECURITY] Bug 219044: A user with 'editkeywords' privileges (i.e. usually an adminis...
authorjustdave%syndicomm.com <>
Mon, 3 Nov 2003 11:31:30 +0000 (11:31 +0000)
committerjustdave%syndicomm.com <>
Mon, 3 Nov 2003 11:31:30 +0000 (11:31 +0000)
commita4e75a434f1fbbae4b438927ae02958baad7f1b7
tree74a5ab12bbf20c934af898475a3f6c7303b68013
parenta30e5f2cf9b04a8a377186ecb3b90b4311d23894
[SECURITY] Bug 219044: A user with 'editkeywords' privileges (i.e. usually an administrator) can inject arbitrary SQL via the URL used to edit an existing keyword.
Patch by Joel Peshkin <bugreport@peshkin.net>
r= justdave, zach  a= justdave
editkeywords.cgi