]> git.ipfire.org Git - thirdparty/bugzilla.git/commit
SECURITY FIX for bug 109679: It was possible to send arbitrary SQL to buglist.cgi...
authorjustdave%syndicomm.com <>
Sun, 30 Dec 2001 13:46:24 +0000 (13:46 +0000)
committerjustdave%syndicomm.com <>
Sun, 30 Dec 2001 13:46:24 +0000 (13:46 +0000)
commit668ec7dae535ce543f13ef5a36830da7421e1e68
tree0d6cc71e092992eb066e89bdfa33937e6b95409f
parentd4f9c9fca320fa792f45e98204a1a7232f7c81a0
SECURITY FIX for bug 109679: It was possible to send arbitrary SQL to buglist.cgi by altering the HTML form before submitting.
Patch by Dave Miller <justdave@syndicomm.com>
r= dkl, gerv
buglist.cgi