]> git.ipfire.org Git - thirdparty/bugzilla.git/commit
SECURITY FIX for bug 109679: It was possible to send arbitrary SQL to buglist.cgi...
authorjustdave%syndicomm.com <>
Sun, 30 Dec 2001 13:41:44 +0000 (13:41 +0000)
committerjustdave%syndicomm.com <>
Sun, 30 Dec 2001 13:41:44 +0000 (13:41 +0000)
commit044c55fb5a5dc5ab56d4178f1533f890edec8ef6
tree5a41a1e335f0d58d65c8f7fa4b79f23fd19648ba
parent6928b683bfa9f364ebd163efe1763f53bb847afa
SECURITY FIX for bug 109679: It was possible to send arbitrary SQL to buglist.cgi by altering the HTML form before submitting.
Patch by Dave Miller <justdave@syndicomm.com>
r= dkl, gerv
buglist.cgi