Openbravo Issue Tracking System - Openbravo ERP
View Issue Details
0003960Openbravo ERPC. Securitypublic2008-06-13 10:002008-08-14 16:15
pjuvara 
iperdomo 
immediatecriticalhave not tried
closedfixed 
20Ubuntu 7.10
2.35MP4 
pi2.40beta 
No
Core
No
0003960: Cross-site scripting vulnerability
Details not disclosed
No tags attached.
depends on backport 0003962 closed iperdomo Cross-site scripting vulnerability 
Issue History
2008-06-13 10:00pjuvaraNew Issue
2008-06-13 10:00pjuvaraAssigned To => cromero
2008-06-13 10:00pjuvaraOBNetwork customer => N
2008-06-13 10:01pjuvaraAssigned Tocromero => iciordia
2008-06-13 10:02pjuvaraStatusnew => scheduled
2008-06-13 10:03pjuvaraOBNetwork customerN =>
2008-06-13 10:03pjuvaraTarget Version => trunk
2008-06-18 09:10iperdomoAssigned Toiciordia => marvintm
2008-06-19 19:23iperdomoAssigned Tomarvintm => iperdomo
2008-06-20 12:26svnbotCheckin
2008-06-20 12:26svnbotNote Added: 0007906
2008-06-20 12:26svnbotStatusscheduled => resolved
2008-06-20 12:26svnbotResolutionopen => fixed
2008-06-20 12:26svnbotsvn_revision => 5243
2008-07-02 15:31plujanStatusresolved => closed
2008-07-02 15:31plujanFixed in Version => 2.40beta
2008-08-14 16:15jaimetorresf_bug_id0 => 2051555

Notes
(0007906)
svnbot   
2008-06-20 12:26   
Repository: openbravo
Revision: 5243
Author: iperdomo
Date: 2008-06-20 12:26:10 +0200 (Fri, 20 Jun 2008)

Fixes bug 3960: Sanitized input parameters to prevent XSS

---
U trunk/src-core/src/org/openbravo/base/VariablesBase.java
U trunk/src-core/src/org/openbravo/utils/FormatUtilities.java
---

https://dev.openbravo.com/websvn/openbravo/?rev=5243&sc=1 [^]