Anonymous | Login
Project:
RSS
  
News | My View | View Issues | Roadmap | Summary

View Issue DetailsJump to Notes ] Issue History ] Print ]
ID
0019842
TypeCategorySeverityReproducibilityDate SubmittedLast Update
design defect[Openbravo ERP] A. Platformmajorhave not tried2012-02-22 15:512022-02-01 08:08
ReporteralostaleView Statuspublic 
Assigned ToTriage Platform Base 
PrioritynormalResolutionopenFixed in Version
StatusacknowledgedFix in branchFixed in SCM revision
ProjectionnoneETAnoneTarget Version
OSAnyDatabaseAnyJava version
OS VersionDatabase versionAnt version
Product VersionSCM revision 
Review Assigned To
Web browser
ModulesCore
Regression level
Regression date
Regression introduced in release
Regression introduced by commit
Triggers an Emergency PackNo
Summary

0019842: Review Cross-site Scripting

DescriptionReview all OB components are Cross-site Scripting safe
Steps To Reproduce-
TagsNo tags attached.
Attached Files

- Relationships Relation Graph ] Dependency Graph ]
depends on design defect 0012030 acknowledgedTriage Platform Base Cross-site Scripting in ActionButton_Responser.html 
depends on design defect 0012031 acknowledgedTriage Platform Base Cross-site Scripting in WorkflowControl.html 
depends on design defect 0012033 acknowledgedTriage Platform Base Cross-site Scripting in BusinessPartner.html 
depends on design defect 0014856 acknowledgedTriage Platform Base 0014855: Cross Site Scripting (XSS) - Reflected - ReportShipmentEditionJR.html - "InpDateTo" Parameter 
depends on design defect 0014855 acknowledgedTriage Platform Base Cross Site Scripting (XSS) - Reflected - ReportShipmentEditionJR.html - "InpDateFrom" Parameter 
depends on design defect 0014857 acknowledgedTriage Platform Base Cross Site Scripting (XSS) - Reflected - ReportInvoiceCustomerFilterJR.html - "inpProjectkind" Parameter 
depends on design defect 0014858 acknowledgedTriage Platform Base Cross Site Scripting (XSS) - Reflected - UserRoles _Edition.html - "inpadUserId" Parameter 
depends on design defect 0012034 acknowledgedTriage Platform Base Cross-site Scripting in the generated xxx_Relation.html files 
Not all the children of this issue are yet resolved or closed.

-  Notes
(0052393)
AugustoMauch (administrator)
2012-09-24 20:52

Effort: 20
Impact: mid
Plan: mid

- Issue History
Date Modified Username Field Change
2012-02-22 15:51 alostale New Issue
2012-02-22 15:51 alostale Assigned To => alostale
2012-02-22 15:51 alostale Modules => Core
2012-02-22 15:51 alostale Relationship added depends on 0012030
2012-02-22 15:51 alostale Relationship added depends on 0012031
2012-02-22 15:52 alostale Relationship added depends on 0012033
2012-02-22 15:52 alostale Relationship added depends on 0014856
2012-02-22 15:52 alostale Relationship added depends on 0014855
2012-02-22 15:52 alostale Relationship added depends on 0014857
2012-02-22 15:52 alostale Relationship added depends on 0014858
2012-02-22 15:52 alostale Relationship added depends on 0012034
2012-09-24 20:52 AugustoMauch Note Added: 0052393
2012-09-24 20:52 AugustoMauch Status new => scheduled
2017-03-31 14:36 alostale Status scheduled => acknowledged
2017-04-10 14:33 alostale Assigned To alostale => platform
2022-02-01 08:08 alostale Assigned To platform => Triage Platform Base


Copyright © 2000 - 2009 MantisBT Group
Powered by Mantis Bugtracker