Anonymous | Login
Project:
RSS
  
News | My View | View Issues | Roadmap | Summary

View Issue DetailsJump to Notes ] Issue History ] Print ]
ID
0003962
TypeCategorySeverityReproducibilityDate SubmittedLast Update
backport[Openbravo ERP] C. Securitycriticalhave not tried2008-06-13 10:022008-06-24 16:52
ReporterpjuvaraView Statuspublic 
Assigned Toiperdomo 
PriorityimmediateResolutionfixedFixed in Version2.35MP6
StatusclosedFix in branch2.3xFixed in SCM revision5242
ProjectionnoneETAnoneTarget Version
OSLinux 32 bitDatabaseOracleJava version1.6
OS VersionUbuntu 7.10Database version10gAnt version1.5
Product Version2.35MP4SCM revision 
Merge Request Status
Review Assigned To
OBNetwork customerNo
Web browser
ModulesCore
Support ticket
Regression level
Regression date
Regression introduced in release
Regression introduced by commit
Triggers an Emergency PackNo
Summary

0003962: Cross-site scripting vulnerability

DescriptionDetails not disclosed
TagsNo tags attached.
Attached Files

- Relationships Relation Graph ] Dependency Graph ]
blocks defect 0003960pi closediperdomo Cross-site scripting vulnerability 

-  Notes
(0007905)
svnbot (viewer)
2008-06-20 12:24

Repository: openbravo
Revision: 5242
Author: iperdomo
Date: 2008-06-20 12:24:51 +0200 (Fri, 20 Jun 2008)

Fixes bug 3962: Sanitized input parameters to prevent XSS

---
U branches/r2.3x/src-core/src/org/openbravo/base/VariablesBase.java
U branches/r2.3x/src-core/src/org/openbravo/utils/FormatUtilities.java
---

https://dev.openbravo.com/websvn/openbravo/?rev=5242&sc=1 [^]

- Issue History
Date Modified Username Field Change
2008-06-13 10:02 pjuvara New Issue
2008-06-13 10:02 pjuvara Assigned To => iciordia
2008-06-13 10:02 pjuvara Status new => scheduled
2008-06-19 19:24 iperdomo Assigned To iciordia => iperdomo
2008-06-20 12:24 svnbot Checkin
2008-06-20 12:24 svnbot Note Added: 0007905
2008-06-20 12:24 svnbot Status scheduled => resolved
2008-06-20 12:24 svnbot Resolution open => fixed
2008-06-20 12:24 svnbot svn_revision => 5242
2008-06-23 23:26 cromero Fixed in Version => 2.35MP6
2008-06-24 16:52 plujan Status resolved => closed


Copyright © 2000 - 2009 MantisBT Group
Powered by Mantis Bugtracker