Anonymous | Login
Project:
RSS
  
News | My View | View Issues | Roadmap | Summary

View Issue DetailsJump to Notes ] Issue History ] Print ]
ID
0009577
TypeCategorySeverityReproducibilityDate SubmittedLast Update
defect[Openbravo ERP] Z. Othersmajorhave not tried2009-06-22 11:382011-10-28 18:56
ReportershuehnerView Statuspublic 
Assigned Toiciordia 
PriorityurgentResolutionno change requiredFixed in Version
StatusclosedFix in branchFixed in SCM revision
ProjectionnoneETAnoneTarget Version
OSAnyDatabaseAnyJava version
OS VersionDatabase versionAnt version
Product VersionpiSCM revision 
Review Assigned To
Web browser
ModulesCore
Regression level
Regression date
Regression introduced in release
Regression introduced by commit
Triggers an Emergency PackNo
Summary

0009577: Audit all xsql to ensure that all xsql-parameters of type argument/replace are properly validated - part2

DescriptionAll xsql parameters of type argument/replace are potential candidates for injection sql code into the query. The code should be audited to ensure that the parameters' value have been properly validated by the callers.
TagsNo tags attached.
Attached Files

- Relationships Relation Graph ] Dependency Graph ]
related to defect 0009501 closedshuehner Audit all xsql to ensure that all xsql-parameters of type argument/replace are properly validated -part1 

-  Notes
(0042294)
iciordia (manager)
2011-10-28 18:56

xsql mechanism is being discontinued and replaced by DAL.

- Issue History
Date Modified Username Field Change
2009-06-22 11:38 shuehner New Issue
2009-06-22 11:38 shuehner Assigned To => rafaroda
2009-06-22 11:38 shuehner Issue generated from 0009501
2009-06-22 11:38 shuehner Relationship added related to 0009501
2009-06-29 13:25 psarobe Status new => scheduled
2009-06-29 13:25 psarobe Assigned To rafaroda => shuehner
2009-06-29 13:25 psarobe fix_in_branch => pi
2009-06-30 13:40 psarobe Assigned To shuehner => rafaroda
2009-06-30 13:40 psarobe fix_in_branch pi =>
2009-07-10 16:43 pjuvara Priority immediate => urgent
2010-02-11 18:05 rafaroda Assigned To rafaroda => adrianromero
2011-06-03 11:00 dalsasua Assigned To adrianromero => dalsasua
2011-07-20 18:11 dalsasua Assigned To dalsasua => jonalegriaesarte
2011-10-28 18:15 psarobe Assigned To jonalegriaesarte => iciordia
2011-10-28 18:56 iciordia Note Added: 0042294
2011-10-28 18:56 iciordia Status scheduled => closed
2011-10-28 18:56 iciordia Resolution open => no change required


Copyright © 2000 - 2009 MantisBT Group
Powered by Mantis Bugtracker