Bug #1622

Cross site scripting bug in core UI

Added by RoyK almost 4 years ago. Updated 5 months ago.

Status:ClosedStart date:06/06/2011
Priority:NormalDue date:
Assignee:-% Done:

0%

Category:Classic UI
Target version:-
Icinga Version:1.10.0 OS Version:any

Description

Hi all

There's a bug reported originally for Nagios here http://tracker.nagios.org/view.php?id=224 and as far as I can see, the same issue exists in Icinga in cgi/config.c:3737. The reported fix is trivial, but without knowing the code too well, it still looks like this is a repeating error throughout the code.

roy


Related issues

Duplicates Core, Classic UI, IDOUtils - Bug #1605: Cross-Site Scripting vulnerability in Icinga Resolved 06/01/2011

History

#1 Updated by dnsmichi almost 4 years ago

  • Project changed from Web to 19

#2 Updated by dnsmichi almost 4 years ago

  • Status changed from New to Closed
  • Target version deleted (1.4.1)

already resolved within #1605

#3 Updated by dnsmichi 5 months ago

  • Project changed from 19 to Core, Classic UI, IDOUtils
  • Category set to Classic UI
  • Icinga Version set to 1.10.0
  • OS Version set to any

Also available in: Atom PDF