Werk #11085: Icon upload: Add missing transaction validation

Komponente Setup
Titel Icon upload: Add missing transaction validation
Datum 03.07.2020
Checkmk Edition Checkmk Raw (CRE)
Checkmk-Version 1.6.0p14 2.0.0i1
Level Kleine Änderung
Klasse Sicherheitsfix
Kompatibilität Kompatibel - benötigt kein manuelles Eingreifen

The transaction IDs (CSRF tokens) were not validated while processing the upload of icons. This alone is not a security hole, rather a lack of validation of this call.

Zur Liste aller Werks