Werk #11085: Icon upload: Add missing transaction validation
Komponente | WATO |
Titel | Icon upload: Add missing transaction validation |
Datum | 03.07.2020 |
Checkmk-Editon | Checkmk Raw (CRE) |
Checkmk-Version | 2.0.0i1 1.6.0p14 |
Level | Kleine Änderung |
Klasse | Sicherheitsfix |
Kompatibilität | Kompatibel - benötigt kein manuelles Eingreifen |
The transaction IDs (CSRF tokens) were not validated while processing the upload of icons. This alone is not a security hole, rather a lack of validation of this call.
Zur Liste aller Werks