Werk #2386: Fixed possible XSS on WATO rule edit page
Komponente | Setup |
Titel | Fixed possible XSS on WATO rule edit page |
Datum | 30.06.2015 |
Checkmk Edition | Checkmk Raw (CRE) |
Checkmk-Version | 1.2.7i3 |
Level | Kleine Änderung |
Klasse | Sicherheitsfix |
Kompatibilität | Kompatibel - benötigt kein manuelles Eingreifen |
A possible XSS injection has been fixed on the rule edit page of WATO. It was possible to inject javascript code using the HTTP parameters the page is processing.