Werk #6609: Fixed possible XSS on SNMP MIB upload page

Komponente Setup
Titel Fixed possible XSS on SNMP MIB upload page
Datum 13.09.2018
Checkmk Edition Checkmk Raw (CRE)
Checkmk-Version 1.4.0p36 1.5.0p5 1.6.0b1
Level Kleine Änderung
Klasse Sicherheitsfix
Kompatibilität Kompatibel - benötigt kein manuelles Eingreifen

Using MIB files with specific names it was possible to trigger an XSS on the MIB file administration page which only affected admin users.

Zur Liste aller Werks