[Pki-devel] [PATCH] 30 Escape parameter values in search filter.

Endi Sukma Dewata edewata at redhat.com
Wed Mar 14 18:09:23 UTC 2012


The REST interface was vulnerable to injection attack. This has
been fixed by escaping the special characters in parameter values
before using them in the search filter.

Ticket #96

-- 
Endi S. Dewata
-------------- next part --------------
A non-text attachment was scrubbed...
Name: pki-edewata-0030-Escape-parameter-values-in-search-filter.patch
Type: text/x-patch
Size: 4824 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/pki-devel/attachments/20120314/e13b2107/attachment.bin>


More information about the Pki-devel mailing list