[Tickets #4816] XSS via new_lang

bugs@bugs.horde.org bugs at bugs.horde.org
Thu Dec 28 07:19:33 PST 2006


DO NOT REPLY TO THIS MESSAGE. THIS EMAIL ADDRESS IS NOT MONITORED.

Ticket URL: http://bugs.horde.org/ticket/?id=4816
-----------------------------------------------------------------------
 Ticket             | 4816
 Created By         | thomas at gelf.net
 Summary            | XSS via new_lang
 Queue              | Horde Framework Packages
 Version            | HEAD
 Type               | Bug
 State              | Unconfirmed
 Priority           | 2. Medium
 Owners             | 
+New Attachment     | patch1_new_lang_xss.diff
-----------------------------------------------------------------------


thomas at gelf.net (2006-12-28 07:19) wrote:

There are no checks for new_lang in NLS.php.

Cheers,
Thomas Gelf




More information about the bugs mailing list