Project

General

Profile

Bug #9556

Encoding/validation issues in apcupsd_status.php

Added by Jim Pingle 3 months ago. Updated 10 days ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
apcupsd
Target version:
-
Start date:
05/28/2019
Due date:
% Done:

100%

Estimated time:
Affected Version:
Affected Architecture:
All

Description

apcupsd_status.php does not validate input or encode user input before use, leading to potential abuse (XSS, ACE).

History

#1 Updated by Jim Pingle 3 months ago

  • Subject changed from Encoding issues in apcupsd_status.php to Encoding/validation issues in apcupsd_status.php
  • Description updated (diff)

#2 Updated by Jim Pingle 3 months ago

  • Status changed from Confirmed to Feedback
  • % Done changed from 0 to 100
  • Private changed from Yes to No

Fix is in apcupsd 0.3.91_5

#3 Updated by Jim Pingle 10 days ago

  • Status changed from Feedback to Resolved

Also available in: Atom PDF