LimeSurvey: master 67523a01

Author Committer Branch Timestamp Parent
c_schmitz c_schmitz master 2006-04-20 15:38 master 62f98a9c
Changeset

Fixed bug #454: remote exploit where attacker was able to inject code into the log file using save.php - to execute the injected code and attached commands by a broken MySQL command.

git-svn-id: file:///Users/Shitiz/Downloads/lssvn/source/phpsurveyor@1656 b72ed6b6-b9f8-46b5-92b4-906544132732

mod - load.php Diff File
mod - register.php Diff File
mod - save.php Diff File