fmfi-svt / fajr

Frontend pre univerzitný systém AIS2 (vývoj skončil)
https://fajr.fmph.uniba.sk/
MIT License
0 stars 1 forks source link

Input cookie injection #55

Open GoogleCodeExporter opened 9 years ago

GoogleCodeExporter commented 9 years ago
We should whitelist characters for cookies, otherwise we may end up with 
cookie-injection and/or other vulnerabilities.

Original issue reported on code.google.com by ppersh...@gmail.com on 17 Sep 2010 at 3:33

GoogleCodeExporter commented 9 years ago
http://cosign.git.sourceforge.net/git/gitweb.cgi?p=cosign/cosign;a=blob;f=common
/mkcookie.c;h=c2433b61fc670b459a04add41d4073286a759653;hb=HEAD

Original comment by anty...@gmail.com on 17 Sep 2010 at 5:11