MantisBT: master-1.1.x 86cb860e

Author Committer Branch Timestamp Parent
thraxisp master-1.1.x 2008-03-25 20:49 master-1.1.x 2d50ad09
Changeset

fix for 0008995: CSRF Vulnerabilities in user_create

  • check for "Post" actions appropriately

git-svn-id: http://mantisbt.svn.sourceforge.net/svnroot/mantisbt/branches/BRANCH_1_1_0@5134 <a class="text" href="/?p=mantisbt.git;a=object;h=f5dc347c">f5dc347c</a>-c33d-0410-90a0-b07cc1902cb9

mod - tag_delete.php Diff File
mod - account_prof_add.php Diff File
mod - manage_user_delete.php Diff File
mod - manage_config_workflow_set.php Diff File
mod - bug_relationship_delete.php Diff File
mod - bugnote_delete.php Diff File
mod - query_store.php Diff File
mod - account_prof_update.php Diff File
mod - manage_proj_cat_add.php Diff File
mod - news_add.php Diff File
mod - manage_proj_user_copy.php Diff File
mod - manage_user_update.php Diff File
mod - bug_set_sponsorship.php Diff File
mod - lang/strings_english.txt Diff File
mod - account_sponsor_update.php Diff File
mod - account_prof_make_default.php Diff File
mod - tag_attach.php Diff File
mod - proj_doc_update.php Diff File
mod - manage_proj_cat_delete.php Diff File
mod - manage_proj_delete.php Diff File
mod - bug_actiongroup_ext.php Diff File
mod - bug_graph_bystatus.php Diff File
mod - account_prefs_update.php Diff File
mod - manage_proj_ver_update.php Diff File
mod - manage_config_work_threshold_set.php Diff File
mod - core/helper_api.php Diff File
mod - print_all_bug_options_update.php Diff File
mod - manage_custom_field_delete.php Diff File
mod - bug_assign.php Diff File
mod - manage_user_create.php Diff File
mod - bug_reminder.php Diff File
mod - bug_relationship_add.php Diff File
mod - manage_proj_cat_update.php Diff File
mod - print_all_bug_options_reset.php Diff File
mod - news_delete.php Diff File
mod - signup.php Diff File
mod - adm_config_set.php Diff File
mod - manage_proj_custom_field_add_existing.php Diff File
mod - manage_user_reset.php Diff File
mod - proj_doc_add.php Diff File
mod - lost_pwd.php Diff File
mod - manage_user_prune.php Diff File
mod - news_update.php Diff File
mod - tag_update.php Diff File
mod - proj_doc_delete.php Diff File
mod - bug_monitor.php Diff File
mod - manage_proj_subproj_add.php Diff File
mod - manage_proj_custom_field_update.php Diff File
mod - core/constant_inc.php Diff File
mod - account_update.php Diff File
mod - manage_proj_user_add.php Diff File
mod - account_delete.php Diff File
mod - bug_report.php Diff File
mod - bug_file_add.php Diff File
mod - bug_update.php Diff File
mod - manage_proj_custom_field_copy.php Diff File
mod - manage_proj_create.php Diff File
mod - tag_detach.php Diff File
mod - bugnote_set_view_state.php Diff File
mod - manage_proj_ver_copy.php Diff File
mod - manage_proj_ver_add.php Diff File
mod - manage_user_proj_delete.php Diff File
mod - set_project.php Diff File
mod - bug_file_delete.php Diff File
mod - manage_proj_user_remove.php Diff File
mod - manage_config_revert.php Diff File
mod - bugnote_add.php Diff File
mod - manage_custom_field_update.php Diff File
mod - bug_assign_reporter.php Diff File
mod - manage_proj_ver_delete.php Diff File
mod - manage_proj_custom_field_remove.php Diff File
mod - query_delete.php Diff File
mod - manage_config_email_set.php Diff File
mod - bugnote_update.php Diff File
mod - manage_custom_field_proj_add.php Diff File
mod - manage_proj_subproj_delete.php Diff File
mod - account_prefs_reset.php Diff File
mod - account_prof_delete.php Diff File
mod - manage_proj_update.php Diff File
mod - bug_delete.php Diff File
mod - manage_custom_field_create.php Diff File
mod - bug_actiongroup.php Diff File
mod - manage_user_proj_add.php Diff File
mod - adm_config_delete.php Diff File
mod - manage_proj_cat_copy.php Diff File