Uploaded image for project: 'projectdoc Web API Extension'
  1. projectdoc Web API Extension
  2. PDEXWAPI-73

Strict Checks for Logability of REST API Parameters

    XMLWordPrintable

Details

    • Bug
    • Resolution: Fixed
    • Critical
    • 11.0.0
    • 10.1.1
    • None
    • None
    • Informal
    • Security

    Description

      Check all parameters for characters that may harm the log file. Currently we sanitize the parameters before logging, but we need to make sure that the log is not manipulated after the first check. Therefore we now reject all requests where harmful characters are contained in request parameters. 

      Attachments

        Issue Links

          Activity

            People

              robert.reiner Robert Reiner
              robert.reiner Robert Reiner
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: