Skip to content
This repository has been archived by the owner on Dec 13, 2022. It is now read-only.

centstorage and backslash issue #1251

Closed
centreon opened this issue Sep 26, 2011 · 3 comments
Closed

centstorage and backslash issue #1251

centreon opened this issue Sep 26, 2011 · 3 comments
Milestone

Comments

@centreon
Copy link
Collaborator


Author Name: Sylvestre Ho (Sylvestre Ho)
Original Redmine Issue: 2653, https://forge.centreon.com/issues/2653
Original Date: 2011-09-26
Original Assignee: Maximilien Bersoult


Hi,

There is no escaping method used in centstorage, could the door be opened to sql injections?
We should use quote methods as much as possible.

Also, the backslash issue doesn't seem to be solved as of version 2.2 and 2.3. Adding quote methods does solve the problem!

This change requires some solid testing before validation though.

@centreon
Copy link
Collaborator Author


Original Redmine Comment
Author Name: Sylvestre Ho (Sylvestre Ho)
Original Date: 2011-09-26T11:32:26Z


trunk => revision r12534

@centreon
Copy link
Collaborator Author


Original Redmine Comment
Author Name: Sylvestre Ho (Sylvestre Ho)
Original Date: 2011-09-26T11:59:10Z


branch 2.2.x => revision r12536

I'll leave this case open until validation

@centreon
Copy link
Collaborator Author

centreon commented Oct 3, 2011


Original Redmine Comment
Author Name: Sylvestre Ho (Sylvestre Ho)
Original Date: 2011-10-03T11:11:14Z


Max,

Could you please proceed with a migration (2.1.x => 2.3.0) and make sure that metrics that contain #S# and #BS# are properly carried over and that CentStorage keeps graphing properly afterwards.

Thanks :-)

@centreon centreon added this to the Centreon-2.3 milestone Jul 24, 2015
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

0 participants