555f05848a
* include/functions_io.php: safe_input() modified to detect SQL injection attacks using /**/ strings. * index.php: Prevent HTTP response splitting attacks. * pandora_console.spec: Updated some spec variables and description. * pandoradb.sql, extras/pandoradb_migrate_v3.1_to_v3.2.sql: Added a new field in trecon_task to store the snmp_community on detected hosts in a recon task. * extras/pandora_diag.php: Fixed security problem in relative path. * general/pandora_help.php, general/footer.php: Fixed security problem in relative path/include. * general/login_page.php: Fixed security problem in URL parsing. * godmode/servers/manage_recontask_form.php, manage_recontask.php: Implemented new feature to use a snmp comunity on all network modules added to a new detected host. * config_process.php: Updated build. * functions.php: New version of safe_url_extraclean() function (security fix) and modified also enterprise_include* functions to have a secure include. * functions_ui.php: Secured function get_include_contents(). * operation/agentes/gis_view.php: Secured url extraction/parsing. git-svn-id: https://svn.code.sf.net/p/pandora/code/trunk@3150 c3f86ba8-e40f-0410-aaad-9ba5e7f4b01f |
||
---|---|---|
.. | ||
manage_export.php | ||
manage_export_form.php | ||
manage_recontask.php | ||
manage_recontask_form.php | ||
modificar_server.php | ||
plugin.php |