The profile ID can be changed at run-time (e.g. by
issueing a maliciously modified GET request), thus "non
granted" facets can be executed by anybody who knows
the profile ID !
Remi Vankeisbelck
None
None
Public
|
Date: 2006-02-26 14:58 Logged In: YES |
| Field | Old Value | Date | By |
|---|---|---|---|
| status_id | Open | 2006-02-26 14:58 | vankeisb |
| close_date | - | 2006-02-26 14:58 | vankeisb |
Copyright © 2010 Geeknet, Inc. All rights reserved. Terms of Use