On 6/30/05, Jeremy Blain <[EMAIL PROTECTED]> wrote: > This sounds like an sql escaping issue, where placeholders or proper > quoting > should be used for all the data, but isn't correct. > (this is potentially a security issue too) > > I've filed a bug report about it > http://bugs.otrs.org/show_bug.cgi?id=809
This is the same as a bug I filed in May. http://bugs.otrs.org/show_bug.cgi?id=732 It also seems to be the same as this bug. http://bugs.otrs.org/show_bug.cgi?id=788 For what it's worth I haven't seen this bug recently, but I also haven't seen any email recently with apostrophes in the subject. Bryan _______________________________________________ OTRS mailing list: otrs - Webpage: http://otrs.org/ Archive: http://lists.otrs.org/pipermail/otrs To unsubscribe: http://lists.otrs.org/cgi-bin/listinfo/otrs Support oder Consulting für Ihr OTRS System? => http://www.otrs.de/
