On 6/30/05, Jeremy Blain <[EMAIL PROTECTED]> wrote:
> This sounds like an sql escaping issue, where placeholders or proper
> quoting
> should be used for all the data, but isn't correct.
> (this is potentially a security issue too)
> 
> I've filed a bug report about it
> http://bugs.otrs.org/show_bug.cgi?id=809

This is the same as a bug I filed in May.

http://bugs.otrs.org/show_bug.cgi?id=732

It also seems to be the same as this bug.

http://bugs.otrs.org/show_bug.cgi?id=788

For what it's worth I haven't seen this bug recently, but I also
haven't seen any email recently with apostrophes in the subject.

Bryan
_______________________________________________
OTRS mailing list: otrs - Webpage: http://otrs.org/
Archive: http://lists.otrs.org/pipermail/otrs
To unsubscribe: http://lists.otrs.org/cgi-bin/listinfo/otrs
Support oder Consulting für Ihr OTRS System?
=> http://www.otrs.de/

Reply via email to