Edgewall Software
Modify

Opened 18 years ago

Closed 18 years ago

#2777 closed defect (fixed)

html processor trivially exploited to make pages completely unrenderable

Reported by: exarkun@… Owned by: Christopher Lenz
Priority: high Milestone: 0.9.5
Component: wiki system Version: 0.9.4
Severity: normal Keywords:
Cc: Branch:
Release Notes:
API Changes:
Internal Changes:

Description

By adding an invalid entity inside a section of markup using the html processor, trac can be made to render an error page with no content and no buttons for undoing the damage. Presumably the page will remain in this state until an admin manually fixes the database.

An example of this is:

{{{
#!html
&junk;
}}}

Attachments (0)

Change History (5)

comment:1 by Alec Thomas, 18 years ago

A workaround is to manually append ?action=edit at the end of the URL. This will at least let you remove the offending HTML.

comment:2 by Christopher Lenz, 18 years ago

Milestone: 0.9.5
Owner: changed from Jonas Borgström to Christopher Lenz
Severity: criticalnormal
Status: newassigned

comment:3 by anonymous, 18 years ago

Resolution: fixed
Status: assignedclosed

comment:4 by anonymous, 18 years ago

Resolution: fixed
Status: closedreopened

comment:5 by Christopher Lenz, 18 years ago

Component: generalwiki
Resolution: fixed
Status: reopenedclosed

Fixed in [2969] and [2970].

Modify Ticket

Change Properties
Set your email in Preferences
Action
as closed The owner will remain Christopher Lenz.
The resolution will be deleted. Next status will be 'reopened'.
to The owner will be changed from Christopher Lenz to the specified user.

Add Comment


E-mail address and name can be saved in the Preferences .
 
Note: See TracTickets for help on using tickets.