Commit 4ff4a499 authored by Laurent Pinsivy's avatar Laurent Pinsivy Committed by Charles Gautier
Browse files

enh(doc): improve RN

parent 726bb5b6
......@@ -2,16 +2,17 @@
Centreon Web 2.8.36
###################
Escalation
Bugfix
======
MON-6644 [Core/Configuration] Non-admin users can't create host/service
* [Configuration] Non-admin users can't create host/service
Security
========
MON-6623 [Administration] XSS stored in the LDAP form
MON-6620 [Authentication] User enumeration in login page
MON-5922 [ING][Reporting/Dashboard/Hosts] Cross-site Scripting (XSS) Reflected
MON-5917 [ING][ACL/Ressource Access] Cross-site Scripting (XSS) Stored/Persistent
MON-4547 [ING] 4.2.3 Vulnerable handlebars.js library
MON-4253 [SECU][ING] Session is active longer than expected
* [Administration/ACL] Cross-site Scripting (XSS) Stored/Persistent in Ressource Access
* [Administration/LDAP] XSS stored in the LDAP form
* [Authentication] Session is active longer than expected
* [Authentication] User enumeration in login page
* [Core] 4.2.3 Vulnerable handlebars.js library
* [Reporting/Dashboard/Hosts] Cross-site Scripting (XSS) Reflected
\ No newline at end of file
......@@ -2,15 +2,17 @@
Centreon Web 2.8.36
###################
Escalation
Bugfix
======
MON-6644 [Core/Configuration] Non-admin users can't create host/service
* [Configuration] Non-admin users can't create host/service
Security
========
MON-6623 [Administration] XSS stored in the LDAP form
MON-6620 [Authentication] User enumeration in login page
MON-5922 [ING][Reporting/Dashboard/Hosts] Cross-site Scripting (XSS) Reflected
MON-5917 [ING][ACL/Ressource Access] Cross-site Scripting (XSS) Stored/Persistent
MON-4547 [ING] 4.2.3 Vulnerable handlebars.js library
MON-4253 [SECU][ING] Session is active longer than expected
* [Administration/ACL] Cross-site Scripting (XSS) Stored/Persistent in Ressource Access
* [Administration/LDAP] XSS stored in the LDAP form
* [Authentication] Session is active longer than expected
* [Authentication] User enumeration in login page
* [Core] 4.2.3 Vulnerable handlebars.js library
* [Reporting/Dashboard/Hosts] Cross-site Scripting (XSS) Reflected
\ No newline at end of file
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment