Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-26624

(7.4.z) standalone.sh and possibly other scripts usage of eval

    XMLWordPrintable

Details

    • Bug
    • Resolution: Cannot Reproduce
    • Major
    • None
    • None
    • Scripts
    • None
    • False
    • None
    • False

    Description

      For example server opts to standalone.sh are assumed to not contain single quotes. If they are included, then the content will be direclty evaluated:

      ./standalone.sh "'; echo hello'"

      Will cause the echo to evaluate.

      Attachments

        Issue Links

          Activity

            People

              rhn-cservice-bbaranow Bartosz Baranowski
              rhn-support-iweiss Ingo Weiss
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: