Uploaded image for project: 'Moodle'
  1. Moodle
  2. MDL-24085

unused tablelib where in show_nonrespondents.php

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: 2.0
    • Fix Version/s: 2.0
    • Component/s: Feedback
    • Labels:
      None
    • Affected Branches:
      MOODLE_20_STABLE
    • Fixed Branches:
      MOODLE_20_STABLE

      Description

      Hello, I have recently discovered a potential SQL injection in the core tablelib library. I needed to change the API a bit, so I did two changes in feedback too.
      There seems to be some problem in show_nonrespondents.php - the $where (and now $params) is not used, I am leaving some comments there for you.

      Petr Skoda

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              grabs Andreas Grabs
              Reporter:
              skodak Petr Skoda
              Tester:
              Nobody
              Participants:
              Component watchers:
              Amaia Anabitarte, Carlos Escobedo, Ferran Recio, Sara Arjona (@sarjona)
              Votes:
              0 Vote for this issue
              Watchers:
              0 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:
                Fix Release Date:
                24/Nov/10