On Jun 18, 2007, at 10:40 AM, ed wrote:
In order to get PCI valid I had to patch qmailadmin so that <> are &gt;
&lt; I have attached the diff for -stable. Everything should be sane,
but I admit that these changes were done in a bit of a rush just so we
can get the PCI badge.

I've no idea if attachments are stripped from list postings.

Where were the symbols not getting printed correctly? When I added the printh and sprinth commands, it should have taken care of converting <, >, " and &. I thought the 1.2.4 release took care of possible XSS attacks.

-Tom


Reply via email to