[jboss-user] [JBoss Seam] - security question
mrohad
do-not-reply at jboss.com
Tue Sep 12 08:38:07 EDT 2006
i've a page for user profile editing
my User has a currentMoneyAmount property.
in my JSF I show User.currentMoneyAmount as output text
this is a edit screen , I am outjecting the properties to some SB and do em.merge(editedUser)
can hacker or anyone else who knows seam make my page outject other properties as well like currentMoneyAmount?
View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3970994#3970994
Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=3970994
More information about the jboss-user
mailing list