[jboss-user] [JBoss Seam] - security question

mrohad do-not-reply at jboss.com
Tue Sep 12 08:38:07 EDT 2006


i've a page for user profile editing

my User has a currentMoneyAmount property.
in my JSF I show User.currentMoneyAmount  as output text

this is a edit screen , I am outjecting the properties to some SB and do em.merge(editedUser)

can hacker or anyone else who knows seam make my page outject other properties as well like currentMoneyAmount? 



View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=3970994#3970994

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=3970994



More information about the jboss-user mailing list