HTML injection
It's possible to insert HTML tags into the input fields used in serversCheck. Inserting double quotes (") makes it impossible to delete added groups/rules/ect trough the interface. I've removed it using the conf files.
This discussion has been closed.
Comments
string matching equals mygif.gif rather than src= "mygif.gif">