|
From: <mxb...@li...> - 2005-03-17 12:37:34
|
Update of /cvsroot/mxbb/mx_kb In directory sc8-pr-cvs1.sourceforge.net:/tmp/cvs-serv8415/modules/mx_kb Modified Files: kb.php Log Message: Bug #47 - SQL Injection vulnerability in Knowledge Base MOD Index: kb.php =================================================================== RCS file: /cvsroot/mxbb/mx_kb/kb.php,v retrieving revision 1.12 retrieving revision 1.13 diff -C2 -d -r1.12 -r1.13 *** kb.php 1 Feb 2005 20:45:08 -0000 1.12 --- kb.php 17 Mar 2005 12:37:24 -0000 1.13 *************** *** 174,177 **** --- 174,178 ---- { $print_version = ( isset( $HTTP_POST_VARS['print'] ) ) ? $HTTP_POST_VARS['print'] : $HTTP_GET_VARS['print']; + $print_version = htmlspecialchars( $print_version ); } else |