SF.net SVN: postfixadmin: [253] trunk/edit-alias.php
Brought to you by:
christian_boltz,
gingerdog
|
From: <Gin...@us...> - 2007-12-02 16:53:51
|
Revision: 253
http://postfixadmin.svn.sourceforge.net/postfixadmin/?rev=253&view=rev
Author: GingerDog
Date: 2007-12-02 08:53:56 -0800 (Sun, 02 Dec 2007)
Log Message:
-----------
fix possible XSS hole (security fix)
Modified Paths:
--------------
trunk/edit-alias.php
Modified: trunk/edit-alias.php
===================================================================
--- trunk/edit-alias.php 2007-12-02 16:02:50 UTC (rev 252)
+++ trunk/edit-alias.php 2007-12-02 16:53:56 UTC (rev 253)
@@ -127,6 +127,8 @@
}
}
+$fAddress = htmlentities($fAddress, ENT_QUOTES);
+$fDomain = htmlentities($fDomain, ENT_QUOTES);
include ("templates/header.php");
include ("templates/menu.php");
include ("templates/edit-alias.php");
This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site.
|