From: <lph...@us...> - 2008-05-08 16:54:26
|
Revision: 12778 http://tikiwiki.svn.sourceforge.net/tikiwiki/?rev=12778&view=rev Author: lphuberdeau Date: 2008-05-08 09:54:28 -0700 (Thu, 08 May 2008) Log Message: ----------- [FIX] Missing argument escape Modified Paths: -------------- trim/scripts/update.php Modified: trim/scripts/update.php =================================================================== --- trim/scripts/update.php 2008-05-08 16:50:49 UTC (rev 12777) +++ trim/scripts/update.php 2008-05-08 16:54:28 UTC (rev 12778) @@ -25,7 +25,7 @@ if( $ok ) $access->shellExec( - "cd {$instance->webroot}", + "cd " . escapeshellarg( $instance->webroot ), "touch .htaccess", "mv .htaccess .htaccess.bak", "echo \"Order allow,deny\nDeny from all\" > .htaccess" @@ -39,7 +39,7 @@ if( $ok ) $access->shellExec( - "cd {$instance->webroot}", + "cd " . escapeshellarg( $instance->webroot ), "mv .htaccess.bak .htaccess" ); } This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |