phpgroupware-cvs
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Phpgroupware-cvs] preferences/inc/class.uicategories.inc.php, 1.2.2.8.2


From: nomail
Subject: [Phpgroupware-cvs] preferences/inc/class.uicategories.inc.php, 1.2.2.8.2.4
Date: Sun, 19 Dec 2004 19:10:26 +0100

Update of /preferences/inc
Modified Files:
        Branch: Version-0_9_16-branch
          class.uicategories.inc.php

date: 2004/12/19 18:10:26;  author: ceb;  state: Exp;  lines: +7 -6

Log Message:
security bugfixes
=====================================================================
Index: preferences/inc/class.uicategories.inc.php
diff -u preferences/inc/class.uicategories.inc.php:1.2.2.8.2.3 
preferences/inc/class.uicategories.inc.php:1.2.2.8.2.4
--- preferences/inc/class.uicategories.inc.php:1.2.2.8.2.3      Tue Jun 24 
21:22:48 2003
+++ preferences/inc/class.uicategories.inc.php  Sun Dec 19 18:10:26 2004
@@ -35,7 +35,7 @@
 
                function uicategories()
                {
-                       $cats_app                       = 
get_var('cats_app',array('GET','POST'));
+                       $cats_app                       = 
strip_tags(get_var('cats_app',array('GET','POST')));
 
                        $this->bo                       = 
CreateObject('preferences.bocategories',$cats_app);
                        $this->nextmatchs       = 
CreateObject('phpgwapi.nextmatchs');
@@ -93,10 +93,11 @@
 
                function index()
                {
-                       $cats_app    = get_var('cats_app',array('GET','POST'));
-                       $extra       = get_var('extra',array('GET','POST'));
-                       $global_cats = 
get_var('global_cats',array('GET','POST'));
-                       $cats_level  = 
get_var('cats_level',array('GET','POST'));
+                       $cats_app    = 
strip_tags(get_var('cats_app',array('GET','POST')));
+                       $extra       = 
strip_tags(get_var('extra',array('GET','POST')));
+                       $global_cats = 
strip_tags(get_var('global_cats',array('GET','POST')));
+                       $cats_level  = 
strip_tags(get_var('cats_level',array('GET','POST')));
+
 
                        $link_data = array
                        (




reply via email to

[Prev in Thread] Current Thread [Next in Thread]