diff options
Diffstat (limited to 'databases/phpldapadmin/patches/patch-lib_QueryRender.php')
-rw-r--r-- | databases/phpldapadmin/patches/patch-lib_QueryRender.php | 25 |
1 files changed, 0 insertions, 25 deletions
diff --git a/databases/phpldapadmin/patches/patch-lib_QueryRender.php b/databases/phpldapadmin/patches/patch-lib_QueryRender.php deleted file mode 100644 index 4d0540e5efd..00000000000 --- a/databases/phpldapadmin/patches/patch-lib_QueryRender.php +++ /dev/null @@ -1,25 +0,0 @@ -$NetBSD: patch-lib_QueryRender.php,v 1.2 2013/01/22 11:49:33 obache Exp $ - -o Fix XSS in query from repository, 7dc8d57d6952fe681cb9e8818df7f103220457bd. - CVE-2012-0834 - ---- lib/QueryRender.php.orig 2011-10-27 02:07:09.000000000 +0000 -+++ lib/QueryRender.php -@@ -497,7 +497,7 @@ class QueryRender extends PageRender { - $this->getAjaxRef($base), - $this->getAjaxRef($base), - ($show == $this->getAjaxRef($base) ? '#F0F0F0' : '#E0E0E0'), -- $base); -+ htmlspecialchars($base)); - } - echo '</tr>'; - echo '</table>'; -@@ -545,7 +545,7 @@ class QueryRender extends PageRender { - echo ' ]</small>'; - - echo '<br />'; -- printf('<small>%s: <b>%s</b></small>',_('Base DN'),$base); -+ printf('<small>%s: <b>%s</b></small>',_('Base DN'), htmlspecialchars($base)); - - echo '<br />'; - printf('<small>%s: <b>%s</b></small>',_('Filter performed'),htmlspecialchars($this->template->resultsdata[$base]['filter'])); |