Dotclear

Changeset 792:7bc9bfaf1faa for admin


Ignore:
Timestamp:
02/08/12 17:06:31 (13 years ago)
Author:
franck <carnet.franck.paul@…>
Branch:
2.4
Message:

Advisory ID: HTB23074 - 1.2: Sanitize "nb" GET parameter

File:
1 edited

Legend:

Unmodified
Added
Removed
  • admin/blogs.php

    r500 r792  
    3535 
    3636if (!empty($_GET['nb']) && (integer) $_GET['nb'] > 0) { 
    37      $nb_per_page = $_GET['nb']; 
     37     $nb_per_page = (integer) $_GET['nb']; 
    3838} 
    3939 
Note: See TracChangeset for help on using the changeset viewer.

Sites map