Ignore:
Timestamp:
2014-03-14T22:46:25+13:00 (10 years ago)
Author:
ak19
Message:

Third commit for security, for ensuring cgiargs macros are websafe. This time all the changes to the runtime action classes.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • main/trunk/greenstone2/runtime-src/src/recpt/depositoraction.cpp

    r23029 r28899  
    707707  if ((depositor_page == "select") || (stepstring == "step")) {
    708708          textout << outconvert << disp << ("_depositor:header_\n")
    709           << ("_depositor:" + depositor_page + "content_\n")
     709          << ("_depositor:" + encodeForHTML(depositor_page) + "content_\n")
    710710          << ("_depositor:footer_\n");
    711711     
     
    771771      // output page ("bild" page was already output above)
    772772      textout << outconvert << disp << ("_depositor:header_\n")
    773           << ("_depositor:" + depositor_page + "content_\n")
     773          << ("_depositor:" + encodeForHTML(depositor_page) + "content_\n")
    774774          << ("_depositor:footer_\n");
    775775    }
Note: See TracChangeset for help on using the changeset viewer.