From ec848d825ffe896b96b6c3e4b8c7d4c12aadd310 Mon Sep 17 00:00:00 2001 From: Herman van Rink Date: Fri, 5 Aug 2011 10:14:18 +0200 Subject: [PATCH] XSS fixes --- tbl_tracking.php | 30 +++++++++++++++--------------- 1 file changed, 15 insertions(+), 15 deletions(-) diff --git a/tbl_tracking.php b/tbl_tracking.php index 99a540e75..2f714bfaf 100644 --- a/tbl_tracking.php +++ b/tbl_tracking.php @@ -281,17 +281,17 @@ if (isset($_REQUEST['snapshot'])) { ' . $field['Field'] . '' . "\n"; + echo '' . htmlspecialchars($field['Field']) . '' . "\n"; } else { - echo '' . $field['Field'] . '' . "\n"; + echo '' . htmlspecialchars($field['Field']) . '' . "\n"; } ?> - - - - - - + + + + + + - - + + - - - - - + + + + +