mirror of
https://github.com/billz/raspap-webgui.git
synced 2025-03-01 10:31:47 +00:00
Sanitize post data w/ escapeshellcmd()
This commit is contained in:
@@ -5,7 +5,7 @@ require_once '../../includes/config.php';
|
||||
require_once '../../includes/functions.php';
|
||||
|
||||
if (isset($_POST['logfile'])) {
|
||||
$logfile = $_POST['logfile'];
|
||||
$logfile = escapeshellcmd($_POST['logfile']);
|
||||
|
||||
// truncate requested log file
|
||||
exec("sudo truncate -s 0 $logfile", $return);
|
||||
|
Reference in New Issue
Block a user