mirror of
https://github.com/billz/raspap-webgui.git
synced 2025-12-26 23:26:47 +01:00
Merge pull request #1887 from YichaoXu/master
fix: mitigate UUF vulnerability by escaping entity with escapeshellarg
This commit is contained in:
@@ -5,7 +5,7 @@ require_once '../../includes/session.php';
|
||||
require_once '../../includes/config.php';
|
||||
require_once '../../includes/authenticate.php';
|
||||
|
||||
$entity = escapeshellcmd($_POST['entity']);
|
||||
$entity = escapeshellarg($_POST['entity']);
|
||||
|
||||
if (isset($entity)) {
|
||||
|
||||
|
||||
Reference in New Issue
Block a user