Bladeren bron

安全问题修复

tags/6.1.0^2
tianya 3 jaren geleden
bovenliggende
commit
70de8c658a
2 gewijzigde bestanden met toevoegingen van 8 en 0 verwijderingen
  1. +4
    -0
      src/admin/templets_one_add.php
  2. +4
    -0
      src/admin/templets_one_edit.php

+ 4
- 0
src/admin/templets_one_add.php Bestand weergeven

@@ -16,6 +16,10 @@ if ($dopost == "save") {
$uptime = time();
$body = str_replace('"', '\\"', $body);
$filename = preg_replace("#^\/#", "", $nfilename);
if (!preg_match('#\.htm$#i', trim($template))) {
ShowMsg("您指定的文件名被系统禁止", "javascript:;");
exit();
}
if ($likeid == '') {
$likeid = $likeidsel;
}


+ 4
- 0
src/admin/templets_one_edit.php Bestand weergeven

@@ -17,6 +17,10 @@ if ($dopost == "saveedit") {
$uptime = time();
$body = str_replace('"', '\\"', $body);
$filename = preg_replace("#^\/#", "", $nfilename);
if (!preg_match('#\.htm$#i', trim($template))) {
ShowMsg("您指定的文件名被系统禁止", "javascript:;");
exit();
}
//如果修改了文件名,删除旧文件
if ($oldfilename != $filename) {
$oldfilename = $cfg_basedir.$cfg_cmspath."/".$oldfilename;


Laden…
Annuleren
Opslaan