summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorScott Ullrich <sullrich@pfsense.org>2008-11-25 18:13:11 +0000
committerScott Ullrich <sullrich@pfsense.org>2008-11-25 18:13:11 +0000
commit69a202983456a93c3699161c2c81dc0b001c5af1 (patch)
tree32f712c697d8a419091eea1d78c164f0ed877943
parentebc9d78413c9e97fe15441b289b0fbee43204f92 (diff)
downloadpfsense-69a202983456a93c3699161c2c81dc0b001c5af1.zip
pfsense-69a202983456a93c3699161c2c81dc0b001c5af1.tar.gz
* guiconfig.inc comes first
* use escapeshellarg()
-rwxr-xr-xusr/local/www/diag_logs_filter.php8
1 files changed, 4 insertions, 4 deletions
diff --git a/usr/local/www/diag_logs_filter.php b/usr/local/www/diag_logs_filter.php
index 5430333..2441f27 100755
--- a/usr/local/www/diag_logs_filter.php
+++ b/usr/local/www/diag_logs_filter.php
@@ -30,18 +30,18 @@
POSSIBILITY OF SUCH DAMAGE.
*/
+require("guiconfig.inc");
+
if($_GET['getrulenum'] or $_POST['getrulenum']) {
if($_GET['getrulenum'])
- $rulenum = $_GET['getrulenum'];
+ $rulenum = escapeshellarg($_GET['getrulenum']);
if($_POST['getrulenum'])
- $rulenum = $_POST['getrulenum'];
+ $rulenum = escapeshellarg($_POST['getrulenum']);
$rule = `pfctl -vvsr | grep @{$rulenum}`;
echo "The rule that triggered this action is:\n\n{$rule}";
exit;
}
-require("guiconfig.inc");
-
$filter_logfile = "{$g['varlog_path']}/filter.log";
$nentries = $config['syslog']['nentries'];
OpenPOWER on IntegriCloud