summaryrefslogtreecommitdiffstats
path: root/usr/local/www/firewall_aliases_edit.php
diff options
context:
space:
mode:
authorScott Ullrich <sullrich@pfsense.org>2010-11-12 11:03:44 -0500
committerScott Ullrich <sullrich@pfsense.org>2010-11-12 11:03:51 -0500
commit225a2f0b4696c497263d0926011a0f39ab08b0f3 (patch)
tree8a5b402ff00a0c20e630f4beaf0f385edb2a9592 /usr/local/www/firewall_aliases_edit.php
parent5812e717eb919e2d1eb94772f33275122415d76c (diff)
downloadpfsense-225a2f0b4696c497263d0926011a0f39ab08b0f3.zip
pfsense-225a2f0b4696c497263d0926011a0f39ab08b0f3.tar.gz
Bring in XSS id fixes from m0n0wall
Diffstat (limited to 'usr/local/www/firewall_aliases_edit.php')
-rwxr-xr-xusr/local/www/firewall_aliases_edit.php2
1 files changed, 1 insertions, 1 deletions
diff --git a/usr/local/www/firewall_aliases_edit.php b/usr/local/www/firewall_aliases_edit.php
index 457198c..3ae4cc3 100755
--- a/usr/local/www/firewall_aliases_edit.php
+++ b/usr/local/www/firewall_aliases_edit.php
@@ -558,7 +558,7 @@ EOD;
<input name="origname" type="hidden" id="origname" class="formfld unknown" size="40" value="<?=htmlspecialchars($pconfig['name']);?>" />
<input name="name" type="text" id="name" class="formfld unknown" size="40" value="<?=htmlspecialchars($pconfig['name']);?>" />
<?php if (isset($id) && $a_aliases[$id]): ?>
- <input name="id" type="hidden" value="<?=$id;?>" />
+ <input name="id" type="hidden" value="<?=htmlspecialchars($id);?>" />
<?php endif; ?>
<br />
<span class="vexpl">
OpenPOWER on IntegriCloud