summaryrefslogtreecommitdiffstats
path: root/usr/local/www/load_balancer_virtual_server_edit.php
diff options
context:
space:
mode:
authorScott Ullrich <sullrich@pfsense.org>2010-11-12 11:03:44 -0500
committerScott Ullrich <sullrich@pfsense.org>2010-11-12 11:03:51 -0500
commit225a2f0b4696c497263d0926011a0f39ab08b0f3 (patch)
tree8a5b402ff00a0c20e630f4beaf0f385edb2a9592 /usr/local/www/load_balancer_virtual_server_edit.php
parent5812e717eb919e2d1eb94772f33275122415d76c (diff)
downloadpfsense-225a2f0b4696c497263d0926011a0f39ab08b0f3.zip
pfsense-225a2f0b4696c497263d0926011a0f39ab08b0f3.tar.gz
Bring in XSS id fixes from m0n0wall
Diffstat (limited to 'usr/local/www/load_balancer_virtual_server_edit.php')
-rwxr-xr-xusr/local/www/load_balancer_virtual_server_edit.php2
1 files changed, 1 insertions, 1 deletions
diff --git a/usr/local/www/load_balancer_virtual_server_edit.php b/usr/local/www/load_balancer_virtual_server_edit.php
index e93f0d6..9118319 100755
--- a/usr/local/www/load_balancer_virtual_server_edit.php
+++ b/usr/local/www/load_balancer_virtual_server_edit.php
@@ -278,7 +278,7 @@ document.observe("dom:loaded", function() {
<input name="Submit" type="submit" class="formbtn" value="<?=gettext("Submit"); ?>">
<input type="button" class="formbtn" value="<?=gettext("Cancel"); ?>" onclick="history.back()">
<?php if (isset($id) && $a_vs[$id] && $_GET['act'] != 'dup'): ?>
- <input name="id" type="hidden" value="<?=$id;?>">
+ <input name="id" type="hidden" value="<?=htmlspecialchars($id);?>">
<?php endif; ?>
</td>
</tr>
OpenPOWER on IntegriCloud