diff options
author | jim-p <jimp@pfsense.org> | 2015-12-21 09:04:11 -0500 |
---|---|---|
committer | jim-p <jimp@pfsense.org> | 2015-12-21 09:04:18 -0500 |
commit | d83a4dfcdb0f61f4d7311c42e917f27691834a84 (patch) | |
tree | b8bf1c8b2d8000f9cf621cbe1a4448f2acf32490 /usr/local/www/system.php | |
parent | d59733f55eacab5a103828fbc6d0f7ab90426a90 (diff) | |
download | pfsense-d83a4dfcdb0f61f4d7311c42e917f27691834a84.zip pfsense-d83a4dfcdb0f61f4d7311c42e917f27691834a84.tar.gz |
Encode DNS servers and their associated gateways before printing
Diffstat (limited to 'usr/local/www/system.php')
-rw-r--r-- | usr/local/www/system.php | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/usr/local/www/system.php b/usr/local/www/system.php index e313aba..e78023c 100644 --- a/usr/local/www/system.php +++ b/usr/local/www/system.php @@ -347,7 +347,7 @@ include("head.inc"); ?> <tr> <td> - <input name="dns<?php echo $dnscounter;?>" type="text" class="formfld unknown" id="dns<?php echo $dnscounter;?>" size="28" value="<?php echo $pconfig['dns'.$dnscounter];?>" /> + <input name="dns<?php echo $dnscounter;?>" type="text" class="formfld unknown" id="dns<?php echo $dnscounter;?>" size="28" value="<?php echo htmlspecialchars($pconfig['dns'.$dnscounter]);?>" /> </td> <td> <?php if ($multiwan): ?> @@ -374,7 +374,7 @@ include("head.inc"); } else { $selected = ""; } - echo "<option value='$gwname' $selected>$gwname - {$gwitem['friendlyiface']} - {$gwitem['gateway']}</option>\n"; + echo "<option value='" . htmlspecialchars($gwname) . "' $selected>" . htmlspecialchars("{$gwname} - {$gwitem['friendlyiface']} - {$gwitem['gateway']}") . " </option>\n"; } ?> </select> |