mirror of
https://git.code.sf.net/p/seeddms/code
synced 2025-02-11 09:35:00 +00:00
- do not use sanitizeString() anymore
This commit is contained in:
parent
735281395b
commit
77d05a607e
|
@ -54,8 +54,8 @@ if($_FILES["userfile"]["error"]) {
|
|||
}
|
||||
|
||||
$userfiletmp = $_FILES["userfile"]["tmp_name"];
|
||||
$userfiletype = sanitizeString($_FILES["userfile"]["type"]);
|
||||
$userfilename = sanitizeString($_FILES["userfile"]["name"]);
|
||||
$userfiletype = $_FILES["userfile"]["type"];
|
||||
$userfilename = $_FILES["userfile"]["name"];
|
||||
|
||||
$lastDotIndex = strrpos(basename($userfilename), ".");
|
||||
if (is_bool($lastDotIndex) && !$lastDotIndex)
|
||||
|
|
|
@ -149,7 +149,7 @@ if (isset($settings->_ldapHost) && strlen($settings->_ldapHost)>0) {
|
|||
if (!is_bool($search)) {
|
||||
$info = ldap_get_entries($ds, $search);
|
||||
if (!is_bool($info) && $info["count"]==1 && $info[0]["count"]>0) {
|
||||
$user = $dms->addUser($login, null, sanitizeString($info[0]['cn'][0]), $info[0]['mail'][0], $settings->_language, $settings->_theme, "");
|
||||
$user = $dms->addUser($login, null, $info[0]['cn'][0], $info[0]['mail'][0], $settings->_language, $settings->_theme, "");
|
||||
}
|
||||
}
|
||||
}
|
||||
|
|
|
@ -53,8 +53,8 @@ if ($action == "adduser") {
|
|||
|
||||
if (isset($_FILES["userfile"]) && is_uploaded_file($_FILES["userfile"]["tmp_name"]) && $_FILES["userfile"]["size"] > 0 && $_FILES['userfile']['error']==0)
|
||||
{
|
||||
$userfiletype = sanitizeString($_FILES["userfile"]["type"]);
|
||||
$userfilename = sanitizeString($_FILES["userfile"]["name"]);
|
||||
$userfiletype = $_FILES["userfile"]["type"];
|
||||
$userfilename = $_FILES["userfile"]["name"];
|
||||
$lastDotIndex = strrpos(basename($userfilename), ".");
|
||||
$fileType = substr($userfilename, $lastDotIndex);
|
||||
if ($fileType != ".jpg" && $filetype != ".jpeg")
|
||||
|
@ -170,8 +170,8 @@ else if ($action == "edituser") {
|
|||
|
||||
if (isset($_FILES['userfile']) && is_uploaded_file($_FILES["userfile"]["tmp_name"]) && $_FILES["userfile"]["size"] > 0 && $_FILES['userfile']['error']==0)
|
||||
{
|
||||
$userfiletype = sanitizeString($_FILES["userfile"]["type"]);
|
||||
$userfilename = sanitizeString($_FILES["userfile"]["name"]);
|
||||
$userfiletype = $_FILES["userfile"]["type"];
|
||||
$userfilename = $_FILES["userfile"]["name"];
|
||||
$lastDotIndex = strrpos(basename($userfilename), ".");
|
||||
$fileType = substr($userfilename, $lastDotIndex);
|
||||
if ($fileType != ".jpg" && $filetype != ".jpeg") {
|
||||
|
|
Loading…
Reference in New Issue
Block a user