mirror of
https://git.code.sf.net/p/seeddms/code
synced 2025-02-06 07:04:57 +00:00
check for query parameters before using them
This commit is contained in:
parent
e0b55e8a0d
commit
85636ab04a
|
@ -31,10 +31,10 @@ $session->setSplashMsg(array('type'=>'success', 'msg'=>getMLText('splash_cleared
|
|||
|
||||
add_log_line();
|
||||
|
||||
if($_GET['refferer'])
|
||||
if(isset($_GET['refferer']) && $_GET['refferer'])
|
||||
header("Location:".urldecode($_GET['refferer']));
|
||||
else {
|
||||
$folderid = $_GET['folderid'];
|
||||
header("Location:../out/out.ViewFolder.php?folderid=".$folderid);
|
||||
}
|
||||
elseif(isset($_GET['folderid']) && is_numeric($_GET['folderid']))
|
||||
header("Location:../out/out.ViewFolder.php?folderid=".$_GET['folderid']);
|
||||
else
|
||||
header("Location:../index.php");
|
||||
?>
|
||||
|
|
Loading…
Reference in New Issue
Block a user