mirror of
https://git.code.sf.net/p/seeddms/code
synced 2025-05-14 05:31:42 +00:00
check for query parameters before using them
This commit is contained in:
parent
e0b55e8a0d
commit
85636ab04a
|
@ -31,10 +31,10 @@ $session->setSplashMsg(array('type'=>'success', 'msg'=>getMLText('splash_cleared
|
||||||
|
|
||||||
add_log_line();
|
add_log_line();
|
||||||
|
|
||||||
if($_GET['refferer'])
|
if(isset($_GET['refferer']) && $_GET['refferer'])
|
||||||
header("Location:".urldecode($_GET['refferer']));
|
header("Location:".urldecode($_GET['refferer']));
|
||||||
else {
|
elseif(isset($_GET['folderid']) && is_numeric($_GET['folderid']))
|
||||||
$folderid = $_GET['folderid'];
|
header("Location:../out/out.ViewFolder.php?folderid=".$_GET['folderid']);
|
||||||
header("Location:../out/out.ViewFolder.php?folderid=".$folderid);
|
else
|
||||||
}
|
header("Location:../index.php");
|
||||||
?>
|
?>
|
||||||
|
|
Loading…
Reference in New Issue
Block a user