Browse Source

Add files via upload

Capitan Cloud 2 years ago
parent
commit
979af0d2bb
1 changed files with 4 additions and 2 deletions
  1. 4 2
      Public/index.php

+ 4 - 2
Public/index.php

@@ -223,7 +223,9 @@ $cache->setJ($cacheKey, $methods, 0, CACHE_EXPIRE);
 
 // PARAMETERS VALIDATION
 
-$url = trim(substr(filter_input(INPUT_GET, "url", FILTER_SANITIZE_STRING), 0, 300), "/");
+$url = filter_input(INPUT_GET, "url")??"";
+$url = strip_tags($url);
+$url = trim(substr($url, 0, 300), "/");
 
 /*
 switch ($url) {
@@ -265,7 +267,7 @@ if (isset($methods[$url])) {
   if (strlen($query_string) > (strlen($url)+5)) {
   
     foreach($methods[$url]["params"] as $param) {
-      $userParams[$i] = filter_input(INPUT_GET, $param['name'], FILTER_SANITIZE_STRING);
+      $userParams[$i] = strip_tags(filter_input(INPUT_GET, $param['name'])??"");
       //print_r($userParams[$i]);
       if ($param['type']==="string" && !empty($userParams[$i])) {
         $cmd .= "'$userParams[$i]',";