projects
/
freeside.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
show customer email on commission credit detail reports, #40033
[freeside.git]
/
httemplate
/
search
/
report_tax-xls.cgi
diff --git
a/httemplate/search/report_tax-xls.cgi
b/httemplate/search/report_tax-xls.cgi
index
07fcf7c
..
c914d5a
100755
(executable)
--- a/
httemplate/search/report_tax-xls.cgi
+++ b/
httemplate/search/report_tax-xls.cgi
@@
-24,8
+24,9
@@
if ( $cgi->param('agentnum') =~ /^(\d+)$/ ) {
$agentname = $agent->agentname;
}
$agentname = $agent->agentname;
}
-if ( $cgi->param('taxname') =~ /^([\w ]+)$/ ) {
- $params{taxname} = $1;
+# allow anything in here; FS::Report::Tax will treat it as unsafe
+if ( length($cgi->param('taxname')) ) {
+ $params{taxname} = $cgi->param('taxname');
} else {
die "taxname required";
}
} else {
die "taxname required";
}