From 732703b42a01b98fe6e3a8d032e173d69b48c4e8 Mon Sep 17 00:00:00 2001 From: jeff Date: Mon, 18 Jun 2007 16:46:20 +0000 Subject: [PATCH] must escape config data --- httemplate/edit/svc_www.cgi | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/httemplate/edit/svc_www.cgi b/httemplate/edit/svc_www.cgi index a9f97ff85..6e2db8f67 100644 --- a/httemplate/edit/svc_www.cgi +++ b/httemplate/edit/svc_www.cgi @@ -43,7 +43,7 @@ % % $pkgnum=$cust_svc->pkgnum; % $svcpart=$cust_svc->svcpart; -% $config=$svc_www->config; +% $config=$cgi->escapeHTML($svc_www->config); % % $part_svc=qsearchs('part_svc',{'svcpart'=>$svcpart}); % die "No part_svc entry!" unless $part_svc; -- 2.11.0