This commit is contained in:
Axel ROGER 2013-04-18 14:24:54 +00:00
parent 31d077e328
commit 78c9d1494b
1 changed files with 7 additions and 7 deletions

View File

@ -106,15 +106,15 @@ class m_bro {
// verifier que le repertoire est dans le home de l'usgaer
if (substr($dir,0,strlen($root))!=$root) {
return false;
}
}
// recomposer le chemin
$dir = $dir . '/' . $file;
# Si on tente de mettre un '..' alors erreur
if ( preg_match("/\/\.\.\//", $dir) || preg_match("/\/\.\.$/", $dir) ) {
return false;
}
# Si on tente de mettre un '..' alors erreur
if ( preg_match("/\/\.\.\//", $dir) || preg_match("/\/\.\.$/", $dir) ) {
return false;
}
if ($strip) {
$dir=substr($dir,strlen($root));
@ -472,7 +472,7 @@ class m_bro {
if ($new[0] != '/') {
$new = $old . '/' . $new;
}
}
$new = $this->convertabsolute($new,0);
if (!$new) {