diff --git a/bureau/admin/bro_main.php b/bureau/admin/bro_main.php index 871b556a..ee73f580 100644 --- a/bureau/admin/bro_main.php +++ b/bureau/admin/bro_main.php @@ -93,7 +93,7 @@ if (!empty($formu) && $formu) {
- +

@@ -326,7 +326,7 @@ for($i=0;$i\n"; if ($c[$i]["type"]) { -echo " "; +echo " "; if ($p["showicons"]) { echo "icon($c[$i]["name"])."\" width=\"16\" height=\"16\" alt=\"\" />"; } @@ -337,7 +337,7 @@ if ($canedit) { } else { echo "bro_downloadfile.php?dir=".urlencode($R)."&file=".urlencode($c[$i]["name"]); } -echo "\">".htmlentities($c[$i]["name"])."\n"; +echo "\">"; ehe($c[$i]["name"]); echo"\n"; echo " ".format_size($c[$i]["size"]).""; echo "".format_date(_('%3$d-%2$d-%1$d %4$d:%5$d'),date("Y-m-d H:i:s",$c[$i]["date"]))."
"; if ($p["showtype"]) { diff --git a/bureau/class/functions.php b/bureau/class/functions.php index 4f3d4a02..80138e41 100644 --- a/bureau/class/functions.php +++ b/bureau/class/functions.php @@ -435,7 +435,7 @@ function eoption($values,$cur,$info="") { */ function ehe($str) { global $charset; - echo htmlspecialchars($str,ENT_COMPAT,$charset); + echo htmlspecialchars($str,ENT_QUOTES,$charset); }