1
0
mirror of https://github.com/e107inc/e107.git synced 2025-08-01 04:10:38 +02:00

Plugin class: check for bad folder names.

This commit is contained in:
Cameron
2017-04-02 14:30:30 -07:00
parent b3c4d82698
commit cd2fa2dd9b

View File

@@ -474,11 +474,13 @@ class e_plugin
$arr = array(); $arr = array();
var_dump($dirs);
foreach($dirs as $plugName) foreach($dirs as $plugName)
{ {
$ret = null; $ret = null;
if(empty($plugName) || $plugName === '.' || $plugName === '..' || !is_dir(e_PLUGIN.$plugName)) if((htmlentities($plugName) != $plugName) || empty($plugName) || $plugName === '.' || $plugName === '..' || !is_dir(e_PLUGIN.$plugName))
{ {
continue; continue;
} }