aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorPaul S. Owen <psotfx@users.sourceforge.net>2002-08-01 14:08:18 +0000
committerPaul S. Owen <psotfx@users.sourceforge.net>2002-08-01 14:08:18 +0000
commit3aceae9272691700457b2ae67521258c9186eaf0 (patch)
treef49ba55cff6642b9005ae58573ad736fb93b0465
parentaab6df3ce4031f8bb1babd4614a3dc27dd41bf8a (diff)
downloadforums-3aceae9272691700457b2ae67521258c9186eaf0.tar
forums-3aceae9272691700457b2ae67521258c9186eaf0.tar.gz
forums-3aceae9272691700457b2ae67521258c9186eaf0.tar.bz2
forums-3aceae9272691700457b2ae67521258c9186eaf0.tar.xz
forums-3aceae9272691700457b2ae67521258c9186eaf0.zip
Non-slashed serialised data for admin logs... oops
git-svn-id: file:///svn/phpbb/trunk@2800 89ea8834-ac86-4346-8a33-228a782c2dd0
-rw-r--r--phpBB/admin/pagestart.php4
1 files changed, 2 insertions, 2 deletions
diff --git a/phpBB/admin/pagestart.php b/phpBB/admin/pagestart.php
index b187a90294..63adc5be57 100644
--- a/phpBB/admin/pagestart.php
+++ b/phpBB/admin/pagestart.php
@@ -127,7 +127,7 @@ function add_admin_log()
$arguments = func_get_args();
$action = array_shift($arguments);
- $data = ( !sizeof($arguments) ) ? '' : serialize($arguments);
+ $data = ( !sizeof($arguments) ) ? '' : addslashes(serialize($arguments));
$sql = "INSERT INTO " . LOG_ADMIN_TABLE . " (user_id, log_ip, log_time, log_operation, log_data)
VALUES (" . $userdata['user_id'] . ", '$user_ip', " . time() . ", '$action', '$data')";
@@ -164,7 +164,7 @@ function view_admin_log($limit = 0, $offset = 0, $limit_days = 0, $sort_by = 'l.
if ( !empty($row['log_data']) )
{
- $log_data_ary = unserialize($row['log_data']);
+ $log_data_ary = unserialize(stripslashes($row['log_data']));
foreach ( $log_data_ary as $log_data )
{