Changeset 15053 for branches/rel
- Timestamp:
- 2007/07/17 21:48:24 (16 years ago)
- Location:
- branches/rel
- Files:
-
- 4 edited
Legend:
- Unmodified
- Added
- Removed
-
branches/rel/data/class/SC_View.php
r14488 r15053 44 44 $this->_smarty->register_function("sfPrintEbisTag","sfPrintEbisTag"); 45 45 $this->_smarty->register_function("sfPrintAffTag","sfPrintAffTag"); 46 $this->_smarty->register_function("sfIsHTTPS","sfIsHTTPS"); 46 47 $this->_smarty->default_modifiers = array('script_escape'); 47 48 -
branches/rel/html/frontparts/login_check.php
r15048 r15053 81 81 /* POST¤µ¤ì¤ëURL¤Î¥Á¥§¥Ã¥¯*/ 82 82 function lfIsValidURL() { 83 //$site_url = sfIsHTTPS() ? SSL_URL : SITE_URL;83 $site_url = sfIsHTTPS() ? SSL_URL : SITE_URL; 84 84 $check_url = trim($_POST['url']); 85 85 86 86 // ¥É¥á¥¤¥ó¥Á¥§¥Ã¥¯ 87 //$pattern = "|^$site_url|";88 //if (!preg_match($pattern, $check_url)) {89 //return false;90 //}87 $pattern = "|^$site_url|"; 88 if (!preg_match($pattern, $check_url)) { 89 return false; 90 } 91 91 92 // ²þ¹Ô¥³¡¼¥É(CR¡¦LF) ¥Á¥§¥Ã¥¯93 $pattern = '/\r|\n| %0D|%0A/';92 // ²þ¹Ô¥³¡¼¥É(CR¡¦LF)¡¦NULL¥Ð¥¤¥È¥Á¥§¥Ã¥¯ 93 $pattern = '/\r|\n|\0|%0D|%0A|%00/'; 94 94 if (preg_match_all($pattern, $check_url, $matches)) { 95 95 return false; -
branches/rel/html/install/user_data/include/bloc/login.tpl
r12157 r15053 6 6 <!--¢§¥í¥°¥¤¥ó¤³¤³¤«¤é--> 7 7 <!--{if $smarty.post.url == ""}--> 8 <!--{assign var=url value="`$smarty.server.REQUEST_URI`"}--> 8 <!--{if sfIsHTTPS()}--> 9 <!--{assign var=url value="https://`$smarty.server.HTTP_HOST``$smarty.server.REQUEST_URI`"}--> 10 <!--else}--> 11 <!--{assign var=url value="http://`$smarty.server.HTTP_HOST``$smarty.server.REQUEST_URI`"}--> 12 <!--{/if}--> 9 13 <!--{else}--> 10 14 <!--{assign var=url value="`$smarty.post.url`"}--> -
branches/rel/html/install/user_data/templates/default1/include/bloc/login.tpl
r12157 r15053 6 6 <!--¢§¥í¥°¥¤¥ó¤³¤³¤«¤é--> 7 7 <!--{if $smarty.post.url == ""}--> 8 <!--{assign var=url value="`$smarty.server.REQUEST_URI`"}--> 8 <!--{if sfIsHTTPS()}--> 9 <!--{assign var=url value="https://`$smarty.server.HTTP_HOST``$smarty.server.REQUEST_URI`"}--> 10 <!--else}--> 11 <!--{assign var=url value="http://`$smarty.server.HTTP_HOST``$smarty.server.REQUEST_URI`"}--> 12 <!--{/if}--> 9 13 <!--{else}--> 10 14 <!--{assign var=url value="`$smarty.post.url`"}-->
Note: See TracChangeset
for help on using the changeset viewer.