From 59d417cbfa1e3179d9d4b103e5c0d206156b971f Mon Sep 17 00:00:00 2001 From: Denis Chenu Date: Wed, 5 Feb 2014 17:15:34 +0100 Subject: [PATCH] Dev: oups lost a _ --- application/controllers/UploaderController.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/application/controllers/UploaderController.php b/application/controllers/UploaderController.php index ed9f04c42ac..fe7938880ba 100644 --- a/application/controllers/UploaderController.php +++ b/application/controllers/UploaderController.php @@ -47,7 +47,7 @@ function run($actionID) // Validate and filter and throw error if problems // Using 'futmp_'.randomChars(15).'_'.$pathinfo['extension'] for filename, then remove all other characters $sFileGetContentFiltered=preg_replace('/[^a-z0-9_]/', '', $sFileGetContent); - $sFileNameFiltered = preg_replace('/[^a-z0-9]/', '',$sFileName); + $sFileNameFiltered = preg_replace('/[^a-z0-9_]/', '',$sFileName); $sFieldNameFiltered=preg_replace('/[^X0-9]/', '', $sFieldName); if($sFileGetContent!=$sFileGetContentFiltered || $sFileName!=$sFileNameFiltered || $sFieldName!=$sFieldNameFiltered) {// If one seems to be a hack: Bad request