Quellcode durchsuchen

Security Enhancements (#624)

* Security Enhancements

* Security Enhancements
OwN-3m-All vor 2 Jahren
Ursprung
Commit
f22caff1ad
2 geänderte Dateien mit 5 neuen und 1 gelöschten Zeilen
  1. 4 0
      modules/litefm/fm_dir.php
  2. 1 1
      ogp_api.php

+ 4 - 0
modules/litefm/fm_dir.php

@@ -485,6 +485,10 @@ function exec_ogp_module()
 					$dirlist['files'] = array_orderby($dirlist['files'], 'filename', SORT_ASC);
 					foreach($dirlist['files'] as $file)
 					{
+						if(stripos($file['filename'], "OGP_HOME_") !== false && stripos($file['filename'], $home_id . "_startup_scr.sh") !== false){
+							continue;
+						}
+						
 						$file['filename'] = removeInvalidFileNameCharacters($file['filename']);
 						
 						if( $os == "linux" )

+ 1 - 1
ogp_api.php

@@ -1488,7 +1488,7 @@ function api_addonsmanager()
 	
 	if($request[0] == "list")
 	{
-		$addons_rows = $db->resultQuery("SELECT * FROM OGP_DB_PREFIXaddons");
+		$addons_rows = $db->resultQuery("SELECT addon_id, name, url, path, addon_type FROM OGP_DB_PREFIXaddons");
 		$status = "200";
 		$message = $addons_rows;
 	}