Skip to content

Commit 04868c5

Browse files
authored
Fix #238 - Don't htmlescape request DNs (#240)
* Fix #238 - Don't htmlescape request DNs * Also allow editing users with special chars in the dn
1 parent 5ba157e commit 04868c5

File tree

3 files changed

+3
-3
lines changed

3 files changed

+3
-3
lines changed

htdocs/template_engine.php

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -36,7 +36,7 @@
3636
require './common.php';
3737

3838
$request = array();
39-
$request['dn'] = get_request('dn','REQUEST');
39+
$request['dn'] = get_request('dn','REQUEST', false, null, false);
4040
$request['page'] = new TemplateRender($app['server']->getIndex(),get_request('template','REQUEST',false,null));
4141

4242
# If we have a DN, then this is to edit the entry.

htdocs/update.php

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@
1313
require './common.php';
1414

1515
$request = array();
16-
$request['dn'] = get_request('dn','REQUEST',true);
16+
$request['dn'] = get_request('dn','REQUEST',true,null,false);
1717

1818
# If cancel was submited, got back to the edit display.
1919
if (get_request('cancel','REQUEST')) {

htdocs/update_confirm.php

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@
1717
require './common.php';
1818

1919
$request = array();
20-
$request['dn'] = get_request('dn','REQUEST',true);
20+
$request['dn'] = get_request('dn','REQUEST',true,null,false);
2121

2222
if (! $request['dn'] || ! $app['server']->dnExists($request['dn']))
2323
error(sprintf(_('The entry (%s) does not exist.'),$request['dn']),'error','index.php');

0 commit comments

Comments
 (0)