diff --git a/lib/properties.php b/lib/properties.php index 25406f0..a98c4e5 100644 --- a/lib/properties.php +++ b/lib/properties.php @@ -1,22 +1,23 @@ alert('Sorry - problem with file/folder requested');window.history.back();"); +if (!file_exists($fileName) || 0 !== strpos(str_replace("\\", "/", $fileName),$docRoot)) { + die(""); } ?> - +
| onClick="changePerms();showButton()"> | -onClick="changePerms();showButton()"> | -onClick="changePerms();showButton()"> | +onClick="changePerms(); showButton()"> | +onClick="changePerms(); showButton()"> | +onClick="changePerms(); showButton()"> |
| onClick="changePerms();showButton()"> | -onClick="changePerms();showButton()"> | -onClick="changePerms();showButton()"> | +onClick="changePerms(); showButton()"> | +onClick="changePerms(); showButton()"> | +onClick="changePerms(); showButton()"> |
| onClick="changePerms();showButton()"> | -onClick="changePerms();showButton()"> | -onClick="changePerms();showButton()"> | +onClick="changePerms(); showButton()"> | +onClick="changePerms(); showButton()"> | +onClick="changePerms(); showButton()"> |