Security fix: cross-scripting vulnerability found and fixed by checklink_2_90_fixes
authorhugo
Wed, 23 Oct 2002 04:33:09 +0000
branchchecklink_2_90_fixes
changeset 860 d26bf16d85b9
parent 726 db4d3d5ed25a
Security fix: cross-scripting vulnerability found and fixed by
ITO Tsuyoshi <tsuyoshi@is.s.u-tokyo.ac.jp>.
httpd/cgi-bin/checklink.pl
--- a/httpd/cgi-bin/checklink.pl	Fri Jun 21 20:29:16 2002 +0000
+++ b/httpd/cgi-bin/checklink.pl	Wed Oct 23 04:33:09 2002 +0000
@@ -5,7 +5,7 @@
 # (c) 1999-2002 World Wide Web Consortium
 # based on Renaud Bruyeron's checklink.pl
 #
-# $Id: checklink.pl,v 2.90 2002-06-21 20:29:15 eric Exp $
+# $Id: checklink.pl,v 2.90.2.1 2002-10-23 04:32:50 hugo Exp $
 #
 # This program is licensed under the W3C(r) License:
 #	http://www.w3.org/Consortium/Legal/copyright-software
@@ -38,7 +38,7 @@
 
 # Version info
 my $PROGRAM = 'W3C checklink';
-my $VERSION = q$Revision: 2.90 $ . '(c) 1999-2002 W3C';
+my $VERSION = q$Revision: 2.90.2.1 $ . '(c) 1999-2002 W3C';
 my $REVISION; ($REVISION = $VERSION) =~ s/Revision: (\d+\.\d+) .*/$1/;
 
 # Different options specified by the user
@@ -1220,7 +1220,7 @@
 <p>You need %s access to %s to perform Link Checking.</p>
 </body>
 </html>
-", $realm, $r->request->url);
+", &encode($realm), $r->request->url);
     }
 }