Revision: 1778
          http://mrbs.svn.sourceforge.net/mrbs/?rev=1778&view=rev
Author:   jberanek
Date:     2011-01-30 09:33:50 +0000 (Sun, 30 Jan 2011)

Log Message:
-----------
* Fixed a few more HTML escaping issues, and rewrapped a few long lines.
 

Modified Paths:
--------------
    mrbs/trunk/web/edit_entry.php

Modified: mrbs/trunk/web/edit_entry.php
===================================================================
--- mrbs/trunk/web/edit_entry.php       2011-01-30 08:18:37 UTC (rev 1777)
+++ mrbs/trunk/web/edit_entry.php       2011-01-30 09:33:50 UTC (rev 1778)
@@ -1181,7 +1181,7 @@
     
     ?>
     <input type="hidden" name="returl" value="<?php echo 
htmlspecialchars($returl) ?>">
-    <input type="hidden" name="create_by" value="<?php echo $create_by?>">
+    <input type="hidden" name="create_by" value="<?php echo 
htmlspecialchars($create_by)?>">
     <input type="hidden" name="rep_id" value="<?php echo $rep_id?>">
     <input type="hidden" name="edit_type" value="<?php echo $edit_type?>">
     <?php
@@ -1193,10 +1193,14 @@
     // ical_uid and start the ical_sequence at 0.
     if (isset($original_room_id))
     {
-      echo "<input type=\"hidden\" name=\"original_room_id\" 
value=\"$original_room_id\">\n";
-      echo "<input type=\"hidden\" name=\"ical_uid\" value=\"$ical_uid\">\n";
-      echo "<input type=\"hidden\" name=\"ical_sequence\" 
value=\"$ical_sequence\">\n";
-      echo "<input type=\"hidden\" name=\"ical_recur_id\" 
value=\"$ical_recur_id\">\n";
+      echo "<input type=\"hidden\" name=\"original_room_id\" ".
+        "value=\"$original_room_id\">\n";
+      echo "<input type=\"hidden\" name=\"ical_uid\" value=\"".
+        htmlspecialchars($ical_uid)."\">\n";
+      echo "<input type=\"hidden\" name=\"ical_sequence\" value=\"".
+        htmlspecialchars($ical_sequence)."\">\n";
+      echo "<input type=\"hidden\" name=\"ical_recur_id\" value=\"".
+        htmlspecialchars($ical_recur_id)."\">\n";
     }
     if(isset($id) && !isset($copy))
     {
@@ -1205,7 +1209,8 @@
 
     // The Submit button
     echo "<div id=\"edit_entry_submit\">\n";
-    echo "<input class=\"submit\" type=\"submit\" name=\"save_button\" 
value=\"" . get_vocab("save") . "\">\n";
+    echo "<input class=\"submit\" type=\"submit\" name=\"save_button\" 
value=\"".
+      get_vocab("save") . "\">\n";
     echo "</div>\n";
     ?>
   </fieldset>


This was sent by the SourceForge.net collaborative development platform, the 
world's largest Open Source development site.

------------------------------------------------------------------------------
Special Offer-- Download ArcSight Logger for FREE (a $49 USD value)!
Finally, a world-class log management solution at an even better price-free!
Download using promo code Free_Logger_4_Dev2Dev. Offer expires 
February 28th, so secure your free ArcSight Logger TODAY! 
http://p.sf.net/sfu/arcsight-sfd2d
_______________________________________________
Mrbs-commits mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/mrbs-commits

Reply via email to