--- misc/scripts/cgi/taillog.cgi 2001/03/26 21:15:18 1.2 +++ misc/scripts/cgi/taillog.cgi 2001/11/05 19:25:32 1.4 @@ -12,7 +12,12 @@ if (defined $grep) { $grepStr = ""; } else { - $grepStr = " | grep $grep"; + if ($grep =~ /^[a-zA-Z_\-0-9\.\/]$/) { + $grepStr = " | grep $grep"; + } + else { + $grepStr = ""; + } } } else { @@ -88,7 +93,7 @@ sub HTML_encode ($){ $encoded =~ s/</g; $encoded =~ s/>/>/g; $encoded =~ s/^(.{0})(.*core\.loggers\..*: started)$/