--- misc/scripts/cgi/taillog.cgi 2001/03/26 21:15:18 1.2 +++ misc/scripts/cgi/taillog.cgi 2002/05/10 17:44:23 1.5 @@ -12,7 +12,12 @@ if (defined $grep) { $grepStr = ""; } else { - $grepStr = " | grep $grep"; + if ($grep =~ /^[a-zA-Z_\-0-9\.\/]+$/) { + $grepStr = " | grep $grep"; + } + else { + $grepStr = ""; + } } } else { @@ -88,7 +93,7 @@ sub HTML_encode ($){ $encoded =~ s//>/g; $encoded =~ s/^(.{0})(.*core\.loggers\..*: started)$/
$2/; - $encoded =~ s/(.*)] (.*)}:(.*)/$1] $2<\/i>:$3<\/b>/; + $encoded =~ s/(.*)] (.*)}:(.*)/$1] $2}<\/i>:$3<\/b>/; return $encoded; }