From 5ac924ad28a04bb9c02e683306ddfca5a046e4c2 Mon Sep 17 00:00:00 2001 From: einhverfr Date: Fri, 23 Mar 2007 06:00:01 +0000 Subject: Renamed images to ledgersmb* git-svn-id: https://ledger-smb.svn.sourceforge.net/svnroot/ledger-smb/trunk@996 4979c152-3d1c-0410-bac9-87ea11338e46 --- LedgerSMB.pm | 10 + bin/admin.pl | 2 +- bin/am.pl | 2 +- bin/login.pl | 4 +- bin/menu.pl | 2 +- images/ledger-smb.eps | 612 -------------------------------------------- images/ledger-smb.gif | Bin 980 -> 0 bytes images/ledger-smb.png | Bin 60297 -> 0 bytes images/ledger-smb_small.png | Bin 6507 -> 0 bytes images/ledgersmb.eps | 612 ++++++++++++++++++++++++++++++++++++++++++++ images/ledgersmb.gif | Bin 0 -> 980 bytes images/ledgersmb.png | Bin 0 -> 60297 bytes images/ledgersmb_small.png | Bin 0 -> 6507 bytes locale/html/splash.html | 2 +- 14 files changed, 628 insertions(+), 618 deletions(-) delete mode 100644 images/ledger-smb.eps delete mode 100644 images/ledger-smb.gif delete mode 100644 images/ledger-smb.png delete mode 100644 images/ledger-smb_small.png create mode 100644 images/ledgersmb.eps create mode 100644 images/ledgersmb.gif create mode 100644 images/ledgersmb.png create mode 100644 images/ledgersmb_small.png diff --git a/LedgerSMB.pm b/LedgerSMB.pm index 3a06bacf..37fbe009 100755 --- a/LedgerSMB.pm +++ b/LedgerSMB.pm @@ -131,6 +131,16 @@ sub new { $self->{lynx} = 1; } + $self->{path} =~ s#\\#/#g; + if (($self->{path}) && ($self->{path} !~ m#^bin/#) + || ($self->{path} =~ m#(\w*/){2,}#)){ + $self->error("Access Denied"); + } + if (($self->{script} =~ m#(..|\\|/)#)){ + $self->error("Access Denied"); + } + + $self; } diff --git a/bin/admin.pl b/bin/admin.pl index e441b00e..a4c9ab9a 100755 --- a/bin/admin.pl +++ b/bin/admin.pl @@ -102,7 +102,7 @@ sub adminlogin { print qq|
- LedgerSMB Logo + LedgerSMB Logo

|.$locale->text('Version').qq| $form->{version}
|.$locale->text('Administration').qq|

diff --git a/bin/am.pl b/bin/am.pl index 60c53500..ea125c97 100755 --- a/bin/am.pl +++ b/bin/am.pl @@ -2678,7 +2678,7 @@ sub company_logo {
-LedgerSMB Logo +LedgerSMB Logo

|.$locale->text('Version').qq| $form->{version}

diff --git a/bin/login.pl b/bin/login.pl index bff94a10..67c882b2 100755 --- a/bin/login.pl +++ b/bin/login.pl @@ -126,7 +126,7 @@ sub login_screen {