From 0589471dae2826c25bd6682251706a70e7d935a5 Mon Sep 17 00:00:00 2001 From: Andy Spencer Date: Thu, 8 Oct 2009 05:14:29 +0000 Subject: [PATCH] security hole with pathinfo --- index.cgi | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/index.cgi b/index.cgi index cdfaa82..a9f2465 100755 --- a/index.cgi +++ b/index.cgi @@ -178,7 +178,7 @@ EOF } # Main -pathinfo="${SCRIPT_URL/*vpaste\/}" +pathinfo="${SCRIPT_URL/*\/}" if [ "$pathinfo" ]; then do_print "$pathinfo" -- 2.43.2