bug 3201 fixed: check plugin identifier

git-svn-id: http://piwigo.org/svn/trunk@30950 68402e56-0260-453c-a942-63ccdbb3a9ee
This commit is contained in:
plegall 2015-02-12 14:32:33 +00:00
parent 9faae3e25e
commit 3c28040ca8

View file

@ -45,6 +45,12 @@ if (count($sections)<2)
}
$plugin_id = $sections[0];
if (!preg_match('/^\w+$/', $plugin_id))
{
die('Invalid plugin identifier');
}
if ( !isset($pwg_loaded_plugins[$plugin_id]) )
{
die('Invalid URL - plugin '.$plugin_id.' not active');