diff options
author | plegall <plg@piwigo.org> | 2015-02-12 14:39:09 +0000 |
---|---|---|
committer | plegall <plg@piwigo.org> | 2015-02-12 14:39:09 +0000 |
commit | 6de82cb36fdbe5df241c4d053175dae620c76c54 (patch) | |
tree | a6142afa06b89ee1a7a630b130dc02efaf9de3ee | |
parent | 3c28040ca8c07586ce1498241503c0fbcf75c569 (diff) |
bug 3202 fixed: additional input check for filter_level
git-svn-id: http://piwigo.org/svn/trunk@30952 68402e56-0260-453c-a942-63ccdbb3a9ee
-rw-r--r-- | admin/batch_manager.php | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/admin/batch_manager.php b/admin/batch_manager.php index bd64437c8..257b11bb9 100644 --- a/admin/batch_manager.php +++ b/admin/batch_manager.php @@ -116,6 +116,8 @@ if (isset($_POST['submitFilter'])) if (isset($_POST['filter_level_use'])) { + check_input_parameter('filter_level', $_POST, false, '/^\d+$/'); + if (in_array($_POST['filter_level'], $conf['available_permission_levels'])) { $_SESSION['bulk_manager_filter']['level'] = $_POST['filter_level']; |