diff options
author | plegall <plg@piwigo.org> | 2010-09-13 18:41:25 +0000 |
---|---|---|
committer | plegall <plg@piwigo.org> | 2010-09-13 18:41:25 +0000 |
commit | 0dc214e93e8998f9d7d01041707cc9fe33221c32 (patch) | |
tree | 004160ce3d39553d3e1fb292ce8114ccaa0de1a4 /include | |
parent | 11d86499e73592ed20c54a09607c07bebddb8359 (diff) |
merge r6890 from branch 2.1 to trunk
bug 1848 fixed: do not print methodName in header to avoid CRLF attack.
git-svn-id: http://piwigo.org/svn/trunk@6892 68402e56-0260-453c-a942-63ccdbb3a9ee
Diffstat (limited to 'include')
-rw-r--r-- | include/ws_core.inc.php | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/include/ws_core.inc.php b/include/ws_core.inc.php index 043c2c112..28f834a76 100644 --- a/include/ws_core.inc.php +++ b/include/ws_core.inc.php @@ -477,7 +477,7 @@ Request format: ".@$this->_requestFormat." Response format: ".@$this->_responseF if ( $method==null ) { - return new PwgError(WS_ERR_INVALID_METHOD, 'Method name "'.$methodName.'" is not valid'); + return new PwgError(WS_ERR_INVALID_METHOD, 'Method name is not valid'); } // parameter check and data coercion ! |