summaryrefslogtreecommitdiff
path: root/pages/account/32.php
diff options
context:
space:
mode:
authorBernhard Fröhlich <bernhard@cacert.org>2011-08-02 21:08:02 +0200
committerBernhard Fröhlich <bernhard@cacert.org>2011-08-02 21:08:02 +0200
commitb2f8749f8bf792ad5f11c17f8d52ce8a11a7b6b5 (patch)
treef98222ad15722ee2a9660e8b8e4a5d5f921ecebd /pages/account/32.php
parent1262ff0b1c8cf748c0dc6ed502d80c579ae672ca (diff)
downloadcacert-devel-b2f8749f8bf792ad5f11c17f8d52ce8a11a7b6b5.tar.gz
cacert-devel-b2f8749f8bf792ad5f11c17f8d52ce8a11a7b6b5.tar.xz
cacert-devel-b2f8749f8bf792ad5f11c17f8d52ce8a11a7b6b5.zip
comments field textedit field adjusted
Uli60 proposal
Diffstat (limited to 'pages/account/32.php')
-rwxr-xr-x[-rw-r--r--]pages/account/32.php6
1 files changed, 3 insertions, 3 deletions
diff --git a/pages/account/32.php b/pages/account/32.php
index 00dc1ea..a05c927 100644..100755
--- a/pages/account/32.php
+++ b/pages/account/32.php
@@ -38,10 +38,10 @@
$user = mysql_fetch_assoc(mysql_query("select * from `users` where `id`='".intval($row['memid'])."'"));
?>
<tr>
- <td class="DataTD"><a href='mailto:<?=$user['email']?>'><?=($user['fname'])?> <?=($user['lname'])?></a></td>
+ <td class="DataTD"><a href='mailto:<?=sanitizeHTML($user['email'])?>'><?=sanitizeHTML($user['fname'])?> <?=sanitizeHTML($user['lname'])?></a></td>
<td class="DataTD"><?=($row['masteracc'])?></a></td>
- <td class="DataTD"><?=($row['OU'])?></a></td>
- <td class="DataTD"><?=($row['comments'])?></a></td>
+ <td class="DataTD"><?=sanitizeHTML($row['OU'])?></a></td>
+ <td class="DataTD"><?=sanitizeHTML($row['comments'])?></a></td>
<? if($row['masteracc'] == 0 || $_SESSION['profile']['orgadmin'] == 1) { ?>
<td class="DataTD"><a href="account.php?id=34&amp;orgid=<?=$row['orgid']?>&amp;memid=<?=$row['memid']?>"><?=_("Delete")?></a></td>
<? } else { ?>