From c0d4be693473cecdde020a7c55cca7ca153a239e Mon Sep 17 00:00:00 2001 From: =?utf8?q?Sven=20Sch=C3=B6ling?= Date: Wed, 9 Dec 2009 12:46:45 +0100 Subject: [PATCH] Autocompletion gegen Injection abgesichert. --- bin/mozilla/ic.pl | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/bin/mozilla/ic.pl b/bin/mozilla/ic.pl index 346f7ad59..9b5b20a25 100644 --- a/bin/mozilla/ic.pl +++ b/bin/mozilla/ic.pl @@ -2016,7 +2016,7 @@ sub ajax_autocomplete { my $form = $main::form; my %myconfig = %main::myconfig; - $form->{column} ||= 'description'; + $form->{column} = 'description' unless $form->{column} =~ /^partnumber|description$/; $form->{$form->{column}} = $form->{q} || ''; $form->{limit} = ($form->{limit} * 1) || 10; $form->{searchitems} ||= ''; -- 2.20.1