X-Git-Url: http://wagnertech.de/gitweb/gitweb.cgi/mfinanz.git/blobdiff_plain/a1a3bfd84dbda57fe1c7a9d581a599067557ff7a..d18a84dfd90b91c60093c77bbc5900408e0c5697:/SL/IS.pm diff --git a/SL/IS.pm b/SL/IS.pm index 6b9018d95..1ee47f209 100644 --- a/SL/IS.pm +++ b/SL/IS.pm @@ -2230,6 +2230,10 @@ sub has_storno { $main::lxdebug->leave_sub() and return 0 unless ($form->{id}); + # make sure there's no funny stuff in $table + # ToDO: die when this happens and throw an error + $main::lxdebug->leave_sub() and return 0 if ($table =~ /\W/); + my $dbh = $form->dbconnect($myconfig); my $query = qq|SELECT storno FROM $table WHERE id = ?|;