0
0
mirror of https://github.com/postfixadmin/postfixadmin.git synced 2024-09-19 19:22:14 +02:00

AliasHandler.php:

- escape $address in is_mailbox_alias()


git-svn-id: https://svn.code.sf.net/p/postfixadmin/code/trunk@956 a1433add-5e2c-0410-b055-b7f2511e0802
This commit is contained in:
Christian Boltz 2011-02-13 17:10:51 +00:00
parent e8beac17d0
commit cebf126eff

View File

@ -69,7 +69,8 @@ class AliasHandler {
}
$table_mailbox = table_by_key('mailbox');
$sql = "SELECT * FROM $table_mailbox WHERE username='$address'";
$E_address = escape_string($address);
$sql = "SELECT * FROM $table_mailbox WHERE username='$E_address'";
$result = db_query($sql);
if($result['rows'] != 1) {
return false;