svn commit: r744657 - /ofbiz/trunk/framework/base/src/org/ofbiz/base/util/UtilHttp.java

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

svn commit: r744657 - /ofbiz/trunk/framework/base/src/org/ofbiz/base/util/UtilHttp.java

jleroux@apache.org
Author: jleroux
Date: Sun Feb 15 11:48:36 2009
New Revision: 744657

URL: http://svn.apache.org/viewvc?rev=744657&view=rev
Log:
This enforces probability

Modified:
    ofbiz/trunk/framework/base/src/org/ofbiz/base/util/UtilHttp.java

Modified: ofbiz/trunk/framework/base/src/org/ofbiz/base/util/UtilHttp.java
URL: http://svn.apache.org/viewvc/ofbiz/trunk/framework/base/src/org/ofbiz/base/util/UtilHttp.java?rev=744657&r1=744656&r2=744657&view=diff
==============================================================================
--- ofbiz/trunk/framework/base/src/org/ofbiz/base/util/UtilHttp.java (original)
+++ ofbiz/trunk/framework/base/src/org/ofbiz/base/util/UtilHttp.java Sun Feb 15 11:48:36 2009
@@ -245,7 +245,7 @@
     
     public static String canonicalizeParameter(String paramValue) {
         try {
-            if (paramValue.contains(":\\")) {
+            if (paramValue.startsWith(":\\", 1)) { // This allows to use Windows paths from input fields
                 paramValue = paramValue.replace("\\", "/");
             }
             String cannedStr = StringUtil.defaultWebEncoder.canonicalize(paramValue, StringUtil.esapiCanonicalizeStrict);