Changeset 6521

Show
Ignore:
Timestamp:
12/29/07 03:14:53 (5 months ago)
Author:
ryan
Message:

Extra traversal check.

Files:

Legend:

Unmodified
Added
Removed
Modified
Copied
Moved
  • branches/2.3/wp-admin/includes/file.php

    r6116 r6521  
    4444 
    4545function validate_file( $file, $allowed_files = '' ) { 
     46    if ( false !== strpos( $file, '..' )) 
     47        return 1; 
     48 
    4649    if ( false !== strpos( $file, './' )) 
    4750        return 1;