1
--- a/wwwroot/cgi-bin/awstats.pl 2008/04/21 21:13:28 1.910
2
+++ b/wwwroot/cgi-bin/awstats.pl 2008/07/27 17:41:57 1.911
4
sub DecodeEncodedString {
5
my $stringtodecode=shift;
6
$stringtodecode =~ tr/\+/ /s;
7
+ $stringtodecode =~ s/%22//g;
8
$stringtodecode =~ s/%([A-F0-9][A-F0-9])/pack("C", hex($1))/ieg;
9
return $stringtodecode;
11
@@ -4432,9 +4433,12 @@
12
#------------------------------------------------------------------------------
14
my $stringtoclean=shift;
15
+ # To avoid html tags and javascript
16
$stringtoclean =~ s/</</g;
17
$stringtoclean =~ s/>/>/g;
18
$stringtoclean =~ s/|//g;
20
+ $stringtoclean =~ s/onload//g;
21
return $stringtoclean;