We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 15907b8 commit e56eacaCopy full SHA for e56eaca
ajax/ldap_filter.php
@@ -29,6 +29,8 @@
29
* ---------------------------------------------------------------------
30
*/
31
32
+use Glpi\Toolbox\Sanitizer;
33
+
34
include ('../../../inc/includes.php');
35
36
Session::checkRight('entity', UPDATE);
@@ -37,4 +39,5 @@
37
39
$authldap->getFromDB($_POST['value']);
38
40
$filter = "(".$authldap->getField("login_field")."=*)";
41
$ldap_condition = $authldap->getField('condition');
42
+$ldap_condition = Sanitizer::decodeHtmlSpecialChars($ldap_condition);
43
echo "(& $filter $ldap_condition)";
0 commit comments