]> git.mjollnir.org Git - moodle.git/commitdiff
sanitize submitted numerical values; merged from MOODLE_16_STABLE
authorskodak <skodak>
Fri, 26 May 2006 11:54:11 +0000 (11:54 +0000)
committerskodak <skodak>
Fri, 26 May 2006 11:54:11 +0000 (11:54 +0000)
mod/scorm/lib.php

index be729b8212d8f131556f9839e2a2df882d63f5bd..75437ec5ac82a331edebb10fb8e757ea78033c14 100755 (executable)
@@ -65,6 +65,10 @@ function scorm_add_instance($scorm) {
     $scorm->width = str_replace('%','',$scorm->width);\r
     $scorm->height = str_replace('%','',$scorm->height);\r
 \r
+    //sanitize submitted values a bit\r
+    $scorm->width = clean_param($scorm->width, PARAM_INT);\r
+    $scorm->height = clean_param($scorm->height, PARAM_INT);\r
+\r
     $id = insert_record('scorm', $scorm);\r
 \r
     if (basename($scorm->reference) != 'imsmanifest.xml') {\r