It is possible to inject unescaped markup using a double encoded null byte via PATH_INFO on certain leaf nodes. Since there is no legitimate reason to handle null bytes in any part of the requested url, simply skip over such bytes when parsing the PATH_INFO value. Signed-off-by: Jo-Philipp Wich <jo@mein.io> |
||
---|---|---|
.. | ||
luci-base | ||
luci-mod-admin-full | ||
luci-mod-admin-mini | ||
luci-mod-failsafe | ||
luci-mod-freifunk | ||
luci-mod-freifunk-community | ||
luci-mod-rpc |