From 3d1d22ab4557393aaaaa061c01cf34ffe8de92f3 Mon Sep 17 00:00:00 2001 From: Florian Pritz Date: Tue, 24 Jul 2012 14:36:06 +0200 Subject: Don't call undefined functions on error page Regression test: URL with disallowed chars: '$url/1234/.exec("asdf")' Signed-off-by: Florian Pritz --- application/errors/error_general.php | 95 +++++++++++++++++++++++++++++++----- 1 file changed, 84 insertions(+), 11 deletions(-) (limited to 'application') diff --git a/application/errors/error_general.php b/application/errors/error_general.php index 333b21fd0..4c2554c07 100755 --- a/application/errors/error_general.php +++ b/application/errors/error_general.php @@ -1,21 +1,94 @@ load->helper("filebin"); + $CI->load->helper("url"); + + if (is_cli_client()) { + echo $heading."\n"; + echo $message."\n"; + exit(); + } -$title = "Error"; -$is_error_page = true; + include 'application/views/file/header.php'; -include 'application/views/file/header.php'; + ?> +
+

+ +
+ -
+ + + +Error + + + +

- + +