display-sql.tcl
Enables user to see a .sql file without encountering the AOLserver's db module magic (offering to load the SQL into a database) or without returning the SQL as content-type application/x-sql. Patched by philg at Jeff Banks's request on 12/5/99 to close the security hole whereby a client adds extra form vars. Patched on 07/06/2000 by deison to restrict access to only .sql files and only files in /doc or /pageroot. 2000 August 8 Updated for ACS4 packages - richardl@arsdigita.com.
- Location:
- /packages/acs-api-browser/www/display-sql.tcl
- Author:
- philg@mit.edu
- Created:
- 12/19/98
- CVS ID:
$Id: display-sql.tcl,v 1.11 2018/05/09 15:33:28 hectorr Exp $
Related Files
[ show source ]