diff options
Diffstat (limited to 'dhcp-listhosts-html.lsp')
-rw-r--r-- | dhcp-listhosts-html.lsp | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/dhcp-listhosts-html.lsp b/dhcp-listhosts-html.lsp index 6b92ecb..7a8dfd1 100644 --- a/dhcp-listhosts-html.lsp +++ b/dhcp-listhosts-html.lsp @@ -17,14 +17,14 @@ <%= html.link{value=page_info.script..page_info.prefix..page_info.controller.."/edithost?host="..host.."&redir="..page_info.orig_action, label="Edit "} %> <%= html.link{value=page_info.script..page_info.prefix..page_info.controller.."/delhost?host="..host, label="Delete "} %> </TD> - <TD style="white-space:nowrap;"><%= host %></TD> + <TD style="white-space:nowrap;"><%= html.html_escape(host) %></TD> </TR> <% end %> </TABLE> <dt>Add new host</dt> -<dd><form action="<%= page_info.script .. page_info.prefix .. page_info.controller .. "/createhost" %>" method="POST"> -<input class="hidden" type="hidden" name="redir" value="<%= page_info.orig_action %>" > +<dd><form action="<%= html.html_escape(page_info.script .. page_info.prefix .. page_info.controller .. "/createhost") %>" method="POST"> +<input class="hidden" type="hidden" name="redir" value="<%= html.html_escape(page_info.orig_action) %>" > <input type=submit value="New" class="submit"> </form></dd> </DL> |