Explorar el Código

Fix OS remote code execution

Fixes #6
pull/36/head
Sindre Stephansen hace 5 años
padre
commit
593028b3fb
Se han modificado 1 ficheros con 2 adiciones y 6 borrados
  1. +2
    -6
      src/app/views/project.py

+ 2
- 6
src/app/views/project.py Ver fichero

@@ -64,14 +64,10 @@ class Project:
# Create the project directory if it doesnt exist
path = 'static/project' + data.projectid
if not os.path.isdir(path):
command = 'mkdir ' + path
os.popen(command)
sleep(0.2)
os.mkdir(path)
path = path + '/task' + data.taskid
if not os.path.isdir(path):
command = 'mkdir ' + path
os.popen(command)
sleep(0.2)
os.mkdir(path)
open(path + '/' + fn, 'wb').write(fileitem.file.read())
models.project.set_task_file(data.taskid, (path + "/" + fn))
except:


Cargando…
Cancelar
Guardar