Yoshihisa Fukuhara
higef****@users*****
2006年 4月 6日 (木) 17:21:32 JST
Index: affelio/apps/diary/Diary/WriteComment.pm
diff -u affelio/apps/diary/Diary/WriteComment.pm:1.4 affelio/apps/diary/Diary/WriteComment.pm:1.5
--- affelio/apps/diary/Diary/WriteComment.pm:1.4 Thu Apr 6 10:36:18 2006
+++ affelio/apps/diary/Diary/WriteComment.pm Thu Apr 6 17:21:31 2006
@@ -57,7 +57,7 @@
my $id = $wi->PTN_num($cgi->param("id"));
my $sub_mode = $wi->PTN_mode($cgi->param("action"));
my $comment = $cgi->param("comment");
- my $visitor_name = $wi->PTN_word($cgi->param("visitor_name"));
+ my $visitor_name = $cgi->param("visitor_name");
$diary->errorExit('An article number was not specified') if (!$id);
$diary->errorExit("The specified article does not exist") unless $diary->existsEntry($id);
my $user = $diary->{afap}->get_visitor_info("nickname");
@@ -115,7 +115,7 @@
my $id = $diary->escape(shift, 'int');
my $user = shift;
my $comment = $diary->escape(shift);
- my $visitor_name = shift;
+ my $visitor_name = $diary->escape(shift);
my $time = time;
my @same = $diary->getall("SELECT id FROM $diary->{comment_table} WHERE user = '$user' AND comment = '$comment'");