diff --git a/files/open_file.php b/files/open_file.php index e1b82dcd37..b91f72aaf3 100644 --- a/files/open_file.php +++ b/files/open_file.php @@ -30,6 +30,7 @@ if(strstr($file,'..') or strstr($dir,'..')){ die(); } $filename=$dir.'/'.$file; +$filename=stripslashes($filename); $ftype=OC_FILESYSTEM::getMimeType($filename); ob_end_clean(); header('Content-Type: '.$ftype);