diff --git a/app/contacts/contact_addresses.php b/app/contacts/contact_addresses.php index 54a17dc762..9411a4de7a 100644 --- a/app/contacts/contact_addresses.php +++ b/app/contacts/contact_addresses.php @@ -17,7 +17,7 @@ The Initial Developer of the Original Code is Mark J Crane - Portions created by the Initial Developer are Copyright (C) 2008-2018 + Portions created by the Initial Developer are Copyright (C) 2008-2019 the Initial Developer. All Rights Reserved. Contributor(s): @@ -88,11 +88,18 @@ foreach($result as $row) { $map_query = escape($row['address_street'])." ".escape($row['address_extended']).", ".escape($row['address_locality']).", ".escape($row['address_region']).", ".escape($row['address_region']).", ".escape($row['address_postal_code']); if (permission_exists('contact_address_edit')) { - $tr_link = "href='contact_address_edit.php?contact_uuid=".escape($row['contact_uuid'])."&id=".escape($row['contact_address_uuid'])."'"; + $tr_link = "href='contact_address_edit.php?contact_uuid=".urlencode($row['contact_uuid'])."&id=".escape($row['contact_address_uuid'])."'"; } echo "\n"; echo " ".escape($row['address_label'])." \n"; - echo " ".escape($row['address_street'])." \n"; + $address=''; + if ($row['address_extended'] != '') { + $address= escape($row['address_street'])." ".escape($row['address_extended']); + } + else { + $address= escape($row['address_street']); + } + echo " ".$address." \n"; echo " ".escape($row['address_locality']).(($row['address_locality'] != '' && $row['address_region'] != '') ? ", " : null).escape($row['address_region'])." \n"; echo " ".escape($row['address_country'])." \n"; echo " \n"; @@ -101,10 +108,10 @@ echo " ".escape($row['address_description'])." \n"; echo " "; if (permission_exists('contact_address_edit')) { - echo "$v_link_label_edit"; + echo "$v_link_label_edit"; } if (permission_exists('contact_address_delete')) { - echo "$v_link_label_delete"; + echo "$v_link_label_delete"; } echo " \n"; echo "\n";