diff --git a/app/voicemails/voicemail_edit.php b/app/voicemails/voicemail_edit.php index 02d58ad2ac..767cbd1a22 100644 --- a/app/voicemails/voicemail_edit.php +++ b/app/voicemails/voicemail_edit.php @@ -432,7 +432,7 @@ if (count($_POST) > 0 && strlen($_POST["persistformvar"]) == 0) { if ($greeting_count > 0) { foreach ($greetings as $greeting) { $selected = ($greeting['greeting_id'] == $greeting_id) ? 'selected' : null; - echo "\n"; + echo "\n"; } } echo " \n"; @@ -487,20 +487,20 @@ if (count($_POST) > 0 && strlen($_POST["persistformvar"]) == 0) { $voicemail_option_param = ucfirst(trim($voicemail_option_param)); echo " \n"; echo " \n"; - echo " ".$field['voicemail_option_digits']; + echo " ".escape($field['voicemail_option_digits']); echo " \n"; echo " \n"; - echo " ".$voicemail_option_param." \n"; + echo " ".escape($voicemail_option_param)." \n"; echo " \n"; echo " \n"; - echo " ".$field['voicemail_option_order']." \n"; + echo " ".escape($field['voicemail_option_order'])." \n"; echo " \n"; echo " \n"; - echo " ".$field['voicemail_option_description']." \n"; + echo " ".escape($field['voicemail_option_description'])." \n"; echo " \n"; echo " "; - echo "".$v_link_label_edit.""; - echo "".$v_link_label_delete.""; + echo "".$v_link_label_edit.""; + echo "".$v_link_label_delete.""; echo " \n"; echo " \n"; } @@ -649,9 +649,9 @@ if (count($_POST) > 0 && strlen($_POST["persistformvar"]) == 0) { echo " \n"; foreach($result as $field) { echo " \n"; - echo " \n"; + echo " \n"; echo " \n"; echo " \n"; $voicemail_uuid_copied[] = $field['voicemail_uuid_copy']; @@ -684,7 +684,7 @@ if (count($_POST) > 0 && strlen($_POST["persistformvar"]) == 0) { echo " \n"; $result = $prep_statement->fetchAll(PDO::FETCH_NAMED); foreach($result as $field) { - echo " \n"; + echo " \n"; } echo " "; echo " \n"; @@ -736,8 +736,8 @@ if (count($_POST) > 0 && strlen($_POST["persistformvar"]) == 0) { echo " \n"; } $http_referer = parse_url($_SERVER["HTTP_REFERER"]); - echo " \n"; - echo " \n"; + echo " \n"; + echo " \n"; echo "
"; if ($password_complexity == "true") { echo " ";
".$field['voicemail_id']."".escape($field['voicemail_id'])."\n"; - echo " ".escape($v_link_label_delete)."\n"; + echo " ".escape($v_link_label_delete)."\n"; echo "