|
31 | 31 | from lib.core.convert import getConsoleLength |
32 | 32 | from lib.core.convert import getText |
33 | 33 | from lib.core.convert import getUnicode |
| 34 | +from lib.core.convert import htmlEscape |
34 | 35 | from lib.core.data import conf |
35 | 36 | from lib.core.data import kb |
36 | 37 | from lib.core.data import logger |
@@ -557,7 +558,7 @@ def dbTableValues(self, tableValues): |
557 | 558 | else: |
558 | 559 | dataToDumpFile(dumpFP, "%s%s" % (safeCSValue(column), conf.csvDel)) |
559 | 560 | elif conf.dumpFormat == DUMP_FORMAT.HTML: |
560 | | - dataToDumpFile(dumpFP, "<th>%s</th>" % getUnicode(cgi.escape(column).encode("ascii", "xmlcharrefreplace"))) |
| 561 | + dataToDumpFile(dumpFP, "<th>%s</th>" % getUnicode(htmlEscape(column).encode("ascii", "xmlcharrefreplace"))) |
561 | 562 |
|
562 | 563 | field += 1 |
563 | 564 |
|
@@ -629,7 +630,7 @@ def dbTableValues(self, tableValues): |
629 | 630 | else: |
630 | 631 | dataToDumpFile(dumpFP, "%s%s" % (safeCSValue(value), conf.csvDel)) |
631 | 632 | elif conf.dumpFormat == DUMP_FORMAT.HTML: |
632 | | - dataToDumpFile(dumpFP, "<td>%s</td>" % getUnicode(cgi.escape(value).encode("ascii", "xmlcharrefreplace"))) |
| 633 | + dataToDumpFile(dumpFP, "<td>%s</td>" % getUnicode(htmlEscape(value).encode("ascii", "xmlcharrefreplace"))) |
633 | 634 |
|
634 | 635 | field += 1 |
635 | 636 |
|
|
0 commit comments