/usr/share/routino/www/search.cgi is in routino-www 3.0-3.
This file is owned by root:root, with mode 0o755.
The actual contents of the file can be viewed below.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 | #!/usr/bin/perl
#
# Routino search results retrieval CGI
#
# Part of the Routino routing software.
#
# This file Copyright 2012-2014 Andrew M. Bishop
#
# This program is free software: you can redistribute it and/or modify
# it under the terms of the GNU Affero General Public License as published by
# the Free Software Foundation, either version 3 of the License, or
# (at your option) any later version.
#
# This program is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
# GNU Affero General Public License for more details.
#
# You should have received a copy of the GNU Affero General Public License
# along with this program. If not, see <http://www.gnu.org/licenses/>.
#
use strict;
# Use the generic search script
require "search.pl";
# Use the perl CGI module
use CGI ':cgi';
# Create the query and get the parameters
my $query=new CGI;
my @rawparams=$query->param;
# Legal CGI parameters with regexp validity check
my %legalparams=(
"marker" => "[0-9]+",
"lonmin" => "[-0-9.]+",
"lonmax" => "[-0-9.]+",
"latmax" => "[-0-9.]+",
"latmin" => "[-0-9.]+",
"search" => ".+"
);
# Validate the CGI parameters, ignore invalid ones
my %cgiparams=();
foreach my $key (@rawparams)
{
foreach my $test (keys (%legalparams))
{
if($key =~ m%^$test$%)
{
my $value=$query->param($key);
if($value =~ m%^$legalparams{$test}$%)
{
$cgiparams{$key}=$value;
last;
}
}
}
}
# Parse the parameters
my $marker=$cgiparams{marker};
my $search=$cgiparams{search};
my $lonmin=$cgiparams{lonmin};
my $lonmax=$cgiparams{lonmax};
my $latmax=$cgiparams{latmax};
my $latmin=$cgiparams{latmin};
# Run the search
my($search_time,$search_message,@places)=RunSearch($search,$lonmin,$lonmax,$latmax,$latmin);
# Return the output
print header(-type=>'text/plain',-charset=>'utf-8');
print "$marker\n";
print "$search_time\n";
print "$search_message\n";
foreach my $place (@places)
{
print "$place\n";
}
|