Advertisement
Guest User

j_angliss

a guest
May 12th, 2010
205
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Diff 1.72 KB | None | 0 0
  1. --- plugins/change_sqlpass/functions.php  2009-09-04 06:23:05.000000000 -0700
  2. +++ plugins/change_sqlpass/functions.php       2010-05-12 06:36:16.000000000 -0700
  3. @@ -27,6 +27,7 @@
  4.     define('PASSWORD_ENCRYPTION_MD5', 'MD5');
  5.  
  6.  
  7. +
  8.  /**
  9.    * Include Pear DB class
  10.    *
  11. @@ -473,7 +474,7 @@
  12.     sqgetGlobalVar('csp_was_already_encrypted_port', $csp_was_already_encrypted_port, SQ_SESSION);
  13.     sqgetGlobalVar('HTTP_HOST', $HTTP_HOST, SQ_SERVER);
  14.     if (empty($base_uri)) $base_uri = sqm_baseuri();
  15. -   $loc = $base_uri . 'src/options.php?optpage=xx&optmode=submit&csp_change_success=no';
  16. +   $loc = $base_uri . 'src/options.php?optpage=xx&optmode=submit&csp_change_success=no&smtoken=' . sm_generate_security_token();
  17.     if ($csp_was_already_encrypted_port == 443)
  18.        $cancel_location = 'https://' . $HTTP_HOST . $loc;
  19.     else if ($csp_was_already_encrypted_port)
  20. @@ -537,6 +538,7 @@
  21.        <tr>
  22.           <td align="right" colspan="2">
  23.              <input type="hidden" name="csp_submit_change" value="1">
  24. +            <input type="hidden" name="smtoken" value="<?php echo sm_generate_security_token(); ?>">
  25.              <input type="submit" value="<?php echo _("Submit"); ?>">
  26.  
  27.  
  28. @@ -926,7 +928,7 @@
  29.           if (!empty($csp_was_force_mode))
  30.              $loc = $base_uri . 'src/right_main.php';
  31.           else
  32. -            $loc = $base_uri . 'src/options.php?optpage=xx&optmode=submit&csp_change_success=yes';
  33. +            $loc = $base_uri . 'src/options.php?optpage=xx&optmode=submit&csp_change_success=yes&smtoken=' . sm_generate_security_token();
  34.           if ($csp_was_already_encrypted_port == 443)
  35.              $redirect_location = 'https://' . $HTTP_HOST . $loc;
  36.           else if ($csp_was_already_encrypted_port)
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement