Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP
Browse files

Fix

  • Loading branch information...
commit 93bfe6f098c7e070bcb4f919323820adbd9f1099 1 parent 7c9f748
Hans Pinckaers authored
Showing with 4 additions and 3 deletions.
  1. +4 −3 raw/user_info.php
7 raw/user_info.php
View
@@ -73,6 +73,7 @@ function base64url_decode($data) {
$pwd = $geheim->decrypt($_SESSION['pwd'], $key);
}
else {
+
$forbidden_characters = array(" ", '"', "'", "&", "/", "\\", "?", "#", ".");
if($_POST['cookie'] != "")
@@ -91,11 +92,11 @@ function base64url_decode($data) {
$_SESSION['user'] = base64url_encode($_POST['user'], $key);
$_SESSION['pwd'] = base64url_encode($_POST['pwd'], $key);
}
-
- $user = str_replace($forbidden_characters, '_', strtolower($geheim->decrypt($_SESSION['user'], $key)));
+
+ $user = str_replace($forbidden_characters, '_', strtolower(base64url_decode($_SESSION['user'], $key)));
$pwd = base64url_decode($_SESSION['pwd'], $key);
}
-
+
if((!isset($user) || $user == "") && !$logout){
setcookie ("user", "", time() - 3600 - 3600- 3600);
setcookie ("pwd", "", time() - 3600- 3600- 3600);
Please sign in to comment.
Something went wrong with that request. Please try again.