mirror of
https://github.com/phpbb/phpbb.git
synced 2025-04-19 15:22:08 +02:00
Added stripslashes to unserialize ... not a good idea to change php.ini updating code
git-svn-id: file:///svn/phpbb/trunk@218 89ea8834-ac86-4346-8a33-228a782c2dd0
This commit is contained in:
parent
085a3b07e9
commit
9c16714d85
@ -34,7 +34,7 @@ function session_begin($user_id, $user_ip, $page_id, $session_length, $login = F
|
||||
global $cookiename, $cookiedomain, $cookiepath, $cookiesecure, $cookielife;
|
||||
global $HTTP_COOKIE_VARS;
|
||||
|
||||
$cookiedata = unserialize($HTTP_COOKIE_VARS[$cookiename]);
|
||||
$cookiedata = unserialize(stripslashes($HTTP_COOKIE_VARS[$cookiename]));
|
||||
$current_time = time();
|
||||
$expiry_time = $current_time - $session_length;
|
||||
$int_ip = encode_ip($user_ip);
|
||||
@ -148,7 +148,7 @@ function session_pagestart($user_ip, $thispage_id, $session_length)
|
||||
global $cookiename, $cookiedomain, $cookiepath, $cookiesecure, $cookielife;
|
||||
global $HTTP_COOKIE_VARS;
|
||||
|
||||
$cookiedata = unserialize($HTTP_COOKIE_VARS[$cookiename]);
|
||||
$cookiedata = unserialize(stripslashes($HTTP_COOKIE_VARS[$cookiename]));
|
||||
$current_time = time();
|
||||
$int_ip = encode_ip($user_ip);
|
||||
unset($userdata);
|
||||
@ -336,7 +336,7 @@ function session_end($session_id, $user_id)
|
||||
global $cookiename, $cookiedomain, $cookiepath, $cookiesecure, $cookielife;
|
||||
global $HTTP_COOKIE_VARS;
|
||||
|
||||
$cookiedata = unserialize($HTTP_COOKIE_VARS[$cookiename]);
|
||||
$cookiedata = unserialize(stripslashes($HTTP_COOKIE_VARS[$cookiename]));
|
||||
$current_time = time();
|
||||
|
||||
$sql = "UPDATE ".SESSIONS_TABLE."
|
||||
|
Loading…
x
Reference in New Issue
Block a user