From 0e7484e5c9e17e8eb21f5113774963605ddf1b87 Mon Sep 17 00:00:00 2001 From: cassio Date: Sun, 13 Sep 2015 12:40:58 +0100 Subject: bug fixes for authentication --- src/flog.php | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'src/flog.php') diff --git a/src/flog.php b/src/flog.php index 5eea441..5aef8e0 100644 --- a/src/flog.php +++ b/src/flog.php @@ -133,6 +133,9 @@ function DBLogInContest($name,$pass,$contest,$msg=true) { } $a = DBUserInfo($b["contestnumber"], $b["contestlocalsite"],$a['usernumber'],null,false); $_SESSION['usertable'] = $a; + $_SESSION['usertable']['usersession']=''; + $_SESSION['usertable']['userip']=''; + $p = myhash($a["userpassword"] . session_id()); $_SESSION['usertable']['userpassword'] = $p; if ($a["userpassword"] != "" && $p != $pass) { @@ -175,6 +178,8 @@ function DBLogInContest($name,$pass,$contest,$msg=true) { } } } + $_SESSION['usertable']['usersession']=session_id(); + $_SESSION['usertable']['userip']=$gip; $c = DBConnect(); $t = time(); if($a["usertype"] == "team" && $a["usermultilogin"] != "t" && $a["userpermitip"] == "") { -- cgit v1.2.3