PEAK XOOPS - Re: Auto-Login redirect page in englishin japanese

Re: Auto-Login redirect page

List posts in the topic

question Re: Auto-Login redirect page

msg# 1.1
depth:
1
Previous post - Next post | Parent - Children.1 | Posted on 2005/4/4 17:44
GIJOE  ÀèǤ·³Áâ   Posts: 4110
hi marcan.
I'm sorry that my answer is too late.

I know the redirection is not so convinience.

If there are no CSRF vulnerable code in core and modules, the 4 lines should be commeted-out.
But I have to say the core of 2.0.9.2 is not secure enough against CSRF attack.

But!

I'm glad to hear core team adopt token system in 2.0.10 and after.

Thus, the redirection will be eliminated in autologin-hack for 2.0.10 and after
Votes:5 Average:0.00

Posts tree

  Advanced search


Login
Username or e-mail:

Password:

Remember Me

Lost Password?

Register now!