[geeklog-cvs] Geeklog-1.x/public_html/admin trackback.php, 1.52, 1.53

Dirk Haun dhaun at qs1489.pair.com
Fri May 23 07:23:45 EDT 2008


Update of /cvsroot/geeklog/Geeklog-1.x/public_html/admin
In directory qs1489.pair.com:/tmp/cvs-serv29565/public_html/admin

Modified Files:
	trackback.php 
Log Message:
More CSRF protection


Index: trackback.php
===================================================================
RCS file: /cvsroot/geeklog/Geeklog-1.x/public_html/admin/trackback.php,v
retrieving revision 1.52
retrieving revision 1.53
diff -C2 -d -r1.52 -r1.53
*** trackback.php	18 May 2008 16:58:51 -0000	1.52
--- trackback.php	23 May 2008 11:23:43 -0000	1.53
***************
*** 876,880 ****
  }
  
! if ($mode == 'delete') {
      $cid = COM_applyFilter($_REQUEST['cid'], true);
      if ($cid > 0) {
--- 876,880 ----
  }
  
! if (($mode == 'delete') && SEC_checkToken()) {
      $cid = COM_applyFilter($_REQUEST['cid'], true);
      if ($cid > 0) {




More information about the geeklog-cvs mailing list