From 48bf7db71c673d29bdb64af0d6d08b13dfbbae23 Mon Sep 17 00:00:00 2001 From: Dries Buytaert Date: Fri, 6 Jun 2003 20:52:21 +0000 Subject: - Bugfix: removed redundant check_input()s such that quotes are handled properly. You couldn't use a username or passwords that had quotes. --- modules/user.module | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) (limited to 'modules/user.module') diff --git a/modules/user.module b/modules/user.module index c794a8e57..94fc94ff2 100644 --- a/modules/user.module +++ b/modules/user.module @@ -533,8 +533,8 @@ function user_login($edit = array(), $msg = "") { */ if (!$user) { - $name = check_input($edit["name"]); - $pass = check_input($edit["pass"]); + $name = $edit["name"]; + $pass = $edit["pass"]; $user = user_load(array("name" => $name, "pass" => $pass, "status" => 1)); } @@ -543,11 +543,11 @@ function user_login($edit = array(), $msg = "") { */ if ($server = strrchr($edit["name"], "@")) { - $name = check_input(substr($edit["name"], 0, strlen($edit["name"]) - strlen($server))); - $server = check_input(substr($server, 1)); - $pass = check_input($edit["pass"]); + $name = substr($edit["name"], 0, strlen($edit["name"]) - strlen($server)); + $server = substr($server, 1); + $pass = $edit["pass"]; } - + /* ** When possible, determine corrosponding external auth source. Invoke source, and login user if successful: */ -- cgit v1.2.3