mirror of
				https://bitbucket.org/jsuto/piler.git
				synced 2025-10-31 22:02:27 +01:00 
			
		
		
		
	Removed HTTP_REFERER check from index.php
Signed-off-by: Janos SUTO <sj@acts.hu>
This commit is contained in:
		| @@ -74,10 +74,6 @@ else if($session->get("four_eyes") == 1 && $request->get['route'] != 'login/logo | |||||||
| } | } | ||||||
| else if(Registry::get('username')) { | else if(Registry::get('username')) { | ||||||
|  |  | ||||||
|    // Check the Referer header which must be present after we are authenticated |  | ||||||
|    if(!isset($_SERVER['HTTP_REFERER'])) die("missing HTTP_REFERER"); |  | ||||||
|    if(strpos($_SERVER['HTTP_REFERER'], SITE_URL) === false) die("invalid HTTP_REFERER"); |  | ||||||
|  |  | ||||||
|    if(isset($request->get['route'])){ |    if(isset($request->get['route'])){ | ||||||
|       $action = new Router($request->get['route']); |       $action = new Router($request->get['route']); | ||||||
|    } |    } | ||||||
|   | |||||||
		Reference in New Issue
	
	Block a user