mirror of
https://github.com/Piwigo/Piwigo.git
synced 2025-04-29 20:59:59 +03:00
Improve security of sessions:
- use only cookies to store session id on client side - use default php session system with database handler to store sessions on server side git-svn-id: http://piwigo.org/svn/trunk@1004 68402e56-0260-453c-a942-63ccdbb3a9ee
This commit is contained in:
parent
b223bb495d
commit
c3397a2c73
43 changed files with 252 additions and 354 deletions
|
@ -81,7 +81,7 @@ function create_navigation_bar($url, $nb_element, $start,
|
|||
if ($cur_page != 1)
|
||||
{
|
||||
$navbar.= '<a href="';
|
||||
$navbar.= add_session_id($url.'&start=0');
|
||||
$navbar.= $url.'&start=0';
|
||||
$navbar.= '" class="'.$link_class.'">'.$lang['first_page'];
|
||||
$navbar.= '</a>';
|
||||
}
|
||||
|
@ -95,7 +95,7 @@ function create_navigation_bar($url, $nb_element, $start,
|
|||
{
|
||||
$previous = $start - $nb_element_page;
|
||||
$navbar.= '<a href="';
|
||||
$navbar.= add_session_id( $url.'&start='.$previous );
|
||||
$navbar.= $url.'&start='.$previous;
|
||||
$navbar.= '" class="'.$link_class.'">'.$lang['previous_page'];
|
||||
$navbar.= '</a>';
|
||||
}
|
||||
|
@ -108,7 +108,7 @@ function create_navigation_bar($url, $nb_element, $start,
|
|||
if ($cur_page > $pages_around + 1)
|
||||
{
|
||||
$navbar.= ' <a href="';
|
||||
$navbar.= add_session_id($url.'&start=0');
|
||||
$navbar.= $url.'&start=0';
|
||||
$navbar.= '" class="'.$link_class.'">1</a>';
|
||||
if ($cur_page > $pages_around + 2)
|
||||
{
|
||||
|
@ -129,7 +129,7 @@ function create_navigation_bar($url, $nb_element, $start,
|
|||
{
|
||||
$temp_start = ($i - 1) * $nb_element_page;
|
||||
$navbar.= ' <a href="';
|
||||
$navbar.= add_session_id($url.'&start='.$temp_start);
|
||||
$navbar.= $url.'&start='.$temp_start;
|
||||
$navbar.= '" class="'.$link_class.'">'.$i.'</a>';
|
||||
}
|
||||
else
|
||||
|
@ -147,7 +147,7 @@ function create_navigation_bar($url, $nb_element, $start,
|
|||
$navbar.= ' ...';
|
||||
}
|
||||
$navbar.= ' <a href="';
|
||||
$navbar.= add_session_id($url.'&start='.$temp_start);
|
||||
$navbar.= $url.'&start='.$temp_start;
|
||||
$navbar.= '" class="'.$link_class.'">'.$maximum.'</a>';
|
||||
}
|
||||
|
||||
|
@ -158,7 +158,7 @@ function create_navigation_bar($url, $nb_element, $start,
|
|||
{
|
||||
$next = $start + $nb_element_page;
|
||||
$navbar.= '<a href="';
|
||||
$navbar.= add_session_id( $url.'&start='.$next );
|
||||
$navbar.= $url.'&start='.$next;
|
||||
$navbar.= '" class="'.$link_class.'">'.$lang['next_page'].'</a>';
|
||||
}
|
||||
else
|
||||
|
@ -172,7 +172,7 @@ function create_navigation_bar($url, $nb_element, $start,
|
|||
{
|
||||
$temp_start = ($maximum - 1) * $nb_element_page;
|
||||
$navbar.= '<a href="';
|
||||
$navbar.= add_session_id($url.'&start='.$temp_start);
|
||||
$navbar.= $url.'&start='.$temp_start;
|
||||
$navbar.= '" class="'.$link_class.'">'.$lang['last_page'];
|
||||
$navbar.= '</a>';
|
||||
}
|
||||
|
@ -241,7 +241,7 @@ function get_cat_display_name($cat_informations,
|
|||
else
|
||||
{
|
||||
$output.= '<a class=""';
|
||||
$output.= ' href="'.add_session_id(PHPWG_ROOT_PATH.$url.$id).'">';
|
||||
$output.= ' href="'.PHPWG_ROOT_PATH.$url.$id.'">';
|
||||
$output.= $name.'</a>';
|
||||
}
|
||||
}
|
||||
|
@ -310,7 +310,7 @@ SELECT id,name
|
|||
{
|
||||
$output.= '
|
||||
<a class=""
|
||||
href="'.add_session_id(PHPWG_ROOT_PATH.$url.$category_id).'">'.$name.'</a>';
|
||||
href="'.PHPWG_ROOT_PATH.$url.$category_id.'">'.$name.'</a>';
|
||||
}
|
||||
}
|
||||
if ($replace_space)
|
||||
|
@ -369,7 +369,7 @@ function get_html_menu_category($categories)
|
|||
}
|
||||
$menu.= '>';
|
||||
|
||||
$url = add_session_id(PHPWG_ROOT_PATH.'category.php?cat='.$category['id']);
|
||||
$url = PHPWG_ROOT_PATH.'category.php?cat='.$category['id'];
|
||||
$menu.= "\n".'<a href="'.$url.'">'.$category['name'].'</a>';
|
||||
|
||||
if ($category['nb_images'] > 0)
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue