Plugin Directory

Changeset 3401818


Ignore:
Timestamp:
11/24/2025 12:00:49 PM (7 weeks ago)
Author:
andy_moyle
Message:

tweak

Location:
emergency-password-reset
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • emergency-password-reset/tags/9.3/index.php

    r3401804 r3401818  
    1818{
    1919    add_submenu_page('users.php', 'Emergency Password Reset', 'Emergency Password Reset', 'manage_options', 'emergency_password_reset_main', 'emergency_password_reset_main' );
    20     add_submenu_page('options-general.php', 'Reset SALTS', 'Reset SALTs', 'manage_option', 'emergency_password_reset/index.php', 'emergency_password_reset_salts' );
     20    add_submenu_page('options-general.php', 'Reset SALTS', 'Reset SALTs', 'manage_options', 'emergency_password_reset/index.php', 'emergency_password_reset_salts' );
    2121}
    2222
     
    4646        echo'<h2>Emergency Password Reset Main</h2>';
    4747        echo'<p><form class="right" action="https://www.paypal.com/cgi-bin/webscr" method="post"><input type="hidden" name="cmd" value="_s-xclick"><input type="hidden" name="hosted_button_id" value="R7YWSEHFXEU52"><input type="submit"  name="submit" value="Donate via Paypal" class="button-primary"></form></p>';
    48         if(!empty($_POST['epr-settings']) && wp_verify_nonce('emergency_reset','emergency_reset'))
     48        if(!empty($_POST['epr-settings']) && wp_verify_nonce($_POST['emergency_reset'],'emergency_reset'))
    4949        {
    5050            if(!empty($_POST['email_subject']))
     
    153153function emergency_password_reset_salts()
    154154{
     155    if( empty($_POST['salt-reset']) || !wp_verify_nonce($_POST['salt-reset'],'salt-reset')){
     156        echo'<h2>Reset SALTS</h2>';
     157        echo'<p><form action="" method="POST">';
     158        wp_nonce_field('salt-reset','salt-reset');
     159        echo'<input type="submit" class="button-primary" value="Reset SALTS"></form></p>';
     160        return;
     161    }
     162    check_admin_referer('salt-reset','salt-reset');
    155163    if(!is_user_logged_in()){exit('Uh huh!');}
    156164    if(!current_user_can('manage_options')){exit('Uh huh!');}
  • emergency-password-reset/trunk/index.php

    r3401804 r3401818  
    1818{
    1919    add_submenu_page('users.php', 'Emergency Password Reset', 'Emergency Password Reset', 'manage_options', 'emergency_password_reset_main', 'emergency_password_reset_main' );
    20     add_submenu_page('options-general.php', 'Reset SALTS', 'Reset SALTs', 'manage_option', 'emergency_password_reset/index.php', 'emergency_password_reset_salts' );
     20    add_submenu_page('options-general.php', 'Reset SALTS', 'Reset SALTs', 'manage_options', 'emergency_password_reset/index.php', 'emergency_password_reset_salts' );
    2121}
    2222
     
    4646        echo'<h2>Emergency Password Reset Main</h2>';
    4747        echo'<p><form class="right" action="https://www.paypal.com/cgi-bin/webscr" method="post"><input type="hidden" name="cmd" value="_s-xclick"><input type="hidden" name="hosted_button_id" value="R7YWSEHFXEU52"><input type="submit"  name="submit" value="Donate via Paypal" class="button-primary"></form></p>';
    48         if(!empty($_POST['epr-settings']) && wp_verify_nonce('emergency_reset','emergency_reset'))
     48        if(!empty($_POST['epr-settings']) && wp_verify_nonce($_POST['emergency_reset'],'emergency_reset'))
    4949        {
    5050            if(!empty($_POST['email_subject']))
     
    153153function emergency_password_reset_salts()
    154154{
     155    if( empty($_POST['salt-reset']) || !wp_verify_nonce($_POST['salt-reset'],'salt-reset')){
     156        echo'<h2>Reset SALTS</h2>';
     157        echo'<p><form action="" method="POST">';
     158        wp_nonce_field('salt-reset','salt-reset');
     159        echo'<input type="submit" class="button-primary" value="Reset SALTS"></form></p>';
     160        return;
     161    }
     162    check_admin_referer('salt-reset','salt-reset');
    155163    if(!is_user_logged_in()){exit('Uh huh!');}
    156164    if(!current_user_can('manage_options')){exit('Uh huh!');}
Note: See TracChangeset for help on using the changeset viewer.