diff options
author | robocoder <anthon.pang@gmail.com> | 2011-07-07 14:25:09 +0400 |
---|---|---|
committer | robocoder <anthon.pang@gmail.com> | 2011-07-07 14:25:09 +0400 |
commit | b75d922f4d30b14200c202e838f56597b5fdd1c3 (patch) | |
tree | 94d30138272a70c86bb6ff5749256c9b9a2cd53f /plugins/Login | |
parent | 897cb4c5beac0f74125bc9897a4f6e52ac3bc5ef (diff) |
refs #308 - mb.func_override friendly
git-svn-id: http://dev.piwik.org/svn/trunk@5003 59fd770c-687e-43c8-a1e3-f5a4ff64c105
Diffstat (limited to 'plugins/Login')
-rw-r--r-- | plugins/Login/Controller.php | 6 |
1 files changed, 3 insertions, 3 deletions
diff --git a/plugins/Login/Controller.php b/plugins/Login/Controller.php index d6679b249e..f72d56a36b 100644 --- a/plugins/Login/Controller.php +++ b/plugins/Login/Controller.php @@ -27,10 +27,10 @@ class Piwik_Login_Controller extends Piwik_Controller private function generateHash($userInfo, $password) { // mitigate rainbow table attack - $password = str_split($password, (strlen($password)/2)+1); + $passwordLen = strlen($password) / 2; $hash = Piwik_Common::hash( - $userInfo . $password[0] - . Piwik_Common::getSalt() . $password[1] + $userInfo . substr($password, 0, $passwordLen) + . Piwik_Common::getSalt() . substr($password, $passwordLen) ); return $hash; } |