Enforce session master password encryption

This commit is contained in:
nuxsmin
2013-10-26 02:17:23 +02:00
parent 77eb7385ca
commit 16dacd4b14

View File

@@ -1235,7 +1235,7 @@ class SP_Users {
if ($showPass == TRUE) {
return $clearMasterPass;
} else {
$_SESSION['mPassPwd'] = uniqid();
$_SESSION['mPassPwd'] = SHA1(uniqid());
$sessionMasterPass = $crypt->mkCustomMPassEncrypt($_SESSION["mPassPwd"], $clearMasterPass);