Password Reset: Always set valid domain session var.

This commit is contained in:
Nate
2019-02-28 22:13:54 -07:00
parent dd0ae9c41f
commit 12726e4289

View File

@@ -53,9 +53,7 @@
//set flag
if ($username != '' && $domain_uuid == $_SESSION['domain_uuid'] && $password_submitted == $password_current) {
$password_reset = true;
if (!isset($_SESSION['valid_username']) || $_SESSION['valid_username'] == '') {
$_SESSION['valid_username'] = $username;
}
$_SESSION['valid_username'] = $username;
}
else {
header("Location: /login.php");