From bcc5ccc4ea13ab4318f1c68d721100d6493ba1ab Mon Sep 17 00:00:00 2001 From: BodgeMaster <> Date: Tue, 31 Aug 2021 01:35:13 +0200 Subject: [PATCH] updated domain name as a temporary fix --- variable_grabbler.pass1.json | 2 +- variable_grabbler.pass2.json | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/variable_grabbler.pass1.json b/variable_grabbler.pass1.json index e70ad73..b6cf169 100644 --- a/variable_grabbler.pass1.json +++ b/variable_grabbler.pass1.json @@ -1,4 +1,4 @@ { "STYLESHEET":"", -"REQUIRE_LOGIN":"if (!$login) { header(\"Location: https:\/\/lostcave.ddnss.de%CONTENT_DIR%\/login\/\\?error=session\"); die(); }" +"REQUIRE_LOGIN":"if (!$login) { header(\"Location: https:\/\/threadr.lostcave.ddnss.de%CONTENT_DIR%\/login\/\\?error=session\"); die(); }" } diff --git a/variable_grabbler.pass2.json b/variable_grabbler.pass2.json index 0289b9a..ef01cb4 100644 --- a/variable_grabbler.pass2.json +++ b/variable_grabbler.pass2.json @@ -1,6 +1,6 @@ { -"CONTENT_DIR":"/common/threadr", -"NO_CHEAP_SESSION_STEALING":"if (isset($_SESSION['user_id'])) {if ($_SESSION['user_ip']!=$_SERVER['REMOTE_ADDR'] || $_SESSION['user_http_user_agent']!=$_SERVER['HTTP_USER_AGENT']){ $_SESSION = array(); if (ini_get(\"session.use_cookies\")){ $params = session_get_cookie_params(); setcookie(session_name(), '', time() - 42000, $params[\"path\"], $params[\"domain\"], $params[\"secure\"], $params[\"httponly\"]); } session_destroy(); header(\"Location: https://lostcave.ddnss.de/common/threadr/login/\\?error=session\"); die();}}", +"CONTENT_DIR":"/threadr", +"NO_CHEAP_SESSION_STEALING":"if (isset($_SESSION['user_id'])) {if ($_SESSION['user_ip']!=$_SERVER['REMOTE_ADDR'] || $_SESSION['user_http_user_agent']!=$_SERVER['HTTP_USER_AGENT']){ $_SESSION = array(); if (ini_get(\"session.use_cookies\")){ $params = session_get_cookie_params(); setcookie(session_name(), '', time() - 42000, $params[\"path\"], $params[\"domain\"], $params[\"secure\"], $params[\"httponly\"]); } session_destroy(); header(\"Location: https://threadr.lostcave.ddnss.de/threadr/login/\\?error=session\"); die();}}", "SET_LOGIN_VARIABLE":"if (isset($_SESSION['user_id'])) { $login = true; } else { $login = false; }", "PLEAZE_NO_CACHE":"header('Cache-Control: no-cache, no-store, must-revalidate');header('Pragma: no-cache');header('Expires: 0');", "FORCE_LOGOUT":"$_SESSION = array(); if (ini_get('session.use_cookies')) { $params = session_get_cookie_params(); setcookie(session_name(), '', time() - 42000, $params['path'], $params['domain'], $params['secure'], $params['httponly']);} session_destroy();",