aboutsummaryrefslogtreecommitdiffstats
path: root/phpBB/phpbb/auth/provider/ldap.php
diff options
context:
space:
mode:
authorJoas Schilling <nickvergessen@gmx.de>2015-06-04 14:29:03 +0200
committerJoas Schilling <nickvergessen@gmx.de>2015-06-04 14:29:03 +0200
commit78b0c938a25316be1228c3e8117ef7dd859821d7 (patch)
tree09185fe335c921df042a1864e49d6e157d5e6c89 /phpBB/phpbb/auth/provider/ldap.php
parent9c84b3b5fb488aa2a04f521e4fc070531e0fa02b (diff)
downloadforums-78b0c938a25316be1228c3e8117ef7dd859821d7.tar
forums-78b0c938a25316be1228c3e8117ef7dd859821d7.tar.gz
forums-78b0c938a25316be1228c3e8117ef7dd859821d7.tar.bz2
forums-78b0c938a25316be1228c3e8117ef7dd859821d7.tar.xz
forums-78b0c938a25316be1228c3e8117ef7dd859821d7.zip
[ticket/sec-184] Do not output LDAP password to HTML
SECURITY-184
Diffstat (limited to 'phpBB/phpbb/auth/provider/ldap.php')
-rw-r--r--phpBB/phpbb/auth/provider/ldap.php3
1 files changed, 1 insertions, 2 deletions
diff --git a/phpBB/phpbb/auth/provider/ldap.php b/phpBB/phpbb/auth/provider/ldap.php
index c71950c698..c48b771ab0 100644
--- a/phpBB/phpbb/auth/provider/ldap.php
+++ b/phpBB/phpbb/auth/provider/ldap.php
@@ -289,7 +289,6 @@ class ldap extends \phpbb\auth\provider\base
/**
* {@inheritdoc}
*/
-
public function acp()
{
// These are fields required in the config table
@@ -308,7 +307,7 @@ class ldap extends \phpbb\auth\provider\base
'TEMPLATE_VARS' => array(
'AUTH_LDAP_BASE_DN' => $new_config['ldap_base_dn'],
'AUTH_LDAP_EMAIL' => $new_config['ldap_email'],
- 'AUTH_LDAP_PASSORD' => $new_config['ldap_password'],
+ 'AUTH_LDAP_PASSORD' => $new_config['ldap_password'] !== '' ? '********' : '',
'AUTH_LDAP_PORT' => $new_config['ldap_port'],
'AUTH_LDAP_SERVER' => $new_config['ldap_server'],
'AUTH_LDAP_UID' => $new_config['ldap_uid'],