From 80864fa7ee6e1d7e76a1f490d186fb9a7f5b1162 Mon Sep 17 00:00:00 2001 From: Ludovic Arnaud Date: Thu, 17 Oct 2002 02:50:50 +0000 Subject: Random bugfixes, (hopefully) improved admin panel security. git-svn-id: file:///svn/phpbb/trunk@2954 89ea8834-ac86-4346-8a33-228a782c2dd0 --- phpBB/common.php | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) (limited to 'phpBB/common.php') diff --git a/phpBB/common.php b/phpBB/common.php index ccc468c451..fe1ff62a12 100644 --- a/phpBB/common.php +++ b/phpBB/common.php @@ -24,7 +24,8 @@ if ( !defined('IN_PHPBB') ) die('Hacking attempt'); } -error_reporting (E_ERROR | E_WARNING | E_PARSE); // This will NOT report uninitialized variables +error_reporting(E_ERROR | E_WARNING | E_PARSE); // This will NOT report uninitialized variables +//error_reporting(E_ALL); set_magic_quotes_runtime(0); require($phpbb_root_path . 'config.'.$phpEx); @@ -149,7 +150,7 @@ $template = new Template(); $db = new sql_db($dbhost, $dbuser, $dbpasswd, $dbname, $dbport, false); // Obtain users IP -if ( $_SERVER['HTTP_X_FORWARDED_FOR'] != '' || $_ENV['HTTP_X_FORWARDED_FOR'] != '' ) +if (!empty($_SERVER['HTTP_X_FORWARDED_FOR']) || !empty($_ENV['HTTP_X_FORWARDED_FOR'])) { $user_ip = ( !empty($_SERVER['REMOTE_ADDR']) ) ? $_SERVER['REMOTE_ADDR'] : ( ( !empty($_ENV['REMOTE_ADDR']) ) ? $_ENV['REMOTE_ADDR'] : $REMOTE_ADDR ); $x_ip = ( !empty($_SERVER['HTTP_X_FORWARDED_FOR']) ) ? $_SERVER['HTTP_X_FORWARDED_FOR'] : $_ENV['HTTP_X_FORWARDED_FOR']; -- cgit v1.2.1