From d433043ff746966d4f821bde58f87e7a6b6df4be Mon Sep 17 00:00:00 2001 From: jakubvrana Date: Wed, 11 Jul 2007 08:19:41 +0000 Subject: [PATCH] Don't regenerate token with invalid login git-svn-id: https://adminer.svn.sourceforge.net/svnroot/adminer/trunk@115 7c3ca157-0c34-0410-bff1-cbf682f78f5c --- auth.inc.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/auth.inc.php b/auth.inc.php index 41e9ab83..3806d71d 100644 --- a/auth.inc.php +++ b/auth.inc.php @@ -30,7 +30,7 @@ if (isset($_POST["server"])) { } if (!isset($_SESSION["usernames"][$_GET["server"]]) || !$mysql->connect($_GET["server"], $_SESSION["usernames"][$_GET["server"]], $_SESSION["passwords"][$_GET["server"]])) { - if ($_POST["token"]) { + if ($_POST["token"] && !isset($_SESSION["usernames"][$_GET["server"]])) { $_POST["token"] = token(); } page_header(lang('Login'));