Automatic admin login on incorrect username/password

Found a bug? Tell us!!
blog.brockha.us
Regular
Posts: 695
Joined: Tue Jul 03, 2007 3:34 am
Location: Berlin, Germany
Contact:

Post by blog.brockha.us »

I can't reproduce this with FF 2.0.0.6 and S9Y 1.3 following the steps written by Kibiyama. Can you reproduce this, Garvin?
- Grischa Brockhaus - http://blog.brockha.us
- Want to make me happy? http://wishes.brockha.us/
garvinhicking
Core Developer
Posts: 30022
Joined: Tue Sep 16, 2003 9:45 pm
Location: Cologne, Germany
Contact:

Post by garvinhicking »

Michele,

Once you deleted all your cookies, and NEVER agian log in with the "remember me" checkbox, thereshould be no problem. Temporary cookies will then be deleted upon close of the browser.

Regards,
Garvin
# Garvin Hicking (s9y Developer)
# Did I help you? Consider making me happy: http://wishes.garv.in/
# or use my PayPal account "paypal {at} supergarv (dot) de"
# My "other" hobby: http://flickr.garv.in/
blog.brockha.us
Regular
Posts: 695
Joined: Tue Jul 03, 2007 3:34 am
Location: Berlin, Germany
Contact:

Post by blog.brockha.us »

I'm allways using "remember me" and still can't reproduce it.. Hmm.. Strange..
- Grischa Brockhaus - http://blog.brockha.us
- Want to make me happy? http://wishes.brockha.us/
Michele2
Regular
Posts: 39
Joined: Mon Aug 06, 2007 11:19 pm

Post by Michele2 »

Clearing the cookies and not checking remember me seems to have stopped it.

I'm guessing that the code for the remember me function automatically is entering the username and password and submitting it? Perhaps it shouldn't submit it?
garvinhicking
Core Developer
Posts: 30022
Joined: Tue Sep 16, 2003 9:45 pm
Location: Cologne, Germany
Contact:

Post by garvinhicking »

I'm guessing that the code for the remember me function automatically is entering the username and password and submitting it? Perhaps it shouldn't submit it?
Exactly. That's what 'remember me' is for: That you don't need to login AGAIN- because once you login, s9y always remembers you. :)

Changing it is not necessary, you just shouldn't check it if you don't want it :-D

Regards,
Garvin
# Garvin Hicking (s9y Developer)
# Did I help you? Consider making me happy: http://wishes.garv.in/
# or use my PayPal account "paypal {at} supergarv (dot) de"
# My "other" hobby: http://flickr.garv.in/
Post Reply