Skip to content
Snippets Groups Projects
Commit 52dc94b8 authored by Robin Wood's avatar Robin Wood
Browse files

fixing up undefined and double defined variables

parent 1d4136af
No related branches found
No related tags found
No related merge requests found
......@@ -6,7 +6,9 @@ This file contains all of the code to setup the initial MySQL database. (setup.p
*/
if( !defined( 'DVWA_WEB_PAGE_TO_ROOT' ) ) {
define( 'DVWA_WEB_PAGE_TO_ROOT', '../../../' );
}
if( !@($GLOBALS["___mysqli_ston"] = mysqli_connect( $_DVWA[ 'db_server' ], $_DVWA[ 'db_user' ], $_DVWA[ 'db_password' ] )) ) {
dvwaMessagePush( "Could not connect to the MySQL service.<br />Please check the config file." );
......
......@@ -9,7 +9,13 @@ dvwaDatabaseConnect();
if( isset( $_POST[ 'Login' ] ) ) {
// Anti-CSRF
checkToken( $_REQUEST[ 'user_token' ], $_SESSION[ 'session_token' ], 'login.php' );
if (array_key_exists ("session_token", $_SESSION)) {
$session_token = $_SESSION[ 'session_token' ];
} else {
$session_token = "";
}
checkToken( $_REQUEST[ 'user_token' ], $session_token, 'login.php' );
$user = $_POST[ 'username' ];
$user = stripslashes( $user );
......
......@@ -11,7 +11,13 @@ $page[ 'page_id' ] = 'setup';
if( isset( $_POST[ 'create_db' ] ) ) {
// Anti-CSRF
checkToken( $_REQUEST[ 'user_token' ], $_SESSION[ 'session_token' ], 'setup.php' );
if (array_key_exists ("session_token", $_SESSION)) {
$session_token = $_SESSION[ 'session_token' ];
} else {
$session_token = "";
}
checkToken( $_REQUEST[ 'user_token' ], $session_token, 'setup.php' );
if( $DBMS == 'MySQL' ) {
include_once DVWA_WEB_PAGE_TO_ROOT . 'dvwa/includes/DBMS/MySQL.php';
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please to comment