From 4044a5fa5265cab619dd47e2000f90dc2e455fbe Mon Sep 17 00:00:00 2001 From: Andrew Dolgov Date: Tue, 22 Nov 2011 11:05:12 +0400 Subject: remove pointless escaping of the password (refs #392) --- modules/pref-prefs.php | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) (limited to 'modules') diff --git a/modules/pref-prefs.php b/modules/pref-prefs.php index 2ab79db01..838c722c3 100644 --- a/modules/pref-prefs.php +++ b/modules/pref-prefs.php @@ -21,9 +21,9 @@ if ($subop == "change-password") { - $old_pw = db_escape_string($_POST["old_password"]); - $new_pw = db_escape_string($_POST["new_password"]); - $con_pw = db_escape_string($_POST["confirm_password"]); + $old_pw = $_POST["old_password"]; + $new_pw = $_POST["new_password"]; + $con_pw = $_POST["confirm_password"]; if ($old_pw == "") { print "ERROR: ".__("Old password cannot be blank."); -- cgit v1.2.3