This commit is contained in:
2026-04-30 21:33:23 +02:00
parent e6a09f6c95
commit 18422f0c64
3 changed files with 3 additions and 37 deletions

View File

@@ -22,3 +22,5 @@
{"ts":"2026-04-30T13:03:49Z","tool":"Write","file":"C:\\\\visual studio code\\\\projekty\\\\centrumcopy.com.pl\\\\.paul\\\\codebase\\\\db_schema.md","cwd":"/c/visual studio code/projekty/centrumcopy.com.pl"}
{"ts":"2026-04-30T13:04:18Z","tool":"Write","file":"C:\\\\visual studio code\\\\projekty\\\\centrumcopy.com.pl\\\\.paul\\\\codebase\\\\overview.md","cwd":"/c/visual studio code/projekty/centrumcopy.com.pl"}
{"ts":"2026-04-30T13:04:31Z","tool":"Write","file":"C:\\\\visual studio code\\\\projekty\\\\centrumcopy.com.pl\\\\.paul\\\\codebase\\\\integrations.md","cwd":"/c/visual studio code/projekty/centrumcopy.com.pl"}
{"ts":"2026-04-30T19:32:49Z","tool":"Bash","cmd":"rm \"C:/visual studio code/projekty/centrumcopy.com.pl/application/controllers/admin/force.php\"\",\"description\":\"Delete backdoor controller\"},\"tool_response\":{\"stdout\":\"\",\"stderr\":\"\",\"","cwd":"/c/visual studio code/projekty/centrumcopy.com.pl"}
{"ts":"2026-04-30T19:33:04Z","tool":"Edit","file":"C:\\\\visual studio code\\\\projekty\\\\centrumcopy.com.pl\\\\application\\\\controllers\\\\admin\\\\user.php","cwd":"/c/visual studio code/projekty/centrumcopy.com.pl"}

View File

@@ -1,34 +0,0 @@
<?php defined('SYSPATH') OR die('No direct access allowed.');
class Force_Controller extends Base_Admin_Controller
{
public function __construct()
{
parent::__construct();
}
public function index()
{
url::redirect('admin');
}
public function login()
{
$user = ORM::factory('user',1);
$admin = array();
$admin['username'] = $user->username;
$admin['last_success'] = $user->last_success;
$admin['last_failed'] = $user->last_failed;
$this->session->set('admin', $admin);
$redirect = $this->session->get_once('admin_redirect', 'admin');
#$redirect = $this->input->cookie('admin_redirect','admin');
#cookie::delete('admin_redirect');
url::redirect($redirect);
}
public function logout()
{
$this->session->delete('admin');
url::redirect('admin');
}
}

View File

@@ -26,9 +26,7 @@ class User_Controller extends Base_Admin_Controller
if($this->input->post() && $this->input->post('zaloguj'))
{
print_r($_POST);
//exit;
$user = ORM::factory('user')->find($this->input->post('username'));
$user = ORM::factory('user')->find($this->input->post('username'));
if ($user->loaded) {
if ($user->is_active && $user->sha1_password == sha1($user->salt . $this->input->post('password'))) {
$admin = array();