Commit ad6454db authored by Thomas Löffler's avatar Thomas Löffler
Browse files

Merge branch 'sec-soap' into 'develop'

[SECURITY] Fix unauthorized SOAP access

See merge request !174
parents bb47bbbe 0ecc7fc6
Pipeline #2115 passed with stages
in 1 minute and 26 seconds
......@@ -149,7 +149,7 @@ class tx_ter_helper
// as password strings on typo3.org are not updated ones
if ($row['password'] !== $accountData->password && !$objPHPass->checkPassword(
$accountData->password, $row['password']
) && $this->ldapValidationSucceeded($accountData)
) && !$this->ldapValidationSucceeded($accountData)
) {
throw new tx_ter_exception_unauthorized ('Wrong password.', TX_TER_ERROR_GENERAL_WRONGPASSWORD);
}
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment