From 9db09ee609768021619d5c4d667bb626f615ce81 Mon Sep 17 00:00:00 2001 From: Corey Thuen Date: Fri, 2 Oct 2015 09:22:11 -0500 Subject: [PATCH] fix setup bug w/ variable name typo --- CTFd/admin.py | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/CTFd/admin.py b/CTFd/admin.py index 9cdd66db..af2460db 100644 --- a/CTFd/admin.py +++ b/CTFd/admin.py @@ -24,13 +24,13 @@ def admin_view(): password = request.form.get('password') admin_user= Teams.query.filter_by(name=request.form['name'], admin=True).first() - if admin_user and bcrypt_sha256.verify(request.form['password'], admin.password): + if admin_user and bcrypt_sha256.verify(request.form['password'], admin_user.password): try: session.regenerate() # NO SESSION FIXATION FOR YOU except: pass # TODO: Some session objects dont implement regenerate :( - session['username'] = admin.name - session['id'] = admin.id + session['username'] = admin_user.name + session['id'] = admin_user.id session['admin'] = True session['nonce'] = sha512(os.urandom(10)) db.session.close()