jmontoyaa
03de0860c2
Minor - format code
9 years ago
jmontoyaa
66237ed991
Update apc cache if exists fixes #1959 BT#12768
9 years ago
jmontoyaa
bd8537963e
Should fix #1959 BT#12768
9 years ago
Yannick Warnier
afc337386e
Minor - Replace deprecated display_x_message() by return_message(..., 'x')
9 years ago
Scrutinizer Auto-Fixer
0b2747f659
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
jmontoyaa
d9623f75b9
Minor - format code
9 years ago
jmontoyaa
0a790676cd
Add constant to handle page length fix card height see BT#12754
9 years ago
jmontoyaa
7a15df65af
Minor - format code
9 years ago
Rafa
02f0a29901
Para respetar las reglas de http://www.php-fig.org/psr/psr-2/ ("There MUST NOT be a hard limit on line length; the soft limit MUST be 120 characters; lines SHOULD be 80 characters or less."), preferimos espaciar con líneas los parámetros de funciones cuya llamada es amplia
9 years ago
Rafa
04c1a62c0f
Vulnerabilidad
...
Se ha detectado que, al recuperar la contraseña, es posible realizar una denegación de servicio, enviando Email de recordatorio de contraseña, tantas veces como el atacante lo quiera, afectado al usuario. Colapsando su bandeja de entrada y el servidor de correo inundándolo de peticiones.
Solución:
Se recomienda aplicar un método anti-automatización, por lo que no es posible que un atacante pueda enviar más de 3 a 5 intentos de recuperación de contraseña en un corto período de tiempo.
La aplicación de un captcha es la técnica más recomendada para evitar que programas automatizados puedan llevar a cabo ataques de fuerza bruta. Un captcha, básicamente, trata de distinguir entre un ser humano y una máquina, ya que este último es mucho más rápido enviando solicitudes para tratar de iniciar sesión o enviar cualquier petición.
Otro método sería bloquear, por un período de tiempo aleatorio, una IP que está enviando una gran cantidad de peticiones de acceso o de recuperación de contraseña. Eso haría que el ataque pueda durar mucho más, por lo que puede cambiar el tiempo necesario para encontrar una sola cadena de caracteres desde días hasta meses o incluso años.
9 years ago
Angel Fernando Quiroz Campos
d12a47f6e0
Fix 65188b0
9 years ago
Scrutinizer Auto-Fixer
d05e2344ef
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
Scrutinizer Auto-Fixer
3a1787b2d5
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
Scrutinizer Auto-Fixer
2dce14872e
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
jmontoyaa
e28086e084
Implement hide_course_rating setting in course catalog see BT#12725
9 years ago
jmontoyaa
f7cf94b20b
Remove comment code
9 years ago
Scrutinizer Auto-Fixer
14488458e2
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
Scrutinizer Auto-Fixer
e55f8cc5f0
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
Polycapa
6df0347d97
Update alt text
...
Replace variable concatenation with translated text
9 years ago
Alex Aragon
1fdfb08dd3
fix css label subscriber
9 years ago
Yannick Warnier
d814dc2439
Minor - Replace deprecated function calls #scrutinizer
9 years ago
Scrutinizer Auto-Fixer
d0b9df6c63
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
jmontoyaa
f2a2876739
Minor - format code
9 years ago
Angel Fernando Quiroz Campos
88093b2711
Show session duration on session catalog
9 years ago
Alex Aragon
536d52304a
Improvement in the catalog of courses
9 years ago
Yannick Warnier
2cc7335b78
Fix issue in auth ldap code not setting the _uid in session correctly
9 years ago
Yannick Warnier
eb1d7ffe01
Minor - Remove empty (unused) conditions
9 years ago
Yannick Warnier
deff2ac9ce
Minor - Code style
9 years ago
Scrutinizer Auto-Fixer
d23a5f6a1c
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
jmontoyaa
a444e67791
Use CourseManager::get_user_course_categories instead of custom code.
...
- Improve code foreach
- Fix PHP warning
- Format code
9 years ago
jmontoyaa
44054a716f
Fix PHP warning
9 years ago
Scrutinizer Auto-Fixer
7a56f3fbb3
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
jmontoyaa
244a19d4c7
Replace Database :: get_main_table with Database::get_main_table
9 years ago
Scrutinizer Auto-Fixer
1f7844380e
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
Scrutinizer Auto-Fixer
e4ee87e70d
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
Satyan JACQUENS
7bc02fbc4b
Fix codeclimate #2
...
Fix endline whitespaces
9 years ago
Satyan JACQUENS
e9d3cf68f4
Fix for codeclimate
...
- Line sizes
- Closing parenthesis
9 years ago
Polycapa
5b25f936fb
Add alternative display for teacher profile picture
...
When displaying teacher profile picture on course information, an
alternative display (for
accessibility) was missing. The alternative text "[TEACHE NAME]
Profile" is set.
9 years ago
Satyan JACQUENS
667af5ab24
Add aria label for icon buttons
...
Those labels allow description to be associated with buttons and to be read by screen readers
9 years ago
Polycapa
80dced2884
Add alternative display for teacher profile picture
...
When displaying teacher profile picture on course information, an
alternative display (for
accessibility) was missing. The alternative text "[TEACHE NAME]
Profile" is set.
9 years ago
Satyan JACQUENS
ef423e8dc5
Remove whitespaces at end of line
9 years ago
Satyan JACQUENS
c1b6929859
Fix codeclimate #2
...
Fix endline whitespaces
9 years ago
Satyan JACQUENS
fad13f512d
Fix for codeclimate
...
- Line sizes
- Closing parenthesis
9 years ago
Yannick Warnier
9b9f330865
Change visibility of CAS methods log() and error() to allow static calls from other classes
9 years ago
Yannick Warnier
d1b37f34fe
Minor - Add license refs + change dirname(__FILE__) to __DIR__ (about 4 times faster). See http://stackoverflow.com/questions/2749416/is-there-any-difference-between-dir-and-dirname-file-in-php
9 years ago
Scrutinizer Auto-Fixer
1c47b10a5e
Scrutinizer Auto-Fixes
...
This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com
9 years ago
Alex Aragon
dc63518ac5
fix code climate
9 years ago
jmontoyaa
e19d6b1d5b
Add 'form->addPasswordRule' in order to centralize pass validation
...
- Add password validation in user_add.php/user_edit.php
- New security functions added: getPasswordRequirements/getPasswordRequirementsToString
- See BT#12571
9 years ago
Angel Fernando Quiroz Campos
0407630444
Fix toolbars action
9 years ago
jmontoyaa
4164d76c1e
Minor - format code.
9 years ago