diff --git a/tverify/index.php b/tverify/index.php index 1f24ddc..267e00f 100644 --- a/tverify/index.php +++ b/tverify/index.php @@ -46,9 +46,9 @@ if($id == 1) { - $email = mysql_escape_string($_REQUEST["email"]); - $password = mysql_escape_string($_REQUEST["pword"]); - $URL = mysql_escape_string($_REQUEST["notaryURL"]); + $email = mysql_escape_string(trim($_REQUEST["email"])); + $password = mysql_escape_string(stripslashes(trim($_REQUEST["pword"]))); + $URL = mysql_escape_string(trim($_REQUEST["notaryURL"])); $CN = mysql_escape_string($_SESSION['_config']['CN']); $memid = mysql_escape_string($_SESSION['_config']['uid']); $user = mysql_fetch_assoc(mysql_query("select * from `users` where `id`='$memid'"));