Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
security [2019/01/03 14:26]
aducomadmin [SQL injection]
security [2019/09/02 09:32] (current)
aducomadmin [URL parameters]
Line 35: Line 35:
 ===== URL parameters ===== ===== URL parameters =====
  
-PHsPeed uses the $_GET space to pass security tokens. The reason is that not every page needs to have a form. These tokens are bound to a certain application and use. Changing them, or using a refresh, will cause an invalidation error which will automatically log you out and brings you back to the main application.+PHsPeed uses the $_GET space to pass security tokens. The reason is that not every page needs to have a form. These tokens are bound to a certain application and use. Changing them, or using a refresh, will cause an invalidation error which will automatically log you out and brings you back to the main application. In some cases, data is passed using the url. If that is the case then the url will be encrypted by a project configurable password and hash code. The data is SHA256 encoded.