/**
* functions.php - Change Password plugin
*
- * @copyright © 2003-2007 The SquirrelMail Project Team
+ * @copyright 2003-2016 The SquirrelMail Project Team
* @license http://opensource.org/licenses/gpl-license.php GNU Public License
* @version $Id$
* @package plugins
$onetimepad = OneTimePadCreate(strlen($newpw));
sqsession_register($onetimepad,'onetimepad');
$key = OneTimePadEncrypt($newpw, $onetimepad);
- setcookie('key', $key, 0, $base_uri);
+ sqsetcookie('key', $key, 0, $base_uri);
/* make sure we write the session data before we redirect */
session_write_close();
- header('Location: '.SM_PATH. 'src/options.php?optmode=submit&optpage=change_password&plugin_change_password=1');
+ header('Location: '.SM_PATH. 'src/options.php?optmode=submit&optpage=change_password&plugin_change_password=1&smtoken=' . sm_generate_security_token());
exit;
}