I cannot replicate this. Having said that...
If you look in the file open-audit/code_igniter/config/config.php you will see a line to set the $config['permitted_uri_chars'] variable. Make sure this has a - in it somewhere. CodeIgniter will not allow and character that is not contained in this line to be sent via a GET. Unfortunately passwords do tend to contain lots of weird characters. You can remove the string contents altogether if you like to permit ANY character. Note that the CodeIgniter developers recommend NOT doing this.
FYI - My current line looks like this: [code]$config['permitted_uri_chars'] = 'a-z 0-9~%.:|(),_\-!=&[]@*';[/code]
_________________ Support and Development hours available from [url=https://opmantek.com]Opmantek[/url]. Please consider a purchase to help make Open-AudIT better for everyone.
|