diff -r 4bcefa85649c -r d54e7620bd3e includes/sessions.php --- a/includes/sessions.php Fri Jul 17 20:48:53 2009 -0400 +++ b/includes/sessions.php Fri Jul 31 19:15:48 2009 -0400 @@ -698,11 +698,12 @@ // Retrieve the real password from the database $username_db = $db->escape(strtolower($username)); + $username_db_upper = $db->escape($username); if ( !$db->sql_query('SELECT password,password_salt,old_encryption,user_id,user_level,temp_password,temp_password_time FROM '.table_prefix."users\n" - . " WHERE " . ENANO_SQLFUNC_LOWERCASE . "(username) = '$username_db';") ) + . " WHERE ( " . ENANO_SQLFUNC_LOWERCASE . "(username) = '$username_db' OR username = '$username_db_upper' );") ) { $this->sql('SELECT password,\'\' AS password_salt,old_encryption,user_id,user_level,temp_password,temp_password_time FROM '.table_prefix."users\n" - . " WHERE " . ENANO_SQLFUNC_LOWERCASE . "(username) = '$username_db';"); + . " WHERE ( " . ENANO_SQLFUNC_LOWERCASE . "(username) = '$username_db' OR username = '$username_db_upper' );"); } if ( $db->numrows() < 1 ) {