From: Joey Schulze Date: Sat, 6 Mar 2010 20:28:38 +0000 (+0100) Subject: Adjust permission check X-Git-Tag: 2010-06-02_customer~94 X-Git-Url: https://git.infodrom.org/?p=misc%2Fkostenrechnung;a=commitdiff_plain;h=5a211cfe3acac9c58e3b7efb2c064d90fc87805d;hp=646cd089353ea1125cdc1ebc8f5fb9fd041d6b51 Adjust permission check --- diff --git a/lib/general.php b/lib/general.php index 7c5d5f3..c493491 100644 --- a/lib/general.php +++ b/lib/general.php @@ -19,7 +19,6 @@ function check_permissions($name) . "JOIN sys_group_mask ON sys_mask.id = sys_group_mask.mask " . "WHERE sys_group_mask.gid = %d AND fname = '%s'", $_SESSION['sys']['group'], pg_escape_string($name)); - error_log($sql); $sth = pg_query($sql); @@ -87,7 +86,7 @@ function check_session() /* ajax calls */ if (substr($_SERVER["SCRIPT_FILENAME"],-9) == '/ajax.php' && !empty($_POST['source'])) { - if (check_permissions(substr($_POST['source'],5))) + if (check_permissions($_POST['source'])) return true; else format_ajax(array('error' => 'No permission to access data'));