From cabd6f6205756a51064fb856aca2ed94d28b1cf7 Mon Sep 17 00:00:00 2001
From: tbrehm <t.brehm@ispconfig.org>
Date: Fri, 12 Sep 2008 11:31:19 -0400
Subject: [PATCH] Disabled suphp_UserGroup directive by default to make the setup compatible with the suphp compile options from most linux distributions. If you want some extra security, enable this directive again and recompile mod_suphp with the the option --with-setid-mode=paranoid

---
 interface/web/admin/dbsync_edit.php |   11 ++++-------
 1 files changed, 4 insertions(+), 7 deletions(-)

diff --git a/interface/web/admin/dbsync_edit.php b/interface/web/admin/dbsync_edit.php
index b4ba43b..fe3a56f 100644
--- a/interface/web/admin/dbsync_edit.php
+++ b/interface/web/admin/dbsync_edit.php
@@ -39,11 +39,8 @@
 * End Form configuration
 ******************************************/
 
-// Checke Berechtigungen f�r Modul
-if(!stristr($_SESSION["s"]["user"]["modules"],$_SESSION["s"]["module"]["name"])) {
-	header("Location: ../index.php");
-	exit;
-}
+//* Check permissions for module
+$app->auth->check_module_permissions('admin');
 
 // Lade Template
 $app->uses('tpl,tform');
@@ -53,7 +50,7 @@
 $app->tform->loadFormDef($tform_def_file);
 
 // ID importieren
-$id = intval($_REQUEST["id"]);
+$id = @intval($_REQUEST["id"]);
 
 if(count($_POST) > 1) {
 
@@ -84,7 +81,7 @@
 // Welcher Tab wird angezeigt
 if($app->tform->errorMessage == '') {
     // wenn kein Fehler vorliegt
-	if($_REQUEST["next_tab"] != '') {
+	if(isset($_REQUEST["next_tab"]) && $_REQUEST["next_tab"] != '') {
 		// wenn n�chster Tab bekannt
 		$active_tab = $_REQUEST["next_tab"];
     } else {

--
Gitblit v1.9.1