Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
1.2.5.4 - edit.php
#1
As reported by eschram:

Index: edit.php
===================================================================
--- edit.php (revision 658)
+++ edit.php (working copy)
@@ -505,10 +505,8 @@
{
$string=addslashes(space_to_underscore($dept_name));
$query = "UPDATE {$GLOBALS['CONFIG']['db_prefix']}dept_perms SET rights =\"".$_REQUEST[$string]."\" where fid=".$filedata->getId()." and {$GLOBALS['CONFIG']['db_prefix']}dept_perms.dept_id =$id";
- echo $query;
$result2 = mysql_query($query, $GLOBALS['connection']) or die("Error in query: $query. " . mysql_error() );
}
- exit;
// clean up
mysql_freeresult($result);
$message = urlencode('Document successfully updated');


Forum Jump:


Users browsing this thread: 1 Guest(s)