Project

General

Profile

1 4 ryan
<?php
2 1398 FrankH
/**
3
 *
4
 * @category        admin
5
 * @package         groups
6
 * @author          WebsiteBaker Project
7
 * @copyright       2004-2009, Ryan Djurovich
8
 * @copyright       2009-2011, Website Baker Org. e.V.
9
 * @link			http://www.websitebaker2.org/
10
 * @license         http://www.gnu.org/licenses/gpl.html
11
 * @platform        WebsiteBaker 2.8.x
12
 * @requirements    PHP 5.2.2 and higher
13
 * @version         $Id$
14 1457 Luisehahne
 * @filesource		$HeadURL$
15
 * @lastmodified    $Date$
16 1398 FrankH
 *
17
 */
18 4 ryan
19
// Print admin header
20
require('../../config.php');
21
require_once(WB_PATH.'/framework/class.admin.php');
22 1457 Luisehahne
// suppress to print the header, so no new FTAN will be set
23
$admin = new admin('Access', 'groups_modify', false);
24 1425 Luisehahne
// Create a javascript back link
25
$js_back = ADMIN_URL.'/groups/index.php';
26
27 1398 FrankH
if (!$admin->checkFTAN())
28
{
29 1473 Luisehahne
	$admin->print_header();
30 1425 Luisehahne
	$admin->print_error($MESSAGE['GENERIC_SECURITY_ACCESS'],$js_back);
31 1398 FrankH
}
32 1457 Luisehahne
// After check print the header
33
$admin->print_header();
34 4 ryan
35
// Check if group group_id is a valid number and doesnt equal 1
36
if(!isset($_POST['group_id']) OR !is_numeric($_POST['group_id']) OR $_POST['group_id'] == 1) {
37
	header("Location: index.php");
38 286 stefan
	exit(0);
39 4 ryan
} else {
40
	$group_id = $_POST['group_id'];
41
}
42
43
// Gather details entered
44 656 thorn
$group_name = $admin->get_post_escaped('group_name');
45 4 ryan
46
// Check values
47
if($group_name == "") {
48
	$admin->print_error($MESSAGE['GROUPS']['GROUP_NAME_BLANK'], $js_back);
49
}
50
51
// Get system permissions
52
require_once(ADMIN_PATH.'/groups/get_permissions.php');
53
54
// Update the database
55
$query = "UPDATE ".TABLE_PREFIX."groups SET name = '$group_name', system_permissions = '$system_permissions', module_permissions = '$module_permissions', template_permissions = '$template_permissions' WHERE group_id = '$group_id'";
56
57
$database->query($query);
58
if($database->is_error()) {
59
	$admin->print_error($database->get_error());
60
} else {
61
	$admin->print_success($MESSAGE['GROUPS']['SAVED'], ADMIN_URL.'/groups/index.php');
62
}
63
64
// Print admin footer
65
$admin->print_footer();