[php-blog-cvs] r1862 - trunk/include/admin
A reliable, secure & extensible PHP blog | Not mainstream since 2002
Brought to you by:
garvinhicking,
jhermanns
From: garvinhicking at B. <gar...@ma...> - 2007-08-21 15:54:34
|
Author: garvinhicking Date: 2007-08-21 17:54:25 +0200 (Tue, 21 Aug 2007) New Revision: 1862 Modified: trunk/include/admin/personal.inc.php Log: array check, thanks to phellmes Modified: trunk/include/admin/personal.inc.php =================================================================== --- trunk/include/admin/personal.inc.php 2007-08-21 15:54:13 UTC (rev 1861) +++ trunk/include/admin/personal.inc.php 2007-08-21 15:54:25 UTC (rev 1862) @@ -32,7 +32,10 @@ // Void, no fixing neccessarry } elseif (serendipity_checkPermission('adminUsersMaintainSame')) { - + if (!is_array($_POST[$item['var']])) { + continue; + } + // Check that no user may assign groups he's not allowed to. foreach($_POST[$item['var']] AS $groupkey => $groupval) { if (in_array($groupval, $valid_groups)) { |