From: arno Date: Sun, 16 Aug 2009 21:02:38 +0000 (+0200) Subject: fixes: admin cannot modify other users items X-Git-Tag: v0.3b_thomas~13 X-Git-Url: https://dev.renevier.net/?p=syp.git;a=commitdiff_plain;h=1fa9f86af76141dee786b45083ebcdb72f49981a fixes: admin cannot modify other users items --- diff --git a/api.php b/api.php index fda62ff..9b268dc 100644 --- a/api.php +++ b/api.php @@ -239,7 +239,7 @@ function main ($con) { if (!isset ($feature)) { error_unreferenced ($id); } - if ($feature->user != $user) { + if (($feature->user != $user) && ($user != "admin")) { error_unauthorized (); }