Show
Ignore:
Timestamp:
05/21/08 15:27:00 (8 months ago)
Author:
aarkerio
Message:

New Try

Files:
1 modified

Legend:

Unmodified
Added
Removed
  • trunk/app/views/users/admin_edit.ctp

    r441 r541  
    44echo $javascript->link('myfunctions');  
    55 
    6 if ($this->data["User"]["id"] != $cU['User']['id']) 
    7 { 
    8   echo 'Error'; 
    9   exit(); 
    10 } 
     6if ($this->data["User"]["id"] != $session->read('Auth.User.id')): 
     7     die('Error'); 
     8endif; 
    119?> 
    1210<div class="spaced"> 
     
    1412<?php  
    1513 echo $html->para(null, $html->image('avatars/'.$this->data["User"]["avatar"], array("alt"=>$this->data["User"]["username"], "title"=>$this->data["User"]["username"])));  
    16 ?> 
    1714 
    18 <?php  
    1915   echo $form->create('User', array('onsubmit'=>'return chkForm()')); 
    2016   echo $form->hidden('User.id');  
     
    2319<?php 
    2420   
    25   echo '<legend>'.$cU['User']['username'] .'\'s account</legend>'; 
     21  echo '<legend>'.$session->read('Auth.User.username') .'\'s account</legend>'; 
    2622  echo $form->input('User.pwd', array("size"=>9, "maxlength"=>9,"value"=>"")) . '  Left empty if you do not want to change'; 
    2723  echo $form->error('User.pwd', 'A name is required.');  
     
    3430   
    3531  // if the user belongs to admin group   
    36   if ($cU['User']['id'] == 1): 
     32  if ($session->read('Auth.User.group_id') == 1): 
    3733     echo $form->label('User.group_id', 'Group:' ); 
    3834     echo $form->select('User.group_id', $Groups);