From 77048675abf5fad43e8b5371c35e1c86b3be59c2 Mon Sep 17 00:00:00 2001 From: root Date: Fri, 31 Jan 2014 19:08:03 +0100 Subject: Privilege changes --- lib/file/delete.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'lib/file/delete.php') diff --git a/lib/file/delete.php b/lib/file/delete.php index 1a65058..296b560 100644 --- a/lib/file/delete.php +++ b/lib/file/delete.php @@ -9,7 +9,7 @@ $id = intval($args[2]); $info = mysql_fetch_assoc(sql("SELECT * FROM files WHERE id = $id")); -if ($info["owner"] == $user["id"]) { +if ($info["owner"] == $user["id"] || $user['priv'] >= $priv_admin) { token_validate("Do you really want to delete this file ?", "file"); if (has_mini($info["extension"])) unlink($savedir . $id . "-min." . $info["extension"]); unlink($savedir . $id . "." . $info["extension"]); -- cgit v1.2.3