phpgroupware-cvs
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Phpgroupware-cvs] infolog/inc class.soinfolog.inc.php, 1.10.2.1.2.7, 1


From: Dave Hall <address@hidden>
Subject: [Phpgroupware-cvs] infolog/inc class.soinfolog.inc.php, 1.10.2.1.2.7, 1.10.2.1.2.8
Date: Fri, 03 Oct 2003 23:14:37 +0000

Update of /cvsroot/phpgroupware/infolog/inc
In directory subversions:/tmp/cvs-serv5979

Modified Files:
      Tag: Version-0_9_16-branch
        class.soinfolog.inc.php 
Log Message:
security and bug fixes

Index: class.soinfolog.inc.php
===================================================================
RCS file: /cvsroot/phpgroupware/infolog/inc/class.soinfolog.inc.php,v
retrieving revision 1.10.2.1.2.7
retrieving revision 1.10.2.1.2.8
diff -C2 -d -r1.10.2.1.2.7 -r1.10.2.1.2.8
*** class.soinfolog.inc.php     7 Sep 2003 01:29:29 -0000       1.10.2.1.2.7
--- class.soinfolog.inc.php     3 Oct 2003 23:14:34 -0000       1.10.2.1.2.8
***************
*** 272,277 ****
                                return;
                        }
!                       $this->db->query("DELETE FROM phpgw_infolog WHERE 
info_id=$info_id",__LINE__,__FILE__);
!                       $this->db->query("DELETE FORM phpgw_infolog_extra WHERE 
info_id=$info_id");
                        $this->links->unlink(0,'infolog',$info_id);
  
--- 272,277 ----
                                return;
                        }
!                       $this->db->query('DELETE FROM phpgw_infolog WHERE 
info_id='.$info_id,__LINE__,__FILE__);
!                       $this->db->query('DELETE FROM phpgw_infolog_extra WHERE 
info_id='.$info_id,__LINE__,__FILE__);
                        $this->links->unlink(0,'infolog',$info_id);
  
***************
*** 284,288 ****
                        {
                                $db2 = $this->db;       // we need an extra 
result-set
!                               $db2->query("SELECT info_id FROM phpgw_infolog 
WHERE info_id_parent=$info_id AND info_owner=$this->user",__LINE__,__FILE__);
                                while ($db2->next_record())
                                {
--- 284,290 ----
                        {
                                $db2 = $this->db;       // we need an extra 
result-set
!                               $db2->query('SELECT info_id FROM phpgw_infolog '
!                                               . "WHERE 
info_id_parent=$info_id "
!                                               . 'AND info_owner=' . 
$this->user,__LINE__,__FILE__);
                                while ($db2->next_record())
                                {
***************
*** 291,295 ****
                        }
                        // set parent_id to 0 for all not deleted children
!                       $this->db->query("UPDATA phpgw_infolog SET 
info_parent_id=0 WHERE info_parent_id=$info_id",__LINE__,__FILE__);
                }
  
--- 293,299 ----
                        }
                        // set parent_id to 0 for all not deleted children
!                       $this->db->query('UPDATE phpgw_infolog '
!                                       . 'SET info_parent_id=0 ' 
!                                       . "WHERE 
info_parent_id=$info_id",__LINE__,__FILE__);
                }
  
***************
*** 307,311 ****
                        {
                                $db2 = $this->db;       // we need an extra 
result-set
!                               $db2->db->query("SELECT info_id FROM 
phpgw_infolog WHERE info_owner=$owner",__LINE__,__FILE__);
                                while($db2->next_record())
                                {
--- 311,316 ----
                        {
                                $db2 = $this->db;       // we need an extra 
result-set
!                               $db2->db->query('SELECT info_id FROM 
phpgw_infolog '
!                                               . "WHERE 
info_owner=$owner",__LINE__,__FILE__);
                                while($db2->next_record())
                                {
***************
*** 315,321 ****
                        else
                        {
!                               $this->db->query("UPDATE phpgw_infolog SET 
info_owner=$new_owner WHERE info_owner=$owner",__LINE__,__FILE__);
                        }
!                       $this->db->query("UPDATE phpgw_infolog SET 
info_responsible=$new_owner WHERE info_responsible=$owner",__LINE__,__FILE__);
                }
  
--- 320,330 ----
                        else
                        {
!                               $this->db->query('UPDATE phpgw_infolog '
!                                               . "SET info_owner=$new_owner "
!                                               . "WHERE 
info_owner=$owner",__LINE__,__FILE__);
                        }
!                       $this->db->query('UPDATE phpgw_infolog '
!                                       . "SET info_responsible=$new_owner "
!                                       . "WHERE 
info_responsible=$owner",__LINE__,__FILE__);
                }
  





reply via email to

[Prev in Thread] Current Thread [Next in Thread]