summaryrefslogtreecommitdiff
path: root/lib/plugins/acl/action.php
diff options
context:
space:
mode:
authorGerrit Uitslag <klapinklapin@gmail.com>2013-10-14 16:12:01 +0200
committerGerrit Uitslag <klapinklapin@gmail.com>2013-10-14 16:12:01 +0200
commit00dd0e7e7ab5bc29658e4be85336841af70b6b97 (patch)
tree39a82ad605e19012c357399a80da5313bb8e02ed /lib/plugins/acl/action.php
parent07be12a51cc4c7850e57b25c6c1bd86ca0004a00 (diff)
downloadrpg-00dd0e7e7ab5bc29658e4be85336841af70b6b97.tar.gz
rpg-00dd0e7e7ab5bc29658e4be85336841af70b6b97.tar.bz2
acl ajax: add messages to returns
Diffstat (limited to 'lib/plugins/acl/action.php')
-rw-r--r--lib/plugins/acl/action.php10
1 files changed, 8 insertions, 2 deletions
diff --git a/lib/plugins/acl/action.php b/lib/plugins/acl/action.php
index bac518fcd..6111aca42 100644
--- a/lib/plugins/acl/action.php
+++ b/lib/plugins/acl/action.php
@@ -53,8 +53,14 @@ class action_plugin_acl extends DokuWiki_Action_Plugin {
parse_str($postData, $_POST);
}
- if(!auth_isadmin()) return;
- if(!checkSecurityToken()) return;
+ if(!auth_isadmin()) {
+ echo 'for admins only';
+ return;
+ }
+ if(!checkSecurityToken()) {
+ echo 'CRSF Attack';
+ return;
+ }
$ID = getID();