index.php 618 B

12345678910111213141516171819202122232425262728
  1. <?php
  2. ob_start();
  3. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  4. if (($_SESSION['userContext'] === 'admin') && (!empty($_GET['user']))) {
  5. $user=$_GET['user'];
  6. }
  7. // Check token
  8. verify_csrf($_GET);
  9. if (!empty($_GET['backup'])) {
  10. $v_username = escapeshellarg($user);
  11. $v_backup = escapeshellarg($_GET['backup']);
  12. exec(HESTIA_CMD."v-delete-user-backup ".$v_username." ".$v_backup, $output, $return_var);
  13. }
  14. check_return_code($return_var, $output);
  15. unset($output);
  16. $back = $_SESSION['back'];
  17. if (!empty($back)) {
  18. header("Location: ".$back);
  19. exit;
  20. }
  21. header("Location: /list/backup/");
  22. exit;