index.php 1.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960
  1. <?php
  2. ob_start();
  3. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  4. // Delete as someone else?
  5. if (($_SESSION['userContext'] === 'admin') && (!empty($_GET['user']))) {
  6. $user=escapeshellarg($user);
  7. }
  8. // Check token
  9. verify_csrf($_GET);
  10. // Mail domain
  11. if ((!empty($_GET['domain'])) && (empty($_GET['account']))) {
  12. $v_username = escapeshellarg($user);
  13. $v_domain = escapeshellarg($_GET['domain']);
  14. exec(HESTIA_CMD."v-delete-mail-domain ".$user." ".$v_domain, $output, $return_var);
  15. check_return_code($return_var, $output);
  16. unset($output);
  17. $back = $_SESSION['back'];
  18. if($return_var > 0){
  19. header("Location: /list/mail/");
  20. }
  21. if (!empty($back)) {
  22. header("Location: ".$back);
  23. exit;
  24. }
  25. header("Location: /list/mail/");
  26. exit;
  27. }
  28. // Mail account
  29. if ((!empty($_GET['domain'])) && (!empty($_GET['account']))) {
  30. $v_domain = escapeshellarg($_GET['domain']);
  31. $v_account = escapeshellarg($_GET['account']);
  32. exec(HESTIA_CMD."v-delete-mail-account ".$user." ".$v_domain." ".$v_account, $output, $return_var);
  33. check_return_code($return_var, $output);
  34. unset($output);
  35. if($return_var > 0){
  36. header("Location: /list/mail/");
  37. }else{
  38. $back = $_SESSION['back'];
  39. if (!empty($back)) {
  40. header("Location: ".$back);
  41. exit;
  42. }
  43. header("Location: /list/mail/?domain=".$_GET['domain']);
  44. exit;
  45. }
  46. }
  47. $back = $_SESSION['back'];
  48. if (!empty($back)) {
  49. header("Location: ".$back);
  50. exit;
  51. }
  52. header("Location: /list/mail/");
  53. exit;