index.php 1.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960
  1. <?php
  2. ob_start();
  3. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  4. // Delete as someone else?
  5. if (($_SESSION['userContext'] === 'admin') && (!empty($_GET['user']))) {
  6. $user=escapeshellarg($_GET['user']);
  7. }
  8. // Check token
  9. verify_csrf($_GET);
  10. // DNS domain
  11. if ((!empty($_GET['domain'])) && (empty($_GET['record_id']))) {
  12. $v_domain = escapeshellarg($_GET['domain']);
  13. exec(HESTIA_CMD."v-delete-dns-domain ".$user." ".$v_domain, $output, $return_var);
  14. check_return_code($return_var, $output);
  15. unset($output);
  16. $back = $_SESSION['back'];
  17. if (!empty($back)) {
  18. header("Location: ".$back);
  19. exit;
  20. }
  21. header("Location: /list/dns/");
  22. exit;
  23. }
  24. // DNS record
  25. if ((!empty($_GET['domain'])) && (!empty($_GET['record_id']))) {
  26. $v_username = escapeshellarg($user);
  27. $v_domain = escapeshellarg($_GET['domain']);
  28. $v_record_id = escapeshellarg($_GET['record_id']);
  29. exec(HESTIA_CMD."v-delete-dns-record ".$v_username." ".$v_domain." ".$v_record_id, $output, $return_var);
  30. check_return_code($return_var, $output);
  31. unset($output);
  32. $back = $_SESSION['back'];
  33. if (!empty($back)) {
  34. header("Location: ".$back);
  35. exit;
  36. }
  37. if($return_var > 0){
  38. header("Location: /list/dns/");
  39. exit;
  40. }else{
  41. header("Location: /list/dns/?domain=".$_GET['domain']);
  42. exit;
  43. }
  44. }
  45. $back = $_SESSION['back'];
  46. if (!empty($back)) {
  47. header("Location: ".$back);
  48. exit;
  49. }
  50. header("Location: /list/dns/");
  51. exit;