index.php 1.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354
  1. <?php
  2. ob_start();
  3. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  4. // Delete as someone else?
  5. if (($_SESSION['userContext'] === 'admin') && (!empty($_GET['user']))) {
  6. $user=$_GET['user'];
  7. }
  8. // Check token
  9. verify_csrf($_GET);
  10. // Mail domain
  11. if ((!empty($_GET['domain'])) && (empty($_GET['account']))) {
  12. $v_username = escapeshellarg($user);
  13. $v_domain = escapeshellarg($_GET['domain']);
  14. exec(HESTIA_CMD."v-delete-mail-domain ".$v_username." ".$v_domain, $output, $return_var);
  15. check_return_code($return_var, $output);
  16. unset($output);
  17. $back = $_SESSION['back'];
  18. if (!empty($back)) {
  19. header("Location: ".$back);
  20. exit;
  21. }
  22. header("Location: /list/mail/");
  23. exit;
  24. }
  25. // Mail account
  26. if ((!empty($_GET['domain'])) && (!empty($_GET['account']))) {
  27. $v_username = escapeshellarg($user);
  28. $v_domain = escapeshellarg($_GET['domain']);
  29. $v_account = escapeshellarg($_GET['account']);
  30. exec(HESTIA_CMD."v-delete-mail-account ".$v_username." ".$v_domain." ".$v_account, $output, $return_var);
  31. check_return_code($return_var, $output);
  32. unset($output);
  33. $back = $_SESSION['back'];
  34. if (!empty($back)) {
  35. header("Location: ".$back);
  36. exit;
  37. }
  38. header("Location: /list/mail/?domain=".$_GET['domain']);
  39. exit;
  40. }
  41. $back = $_SESSION['back'];
  42. if (!empty($back)) {
  43. header("Location: ".$back);
  44. exit;
  45. }
  46. header("Location: /list/mail/");
  47. exit;