index.php 675 B

1234567891011121314151617181920212223242526272829303132
  1. <?php
  2. use function Hestiacp\quoteshellarg\quoteshellarg;
  3. ob_start();
  4. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  5. // Check token
  6. verify_csrf($_POST);
  7. $package = $_POST['package'];
  8. $action = $_POST['action'];
  9. if ($_SESSION['userContext'] === 'admin') {
  10. switch ($action) {
  11. case 'delete': $cmd='v-delete-user-package';
  12. break;
  13. default: header("Location: /list/package/"); exit;
  14. }
  15. } else {
  16. header("Location: /list/package/");
  17. exit;
  18. }
  19. foreach ($package as $value) {
  20. $value = quoteshellarg($value);
  21. exec(HESTIA_CMD.$cmd." ".$value, $output, $return_var);
  22. $restart = 'yes';
  23. }
  24. header("Location: /list/package/");