index.php 1.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657
  1. <?php
  2. // Init
  3. error_reporting(null);
  4. ob_start();
  5. session_start();
  6. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  7. // Delete as someone else?
  8. if (($_SESSION['userContext'] === 'admin') && (!empty($_GET['user']))) {
  9. $user=$_GET['user'];
  10. }
  11. // Check token
  12. verify_csrf($_GET);
  13. // Mail domain
  14. if ((!empty($_GET['domain'])) && (empty($_GET['account']))) {
  15. $v_username = escapeshellarg($user);
  16. $v_domain = escapeshellarg($_GET['domain']);
  17. exec(HESTIA_CMD."v-delete-mail-domain ".$v_username." ".$v_domain, $output, $return_var);
  18. check_return_code($return_var, $output);
  19. unset($output);
  20. $back = $_SESSION['back'];
  21. if (!empty($back)) {
  22. header("Location: ".$back);
  23. exit;
  24. }
  25. header("Location: /list/mail/");
  26. exit;
  27. }
  28. // Mail account
  29. if ((!empty($_GET['domain'])) && (!empty($_GET['account']))) {
  30. $v_username = escapeshellarg($user);
  31. $v_domain = escapeshellarg($_GET['domain']);
  32. $v_account = escapeshellarg($_GET['account']);
  33. exec(HESTIA_CMD."v-delete-mail-account ".$v_username." ".$v_domain." ".$v_account, $output, $return_var);
  34. check_return_code($return_var, $output);
  35. unset($output);
  36. $back = $_SESSION['back'];
  37. if (!empty($back)) {
  38. header("Location: ".$back);
  39. exit;
  40. }
  41. header("Location: /list/mail/?domain=".$_GET['domain']);
  42. exit;
  43. }
  44. $back = $_SESSION['back'];
  45. if (!empty($back)) {
  46. header("Location: ".$back);
  47. exit;
  48. }
  49. header("Location: /list/mail/");
  50. exit;