diff --git a/htdocs/user/fiche.php b/htdocs/user/fiche.php index 32cb99c766d..cd5712a802e 100644 --- a/htdocs/user/fiche.php +++ b/htdocs/user/fiche.php @@ -24,16 +24,16 @@ require("./pre.inc.php"); $form = new Form($db); -if ($subaction == 'addrights' && $user->admin) +if ($_GET["subaction"] == 'addrights' && $user->admin) { - $edituser = new User($db,$id); - $edituser->addrights($rights); + $edituser = new User($db,$_GET["id"]); + $edituser->addrights($_GET["rights"]); } -if ($subaction == 'delrights' && $user->admin) +if ($_GET["subaction"] == 'delrights' && $user->admin) { - $edituser = new User($db,$id); - $edituser->delrights($rights); + $edituser = new User($db,$_GET["id"]); + $edituser->delrights($_GET["rights"]); } if ($HTTP_POST_VARS["action"] == 'confirm_delete' && $HTTP_POST_VARS["confirm"] == "yes") @@ -158,16 +158,16 @@ if ($action == 'create') /* ************************************************************************** */ else { - if ($id) + if ($_GET["id"]) { - $fuser = new User($db, $id); + $fuser = new User($db, $_GET["id"]); $fuser->fetch(); print_fiche_titre("Fiche utilisateur",$message); if ($request == 'delete') { - print '
'; + print ''; print ''; print ''; @@ -184,7 +184,7 @@ else } - if ($request == 'perms') + if ($_GET["request"] == 'perms') { /* * Droits @@ -192,7 +192,7 @@ else print '
'; - print "".''; + print ''; print ''; print ''; print ''; @@ -214,9 +214,9 @@ else $oldmod = $obj->module; $var = !$var; } - print ''; - print ''; + print ''; + $i++; } } @@ -227,7 +227,7 @@ else * Droits */ print '
Nom
Nom'.$fuser->nom.'Prénom'.$fuser->prenom.'
Ajouter'; - print $obj->libelle . 'Supprimer
Ajouter'; + print $obj->libelle . '
'; - $sql = "SELECT r.libelle, r.module FROM llx_rights_def as r, llx_user_rights as ur"; + $sql = "SELECT r.id, r.libelle, r.module FROM llx_rights_def as r, llx_user_rights as ur"; $sql .= " WHERE ur.fk_id = r.id AND ur.fk_user = ".$fuser->id. " ORDER BY r.id ASC"; $var = True; if ($db->query($sql)) @@ -243,7 +243,8 @@ else $var = !$var; } - print "'; + print "'; + print ''; $i++; } } @@ -338,7 +339,7 @@ else if ($user->admin) { - print ''; + print ''; } else { @@ -348,7 +349,7 @@ else if ($user->id == $id or $user->admin) { - print ''; + print ''; } else { @@ -357,7 +358,7 @@ else if ($user->admin) { - print ''; + print ''; } else { @@ -367,7 +368,7 @@ else if ($user->admin && $user->id <> $id) { - print ''; + print ''; } else {
".$obj->libelle . '
".$obj->libelle . 'Supprimer
EditerEditerNouveau mot de passeNouveau mot de passePermissionsPermissionsSupprimerSupprimer