From ef94ea5c266dad2d2138df9f74d92e0c1028db16 Mon Sep 17 00:00:00 2001 From: Laurent Destailleur Date: Sat, 28 Apr 2012 15:50:52 +0200 Subject: [PATCH] Fix: Keep feature as hidden feature because when enabled, it is a security hole (every worm can modify/edit data calling public urls). --- htdocs/admin/mailing.php | 13 +++++++------ 1 file changed, 7 insertions(+), 6 deletions(-) diff --git a/htdocs/admin/mailing.php b/htdocs/admin/mailing.php index 80d7ba16dff..a0f0f095019 100644 --- a/htdocs/admin/mailing.php +++ b/htdocs/admin/mailing.php @@ -41,18 +41,18 @@ $action = GETPOST('action','alpha'); if ($action == 'setvalue' && $user->admin) { $db->begin(); - + $mailfrom = GETPOST('MAILING_EMAIL_FROM','alpha'); $mailerror = GETPOST('MAILING_EMAIL_ERRORSTO','alpha'); $checkread = GETPOST('value','alpha'); - + $res=dolibarr_set_const($db, "MAILING_EMAIL_FROM",$mailfrom,'chaine',0,'',$conf->entity); if (! $res > 0) $error++; $res=dolibarr_set_const($db, "MAILING_EMAIL_ERRORSTO",$mailerror,'chaine',0,'',$conf->entity); if (! $res > 0) $error++; - $res=dolibarr_set_const($db, "MAILING_EMAIL_UNSUBSCRIBE",$checkread,'chaine',0,'',$conf->entity); - if (! $res > 0) $error++; - + //$res=dolibarr_set_const($db, "MAILING_EMAIL_UNSUBSCRIBE",$checkread,'chaine',0,'',$conf->entity); + //if (! $res > 0) $error++; + if (! $error) { $db->commit(); @@ -104,6 +104,7 @@ print ''; +/* $var=!$var; print ''; print $langs->trans("ActivateCheckRead").''; @@ -120,7 +121,7 @@ else print ''; } print ''; - +*/ print '';