From 1be006937c650df3dc1bac52b6af07433e086950 Mon Sep 17 00:00:00 2001 From: Kevin Fourie Date: Fri, 2 Feb 2007 17:32:11 +0000 Subject: [PATCH] KTS-1475 "Prevent anonymous from saving search parameters" Verified and applied patch. --- search/booleanSearch.php | 5 +++++ 1 file changed, 5 insertions(+), 0 deletions(-) diff --git a/search/booleanSearch.php b/search/booleanSearch.php index 7b78a54..14103bb 100755 --- a/search/booleanSearch.php +++ b/search/booleanSearch.php @@ -112,6 +112,11 @@ class BooleanSearchDispatcher extends KTStandardDispatcher { exit(0); } + if ($this->oUser->isAnonymous()) { + $this->errorRedirectTo('performSearch', _kt('Cannot save searches as anonymous user'), sprintf('boolean_search_id=%s', $sSearch)); + exit(0); + } + $datavars = $_SESSION['boolean_search'][$sSearch]; if (!is_array($datavars)) { $datavars = unserialize($datavars); -- libgit2 0.21.4