\r\n\r\nForbidden 403\r\n\r\n

Forbidden 403

\r\nThe document you are requesting is forbidden.\r\n\r\n"; exit; } $sessionDomain = substr($GLOBALS['rootRel'],0, strlen($GLOBALS['rootRel'])-1); @ini_set("session.cookie_path",$sessionDomain); if($glob['rootRel']=="/"){ $sessionName = "ccSID"; } else { $sessionName = "ccSID".md5($glob['rootRel']); } session_name($sessionName); session_start(); if(!isset($_SESSION['ccAdmin'])){ header("Location: ".$GLOBALS['rootRel']."admin/login.php?goto=".currentPage()); exit; // check session path is correct } elseif(strpos(dirname($_SERVER['PHP_SELF']), $_SESSION['ccAdminPath']) !== 0){ header("Location: ".$GLOBALS['rootRel']."admin/login.php?goto=".currentPage()); exit; } else { // get session information as array include_once($GLOBALS['rootDir']."/classes/db.inc.php"); $db = new db(); $query = sprintf("SELECT * FROM ".$glob['dbprefix']."CubeCart_admin_users WHERE adminId = %s", $db->mySQLSafe($_SESSION['ccAdmin'])); $ccAdminData = $db->select($query); // fimd permissions for those who are not super users if($ccAdminData[0]['isSuper']==0){ $query = sprintf("SELECT ".$glob['dbprefix']."CubeCart_admin_sections.sectId, name, `read`, `write`, `edit`, `delete` FROM ".$glob['dbprefix']."CubeCart_admin_sections LEFT JOIN ".$glob['dbprefix']."CubeCart_admin_permissions ON ".$glob['dbprefix']."CubeCart_admin_sections.sectId = ".$glob['dbprefix']."CubeCart_admin_permissions.sectId WHERE adminId = %s", $db->mySQLSafe($_SESSION['ccAdmin'])); $permissionArray = $db->select($query); if(is_array($permissionArray)){ for($i=0; $i $value){ $masterKey = $permissionArray[$i]['name']; $ccAdminData[$masterKey][$key] = $value; } } } } } unset($permissionArray); ?>