Ja, lass es ruhig so. Immerhin wird ja auch noch die laufende Sessionsid geprüft bevor man an die Profileinstellungen ran kommt. Wegen dieser Prüfung bist du auch in den Einstellungen des Testusers gelandet und nicht in denen des Admins.




if ( $HTTP_POST_VARS['ucp_require'] )
   {
      $ucp_mode = 'ucp_require';
   }
   if ( $HTTP_POST_VARS['ucp_info'] )
   {
      $ucp_mode = 'ucp_info';
   }
   if ( $HTTP_POST_VARS['ucp_prefs'] )
   {
      $ucp_mode = 'ucp_prefs';
   }
   if ( $HTTP_POST_VARS['ucp_avatar'] )
   {
      $ucp_mode = 'ucp_avatar';
   }
   if ( $HTTP_POST_VARS['ucp_signature'] )
   {
//      $ucp_mode = 'ucp_signature';
      $mode = 'signature';
   }
//
        // EDIT LINKS START
        //
   if ( isset($_GET['pmode']) )
        {
        $pmode = $_GET['pmode'];
   if ( $pmode == "ucp_require" )
   {
      $ucp_mode = 'ucp_require';
   }
        if ( $pmode == "ucp_info" )
   {
      $ucp_mode = 'ucp_info';
   }
   if ( $pmode == "ucp_prefs" )
   {
      $ucp_mode = 'ucp_prefs';
   }
   if ( $pmode == "ucp_avatar" )
   {
      $ucp_mode = 'ucp_avatar';
   }
   if ( $pmode == "ucp_signature" )
   {
      $mode = 'signature';
   }
        }
        // ORIGINALCODE
        /*
   if ( $HTTP_POST_VARS['ucp_require'] )
   {
      $ucp_mode = 'ucp_require';
   }
   if ( $HTTP_POST_VARS['ucp_info'] )
   {
      $ucp_mode = 'ucp_info';
   }
   if ( $HTTP_POST_VARS['ucp_prefs'] )
   {
      $ucp_mode = 'ucp_prefs';
   }
   if ( $HTTP_POST_VARS['ucp_avatar'] )
   {
      $ucp_mode = 'ucp_avatar';
   }
   if ( $HTTP_POST_VARS['ucp_signature'] )
   {
//      $ucp_mode = 'ucp_signature';
      $mode = 'signature';
   }
   */
   //
        // EDIT LINKS END
        //
'EASY_UCP' => $lang['easyUCP'],
'EASY_AVATAR' => append_sid("profile.php?mode=editprofile&u=" . $profiledata['user_id'] . "&pmode=ucp_avatar"),
   'EASY_SIGNATURE' => append_sid("profile.php?mode=editprofile&u=" . $profiledata['user_id'] . "&pmode=ucp_signature"),
   'EASY_PREFS' => append_sid("profile.php?mode=editprofile&u=" . $profiledata['user_id'] . "&pmode=ucp_prefs"),
   'EASY_INFO' => append_sid("profile.php?mode=editprofile&u=" . $profiledata['user_id'] . "&pmode=ucp_info"),
   'EASY_REQUIRE' => append_sid("profile.php?mode=editprofile&u=" . $profiledata['user_id'] . "&pmode=ucp_require"),
<a href="{EASY_INFO}">link zur infoseite</a>
'EASY_AVATAR' => append_sid("profile.php?mode=editprofile&u=" . $userdata['user_id'] . "&pmode=ucp_avatar"),
   'EASY_SIGNATURE' => append_sid("profile.php?mode=editprofile&u=" . $userdata['user_id'] . "&pmode=ucp_signature"),
   'EASY_PREFS' => append_sid("profile.php?mode=editprofile&u=" . $userdata['user_id'] . "&pmode=ucp_prefs"),
   'EASY_INFO' => append_sid("profile.php?mode=editprofile&u=" . $userdata['user_id'] . "&pmode=ucp_info"),
   'EASY_REQUIRE' => append_sid("profile.php?mode=editprofile&u=" . $userdata['user_id'] . "&pmode=ucp_require"),
 

#
#-----[ OPEN ]------------------------------------------
#
profile.php
#
#-----[ FIND ]------------------------------------------
#
   if ( isset($_GET['pmode']) ) 
        { 
        $pmode = $_GET['pmode'];
#
#-----[ REPLACE WITH ]----------------------------------
#
if ( isset($HTTP_GET_VARS['pmode']) || isset($HTTP_POST_VARS['pmode']) )
{
   $pmode = ( isset($HTTP_GET_VARS['pmode']) ) ? $HTTP_GET_VARS['pmode'] : $HTTP_POST_VARS['pmode'];
   $pmode = htmlspecialchars($pmode);


Mitglieder in diesem Forum: 0 Mitglieder und 8 Gäste