From 990e39cadb0842aeec05cf482f9d12db2357f219 Mon Sep 17 00:00:00 2001 From: "Michael Kaufmann (d00p)" Date: Thu, 28 Nov 2013 11:01:14 +0100 Subject: [PATCH] forgot replacer in prepared statement, thx BNoiZe Signed-off-by: Michael Kaufmann (d00p) --- admin_domains.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/admin_domains.php b/admin_domains.php index 187de210..ab1a0432 100644 --- a/admin_domains.php +++ b/admin_domains.php @@ -977,7 +977,7 @@ if ($page == 'domains' $result_stmt = Database::prepare(" SELECT `d`.*, `c`.`customerid` FROM `" . TABLE_PANEL_DOMAINS . "` `d` LEFT JOIN `" . TABLE_PANEL_CUSTOMERS . "` `c` USING(`customerid`) WHERE `d`.`parentdomainid` = '0' AND `d`.`id` = :id" . - ($userinfo['customers_see_all'] ? '' : " AND `d`.`adminid` = '" . (int)$userinfo['adminid'] . "' ") + ($userinfo['customers_see_all'] ? '' : " AND `d`.`adminid` = :adminid") ); $params = array('id' => $id); if ($userinfo['customers_see_all'] == '0') {