X-Git-Url: http://wagnertech.de/gitweb/gitweb.cgi/timetracker.git/blobdiff_plain/e59d57b1fcf105382028dcfc0157a6ca84b0dc46..4dcb88a76a3de466ee6116ae0852f53ba2b259a5:/expense_delete.php diff --git a/expense_delete.php b/expense_delete.php index 06c9690b..42a6add8 100644 --- a/expense_delete.php +++ b/expense_delete.php @@ -31,11 +31,17 @@ import('form.Form'); import('DateAndTime'); import('ttExpenseHelper'); -// Access check. -if (!ttAccessAllowed('track_own_expenses') || !$user->isPluginEnabled('ex')) { +// Access checks. +if (!(ttAccessAllowed('track_own_expenses') || ttAccessAllowed('track_expenses'))) { header('Location: access_denied.php'); exit(); } +if (!$user->isPluginEnabled('ex')) { + header('Location: feature_disabled.php'); + exit(); +} + + $cl_id = $request->getParameter('id'); $expense_item = ttExpenseHelper::getItem($cl_id, $user->getActiveUser());