Exemplo n.º 1
0
function add_query()
{
    $mainframe = JFactory::getApplication();
    $user = JFactory::getUser();
    $db = JFactory::getDBO();
    $id = JRequest::getVar('id');
    $query = "SELECT `created_by` FROM #__formmaker where id=" . $db->escape((int) $id);
    $db->setQuery($query);
    $created_by = $db->loadResult();
    $canEdit = $user->authorise('core.edit', 'com_formmaker');
    $canEditOwn = $user->authorise('core.edit.own', 'com_formmaker');
    if (!$canEdit) {
        if (!$canEditOwn || $created_by != $user->id) {
            $mainframe->redirect("index.php?option=com_formmaker", JText::_('JACTION_NOT_PERMITTED'), 'error');
        }
    }
    $query = "SELECT label_order_current FROM #__formmaker where id=" . $db->escape((int) $id);
    $db->setQuery($query);
    $label = $db->loadResult();
    HTML_contact::add_query($id, $label);
}