merge r13959 from branch 2.3 to trunk

bug 2613 fixed: on the theme configuration screen, make sure the
$_GET['theme'] is a theme id already installed.



git-svn-id: http://piwigo.org/svn/trunk@13960 68402e56-0260-453c-a942-63ccdbb3a9ee
This commit is contained in:
plegall
2012-04-07 21:05:42 +00:00
parent d2c7671d93
commit 641e6a294b

View File

@@ -34,6 +34,13 @@ if (empty($_GET['theme']))
die('Invalid theme URL');
}
include_once(PHPWG_ROOT_PATH.'admin/include/themes.class.php');
$themes = new themes();
if (!in_array($_GET['theme'], array_keys($themes->fs_themes)))
{
die('Invalid theme');
}
$filename = PHPWG_THEMES_PATH.$_GET['theme'].'/admin/admin.inc.php';
if (is_file($filename))
{