MantisBT: master-1.2.x fd39c78b

Author Committer Branch Timestamp Parent
dhx dhx master-1.2.x 2009-08-07 07:08:36 master-1.2.x 1d837ae7
Affected Issues  0010687: Administrators shouldn't be allowed to delete their own account
Changeset

Fix 0010687: Force use of account_delete when deleting own account

The case of deleting ones own account is quite different to deleting the
account of another user. Therefore if an administrator wants to delete
their own account, account_delete.php should be used instead. It
correctly handles logging out and redirection of the administrator who
has just deleted their own account.

This fix will force account_delete.php to be used in a way that is
transparent to an administrator who is deleting their account.

For the purpose of this commit message, "administrator" is any user who
has an access level equal to or beyond manage_user_threshold.

mod - account_delete.php Diff File
mod - manage_user_delete.php Diff File