2012-09-01 08:00:24 +00:00
|
|
|
<?
|
|
|
|
enforce_login();
|
|
|
|
|
|
|
|
// Get user level
|
|
|
|
$DB->query("
|
|
|
|
SELECT
|
|
|
|
i.SupportFor,
|
|
|
|
p.DisplayStaff
|
2013-11-17 08:00:47 +00:00
|
|
|
FROM users_info AS i
|
|
|
|
JOIN users_main AS m ON m.ID = i.UserID
|
|
|
|
JOIN permissions AS p ON p.ID = m.PermissionID
|
2012-09-01 08:00:24 +00:00
|
|
|
WHERE i.UserID = ".$LoggedUser['ID']
|
|
|
|
);
|
|
|
|
list($SupportFor, $DisplayStaff) = $DB->next_record();
|
|
|
|
|
|
|
|
if (!($SupportFor != '' || $DisplayStaff == '1')) {
|
|
|
|
// Logged in user is not FLS or Staff
|
|
|
|
error(403);
|
|
|
|
}
|
|
|
|
|
|
|
|
if ($ID = (int)$_POST['id']) {
|
2013-07-02 08:01:37 +00:00
|
|
|
$DB->query("
|
|
|
|
DELETE FROM staff_pm_responses
|
|
|
|
WHERE ID = $ID");
|
2012-09-01 08:00:24 +00:00
|
|
|
echo '1';
|
2013-02-22 08:00:24 +00:00
|
|
|
|
2012-09-01 08:00:24 +00:00
|
|
|
} else {
|
2013-07-02 08:01:37 +00:00
|
|
|
// No ID
|
2012-09-01 08:00:24 +00:00
|
|
|
echo '-1';
|
|
|
|
}
|
2013-07-02 08:01:37 +00:00
|
|
|
?>
|