diff --git a/core/users/users.php b/core/users/users.php index b2bb1afc98..74ae080900 100644 --- a/core/users/users.php +++ b/core/users/users.php @@ -59,7 +59,7 @@ //common where clause $sql_where = "where true "; - if (!(permission_exists('user_all') && $_GET['show'] == 'all')) { + if (!(isset($_GET['show']) && permission_exists('user_all') && $_GET['show'] == 'all')) { $sql_where .= "and u.domain_uuid = :domain_uuid "; $parameters['domain_uuid'] = $_SESSION['domain_uuid']; } @@ -89,7 +89,7 @@ //prepare for paging $rows_per_page = is_numeric($_SESSION['domain']['paging']['numeric']) ? $_SESSION['domain']['paging']['numeric'] : 50; $param = "search=".escape($search); - if (permission_exists('user_all') && $_GET['show'] == 'all') { + if (isset($_GET['show']) && permission_exists('user_all') && $_GET['show'] == 'all') { $param .= "&show=all"; } $page = $_GET['page']; @@ -115,7 +115,7 @@ echo "
| "; if (permission_exists('user_add')) { - if ($_SESSION['limit']['users']['numeric'] == '' || ($_SESSION['limit']['users']['numeric'] != '' && $total_users < $_SESSION['limit']['users']['numeric'])) { + if (isset($_SESSION['limit']['users']['numeric']) && ($_SESSION['limit']['users']['numeric'] == '' || ($_SESSION['limit']['users']['numeric'] != '') && $total_users < $_SESSION['limit']['users']['numeric'])) { echo "".$v_link_label_add.""; } } @@ -176,7 +176,7 @@ foreach($users as $row) { $tr_link = (permission_exists('user_edit')) ? "href='user_edit.php?id=".escape($row['user_uuid'])."'" : null; echo " | |
| ".escape($row['domain_name'])." | \n"; } echo ""; |