--- a/upgrade.php Wed Aug 29 23:35:06 2007 -0400
+++ b/upgrade.php Thu Aug 30 20:46:57 2007 -0400
@@ -397,6 +397,13 @@
switch($_GET['mode'])
{
case "login":
+ if ( $session->user_logged_in && $session->user_level < $ul_admin )
+ {
+ $template->header();
+ echo '<p>Your user account does not have permission to perform an upgrade of Enano. Return to the <a href="index.php">index page</a>.</p>';
+ $template->footer();
+ exit;
+ }
if($session->user_logged_in && $session->user_level >= $ul_admin)
{
if(isset($_POST['login']))