Linux anchor 4.4.0-210-generic #242-Ubuntu SMP Fri Apr 16 09:57:56 UTC 2021 x86_64
Apache/2.4.18 (Ubuntu)
Server IP : 10.10.100.4 & Your IP : 216.73.217.150
Domains :
Cant Read [ /etc/named.conf ]
User : www-data
Terminal
Auto Root
Create File
Create Folder
Localroot Suggester
Backdoor Destroyer
Readme
/
var /
www /
owncloud-prm /
settings /
Middleware /
Delete
Unzip
Name
Size
Permission
Date
Action
SubadminMiddleware.php
2.59
KB
-rw-r--r--
2018-04-19 18:15
Save
Rename
<?php /** * @author Lukas Reschke <lukas@statuscode.ch> * @author Morris Jobke <hey@morrisjobke.de> * @author Roeland Jago Douma <rullzer@owncloud.com> * @author Thomas Müller <thomas.mueller@tmit.eu> * * @copyright Copyright (c) 2018, ownCloud GmbH * @license AGPL-3.0 * * This code is free software: you can redistribute it and/or modify * it under the terms of the GNU Affero General Public License, version 3, * as published by the Free Software Foundation. * * This program is distributed in the hope that it will be useful, * but WITHOUT ANY WARRANTY; without even the implied warranty of * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * GNU Affero General Public License for more details. * * You should have received a copy of the GNU Affero General Public License, version 3, * along with this program. If not, see <http://www.gnu.org/licenses/> * */ namespace OC\Settings\Middleware; use OC\AppFramework\Http; use OC\AppFramework\Middleware\Security\Exceptions\NotAdminException; use OC\AppFramework\Utility\ControllerMethodReflector; use OCP\AppFramework\Http\TemplateResponse; use OCP\AppFramework\Middleware; /** * Verifies whether an user has at least subadmin rights. * To bypass use the `@NoSubadminRequired` annotation * * @package OC\Settings\Middleware */ class SubadminMiddleware extends Middleware { /** @var bool */ protected $isSubAdmin; /** @var ControllerMethodReflector */ protected $reflector; /** * @param ControllerMethodReflector $reflector * @param bool $isSubAdmin */ public function __construct(ControllerMethodReflector $reflector, $isSubAdmin) { $this->reflector = $reflector; $this->isSubAdmin = $isSubAdmin; } /** * Check if sharing is enabled before the controllers is executed * @param \OCP\AppFramework\Controller $controller * @param string $methodName * @throws \Exception */ public function beforeController($controller, $methodName) { if(!$this->reflector->hasAnnotation('NoSubadminRequired')) { if(!$this->isSubAdmin) { throw new NotAdminException('Logged in user must be a subadmin'); } } } /** * Return 403 page in case of an exception * @param \OCP\AppFramework\Controller $controller * @param string $methodName * @param \Exception $exception * @return TemplateResponse * @throws \Exception */ public function afterException($controller, $methodName, \Exception $exception) { if($exception instanceof NotAdminException) { $response = new TemplateResponse('core', '403', [], 'guest'); $response->setStatus(Http::STATUS_FORBIDDEN); return $response; } throw $exception; } }