exit;
}
+require 'auth.inc.php';
+if (!$Admin)
+ abort('401 unauthorised', "geen beheersrechten");
+
if (!$_POST)
abort('405 post error', "niets te doen");
if (!isset($_SERVER['PATH_INFO']) or strlen($_SERVER['PATH_INFO']) <= 1)
exit;
}
-$prepend = "<?php include 'head.inc.php'; ?>\n\n";
+$rootpath = str_repeat('../', substr_count($filename, '/'));
+$prepend = "<?php include '${rootpath}head.inc.php'; ?>\n\n";
$append = "\n";
if (!file_put_contents($filename, $prepend . $upload . $append))