Remove duplication of isAuthorizedForEmployee
git-svn-id: http://webgoat.googlecode.com/svn/trunk@149 4033779f-a91e-0410-96ef-6bf7bf53c507
This commit is contained in:
		| @ -259,11 +259,7 @@ public abstract class DefaultLessonAction implements LessonAction | |||||||
| 				/* User is validated for function, but can the user perform that function on the specified user? */ | 				/* User is validated for function, but can the user perform that function on the specified user? */ | ||||||
| 				if(authorized) | 				if(authorized) | ||||||
| 				{ | 				{ | ||||||
| 					query = "SELECT * FROM ownership WHERE employer_id = " + Integer.parseInt(employer_id) + | 					authorized = isAuthorizedForEmployee(s, Integer.parseInt(employer_id), employeeId); | ||||||
| 							" AND employee_id = " + employeeId; |  | ||||||
| 					answer_statement = WebSession.getConnection(s).createStatement( ResultSet.TYPE_SCROLL_INSENSITIVE, ResultSet.CONCUR_READ_ONLY ); |  | ||||||
| 					answer_results = answer_statement.executeQuery( query ); |  | ||||||
| 					authorized = answer_results.first(); |  | ||||||
| 				} | 				} | ||||||
| 			} | 			} | ||||||
| 			catch ( SQLException sqle ) | 			catch ( SQLException sqle ) | ||||||
|  | |||||||
		Reference in New Issue
	
	Block a user