<% header("Package $past{$method}") %> <%once> my %past = ( 'cancel' => 'cancelled', 'expire' => 'expired', 'suspend' => 'suspended', 'adjourn' => 'adjourned', ); <%init> #untaint method my $method = $cgi->param('method'); $method =~ /^(cancel|expire|suspend|adjourn)$/ || die "Illegal method"; $method = $1; #untaint pkgnum my $pkgnum = $cgi->param('pkgnum'); $pkgnum =~ /^(\d+)$/ || die "Illegal pkgnum"; $pkgnum = $1; #untaint reasonnum my $reasonnum = $cgi->param('reasonnum'); $reasonnum =~ /^(-?\d+)$/ || die "Illegal reasonnum"; $reasonnum = $1; my $date = time; if ($method eq 'expire' || $method eq 'adjourn'){ #untaint date $date = $cgi->param('date'); str2time($cgi->param('date')) =~ /^(\d+)$/ || die "Illegal date"; $date = $1; } my $cust_pkg = qsearchs( 'cust_pkg', {'pkgnum'=>$pkgnum} ); #my $otaker = $FS::CurrentUser::CurrentUser->name; #$otaker = $FS::CurrentUser::CurrentUser->username # if ($otaker eq "User, Legacy"); if ($reasonnum == -1) { $reasonnum = { 'typenum' => scalar( $cgi->param('newreasonnumT') ), 'reason' => scalar( $cgi->param('newreasonnum' ) ), }; } my $error; if ($method eq 'expire' || $method eq 'adjourn'){ my %hash = $cust_pkg->hash; $hash{$method} = $date; my $new = new FS::cust_pkg \%hash; $error = $new->replace($cust_pkg, 'reason' => $reasonnum); } else { $error = $cust_pkg->$method( 'reason' => $reasonnum ); } if ($error) { $cgi->param('error', $error); print $cgi->redirect(popurl(2). "cancel_pkg.html?". $cgi->query_string ); }