diff --git a/portal/portal_functions.php b/portal/portal_functions.php index 5d1fe3cf..56fcbbf7 100644 --- a/portal/portal_functions.php +++ b/portal/portal_functions.php @@ -27,11 +27,9 @@ function verifyContactTicketAccess($requested_ticket_id, $expected_ticket_state) $row = mysqli_fetch_array($sql); $ticket_id = $row['ticket_id']; - if(intval($ticket_id)) { - if ($session_contact_id == $row['ticket_contact_id'] || $session_contact_id == $session_client_primary_contact_id) { - // Client is ticket owner, or primary contact - return TRUE; - } + if(intval($ticket_id) && ($session_contact_id == $row['ticket_contact_id'] || $session_contact_id == $session_client_primary_contact_id)) { + // Client is ticket owner, or primary contact + return TRUE; } // Client is NOT ticket owner or primary contact