芝麻web文件管理V1.00
编辑当前文件:/home/jambtst2015/public_html/giraffeng.com/admin/userform_edit.php
window.location.href = "index.php?error=1";'; } } */ /*---For Add---*/ $updater_class = mysql_fetch_array(mysql_query("select `userclass` from `sat_users` where `user_id`='".$_SESSION['sat_login_id']."'")); if(empty($_POST['submit'])){ $_POST['submit']=''; } if($_POST['submit'] == 'Save'){ if($_REQUEST['password1']!=''){ $password = md5($_REQUEST['password1']); }else{ $password = $_REQUEST['password']; } $error = ''; /*----check username----*/ $chksql = "select `user_id` from `sat_users` where `username`='".$_POST['username']."' and `user_id`!='".$_POST['userId']."'"; $chkqry = mysql_query($chksql); $getRow = mysql_num_rows($chkqry); /*----end username check-*/ /*----check email----*/ $chksql_email = "select `user_id` from `sat_users` where `email`='".$_POST['email']."' and `user_id`!='".$_POST['userId']."'"; $chkqry_email = mysql_query($chksql_email); $getRowemail = mysql_num_rows($chkqry_email); /*----end username check-*/ if($getRow > 0){ $error = 'This User ID already exists.'; } if($getRowemail > 0){ $error = 'This email address already exists.'; } else{ if($_POST['email'] == ''){ $error = 'Please enter email address.'; } else if(!isEmail($_POST['email'])){ $error = 'Invalid email address. Please enter valid email address.'; } else if($_REQUEST['security_question']!='' && $_REQUEST['security_answer']==''){ $error = "Answer field must not be empty"; } else{ $phone = $_POST['phone1']."-".$_POST['phone2']."-".$_POST['phone3']; $upSql = "update `sat_users` set "; $upSql .= "firstname='".mysql_real_escape_string($_POST['firstname'])."', "; $upSql .= "lastname='".mysql_real_escape_string($_POST['lastname'])."', "; //$upSql .= "username='".mysql_real_escape_string($_POST['username'])."', "; $upSql .= "edit_date=now(), "; //$upSql .= "user_initial='".$_POST['user_initial']."', "; if($_POST['userclass']!=''){ $upSql .= "userclass='".$_POST['userclass']."', "; } $upSql .= "password='".$password."', "; $upSql .= "security_question='".mysql_real_escape_string($_POST['security_question'])."', "; $upSql .= "security_answer='".mysql_real_escape_string($_POST['security_answer'])."', "; if($_POST['status']!=''){ $upSql .= "status='".$_POST['status']."', "; } $upSql .= "email='".$_POST['email']."', "; $upSql .= "phone='".$phone."', "; $upSql .= "extension_phone='".$_POST['extension_phone']."'"; //$upSql .= "password='".$password."'"; $upSql .= " where user_id='".$_POST['userId']."'"; //echo $upSql; //exit; mysql_query($upSql); /*----make history------*/ /*$insSql = "insert into `sat_users_history` set "; $insSql .= "user_id='".mysql_real_escape_string($_POST['userId'])."', "; $insSql .= "name='".mysql_real_escape_string($_POST['name'])."', "; $insSql .= "username='".mysql_real_escape_string($_POST['username_hide'])."', "; $insSql .= "effective_date='".mysql_real_escape_string($_POST['effective_date_hide'])."', "; $insSql .= "title='".$_POST['title_hide']."', "; $insSql .= "user_level='".$_POST['user_level_hide']."', "; $insSql .= "password='".$_POST['password_hide']."', "; $insSql .= "password_recover='".$_POST['password_recover_hide']."', "; $insSql .= "securityq1='".mysql_real_escape_string($_POST['securityq1_hide'])."', "; $insSql .= "securitya1='".mysql_real_escape_string($_POST['securitya1_hide'])."', "; $insSql .= "securityq2='".mysql_real_escape_string($_POST['securityq2_hide'])."', "; $insSql .= "securitya2='".mysql_real_escape_string($_POST['securitya2_hide'])."', "; $insSql .= "securityq3='".mysql_real_escape_string($_POST['securityq3_hide'])."', "; $insSql .= "securitya3='".mysql_real_escape_string($_POST['securitya3_hide'])."', "; $insSql .= "status='".$_POST['status_hide']."', "; $insSql .= "email='".$_POST['email_hide']."', "; $insSql .= "reports_to_name='".$_POST['reports_to_name_hide']."', "; $insSql .= "notes='".$_POST['notes_hide']."', "; $insSql .= "notes_desc='".mysql_real_escape_string($_POST['notes_desc_hide'])."', "; $insSql .= "rcv_reqs_email='".$_POST['rcv_reqs_email_hide']."', "; $insSql .= "submittals_emails='".$_POST['submittals_emails_hide']."', "; $insSql .= "rvc_hotlist_email='".$_POST['rvc_hotlist_email_hide']."', "; $insSql .= "inactive_date='".$_POST['inactive_date_hide']."', "; $insSql .= "phone='".$_POST['phone_hide']."', "; $insSql .= "extension_phone='".$_POST['extension_phone_hide']."'"; //echo $insSql; mysql_query($insSql);*/ /*----end----*/ if($_POST['rec']!=''){ //exit(11111111111); header("location:index.php?success=2"); exit(); }else{ header("location:view_user.php?success=2&userid=".$_POST['userId']."&page=".$_REQUEST['page']."&name=".$_REQUEST['src_name']."&email=".$_REQUEST['src_email']."&username=".$_REQUEST['src_username']."&title=".$_REQUEST['src_title']."&status=".$_REQUEST['src_status']."&rcv_reqs_email=".$_REQUEST['src_rcv_reqs_email']."&submittals_emails=".$_REQUEST['src_submittals_emails']."&rvc_hotlist_email=".$_REQUEST['src_rvc_hotlist_email']."&order=".$_REQUEST['src_order']."&submit2=".$_REQUEST['src_submit2']); exit(); } } } } /*---fetch value----*/ echo $userId = $_REQUEST['id']; $result=mysql_fetch_array(mysql_query("select * from user where id='".$userId."'"));print_r($result); /*---End Add---*/ ?>
Edit User
User ID
Password
******
Change Password
Cancel
*Name
*Email Address
readonly="readonly" />
Phone
-
-
(
)
Add Date