if ((!defined('__SECURITY')) || (!IS_ADMIN())) {
$INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), '/inc') + 4) . '/security.php';
require($INC);
-}
+} // END - if
// Add description as navigation point
ADD_DESCR('admin', __FILE__);
if (REQUEST_ISSET_GET('uid')) {
// Load user's data
$result_user = SQL_QUERY_ESC("SELECT status, gender, surname, family, email FROM `{!_MYSQL_PREFIX!}_user_data` WHERE userid=%s LIMIT 1",
- array(bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
+ array(bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
$ACT = false;
if (SQL_NUMROWS($result_user) == 1) {
// User found
SQL_FREERESULT($result_user);
// Is a lock reason set?
- if ((REQUEST_ISSET_POST(('lock'))) && ($status != "LOCKED")) {
+ if ((REQUEST_ISSET_POST('lock')) && ($status != 'LOCKED')) {
// Ok, lock the account!
if (GET_EXT_VERSION('user') >= '0.3.5') {
// Lock with reason
SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_data` SET `status`='LOCKED',lock_reason='%s',lock_timestamp=NOW() WHERE userid=%s LIMIT 1",
- array(REQUEST_POST('reason'), bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
+ array(REQUEST_POST('reason'), bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
} else {
// Lock with no lock reason saved
SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_data` SET `status`='LOCKED' WHERE userid=%s LIMIT 1",
- array(bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
+ array(bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
}
// Entry updated?
if (SQL_AFFECTEDROWS() == 1) {
// Send an email to the user! In later version you can optionally switch this feature off
- $msg = LOAD_EMAIL_TEMPLATE("lock-user", array('text' => REQUEST_POST('reason')), bigintval(REQUEST_GET('uid')));
+ $message = LOAD_EMAIL_TEMPLATE('lock-user', array('text' => REQUEST_POST('reason')), bigintval(REQUEST_GET('uid')));
// Send away...
- SEND_EMAIL(bigintval(REQUEST_GET('uid')), ADMIN_LOCKED_SUBJ, $msg);
+ sendEmail(bigintval(REQUEST_GET('uid')), ADMIN_LOCKED_SUBJ, $message);
} // END - if
// Prepare message
$message = sprintf(getMessage('USER_ACCOUNT_LOCKED'), REQUEST_GET('uid'));
$ACT = true;
- } elseif ((REQUEST_ISSET_POST(('unlock'))) && ($status == "LOCKED")) {
+ } elseif ((REQUEST_ISSET_POST(('unlock'))) && ($status == 'LOCKED')) {
// Ok, unlock the account!
if (GET_EXT_VERSION('user') >= '0.3.5') {
// Reset lock reason as well
- SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_data` SET `status`='CONFIRMED',lock_reason='',lock_timestamp='0000-00-00 00:00' WHERE userid=%s LIMIT 1",
+ SQL_QUERY_ESC("UPDATE
+ `{!_MYSQL_PREFIX!}_user_data`
+SET
+ `status`='CONFIRMED',
+ `lock_reason`='',
+ `lock_timestamp`='0000-00-00 00:00'
+WHERE
+ `userid`=%s
+LIMIT 1",
array(bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
} else {
// No lock reason to reset
- SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_data` SET `status`='CONFIRMED' WHERE userid=%s LIMIT 1",
+ SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_data` SET `status`='CONFIRMED' WHERE `userid`=%s LIMIT 1",
array(bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
}
// Entry updated?
if (SQL_AFFECTEDROWS() == 1) {
// Send an email to the user! In later version you can optionally switch this feature off
- $msg = LOAD_EMAIL_TEMPLATE("unlock-user", array('text' => REQUEST_POST('reason')), bigintval(REQUEST_GET('uid')));
+ $message = LOAD_EMAIL_TEMPLATE('unlock-user', array('text' => REQUEST_POST('reason')), bigintval(REQUEST_GET('uid')));
// Send away...
- SEND_EMAIL(bigintval(REQUEST_GET('uid')), getMessage('ADMIN_UNLOCKED_SUBJ'), $msg);
+ sendEmail(bigintval(REQUEST_GET('uid')), getMessage('ADMIN_UNLOCKED_SUBJ'), $message);
if (EXT_IS_ACTIVE('rallye')) {
RALLYE_AUTOADD_USER(REQUEST_GET('uid'));
} // END - if
} elseif (REQUEST_ISSET_POST('del')) {
// Delete the account
$ACT = true;
- LOAD_INC_ONCE("inc/modules/admin/what-del_user.php");
- } elseif (REQUEST_ISSET_POST(('no'))) {
+ loadIncludeOnce('inc/modules/admin/what-del_user.php');
+ } elseif (REQUEST_ISSET_POST('no')) {
// Do not lock him...
$URL = ADMIN_CREATE_USERID_LINK(REQUEST_GET('uid'));
} else {
- $result = SQL_QUERY_ESC("SELECT email, surname, family FROM `{!_MYSQL_PREFIX!}_user_data` WHERE userid=%s LIMIT 1",
+ // Load user data we need
+ $result = SQL_QUERY_ESC("SELECT `email`, `surname`, `family` FROM `{!_MYSQL_PREFIX!}_user_data` WHERE `userid`=%s LIMIT 1",
array(bigintval(REQUEST_GET('uid'))), __FILE__, __LINE__);
// Entry found?
if (SQL_NUMROWS($result) == 1) {
// Load data
- list ($email, $sname, $fname) = SQL_FETCHROW($result);
-
- // Free result
- SQL_FREERESULT($result);
+ $DATA = SQL_FETCHARRAY($result);
// Transfer data to constants for the template
// @TODO Rewrite these all constants
- define('__EMAIL', CREATE_EMAIL_LINK($email, "user_data"));
- define('__SNAME', $sname);
- define('__FNAME', $fname);
+ define('__EMAIL', generateEmailLink($DATA['email'], 'user_data'));
+ define('__SNAME', $DATA['surname']);
+ define('__FNAME', $DATA['family']);
define('__UID' , bigintval(REQUEST_GET('uid')));
// Realy want to lock?
switch ($status)
{
- case "CONFIRMED": // Yes, lock him down... ;-)
- define('__OK_VALUE' , "lock");
- define('__HEADER_VALUE', sprintf(getMessage('ADMIN_HEADER_LOCK_ACCOUNT'), constant('__UID')));
- define('__TEXT_VALUE' , sprintf(getMessage('ADMIN_TEXT_LOCK_ACCOUNT'), constant('__UID')));
- break;
-
- case "LOCKED": // Unlock the user
- define('__OK_VALUE' , "unlock");
- define('__HEADER_VALUE', sprintf(getMessage('ADMIN_HEADER_UNLOCK_ACCOUNT'), constant('__UID')));
- define('__TEXT_VALUE' , sprintf(getMessage('ADMIN_TEXT_UNLOCK_ACCOUNT'), constant('__UID')));
- break;
-
- case "UNCONFIRMED": // Unconfirmed accounts cannot be unlocked!
- define('__OK_VALUE' , "del");
- define('__HEADER_VALUE', sprintf(getMessage('ADMIN_HEADER_DEL_ACCOUNT'), constant('__UID')));
- define('__TEXT_VALUE' , sprintf(getMessage('ADMIN_TEXT_DEL_ACCOUNT'), constant('__UID')));
- break;
+ case 'CONFIRMED': // Yes, lock him down... ;-)
+ define('__OK_VALUE' , 'lock');
+ define('__HEADER_VALUE', sprintf(getMessage('ADMIN_HEADER_LOCK_ACCOUNT'), constant('__UID')));
+ define('__TEXT_VALUE' , sprintf(getMessage('ADMIN_TEXT_LOCK_ACCOUNT'), constant('__UID')));
+ break;
+
+ case 'LOCKED': // Unlock the user
+ define('__OK_VALUE' , 'unlock');
+ define('__HEADER_VALUE', sprintf(getMessage('ADMIN_HEADER_UNLOCK_ACCOUNT'), constant('__UID')));
+ define('__TEXT_VALUE' , sprintf(getMessage('ADMIN_TEXT_UNLOCK_ACCOUNT'), constant('__UID')));
+ break;
+
+ case 'UNCONFIRMED': // Unconfirmed accounts cannot be unlocked!
+ define('__OK_VALUE' , 'del');
+ define('__HEADER_VALUE', sprintf(getMessage('ADMIN_HEADER_DEL_ACCOUNT'), constant('__UID')));
+ define('__TEXT_VALUE' , sprintf(getMessage('ADMIN_TEXT_DEL_ACCOUNT'), constant('__UID')));
+ break;
}
// Output form
- LOAD_TEMPLATE("admin_lock_user");
+ LOAD_TEMPLATE('admin_lock_user');
} else {
// Account does not exists!
LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"admin_failed\">".sprintf(getMessage('ADMIN_MEMBER_404'), REQUEST_GET('uid'))."</div>");
}
+
+ // Free result
+ SQL_FREERESULT($result);
}
// Is an URL set?
if (!empty($URL)) {
// Reload and die...
- LOAD_URL($URL);
+ redirectToUrl($URL);
} elseif ($ACT) {
// An action was performed...
if (!empty($message)) {