<?php
/************************************************************************
- * MXChange v0.2.1 Start: 09/30/2005 *
- * =============== Last change: 05/19/2008 *
+ * Mailer v0.2.1-FINAL Start: 09/30/2005 *
+ * =================== Last change: 05/19/2008 *
* *
* -------------------------------------------------------------------- *
* File : account.php *
* -------------------------------------------------------------------- *
* Kurzbeschreibung : Der Sponsor kann sein Account verwalten *
* -------------------------------------------------------------------- *
- * *
+ * $Revision:: $ *
+ * $Date:: $ *
+ * $Tag:: 0.2.1-FINAL $ *
+ * $Author:: $ *
* -------------------------------------------------------------------- *
- * Copyright (c) 2003 - 2008 by Roland Haeder *
- * For more information visit: http://www.mxchange.org *
+ * Copyright (c) 2003 - 2009 by Roland Haeder *
+ * Copyright (c) 2009 - 2012 by Mailer Developer Team *
+ * For more information visit: http://mxchange.org *
* *
- * This program is free software. You can redistribute it and/or modify *
+ * This program is free software; you can redistribute it and/or modify *
* it under the terms of the GNU General Public License as published by *
- * the Free Software Foundation; either version 2 of the License. *
+ * the Free Software Foundation; either version 2 of the License, or *
+ * (at your option) any later version. *
* *
* This program is distributed in the hope that it will be useful, *
* but WITHOUT ANY WARRANTY; without even the implied warranty of *
// Some security stuff...
if (!defined('__SECURITY')) {
- $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4)."/security.php";
- require($INC);
-} elseif ((!EXT_IS_ACTIVE("sponsor")) && (!IS_ADMIN())) {
- ADD_FATAL(EXTENSION_PROBLEM_EXT_INACTIVE);
+ exit();
+} elseif (!isExtensionActive('sponsor')) {
+ displayMessage('{%pipe,generateExtensionInactiveNotInstalledMessage=sponsor%}');
return;
-} elseif (!IS_SPONSOR()) {
+} elseif (!isSponsor()) {
// No sponsor!
- ADD_FATAL(SPONSOR_ONLY_AREA_ENTERED);
+ addFatalMessage(__FILE__, __LINE__, '{--SPONSOR_ONLY_AREA_ENTERED--}');
return;
}
// Data for the formular
-$result = SQL_QUERY_ESC("SELECT company, position, tax_ident,
-gender, surname, family, street_nr1, street_nr2, zip, city, country,
-phone, fax, cell, email, url,
-status, receive_warnings
-FROM "._MYSQL_PREFIX."_sponsor_data
-WHERE id='%s' AND password='%s' LIMIT 1",
- array(bigintval($_COOKIE['sponsorid']), $_COOKIE['sponsorpass']), __FILE__, __LINE__);
+$result = SQL_QUERY_ESC("SELECT
+ `id`, `company`, `position`, `tax_ident`,
+ `gender`, `surname`, `family`, `street_nr1`, `street_nr2`, `zip`, `city`, `country`,
+ `phone`, `fax`, `cell`, `email`, `url`,
+ `status`, `receive_warnings`
+FROM
+ `{?_MYSQL_PREFIX?}_sponsor_data`
+WHERE
+ `id`=%s AND
+ `password`='%s'
+LIMIT 1",
+ array(
+ bigintval(getSession('sponsor_id')),
+ getSession('sponsorpass')
+ ), __FILE__, __LINE__);
+
+// Entry found?
if (SQL_NUMROWS($result) == 1) {
// Load sponsor data
$content = SQL_FETCHARRAY($result);
- if ($content['status'] == "CONFIRMED") {
+ if ($content['status'] == 'CONFIRMED') {
// Check if form was submitted or not
- if (!empty($_POST['ok'])) {
+ if (isFormSent()) {
// Check passwords
- if (empty($_POST['pass_old'])) {
+ if (!isPostRequestElementSet('pass_old')) {
// No current password entered
- $MSG = SPONSOR_NO_CURRENT_PASSWORD_ENTERED;
- } elseif (md5($_POST['pass_old']) != $_COOKIE['sponsorpass']) {
+ $message = '{--SPONSOR_NO_CURRENT_PASSWORD_ENTERED--}';
+ } elseif (md5(postRequestElement('pass_old')) != getSession('sponsorpass')) {
// Entered password didn't match password in DB
- $MSG = SPONSOR_CURRENT_PASSWORD_DIDNOT_MATCH_DB;
- } elseif ((!empty($_POST['pass1'])) && (!empty($_POST['pass2'])) && ($_POST['pass1'] != $_POST['pass2'])) {
+ $message = '{--SPONSOR_CURRENT_PASSWORD_DIDNOT_MATCH_DB--}';
+ } elseif ((isPostRequestElementSet('pass1')) && (isPostRequestElementSet('pass2')) && (postRequestElement('pass1') != postRequestElement('pass2'))) {
// Both new passwords did not match
- $MSG = SPONSOR_BOTH_NEW_PASSWORDS_DIDNOT_MATCH;
- } elseif ((empty($_POST['pass1'])) && (!empty($_POST['pass2']))) {
+ $message = '{--SPONSOR_BOTH_NEW_PASSWORDS_DIDNOT_MATCH--}';
+ } elseif ((!isPostRequestElementSet('pass1')) && (isPostRequestElementSet('pass2'))) {
// No password one entered
- $MSG = SPONSOR_PASSWORD_ONE_EMPTY;
- } elseif ((!empty($_POST['pass1'])) && (empty($_POST['pass2']))) {
+ $message = '{--SPONSOR_PASSWORD_ONE_EMPTY--}';
+ } elseif ((isPostRequestElementSet('pass1')) && (!isPostRequestElementSet('pass2'))) {
// No password two entered
- $MSG = SPONSOR_PASSWORD_TWO_EMPTY;
- } elseif ((!empty($_POST['pass1'])) && (strlen($_POST['pass1']) < $_CONFIG['pass_len'])) {
+ $message = '{--SPONSOR_PASSWORD_TWO_EMPTY--}';
+ } elseif ((isPostRequestElementSet('pass1')) && (strlen(postRequestElement('pass1')) < getPassLen())) {
// Too short password
- $MSG = SPONSOR_PASSWORD_TOO_SHORT_1.$_CONFIG['pass_len'].SPONSOR_PASSWORD_TOO_SHORT_2;
+ $message = '{--SPONSOR_PASSWORD_TOO_SHORT--}';
} else {
// Default is we don't want to change password!
- $PASS_AND = ""; $PASS_DATA = "";
+ $PASS_AND = ''; $PASS_DATA = '';
// Check if we want to change password or not
- if (($_POST['pass1'] == $_POST['pass2']) && (!empty($_POST['pass1'])) && ($_POST['pass1'] != $_POST['pass_old'])) {
+ if ((postRequestElement('pass1') == postRequestElement('pass2')) && (isPostRequestElementSet('pass1')) && (postRequestElement('pass1') != postRequestElement('pass_old'))) {
// Change current password
- $PASS_AND = ", password='%s'";
- $PASS_DATA = md5($_POST['pass1']);
- }
+ $PASS_AND = ",`password`='%s'";
+ $PASS_DATA = md5(postRequestElement('pass1'));
+ } // END - if
// Unsecure data which we don't want here
- $UNSAFE = array('receive_warnings', 'warning_interval');
+ $UNSAFE = array('receive_warnings', 'warning_interval');
// Remove all (maybe spoofed) unsafe data from array
foreach ($UNSAFE as $remove) {
- unset($_POST[$remove]);
- }
+ unsetPostRequestElement($remove);
+ } // END - foreach
// Set last change timestamp
- $_POST['last_change'] = time();
+ setPostRequestElement('last_change', 'UNIX_TIMESTAMP()');
// Save data
- $MSG = SPONSOR_SAVE_DATA($_POST, $content);
+ $message = saveSponsorData(postRequestArray(), $content);
}
- if (!empty($MSG)) {
+ if (!empty($message)) {
// Output message
- $OUT = LOAD_TEMPLATE("admin_settings_saved", true, $MSG);
+ $GLOBALS['sponsor_output'] = displayMessage($message, true);
} else {
// No message generated
- $OUT = LOAD_TEMPLATE("admin_settings_saved", true, SPONSOR_NO_MESSAGE_GENERATED);
+ $GLOBALS['sponsor_output'] = displayMessage('{--SPONSOR_NO_MESSAGE_GENERATED--}', true);
}
} else {
- // Check for gender selection
- switch ($content['gender'])
- {
- case "M": // Male
- define('__GENDER_M', " selected");
- define('__GENDER_F', "");
- define('__GENDER_C', "");
- break;
-
- case "F": // Female
- define('__GENDER_M', "");
- define('__GENDER_F', " selected");
- define('__GENDER_C', "");
- break;
-
- case "C": // Company
- define('__GENDER_M', "");
- define('__GENDER_F', "");
- define('__GENDER_C', " selected");
- break;
- }
-
// Output formular
- $OUT = LOAD_TEMPLATE("sponsor_account_form", true, $content);
+ $GLOBALS['sponsor_output'] = loadTemplate('sponsor_account_form', true, $content);
}
} else {
// Locked or so?
- $STATUS = SPONSOR_TRANSLATE_STATUS($content['status']);
- $OUT = LOAD_TEMPLATE("admin_settings_saved", true, SPONSOR_ACCOUNT_FAILED_1.$STATUS.SPONSOR_ACCOUNT_FAILED_2);
+ $GLOBALS['sponsor_output'] = displayMessage('{%message,SPONSOR_ACCOUNT_FAILED=' . $content['status'] . '%}', true);
}
} else {
- // Sponsor account not found!
- $OUT = LOAD_TEMPLATE("admin_settings_saved", true, SPONSOR_ACCOUNT_404_1.$_COOKIE['sponsorid'].SPONSOR_ACCOUNT_404_2);
+ // Sponsor account not found
+ $GLOBALS['sponsor_output'] = displayMessage('{%message,SPONSOR_ACCOUNT_404=' . getSession('sponsor_id') . '%}', true);
}
// Free memory
SQL_FREERESULT($result);
-//
+// [EOF]
?>