X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;ds=sidebyside;f=show_bonus.php;h=319b15d7229bb08af61a106540f13131ba6ab473;hb=b8e38719844932afed4b1ac23755a4c05b72eb99;hp=0a633f1e771482e37a88064e8e6d86a1f325888c;hpb=0a69b4e17157eda9b6e1c70ff494292ccf8cbbd0;p=mailer.git
diff --git a/show_bonus.php b/show_bonus.php
index 0a633f1e77..319b15d722 100644
--- a/show_bonus.php
+++ b/show_bonus.php
@@ -14,10 +14,9 @@
* $Date:: $ *
* $Tag:: 0.2.1-FINAL $ *
* $Author:: $ *
- * Needs to be in all Files and every File needs "svn propset *
- * svn:keywords Date Revision" (autoprobset!) at least!!!!!! *
* -------------------------------------------------------------------- *
* Copyright (c) 2003 - 2009 by Roland Haeder *
+ * Copyright (c) 2009 - 2011 by Mailer Developer Team *
* For more information visit: http://www.mxchange.org *
* *
* This program is free software; you can redistribute it and/or modify *
@@ -58,7 +57,7 @@ redirectOnUninstalledExtension('bonus');
// Include header
loadIncludeOnce('inc/header.php');
-if ((getRequestParameter('userid') > 0) && (getRequestParameter('d') > 0) && (isGetRequestParameterSet('t'))) {
+if ((isValidUserId(getRequestParameter('userid'))) && (getRequestParameter('d') > 0) && (isGetRequestParameterSet('t'))) {
// Set row name
$t = '';
switch (getRequestParameter('t')) {
@@ -78,15 +77,18 @@ if ((getRequestParameter('userid') > 0) && (getRequestParameter('d') > 0) && (is
// Valid type?
if (!empty($t)) {
// Check for data
- $result = SQL_QUERY_ESC("SELECT d.gender, d.surname, d.family, b.level, b.points
+ $result = SQL_QUERY_ESC("SELECT
+ d.`gender`, d.`surname`, d.`family`, b.`level`, b.`points`
FROM
`{?_MYSQL_PREFIX?}_user_data` AS d
-RIGHT JOIN
+INNER JOIN
`{?_MYSQL_PREFIX?}_bonus_turbo` AS b
ON
- d.userid=b.userid
+ d.`userid`=b.`userid`
WHERE
- d.`status`='CONFIRMED' AND d.userid=%s AND b.%s=%s
+ d.`status`='CONFIRMED' AND
+ d.`userid`=%s AND
+ b.`%s`=%s
LIMIT 1",
array(
bigintval(getRequestParameter('userid')),
@@ -100,8 +102,7 @@ LIMIT 1",
$content = SQL_FETCHARRAY($result);
// Prepare constants for the pre-template
- $content['gender'] = translateGender($content['gender']);
- $content['points'] = translateComma($content['points']);
+ // @TODO No more needed? $content['points'] = translateComma($content['points']);
$content['mailid'] = bigintval(getRequestParameter('d'));
$content['rows'] = addBonusRanks(bigintval(getRequestParameter('d')), $t, bigintval(getRequestParameter('userid')));
@@ -112,18 +113,18 @@ LIMIT 1",
$content['message'] = loadTemplate('show_bonus_msg', true, $content);
} else {
// No data found
- $content['message'] = '{--BONUS_SHOW_NO_DATA--}';
+ $content['message'] = '{--BONUS_SHOW_NO_DATA--}';
}
// Free memory
SQL_FREERESULT($result);
} else {
// Wrong type entered
- $content['message'] = '{--BONUS_SHOW_WRONG_TYPE--}';
+ $content['message'] = '{--BONUS_SHOW_WRONG_TYPE--}';
}
} else {
// Wrong call!
- $content['message'] = '{--BONUS_SHOW_WRONG_CALL--}';
+ $content['message'] = '{--BONUS_SHOW_WRONG_CALL--}';
}
// Load send_bonus header template (for your banners, e.g.?)