X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;ds=sidebyside;f=show_bonus.php;h=ad3ba472f617365b79d6893505dad8089b2be213;hb=b622c2d9285f044f49328cbd98efbf2f1a24aa8e;hp=cf45a31fe1723037bf90ecb2ee90bebf753778c6;hpb=3c8df4406f9247182f4dbe4494d62ac229a7bd28;p=mailer.git
diff --git a/show_bonus.php b/show_bonus.php
index cf45a31fe1..ad3ba472f6 100644
--- a/show_bonus.php
+++ b/show_bonus.php
@@ -1,7 +1,7 @@
0) && (getRequestElement('d') > 0) && (isGetRequestElementSet('t'))) {
+if ((isValidUserId(getRequestElement('userid'))) && (getRequestElement('d') > 0) && (isGetRequestElementSet('t'))) {
// Set row name
$t = '';
switch (getRequestElement('t')) {
@@ -78,15 +77,20 @@ if ((getRequestElement('userid') > 0) && (getRequestElement('d') > 0) && (isGetR
// Valid type?
if (!empty($t)) {
// Check for data
- $result = SQL_QUERY_ESC("SELECT d.gender, d.surname, d.family, b.level, b.points
+ $result = SQL_QUERY_ESC("SELECT
+ d.`userid`,
+ b.`level`,
+ b.`points`
FROM
`{?_MYSQL_PREFIX?}_user_data` AS d
-RIGHT JOIN
+INNER JOIN
`{?_MYSQL_PREFIX?}_bonus_turbo` AS b
ON
- d.userid=b.userid
+ d.`userid`=b.`userid`
WHERE
- d.`status`='CONFIRMED' AND d.userid=%s AND b.%s=%s
+ d.`status`='CONFIRMED' AND
+ d.`userid`=%s AND
+ b.`%s`=%s
LIMIT 1",
array(
bigintval(getRequestElement('userid')),
@@ -100,8 +104,6 @@ LIMIT 1",
$content = SQL_FETCHARRAY($result);
// Prepare constants for the pre-template
- $content['gender'] = translateGender($content['gender']);
- $content['points'] = translateComma($content['points']);
$content['mailid'] = bigintval(getRequestElement('d'));
$content['rows'] = addBonusRanks(bigintval(getRequestElement('d')), $t, bigintval(getRequestElement('userid')));
@@ -112,18 +114,18 @@ LIMIT 1",
$content['message'] = loadTemplate('show_bonus_msg', true, $content);
} else {
// No data found
- $content['message'] = "{--BONUS_SHOW_NO_DATA--}";
+ $content['message'] = '{--BONUS_SHOW_NO_DATA--}';
}
// Free memory
SQL_FREERESULT($result);
} else {
// Wrong type entered
- $content['message'] = "{--BONUS_SHOW_WRONG_TYPE--}";
+ $content['message'] = '{--BONUS_SHOW_WRONG_TYPE--}';
}
} else {
// Wrong call!
- $content['message'] = "{--BONUS_SHOW_WRONG_CALL--}";
+ $content['message'] = '{--BONUS_SHOW_WRONG_CALL--}';
}
// Load send_bonus header template (for your banners, e.g.?)