X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=inc%2Fmodules%2Fadmin%2Fwhat-config_payouts.php;h=da87317ea191ff5021bf0fde925ec67a27897a72;hb=ad851a23313d8ac6489a759a0f3d62e3bc6f4682;hp=85f05c5466c0718bd7e9e185e1ea15c54ccb737a;hpb=43885129ac24cee5545a8a5ad51e90aa182fdf46;p=mailer.git diff --git a/inc/modules/admin/what-config_payouts.php b/inc/modules/admin/what-config_payouts.php index 85f05c5466..da87317ea1 100644 --- a/inc/modules/admin/what-config_payouts.php +++ b/inc/modules/admin/what-config_payouts.php @@ -32,15 +32,15 @@ ************************************************************************/ // Some security stuff... -if ((ereg(basename(__FILE__), $_SERVER['PHP_SELF'])) || (!IS_ADMIN())) -{ +if ((!defined('__SECURITY')) || (!IS_ADMIN())) { $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php"; require($INC); } + // Add description as navigation point -ADD_DESCR("admin", basename(__FILE__)); +ADD_DESCR("admin", __FILE__); -if (!empty($_POST['rate'])) $_POST['rate'] = str_replace(",", ".", $_POST['rate']); +if (!empty($_POST['rate'])) $_POST['rate'] = REVERT_COMMA($_POST['rate']); if ((isset($_POST['add'])) && (!empty($_POST['title'])) && ($_POST['rate'] > 0)) { @@ -52,7 +52,7 @@ if ((isset($_POST['add'])) && (!empty($_POST['title'])) && ($_POST['rate'] > 0)) // Add now $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_payout_types (type, rate, min_points, from_account, from_pass, engine_url, engine_ret_ok, engine_ret_failed, pass_enc, allow_url) -VALUES ('%s', %d, %d, '%s', '%s', '%s', '%s', '%s', '%s', '%s')", +VALUES ('%s', %d, %d,'%s','%s','%s','%s','%s','%s','%s')", array( $_POST['title'], bigintval($_POST['rate']), @@ -87,7 +87,7 @@ if ((isset($_POST['edit'])) && (SELECTION_COUNT($_POST['sel']) > 0)) if ((isset($_GET['ok'])) && ($_GET['ok'] == "ok")) { // Edit entries - foreach ($_POST['sel'] as $id=>$sel) + foreach ($_POST['sel'] as $id => $sel) { // Secure ID $id = bigintval($id); @@ -104,8 +104,8 @@ allow_url='%s' WHERE id='".$id."' LIMIT 1", array( $_POST['title'][$id], - bigintval(str_replace(",", ".", $_POST['rate'][$id])), - bigintval(str_replace(",", ".", $_POST['mpoi'][$id])), + bigintval(REVERT_COMMA($_POST['rate'][$id])), + bigintval(REVERT_COMMA($_POST['mpoi'][$id])), $_POST['allow'][$id], ),__FILE__, __LINE__); } @@ -116,7 +116,7 @@ WHERE id='".$id."' LIMIT 1", { $display = false; //Suppress any other outputs $SW = 2; $OUT = ""; - foreach ($_POST['sel'] as $id=>$sel) + foreach ($_POST['sel'] as $id => $sel) { // Load data $result = SQL_QUERY_ESC("SELECT type, rate, min_points, allow_url FROM "._MYSQL_PREFIX."_payout_types WHERE id=%s LIMIT 1", @@ -150,7 +150,7 @@ WHERE id='".$id."' LIMIT 1", if ($_GET['ok'] == "ok") { // Delete entries - foreach ($_POST['sel'] as $id=>$sel) + foreach ($_POST['sel'] as $id => $sel) { $result = SQL_QUERY_ESC("DELETE LOW_PRIORITY FROM "._MYSQL_PREFIX."_payout_types WHERE id=%s LIMIT 1", array(bigintval($id)), __FILE__, __LINE__); @@ -161,7 +161,7 @@ WHERE id='".$id."' LIMIT 1", { $display = false; //Suppress any other outputs $SW = 2; $OUT = ""; - foreach ($_POST['sel'] as $id=>$sel) + foreach ($_POST['sel'] as $id => $sel) { // Secure ID number $id = bigintval($id);