X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=inc%2Fmodules%2Fmember%2Fwhat-mydata.php;h=0e88c99e5280cd13c95a439183a0488373fdae09;hb=refs%2Fheads%2F0.2.1-FINAL;hp=6f61788d35d3bc97d76a4c478942edcb2237639c;hpb=8da353fa4bb729bb3299d247803c23833a52a327;p=mailer.git diff --git a/inc/modules/member/what-mydata.php b/inc/modules/member/what-mydata.php index 6f61788d35..0e88c99e52 100644 --- a/inc/modules/member/what-mydata.php +++ b/inc/modules/member/what-mydata.php @@ -16,7 +16,7 @@ * $Author:: $ * * -------------------------------------------------------------------- * * Copyright (c) 2003 - 2009 by Roland Haeder * - * Copyright (c) 2009 - 2012 by Mailer Developer Team * + * Copyright (c) 2009 - 2016 by Mailer Developer Team * * For more information visit: http://mxchange.org * * * * This program is free software; you can redistribute it and/or modify * @@ -51,7 +51,7 @@ if ((!isExtensionActive('mydata')) && (!isAdmin())) { } // END - if // Add userid -$content = array(); +$content = []; // Init variable to prevent notices $url = ''; @@ -73,7 +73,7 @@ switch ($mode) { // How far is last change on his profile away from now? if ((($content['last_update'] + getProfileLock()) > time()) && (!isAdmin()) && (getProfileLock() > 0)) { // You cannot change your account - $content['change'] = displayMessage('
{%message,MEMBER_PROFILE_LOCKED=' . generateDateTime($content['last_update'] + getProfileLock(), 0) . '%}
', TRUE); + $content['change'] = returnMessage('
{%message,MEMBER_PROFILE_LOCKED=' . generateDateTime($content['last_update'] + getProfileLock(), 0) . '%}
'); } else { // He is allowed to change his profile $content['change'] = loadTemplate('member_mydata_button', TRUE); @@ -97,7 +97,7 @@ switch ($mode) { case 'edit': // Edit data if (isExtensionActive('country', TRUE)) { // New way - $result = SQL_QUERY_ESC('SELECT + $result = sqlQueryEscaped('SELECT `surname`, `family`, `street_nr`, @@ -108,7 +108,7 @@ switch ($mode) { `birth_day`, `birth_month`, `birth_year`, - `gender`, + `sex`, `max_mails`, `receive_mails`, `last_update` @@ -120,7 +120,7 @@ LIMIT 1', array(getMemberId()), __FILE__, __LINE__); } else { // Old way - $result = SQL_QUERY_ESC('SELECT + $result = sqlQueryEscaped('SELECT `surname`, `family`, `street_nr`, @@ -131,7 +131,7 @@ LIMIT 1', `birth_day`, `birth_month`, `birth_year`, - `gender`, + `sex`, `max_mails`, `receive_mails`, `last_update` @@ -144,10 +144,10 @@ LIMIT 1', } // Get line - $content = merge_array($content, SQL_FETCHARRAY($result)); + $content = merge_array($content, sqlFetchArray($result)); // Free result - SQL_FREERESULT($result); + sqlFreeResult($result); $content['update_check'] = $content['last_update'] + getProfileLock(); @@ -165,24 +165,24 @@ LIMIT 1', switch (getLanguage()) { case 'de': // German date format // Day - $content['dob'] .= addSelectionBox('day', $content['birth_day']); + $content['dob'] .= addSelectionBox('da', $content['birth_day']); // Month - $content['dob'] .= addSelectionBox('month', $content['birth_month']); + $content['dob'] .= addSelectionBox('mo', $content['birth_month']); // Year - $content['dob'] .= addSelectionBox('year', $content['birth_year']); + $content['dob'] .= addSelectionBox('ye', $content['birth_year']); break; default: // Default is the US date format... :) // Month - $content['dob'] .= addSelectionBox('month', $content['birth_month']); + $content['dob'] .= addSelectionBox('mo', $content['birth_month']); // Day - $content['dob'] .= addSelectionBox('day', $content['birth_day']); + $content['dob'] .= addSelectionBox('da', $content['birth_day']); // Year - $content['dob'] .= addSelectionBox('year', $content['birth_year']); + $content['dob'] .= addSelectionBox('ye', $content['birth_year']); break; } // END - if @@ -224,7 +224,7 @@ LIMIT 1', } elseif ((!isEmailValid(postRequestElement('email'))) && (!isAdmin())) { // Invalid email address! displayMessage('{--INVALID_EMAIL_ENTERED--}'); - } elseif ((isEmailTaken(postRequestElement('email'))) && (isCheckDoubleEmailEnabled()) && (!isAdmin())) { + } elseif ((isExtensionInstalledAndNewer('other', '0.3.0')) && (isCheckDoubleEmailEnabled()) && (!isAdmin()) && (isEmailTaken(postRequestElement('email')))) { // Email address is already registered displayMessage('{--MEMBER_EMAIL_IS_ALREADY_REGISTERED--}'); } else { @@ -237,13 +237,29 @@ LIMIT 1', // Did the user changed the password? if ($hash != $content['password']) { + // Yes $AND = ",`password`='" . $hash . "'"; $mode = 'password'; } // END - if - // Or did he changed his password? + // Or did he changed his email address? if (postRequestElement('email') != $content['email']) { - // Jupp + // Yes, but is it maybe blacklisted? + $filterData = array( + 'init_done' => TRUE, + 'post_data' => postRequestArray(), + 'blacklisted' => '', + 'message' => '{--PRE_UPDATE_USER_DATA_FAILED--}', + ); + $filterData = runFilterChain('pre_update_user_data', $filterData); + + // Is it blacklisted? + if ($filterData['init_done'] === FALSE) { + // Found something blacklisted + displayMessage($filterData['message']); + return; + } // END - if + if ($mode == 'normal') { $mode = 'email'; } else { @@ -255,10 +271,10 @@ LIMIT 1', // Update member's profile if (isExtensionActive('country')) { // New way - SQL_QUERY_ESC("UPDATE + sqlQueryEscaped("UPDATE `{?_MYSQL_PREFIX?}_user_data` SET - `gender`='%s', + `sex`='%s', `surname`='%s', `family`='%s', `street_nr`='%s', @@ -277,7 +293,7 @@ WHERE `userid`=%s LIMIT 1", array( - postRequestElement('gender'), + postRequestElement('sex'), postRequestElement('surname'), postRequestElement('family'), postRequestElement('street_nr'), @@ -293,10 +309,10 @@ LIMIT 1", ), __FILE__, __LINE__); } else { // Old way - SQL_QUERY_ESC("UPDATE + sqlQueryEscaped("UPDATE `{?_MYSQL_PREFIX?}_user_data` SET - `gender`='%s', + `sex`='%s', `surname`='%s', `family`='%s', `street_nr`='%s', @@ -315,7 +331,7 @@ WHERE `userid`=%s LIMIT 1", array( - postRequestElement('gender'), + postRequestElement('sex'), postRequestElement('surname'), postRequestElement('family'), postRequestElement('street_nr'), @@ -332,7 +348,7 @@ LIMIT 1", } // Did something change? - if (!SQL_HASZEROAFFECTED()) { + if (!ifSqlHasZeroAffectedRows()) { // Get all modes ... $modes = explode(';', $mode); @@ -344,13 +360,13 @@ LIMIT 1", } } else { // Entered wrong pass for updating profile - displayMessage('{--MEBER_UPDATE_PWD_WRONG--}'); + displayMessage('{--MEMBER_UPDATE_WRONG_PASSWORD--}'); } } break; case 'notify': // Switch off notfication - SQL_QUERY_ESC("UPDATE `{?_MYSQL_PREFIX?}_user_data` SET `notified`='N',`last_update`=UNIX_TIMESTAMP() WHERE `userid`=%s LIMIT 1", + sqlQueryEscaped("UPDATE `{?_MYSQL_PREFIX?}_user_data` SET `notified`='N',`last_update`=UNIX_TIMESTAMP() WHERE `userid`=%s LIMIT 1", array(getMemberId()), __FILE__, __LINE__); $url = 'modules.php?module=login&what=mydata&code=' . getCode('PROFILE_UPDATED'); break;