X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=inc%2Fmodules%2Fmember%2Fwhat-transfer.php;h=cea8fc2565f8dffda080627bee5e7f3bb5b701ae;hb=6d08952d672c5a5de7d8522f894a5665599a2a4a;hp=a0ad05b9e784af090e70d591ee9dc5f8b9553fc4;hpb=596c8ab32594401ca84abfbfe35513ddfff31bec;p=mailer.git diff --git a/inc/modules/member/what-transfer.php b/inc/modules/member/what-transfer.php index a0ad05b9e7..cea8fc2565 100644 --- a/inc/modules/member/what-transfer.php +++ b/inc/modules/member/what-transfer.php @@ -16,7 +16,7 @@ * $Author:: $ * * -------------------------------------------------------------------- * * Copyright (c) 2003 - 2009 by Roland Haeder * - * Copyright (c) 2009 - 2012 by Mailer Developer Team * + * Copyright (c) 2009 - 2013 by Mailer Developer Team * * For more information visit: http://mxchange.org * * * * This program is free software; you can redistribute it and/or modify * @@ -91,23 +91,23 @@ switch ($mode) { $valid_reason = (isPostRequestElementSet('reason')); // Test if a recipient is selected - $valid_recipient = isValidUserId(postRequestElement('to_userid')); + $valid_recipient = isValidId(postRequestElement('to_userid')); // Re-check receivers and own personal data - $result = SQL_QUERY_ESC("SELECT `userid`, `gender`, `surname`, `family`, `email` FROM `{?_MYSQL_PREFIX?}_user_data` WHERE `userid` IN ('%s','%s') AND `status`='CONFIRMED'" . runFilterChain('user_exclusion_sql', ' ') . " LIMIT 2", + $result = sqlQueryEscaped("SELECT `userid`, `gender`, `surname`, `family`, `email` FROM `{?_MYSQL_PREFIX?}_user_data` WHERE `userid` IN ('%s','%s') AND `status`='CONFIRMED'" . runFilterChain('user_exclusion_sql', ' ') . " LIMIT 2", array( getMemberId(), bigintval(postRequestElement('to_userid')) ), __FILE__, __LINE__); // Is there two entries? - $valid_data = (SQL_NUMROWS($result) == 2); + $valid_data = (sqlNumRows($result) == 2); // Final check if all is fine if ($valid_code && $valid_data && $valid_pass && $valid_amount && $valid_reason && $valid_recipient) { // Let's start the transfer and load user data - $content['sender'] = SQL_FETCHARRAY($result); - $content['recipient'] = SQL_FETCHARRAY($result); + $content['sender'] = sqlFetchArray($result); + $content['recipient'] = sqlFetchArray($result); // Is the nickname extension not installed? if (!isExtensionActive('nickname')) { @@ -143,7 +143,7 @@ switch ($mode) { $content['trans_id'] = bigintval(generateRandomCode('10', getRandomTan(), getMemberId(), postRequestElement('reason'))); // Add entries to both tables - SQL_QUERY_ESC("INSERT INTO `{?_MYSQL_PREFIX?}_user_transfers_in` (`userid`, `from_userid`, `points`, `reason`, `time_trans`, `trans_id`) VALUES (%s,%s,%s,'%s', UNIX_TIMESTAMP(),%s)", + sqlQueryEscaped("INSERT INTO `{?_MYSQL_PREFIX?}_user_transfers_in` (`userid`, `from_userid`, `points`, `reason`, `time_trans`, `trans_id`) VALUES (%s,%s,%s,'%s', UNIX_TIMESTAMP(),%s)", array( bigintval(postRequestElement('to_userid')), getMemberId(), @@ -151,7 +151,7 @@ switch ($mode) { postRequestElement('reason'), $content['trans_id'] ), __FILE__, __LINE__); - SQL_QUERY_ESC("INSERT INTO `{?_MYSQL_PREFIX?}_user_transfers_out` (`userid`, `to_userid`, `points`, `reason`, `time_trans`, `trans_id`) VALUES (%s,%s,%s,'%s', UNIX_TIMESTAMP(),%s)", + sqlQueryEscaped("INSERT INTO `{?_MYSQL_PREFIX?}_user_transfers_out` (`userid`, `to_userid`, `points`, `reason`, `time_trans`, `trans_id`) VALUES (%s,%s,%s,'%s', UNIX_TIMESTAMP(),%s)", array( getMemberId(), bigintval(postRequestElement('to_userid')), @@ -183,44 +183,44 @@ switch ($mode) { displayMessage('
{--MEMBER_TRANSFER_COMPLETED--}' . '
{--MEMBER_TRANSFER_CONTINUE_OVERVIEW--}
'); } elseif ($valid_code === FALSE) { // Invalid Touring code! - loadTemplate('admin_settings_unsaved', FALSE, '{--MEMBER_TRANSFER_INVALID_CODE--}'); + displayErrorMessage('{--MEMBER_TRANSFER_INVALID_CODE--}'); unsetPostRequestElement('ok'); } elseif ($valid_pass === FALSE) { // Wrong password entered - loadTemplate('admin_settings_unsaved', FALSE, '{--MEMBER_TRANSFER_INVALID_PASSWORD--}'); + displayErrorMessage('{--MEMBER_TRANSFER_INVALID_PASSWORD--}'); unsetPostRequestElement('ok'); } elseif ($valid_amount === FALSE) { // Too much points entered - loadTemplate('admin_settings_unsaved', FALSE, '{--MEMBER_TRANSFER_INVALID_POINTS--}'); + displayErrorMessage('{--MEMBER_TRANSFER_INVALID_POINTS--}'); unsetPostRequestElement('ok'); } elseif ($valid_reason === FALSE) { // No transfer reason entered - loadTemplate('admin_settings_unsaved', FALSE, '{--MEMBER_TRANSFER_INVALID_REASON--}'); + displayErrorMessage('{--MEMBER_TRANSFER_INVALID_REASON--}'); unsetPostRequestElement('ok'); } elseif ($valid_recipient === FALSE) { // No recipient selected - loadTemplate('admin_settings_unsaved', FALSE, '{--MEMBER_TRANSFER_INVALID_RECIPIENT--}'); + displayErrorMessage('{--MEMBER_TRANSFER_INVALID_RECIPIENT--}'); unsetPostRequestElement('ok'); } elseif ($valid_data === FALSE) { // No recipient/sender selected - loadTemplate('admin_settings_unsaved', FALSE, '{--MEMBER_TRANSFER_INVALID_DATA--}'); + displayErrorMessage('{--MEMBER_TRANSFER_INVALID_DATA--}'); unsetPostRequestElement('ok'); } // Free result - SQL_FREERESULT($result); + sqlFreeResult($result); } // END - if if (!isFormSent()) { // Load member list - $result = SQL_QUERY_ESC("SELECT `userid` FROM `{?_MYSQL_PREFIX?}_user_data` WHERE `status`='CONFIRMED'" . runFilterChain('user_exclusion_sql', ' ') . " AND `opt_in`='Y' AND `userid` != '%s' ORDER BY `userid` ASC", + $result = sqlQueryEscaped("SELECT `userid` FROM `{?_MYSQL_PREFIX?}_user_data` WHERE `status`='CONFIRMED'" . runFilterChain('user_exclusion_sql', ' ') . " AND `opt_in`='Y' AND `userid` != '%s' ORDER BY `userid` ASC", array(getMemberId()), __FILE__, __LINE__); - if (!SQL_HASZERONUMS($result)) { + if (!ifSqlHasZeroNums($result)) { // Load list $OUT = '