]> git.mxchange.org Git - mailer.git/blobdiff - inc/modules/admin/what-edit_user.php
More SQL rewrites, TODO: Put all table and column names in backticks (`)
[mailer.git] / inc / modules / admin / what-edit_user.php
index 410ac203a535a574f45b449eac9031f082e3e763..b33102a09cae5cf90f475a03cd9ec670b1ab5fb2 100644 (file)
@@ -44,8 +44,11 @@ ADD_DESCR("admin", __FILE__);
 $result_main = false;
 if (isset($_GET['u_id'])) {
        //                                    0      1        2         3      4     5      6       7         8          9           10         11
 $result_main = false;
 if (isset($_GET['u_id'])) {
        //                                    0      1        2         3      4     5      6       7         8          9           10         11
-       $result_main = SQL_QUERY_ESC("SELECT gender, surname, family, street_nr, zip, city, country, email, birth_day, birth_month, birth_year, max_mails FROM "._MYSQL_PREFIX."_user_data WHERE userid=%s LIMIT 1",
-        array(bigintval($_GET['u_id'])), __FILE__, __LINE__);
+       $result_main = SQL_QUERY_ESC("SELECT gender, surname, family, street_nr, zip, city, country, email, birth_day, birth_month, birth_year, max_mails
+FROM `"._MYSQL_PREFIX."_user_data`
+WHERE userid=%s
+LIMIT 1",
+               array(bigintval($_GET['u_id'])), __FILE__, __LINE__);
 }
 
 if ((SQL_NUMROWS($result_main) == 1) || (empty($_GET['u_id'])))
 }
 
 if ((SQL_NUMROWS($result_main) == 1) || (empty($_GET['u_id'])))
@@ -74,7 +77,7 @@ if ((SQL_NUMROWS($result_main) == 1) || (empty($_GET['u_id'])))
                if ($PASS)
                {
                        // We have to add the following things: birthday and max receive mails
                if ($PASS)
                {
                        // We have to add the following things: birthday and max receive mails
-                       $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_data SET
+                       $result = SQL_QUERY_ESC("UPDATE `"._MYSQL_PREFIX."_user_data` SET
 gender='%s',
 surname='%s',
 family='%s',
 gender='%s',
 surname='%s',
 family='%s',