]> git.mxchange.org Git - mailer.git/blobdiff - inc/modules/guest/what-sponsor_login.php
Hotfix
[mailer.git] / inc / modules / guest / what-sponsor_login.php
index fe65aaf38ed2d71d21f00de8180e11c7302c3fdb..165d9122053c6b1e7814ab675f9ef332217ef7a0 100644 (file)
@@ -17,7 +17,7 @@
  * -------------------------------------------------------------------- *
  * Copyright (c) 2003 - 2009 by Roland Haeder                           *
  * Copyright (c) 2009 - 2011 by Mailer Developer Team                   *
- * For more information visit: http://www.mxchange.org                  *
+ * For more information visit: http://mxchange.org                      *
  *                                                                      *
  * This program is free software; you can redistribute it and/or modify *
  * it under the terms of the GNU General Public License as published by *
@@ -52,16 +52,16 @@ if ((!isExtensionActive('sponsor'))) {
 }
 
 $mode = '';
-if (isGetRequestParameterSet('mode')) {
+if (isGetRequestElementSet('do')) {
        // A "special" mode of the login system was requested
-       switch (getRequestParameter('mode')) {
+       switch (getRequestElement('do')) {
                case 'activate' : $mode = 'activate';  break; // Activation link requested
                case 'lost_pass': $mode = 'lost_pass'; break; // Request new password
        } // END - switch
 } // END - if
 
 // Check if hash for confirmation of email address is given...
-if (isGetRequestParameterSet('hash')) {
+if (isGetRequestElementSet('hash')) {
        // Lookup sponsor
        $result = SQL_QUERY_ESC("SELECT
        `id`,`status`,`gender`,`surname`,`family`,
@@ -75,7 +75,7 @@ WHERE
                `status`='UNCONFIRMED' OR
                `status`='EMAIL'
        )
-LIMIT 1", array(getRequestParameter('hash')), __FILE__, __LINE__);
+LIMIT 1", array(getRequestElement('hash')), __FILE__, __LINE__);
        if (SQL_NUMROWS($result) == 1) {
                // Sponsor found, load his data...
                $data = SQL_FETCHARRAY($result);
@@ -95,7 +95,7 @@ WHERE
 LIMIT 1",
                                array(
                                        bigintval($data['id']),
-                                       getRequestParameter('hash')
+                                       getRequestElement('hash')
                                ), __FILE__, __LINE__);
 
                        // Check on success
@@ -125,7 +125,7 @@ WHERE
        `hash`='%s' AND
        `status`='EMAIL'
 LIMIT 1",
-                               array(bigintval($data['id']), getRequestParameter('hash')), __FILE__, __LINE__);
+                               array(bigintval($data['id']), getRequestElement('hash')), __FILE__, __LINE__);
 
                        // Check on success
                        if (!SQL_HASZEROAFFECTED()) {
@@ -141,7 +141,7 @@ LIMIT 1",
                }
        } else {
                // No sponsor found
-               displayMessage('{%message,SPONSOR_ACCOUNT_404=' . getRequestParameter('hash') . '%}');
+               displayMessage('{%message,SPONSOR_ACCOUNT_404=' . getRequestElement('hash') . '%}');
        }
 
        // Free memory
@@ -150,7 +150,7 @@ LIMIT 1",
        // Send activation link again
        if (isFormSent()) {
                // Check submitted data
-               if (!isPostRequestParameterSet('email')) unsetPostRequestParameter('ok');
+               if (!isPostRequestElementSet('email')) unsetPostRequestElement('ok');
        }
 
        if (isFormSent()) {
@@ -161,10 +161,10 @@ LIMIT 1",
 FROM
        `{?_MYSQL_PREFIX?}_sponsor_data`
 WHERE
-       `email`='%s' AND
+       '%s' REGEXP `email` AND
        (`status`='UNCONFIRMED' OR `status`='EMAIL')
 LIMIT 1",
-               array(postRequestParameter('email')), __FILE__, __LINE__);
+               array(postRequestElement('email')), __FILE__, __LINE__);
 
                // Entry found?
                if (SQL_NUMROWS($result) == 1) {
@@ -182,7 +182,7 @@ LIMIT 1",
                                // Confirmed email address
                                $message_sponsor = loadEmailTemplate('sponsor_email', $data);
                        }
-                       sendEmail(postRequestParameter('email'), '{--SPONSOR_ACTIVATION_LINK_SUBJECT--}', $message_sponsor);
+                       sendEmail(postRequestElement('email'), '{--SPONSOR_ACTIVATION_LINK_SUBJECT--}', $message_sponsor);
 
                        // Output message
                        displayMessage('{--SPONSOR_ACTIVATION_LINK_SENT--}');
@@ -201,7 +201,7 @@ LIMIT 1",
        // Send new password
        if (isFormSent()) {
                // Check submitted data
-               if (!isPostRequestParameterSet('email')) unsetPostRequestParameter('ok');
+               if (!isPostRequestElementSet('email')) unsetPostRequestElement('ok');
        } // END - if
 
        if (isFormSent()) {
@@ -212,11 +212,11 @@ LIMIT 1",
 FROM
        `{?_MYSQL_PREFIX?}_sponsor_data`
 WHERE
-       `email`='%s' AND
+       '%s' REGEXP `email` AND
        `id`=%s AND
        `status`='CONFIRMED'
 LIMIT 1",
-               array(postRequestParameter('email'), bigintval(postRequestParameter('id'))), __FILE__, __LINE__);
+               array(postRequestElement('email'), bigintval(postRequestElement('id'))), __FILE__, __LINE__);
 
                // Entry found?
                if (SQL_NUMROWS($result) == 1) {
@@ -229,7 +229,7 @@ LIMIT 1",
 
                        // Prepare email and send it to the sponsor
                        $message_sponsor = loadEmailTemplate('sponsor_lost', $content);
-                       sendEmail(postRequestParameter('email'), '{--SPONSOR_LOST_PASSWORD_SUBJECT--}', $message_sponsor);
+                       sendEmail(postRequestElement('email'), '{--SPONSOR_LOST_PASSWORD_SUBJECT--}', $message_sponsor);
 
                        // Update password
                        SQL_QUERY_ESC("UPDATE
@@ -265,8 +265,8 @@ WHERE
        `password`='%s'
 LIMIT 1",
        array(
-               bigintval(postRequestParameter('sponsor_id')),
-               md5(postRequestParameter('password'))
+               bigintval(postRequestElement('sponsor_id')),
+               md5(postRequestElement('password'))
        ), __FILE__, __LINE__);
 
        if (SQL_NUMROWS($result) == 1) {
@@ -274,8 +274,8 @@ LIMIT 1",
                list($status) = SQL_FETCHROW($result);
                if ($status == 'CONFIRMED') {
                        // Is confirmed so both is fine and we can continue with login procedure
-                       $login = ((setSession('sponsor_id'  , bigintval(postRequestParameter('sponsor_id')))) &&
-                       (setSession('sponsor_pass', md5(postRequestParameter('password'))           ))
+                       $login = ((setSession('sponsor_id'  , bigintval(postRequestElement('sponsor_id')))) &&
+                       (setSession('sponsor_pass', md5(postRequestElement('password'))           ))
                        );
 
                        if ($login === true) {