A lot has been rewritten, ext-teams added, ext-forced continued:
[mailer.git] / inc / modules / sponsor / account.php
index 078d7f6e1f8dcb3322255551950213d3dd8e60bb..88e358cf2de065c111c5a50fead7ecd1cea22137 100644 (file)
@@ -1,7 +1,7 @@
 <?php
 /************************************************************************
- * MXChange v0.2.1                                    Start: 09/30/2005 *
- * ===============                              Last change: 05/19/2008 *
+ * Mailer v0.2.1-FINAL                                Start: 09/30/2005 *
+ * ===================                          Last change: 05/19/2008 *
  *                                                                      *
  * -------------------------------------------------------------------- *
  * File              : account.php                                      *
  * $Date::                                                            $ *
  * $Tag:: 0.2.1-FINAL                                                 $ *
  * $Author::                                                          $ *
- * Needs to be in all Files and every File needs "svn propset           *
- * svn:keywords Date Revision" (autoprobset!) at least!!!!!!            *
  * -------------------------------------------------------------------- *
- * Copyright (c) 2003 - 2008 by Roland Haeder                           *
+ * Copyright (c) 2003 - 2009 by Roland Haeder                           *
+ * Copyright (c) 2009 - 2011 by Mailer Developer Team                   *
  * For more information visit: http://www.mxchange.org                  *
  *                                                                      *
- * This program is free software. You can redistribute it and/or modify *
+ * This program is free software; you can redistribute it and/or modify *
  * it under the terms of the GNU General Public License as published by *
- * the Free Software Foundation; either version 2 of the License.       *
+ * the Free Software Foundation; either version 2 of the License, or    *
+ * (at your option) any later version.                                  *
  *                                                                      *
  * This program is distributed in the hope that it will be useful,      *
  * but WITHOUT ANY WARRANTY; without even the implied warranty of       *
 
 // Some security stuff...
 if (!defined('__SECURITY')) {
-       $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), '/inc') + 4) . '/security.php';
-       require($INC);
-} elseif (!EXT_IS_ACTIVE('sponsor')) {
-       addFatalMessage(__FILE__, __LINE__, generateExtensionInactiveNotInstalledMessage('sponsor'));
+       die();
+} elseif (!isExtensionActive('sponsor')) {
+       displayMessage('{%pipe,generateExtensionInactiveNotInstalledMessage=sponsor%}');
        return;
-} elseif (!IS_SPONSOR()) {
+} elseif (!isSponsor()) {
        // No sponsor!
-       addFatalMessage(__FILE__, __LINE__, getMessage('SPONSOR_ONLY_AREA_ENTERED'));
+       addFatalMessage(__FILE__, __LINE__, '{--SPONSOR_ONLY_AREA_ENTERED--}');
        return;
 }
 
 // Data for the formular
-$result = SQL_QUERY_ESC("SELECT `company`, `position`, `tax_ident`,
-`gender`, `surname`, `family`, `street_nr1`, `street_nr2`, `zip`, `city`, `country`,
-`phone`, `fax`, `cell`, `email`, `url`,
-`status`, `receive_warnings`
-FROM `{!_MYSQL_PREFIX!}_sponsor_data`
-WHERE `id`='%s' AND `password`='%s' LIMIT 1",
-       array(bigintval(getSession('sponsorid')), getSession('sponsorpass')), __FILE__, __LINE__);
+$result = SQL_QUERY_ESC("SELECT
+       `id`,`company`,`position`,`tax_ident`,
+       `gender`,`surname`,`family`,`street_nr1`,`street_nr2`,`zip`,`city`,`country`,
+       `phone`,`fax`,`cell`,`email`,`url`,
+       `status`,`receive_warnings`
+FROM
+       `{?_MYSQL_PREFIX?}_sponsor_data`
+WHERE
+       `id`=%s AND
+       `password`='%s'
+LIMIT 1",
+       array(
+               bigintval(getSession('sponsor_id')),
+               getSession('sponsorpass')
+       ), __FILE__, __LINE__);
 
 // Entry found?
 if (SQL_NUMROWS($result) == 1) {
@@ -65,95 +72,73 @@ if (SQL_NUMROWS($result) == 1) {
                // Check if form was submitted or not
                if (isFormSent()) {
                        // Check passwords
-                       if (!REQUEST_ISSET_POST('pass_old')) {
+                       if (!isPostRequestParameterSet('pass_old')) {
                                // No current password entered
-                               $message = getMessage('SPONSOR_NO_CURRENT_PASSWORD_ENTERED');
-                       } elseif (md5(REQUEST_POST('pass_old')) != getSession('sponsorpass')) {
+                               $message = '{--SPONSOR_NO_CURRENT_PASSWORD_ENTERED--}';
+                       } elseif (md5(postRequestParameter('pass_old')) != getSession('sponsorpass')) {
                                // Entered password didn't match password in DB
-                               $message = getMessage('SPONSOR_CURRENT_PASSWORD_DIDNOT_MATCH_DB');
-                       } elseif ((REQUEST_ISSET_POST('pass1')) && (REQUEST_ISSET_POST('pass2')) && (REQUEST_POST('pass1') != REQUEST_POST('pass2'))) {
+                               $message = '{--SPONSOR_CURRENT_PASSWORD_DIDNOT_MATCH_DB--}';
+                       } elseif ((isPostRequestParameterSet('pass1')) && (isPostRequestParameterSet('pass2')) && (postRequestParameter('pass1') != postRequestParameter('pass2'))) {
                                // Both new passwords did not match
-                               $message = getMessage('SPONSOR_BOTH_NEW_PASSWORDS_DIDNOT_MATCH');
-                       } elseif ((!REQUEST_ISSET_POST('pass1')) && (REQUEST_ISSET_POST('pass2'))) {
+                               $message = '{--SPONSOR_BOTH_NEW_PASSWORDS_DIDNOT_MATCH--}';
+                       } elseif ((!isPostRequestParameterSet('pass1')) && (isPostRequestParameterSet('pass2'))) {
                                // No password one entered
-                               $message = getMessage('SPONSOR_PASSWORD_ONE_EMPTY');
-                       } elseif ((REQUEST_ISSET_POST('pass1')) && (!REQUEST_ISSET_POST('pass2'))) {
+                               $message = '{--SPONSOR_PASSWORD_ONE_EMPTY--}';
+                       } elseif ((isPostRequestParameterSet('pass1')) && (!isPostRequestParameterSet('pass2'))) {
                                // No password two entered
-                               $message = getMessage('SPONSOR_PASSWORD_TWO_EMPTY');
-                       } elseif ((REQUEST_ISSET_POST('pass1')) && (strlen(REQUEST_POST('pass1')) < getConfig('pass_len'))) {
+                               $message = '{--SPONSOR_PASSWORD_TWO_EMPTY--}';
+                       } elseif ((isPostRequestParameterSet('pass1')) && (strlen(postRequestParameter('pass1')) < getPassLen())) {
                                // Too short password
-                               $message = sprintf(getMessage('SPONSOR_PASSWORD_TOO_SHORT'), getConfig('pass_len'));
+                               $message = '{--SPONSOR_PASSWORD_TOO_SHORT--}';
                        } else {
                                // Default is we don't want to change password!
                                $PASS_AND = ''; $PASS_DATA = '';
 
                                // Check if we want to change password or not
-                               if ((REQUEST_POST('pass1') == REQUEST_POST('pass2')) && (REQUEST_ISSET_POST('pass1')) && (REQUEST_POST('pass1') != REQUEST_POST('pass_old'))) {
+                               if ((postRequestParameter('pass1') == postRequestParameter('pass2')) && (isPostRequestParameterSet('pass1')) && (postRequestParameter('pass1') != postRequestParameter('pass_old'))) {
                                        // Change current password
-                                       $PASS_AND  = ", password='%s'";
-                                       $PASS_DATA = md5(REQUEST_POST('pass1'));
-                               }
+                                       $PASS_AND  = ", `password`='%s'";
+                                       $PASS_DATA = md5(postRequestParameter('pass1'));
+                               } // END - if
 
                                // Unsecure data which we don't want here
                                $UNSAFE = array('receive_warnings', 'warning_interval');
 
                                // Remove all (maybe spoofed) unsafe data from array
                                foreach ($UNSAFE as $remove) {
-                                       REQUEST_UNSET_POST($remove);
-                               }
+                                       unsetPostRequestParameter($remove);
+                               } // END - foreach
 
                                // Set last change timestamp
-                               REQUEST_SET_POST('last_change', "UNIX_TIMESTAMP()");
+                               setPostRequestParameter('last_change', 'UNIX_TIMESTAMP()');
 
                                // Save data
-                               $message = SPONSOR_SAVE_DATA(REQUEST_POST_ARRAY(), $content);
+                               $message = saveSponsorData(postRequestArray(), $content);
                        }
 
                        if (!empty($message)) {
                                // Output message
-                               $OUT = LOAD_TEMPLATE('admin_settings_saved', true, $message);
+                               $GLOBALS['sponsor_output'] = displayMessage($message, true);
                        } else {
                                // No message generated
-                               $OUT = LOAD_TEMPLATE('admin_settings_saved', true, getMessage('SPONSOR_NO_MESSAGE_GENERATED'));
+                               $GLOBALS['sponsor_output'] = displayMessage('{--SPONSOR_NO_MESSAGE_GENERATED--}', true);
                        }
                } else {
-                       // Check for gender selection
-                       switch ($content['gender'])
-                       {
-                               case 'M': // Male
-                                       define('__GENDER_M', ' selected="selected"');
-                                       define('__GENDER_F', '');
-                                       define('__GENDER_C', '');
-                                       break;
-
-                               case 'F': // Female
-                                       define('__GENDER_M', '');
-                                       define('__GENDER_F', ' selected="selected"');
-                                       define('__GENDER_C', '');
-                                       break;
-
-                               case 'C': // Company
-                                       define('__GENDER_M', '');
-                                       define('__GENDER_F', '');
-                                       define('__GENDER_C', ' selected="selected"');
-                                       break;
-                       }
-
                        // Output formular
-                       $OUT = LOAD_TEMPLATE('sponsor_account_form', true, $content);
+                       $GLOBALS['sponsor_output'] = loadTemplate('sponsor_account_form', true, $content);
                }
        } else {
                // Locked or so?
                $STATUS = sponsorTranslateUserStatus($content['status']);
-               $OUT = LOAD_TEMPLATE('admin_settings_saved', true, sprintf(getMessage('SPONSOR_ACCOUNT_FAILED'), $STATUS));
+               $GLOBALS['sponsor_output'] = displayMessage('{%message,SPONSOR_ACCOUNT_FAILED=' . $STATUS . '%}', true);
        }
 } else {
-       // Sponsor account not found!
-       $OUT = LOAD_TEMPLATE('admin_settings_saved', true, sprintf(getMessage('SPONSOR_ACCOUNT_404'), getSession('sponsorid')));
+       // Sponsor account not found
+       $GLOBALS['sponsor_output'] = displayMessage('{%message,SPONSOR_ACCOUNT_404=' . getSession('sponsor_id') . '%}', true);
 }
 
 // Free memory
 SQL_FREERESULT($result);
 
-//
+// [EOF]
 ?>