X-Git-Url: https://git.mxchange.org/?p=mailer.git;a=blobdiff_plain;f=inc%2Fmodules%2Fadmin%2Fwhat-list_payouts.php;h=b962b83e73f0643763e570e8736e6f26cd45d8ae;hp=0c11dd2e44b5e03ce366a7de29692c0790e1d688;hb=2b388c21a07e07317ccb065d42ef7304cfca7718;hpb=39172de4ecec2f6ddc597a5ae439e7aef79c75ed diff --git a/inc/modules/admin/what-list_payouts.php b/inc/modules/admin/what-list_payouts.php index 0c11dd2e44..b962b83e73 100644 --- a/inc/modules/admin/what-list_payouts.php +++ b/inc/modules/admin/what-list_payouts.php @@ -10,7 +10,12 @@ * -------------------------------------------------------------------- * * Kurzbeschreibung : Auflistung der Auszahlungsanfragen * * -------------------------------------------------------------------- * - * * + * $Revision:: 856 $ * + * $Date:: $ * + * $Tag:: 0.2.1-FINAL $ * + * $Author:: $ * + * Needs to be in all Files and every File needs "svn propset * + * svn:keywords Date Revision" (autoprobset!) at least!!!!!! * * -------------------------------------------------------------------- * * Copyright (c) 2003 - 2008 by Roland Haeder * * For more information visit: http://www.mxchange.org * @@ -40,51 +45,51 @@ if ((!defined('__SECURITY')) || (!IS_ADMIN())) { // Add description as navigation point ADD_DESCR("admin", __FILE__); -if (!empty($_GET['pid'])) { +if (REQUEST_ISSET_GET(('pid'))) { // First let's get the member's ID - $result = SQL_QUERY_ESC("SELECT userid, target_account, payout_total, payout_timestamp, password FROM "._MYSQL_PREFIX."_user_payouts WHERE id=%s LIMIT 1", - array($_GET['pid']), __FILE__, __LINE__); + $result = SQL_QUERY_ESC("SELECT userid, target_account, payout_total, payout_timestamp, password FROM `{!_MYSQL_PREFIX!}_user_payouts` WHERE id=%s LIMIT 1", + array(REQUEST_GET('pid')), __FILE__, __LINE__); list($uid, $tuid, $points, $tstamp, $tpass) = SQL_FETCHROW($result); SQL_FREERESULT($result); // Obtain some data - if (empty($_GET['task']) && (!empty($uid)) && ($uid > 0)) { + if (!REQUEST_ISSET_GET(('task')) && (!empty($uid)) && ($uid > 0)) { // Get task ID from database - $result = SQL_QUERY_ESC("SELECT id FROM "._MYSQL_PREFIX."_task_system WHERE userid=%s AND task_type='PAYOUT_REQUEST' AND task_created='".$tstamp."' LIMIT 1", + $result = SQL_QUERY_ESC("SELECT id FROM `{!_MYSQL_PREFIX!}_task_system` WHERE userid=%s AND task_type='PAYOUT_REQUEST' AND task_created='".$tstamp."' LIMIT 1", array(bigintval($uid)), __FILE__, __LINE__); list($task) = SQL_FETCHROW($result); SQL_FREERESULT($result); if (empty($task)) $task = 0; } elseif ((empty($uid)) || ($uid == "0")) { // Cannot obtain member ID! - LOAD_TEMPLATE("admin_settings_saved", false, PAYOUT_FAILED_OBTAIN_USERID); + LOAD_TEMPLATE("admin_settings_saved", false, getMessage('PAYOUT_FAILED_OBTAIN_USERID')); } else { // Get task ID from URL - $task = $_GET['task']; + $task = REQUEST_GET('task'); } if ((!empty($task)) && (!empty($uid)) && ($uid > 0)) { // Load user's data - $result = SQL_QUERY_ESC("SELECT email, gender, surname, family FROM `"._MYSQL_PREFIX."_user_data` WHERE userid=%s LIMIT 1", + $result = SQL_QUERY_ESC("SELECT email, gender, surname, family FROM `{!_MYSQL_PREFIX!}_user_data` WHERE userid=%s LIMIT 1", array(bigintval($uid)), __FILE__, __LINE__); list($email, $gender, $surname, $family) = SQL_FETCHROW($result); SQL_FREERESULT($result); // Konstante bauen - define('PAYOUT_USERDATA_VALUE', "".TRANSLATE_GENDER($gender)." ".$surname." ".$family.""); + define('PAYOUT_USERDATA_VALUE', "".TRANSLATE_GENDER($gender)." ".$surname." ".$family.""); - if (($_GET['do'] == "accept") && (!empty($email))) { + if ((REQUEST_GET('do') == "accept") && (!empty($email))) { // Ok, now we can output the form or execute accepting - if (isset($_POST['ok'])) { + if (IS_FORM_SENT()) { // Obtain payout type and other data - $result = SQL_QUERY_ESC("SELECT payout_id FROM "._MYSQL_PREFIX."_user_payouts WHERE id=%s LIMIT 1", - array(bigintval($_GET['pid'])), __FILE__, __LINE__); + $result = SQL_QUERY_ESC("SELECT payout_id FROM `{!_MYSQL_PREFIX!}_user_payouts` WHERE id=%s LIMIT 1", + array(bigintval(REQUEST_GET('pid'))), __FILE__, __LINE__); list($ptype) = SQL_FETCHROW($result); SQL_FREERESULT($result); if (!empty($ptype)) { // Obtain data from payout type - $result = SQL_QUERY_ESC("SELECT from_account, from_pass, engine_url, engine_ret_ok, engine_ret_failed, pass_enc, allow_url FROM "._MYSQL_PREFIX."_payout_types WHERE id=%s LIMIT 1", + $result = SQL_QUERY_ESC("SELECT from_account, from_pass, engine_url, engine_ret_ok, engine_ret_failed, pass_enc, allow_url FROM `{!_MYSQL_PREFIX!}_payout_types` WHERE id=%s LIMIT 1", array(bigintval($ptype)), __FILE__, __LINE__); list($fuid, $fpass, $eurl, $eok, $failed, $eenc, $allow) = SQL_FETCHROW($result); SQL_FREERESULT($result); @@ -107,7 +112,7 @@ if (!empty($_GET['pid'])) { // Transfer variables... $eval = "\$URL = \"".$eurl."\";"; - $reason = urlencode(base64_encode(PAYOUT_REASON_PAYOUT)); + $reason = encodeString(getMessage('PAYOUT_REASON_PAYOUT'), false); // Run code... eval($eval); @@ -122,23 +127,23 @@ if (!empty($_GET['pid'])) { if ($ret[0] == $eok) { // Clear task if ($task > 0) { - RUN_FILTER('solve_task', $task); + runFilterChain('solve_task', $task); } // Clear payout request - $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_payouts SET status='ACCEPTED' WHERE id=%s LIMIT 1", - array(bigintval($_GET['pid'])), __FILE__, __LINE__); + SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_payouts` SET `status`='ACCEPTED' WHERE id=%s LIMIT 1", + array(bigintval(REQUEST_GET('pid'))), __FILE__, __LINE__); // Send out mail - $msg = LOAD_EMAIL_TEMPLATE("member_payout_accepted", $_POST['text'], $uid); + $msg = LOAD_EMAIL_TEMPLATE("member_payout_accepted", REQUEST_POST('text'), $uid); // Output message if ($allow == "Y") { // Banner / Textlink request - LOAD_TEMPLATE("admin_settings_saved", false, PAYOUT_BANNER_ACCEPTED_NOTIFIED); + LOAD_TEMPLATE("admin_settings_saved", false, getMessage('PAYOUT_BANNER_ACCEPTED_NOTIFIED')); } else { // Normal request - LOAD_TEMPLATE("admin_settings_saved", false, PAYOUT_ACCEPTED_NOTIFIED); + LOAD_TEMPLATE("admin_settings_saved", false, getMessage('PAYOUT_ACCEPTED_NOTIFIED')); } // Finally send mail @@ -150,109 +155,111 @@ if (!empty($_GET['pid'])) { } } else { // Cannot load payout id - OUTPUT_HTML("".PAYOUT_FAILED_OBTAIN_PAYOUT_ID.""); + LOAD_TEMPLATE("admin_settings_saved", false, "
{--PAYOUT_FAILED_OBTAIN_PAYOUT_ID--}
"); } } else { + // Prepare content + $content = array( + 'task' => $task, + 'pid' => bigintval(REQUEST_GET('pid')) + ); + // Load template - LOAD_TEMPLATE("admin_payout_accept_form", false, $task); + LOAD_TEMPLATE("admin_payout_accept_form", false, $content); } - } elseif (($_GET['do'] == "reject") && (!empty($email))) { + } elseif ((REQUEST_GET('do') == "reject") && (!empty($email))) { // Ok, now we can output the form or execute rejecting - if (isset($_POST['ok'])) { + if (IS_FORM_SENT()) { if ($task > 0) { // Clear task - RUN_FILTER('solve_task', $task); + runFilterChain('solve_task', $task); } // Clear payout request - $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_payouts SET status='REJECTED' WHERE id=%s LIMIT 1", - array(bigintval($_GET['pid'])), __FILE__, __LINE__); + SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_payouts` SET `status`='REJECTED' WHERE id=%s LIMIT 1", + array(bigintval(REQUEST_GET('pid'))), __FILE__, __LINE__); // Send out mail - $msg = LOAD_EMAIL_TEMPLATE("member_payout_rejected", $_POST['text'], $uid); + $msg = LOAD_EMAIL_TEMPLATE("member_payout_rejected", REQUEST_POST('text'), $uid); // Output message - LOAD_TEMPLATE("admin_settings_saved", false, PAYOUT_REJECTED_NOTIFIED); + LOAD_TEMPLATE("admin_settings_saved", false, getMessage('PAYOUT_REJECTED_NOTIFIED')); // Finally send mail - SEND_EMAIL($email, PAYOUT_REJECTED_SUBJECT, $msg); + SEND_EMAIL($email, getMessage('PAYOUT_REJECTED_SUBJECT'), $msg); } else { + // Prepare content + $content = array( + 'task' => $task + 'pid' => bigintval(REQUEST_GET('pid')) + ); + // Load template - LOAD_TEMPLATE("admin_payout_reject_form", false, $task); + LOAD_TEMPLATE("admin_payout_reject_form", false, $content); } } else { // Cannot load user data - LOAD_TEMPLATE("admin_settings_saved", false, PAYOUT_FAILED_OBTAIN_USERDATA); + LOAD_TEMPLATE("admin_settings_saved", false, getMessage('PAYOUT_FAILED_OBTAIN_USERDATA')); } } elseif ((empty($task)) || ($task == "0")) { // Failed loading task ID - LOAD_TEMPLATE("admin_settings_saved", false, PAYOUT_FAILED_OBTAIN_TASK_ID); + LOAD_TEMPLATE("admin_settings_saved", false, getMessage('PAYOUT_FAILED_OBTAIN_TASK_ID')); } } else { - if (empty($_GET['do'])) $_GET['do'] = ""; - if ($_GET['do'] == "delete") { + if (!REQUEST_ISSET_GET(('do'))) REQUEST_SET_GET('do', ""); + + if (REQUEST_GET('do') == "delete") { // Delete all requests - $result = SQL_QUERY("DELETE LOW_PRIORITY FROM "._MYSQL_PREFIX."_user_payouts", __FILE__, __LINE__); + $result = SQL_QUERY("DELETE LOW_PRIORITY FROM `{!_MYSQL_PREFIX!}_user_payouts`", __FILE__, __LINE__); } // Search for payouts $result = SQL_QUERY("SELECT p.id, p.userid AS uid, p.payout_total, p.target_account, p.target_bank, t.type, p.payout_timestamp, p.status, t.allow_url AS allow, p.target_url AS url, p.link_text AS alt, p.banner_url AS banner -FROM "._MYSQL_PREFIX."_user_payouts AS p, "._MYSQL_PREFIX."_payout_types AS t +FROM `{!_MYSQL_PREFIX!}_user_payouts` AS p, `{!_MYSQL_PREFIX!}_payout_types` AS t WHERE p.payout_id=t.id ORDER BY p.payout_timestamp DESC", __FILE__, __LINE__); if (SQL_NUMROWS($result) > 0) { // List found payouts $OUT = ""; $SW = 2; - while (list($pid, $uid, $total, $account, $bank, $type, $tstamp, $status, $allow, $url, $alt, $banner) = SQL_FETCHROW($result)) { - if ($status == "NEW") { + while ($content = SQL_FETCHROW($result)) { + if ($content['status'] == "NEW") { // Generate links for direct accepting and rejecting - $status = "".PAYOUT_ACCEPT_PAYOUT." | ".PAYOUT_REJECT_PAYOUT.""; + $content['status'] = "".PAYOUT_ACCEPT_PAYOUT." | ".PAYOUT_REJECT_PAYOUT.""; } else { // Translate status - $status = constant('PAYOUT_STATUS_'.strtoupper($status).''); - $status = "".$status.""; + $content['status'] = constant('PAYOUT_STATUS_'.strtoupper($content['status']).''); + $content['status'] = "
".$content['status']."
"; } // Nothing entered must be secured in member/what-payputs.php ! - if ($allow == "Y") { + if ($content['allow'] == "Y") { // Banner/Textlink views/clicks request - if (!empty($banner)) { - // Prepare array for the banner - $content = array( - 'banner' => $banner, - 'alt' => $alt, - 'url' => $url, - ); - + if (!empty($content['banner'])) { // Load template for the banner - $account = LOAD_TEMPLATE("admin_list_payouts_banner", true, $content); + $content['target_account'] = LOAD_TEMPLATE("admin_list_payouts_banner", true, $content); } else { // Textlink - $content = array( - 'txt_link' => $alt, - 'txt_url' => $url, - ); - $account = LOAD_TEMPLATE("admin_list_payouts_txt", true, $content); + $content['target_account'] = LOAD_TEMPLATE("admin_list_payouts_txt", true, $content); } // Admins can addionally test the URL for framekillers - $bank = "".CLICK_HERE.""; + $content['target_bank'] = "{--CLICK_HERE--}"; } else { // e-currency payout request - if (empty($account)) $account = "---"; - if (empty($bank)) $bank = "---"; + if (empty($content['target_account'])) $content['target_account'] = "---"; + if (empty($content['target_bank'])) $content['target_bank'] = "---"; } // Remember data in array for the template $content = array( 'sw' => $SW, - 'ulink' => ADMIN_USER_PROFILE_LINK($uid), - 'ptype' => TRANSLATE_COMMA($total)." ".COMPILE_CODE($type), - 'account' => $account, - 'bank' => $bank, - 'tstamp' => MAKE_DATETIME($tstamp, "2"), - 'status' => $status, + 'ulink' => ADMIN_USER_PROFILE_LINK($content['userid']), + 'ptype' => TRANSLATE_COMMA($content['payout_total'])." ".COMPILE_CODE($content['type']), + 'account' => $content['target_account'], + 'bank' => $content['target_bank'], + 'tstamp' => MAKE_DATETIME($content['payout_timestamp'], "2"), + 'status' => $content['status'], ); // Add row and switch color @@ -268,7 +275,7 @@ ORDER BY p.payout_timestamp DESC", __FILE__, __LINE__); LOAD_TEMPLATE("admin_list_payouts"); } else { // No payout requests are sent so far - LOAD_TEMPLATE("admin_settings_saved", false, PAYOUT_ADMIN_NO_REQUESTS_FOUND); + LOAD_TEMPLATE("admin_settings_saved", false, getMessage('PAYOUT_ADMIN_NO_REQUESTS_FOUND')); } } //