X-Git-Url: https://git.mxchange.org/?p=mailer.git;a=blobdiff_plain;f=inc%2Fmodules%2Fframetester.php;h=3cbe638599cffb51934c7910f461724408b323b4;hp=c73bec9636191d7aadde85d93666a2306004b885;hb=cca98f57dff720b174d21d071cee8303462485d7;hpb=ae80e170b5d25a4782af90a7c3d81fbb176fa293 diff --git a/inc/modules/frametester.php b/inc/modules/frametester.php index c73bec9636..3cbe638599 100644 --- a/inc/modules/frametester.php +++ b/inc/modules/frametester.php @@ -32,7 +32,7 @@ ************************************************************************/ // Some security stuff... -if (ereg(basename(__FILE__), $_SERVER['PHP_SELF'])) { +if (!defined('__SECURITY')) { $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php"; require($INC); } @@ -41,9 +41,9 @@ $MODE = "guest"; if (!empty($_GET['order'])) { // Order number placed, is he also logged in? - if(IS_MEMBER()) { + if (IS_MEMBER()) { // Ok, test passed... :) - $result = SQL_QUERY_ESC("SELECT subject, url FROM "._MYSQL_PREFIX."_pool WHERE id=%s AND sender=%s AND data_type='TEMP' LIMIT 1", + $result = SQL_QUERY_ESC("SELECT subject, url FROM `{!MYSQL_PREFIX!}_pool` WHERE id=%s AND sender=%s AND data_type='TEMP' LIMIT 1", array(bigintval($_GET['order']), $GLOBALS['userid']), __FILE__, __LINE__); // Finally is the entry valid? @@ -54,8 +54,7 @@ if (!empty($_GET['order'])) { // This fixes a white page $_POST['url'] = $url; - // Update his login data - UPDATE_LOGIN_DATA(); + // Mode is member $MODE = "member"; } else { // Matching line not found! @@ -75,7 +74,7 @@ if ((!empty($_POST['url'])) || (!empty($_GET['url'])) || (!empty($_GET['frame']) $url = URL; // Decode URL if set in GET parameters - if (!empty($_GET['url'])) $url = COMPILE_CODE(gzuncompress(base64_decode(urldecode($_GET['url'])))); + if (!empty($_GET['url'])) $url = gzuncompress(base64_decode(str_replace(" ", "+", COMPILE_CODE(urldecode($_GET['url']))))); // Use URL from POST data if set if (!empty($_POST['url'])) $url = $_POST['url']; @@ -103,7 +102,7 @@ if ((!empty($_POST['url'])) || (!empty($_GET['url'])) || (!empty($_GET['frame']) break; case "test_top": - OUTPUT_HTML("".GUEST_FRAMETESTER_TOP.""); + LOAD_TEMPLATE("admin_settings_saved", false, "
".GUEST_FRAMETESTER_TOP.""); break; case "back": // Back buttom