Файл: wml/user.php
Строк: 185
<?php
$r=rand(0,100000);
header ("Content-type:text/vnd.wap.wml; charset=utf-8");
print '<?xml version="1.0" encoding="utf-8"?>';
print '<!DOCTYPE wml PUBLIC "-//WAPFORUM//DTD WML 1.1//EN"'.
' "http://www.wapforum.org/DTD/wml_1.1.xml">'.
'<wml><head><meta http-equiv="Cache-Control" content="no-cache" forua="true"/></head>';
include "./ini.php";
mysql_query ("select * from bannedib WHERE ci='$ci' AND (ip = '".getenv(REMOTE_ADDR)."')and(browser = '".getenv(HTTP_USER_AGENT)."')");
if(mysql_affected_rows()!=0){include "b.php";}
$login = autorize();
if($search) {
$query_users = @mysql_query("select * from `".$px.$utable."` where login='".$dblogin."' and ci= '$ci';");
$data = @mysql_fetch_array($query_users);
} else {
$query_users = @mysql_query("select * from `".$px.$utable."` where id='$dbid' and ci='$ci';");
$data = @mysql_fetch_array($query_users);
}
print '<card title="'.$data['login'].'">'.
'<p>';
if($login) {
$moder=$login['moder'];
$admin=$login['admin'];
$from=$login['email'];
$user_moder=$data['moder'];
$to=$data['email'];
$photo=$data['photo'];
$status=$data['status'];
if(!$search) print '<input name="msg'.$r.'"/><br/>';
if ($room !== "intim")
print '<select name="private" title="'.$lang['privat'].'">'.
'<option value="0">Всем</option>'.
'<option value="'.$login['id'].'.'.$data['id'].'">Приватно</option>'.
'</select><br/>';
print '<select multiple="true" name="translit">'.
'<option value="user">Translit</option></select><br/>'.
'<anchor>'.$lang['say'].'<go href="room.php?ci='.$ci.'&id='.$id.'&pass='.$pass.'&room='.$room.'&r='.$r.'&mod='.$mod.'" method="post">'.
'<postfield name="private" value="$(private)"/>'.
'<postfield name="msg" value="'.$data['login'].', $(msg'.$r.')"/>'.
'<postfield name="translit" value="$(translit)"/></go></anchor><br/>';
if($login['fsize'] == "small") { $fsize1 = "<small>"; $fsize2 = "</small>"; }
elseif($login['fsize'] == "big") { $fsize1 = "<big>"; $fsize2 = "</big>"; }
else { $fsize1 = ""; $fsize2 = ""; }
print $fsize1;
if($data['sex']=="m") { $sex = "мужской"; } else { $sex = "женский"; }
//защита от вставки тегов, во избежание искажения страницы:
// <
$data['name'] = str_replace("<","",$data['name']);
$data['live'] = str_replace("<","",$data['live']);
$data['mobile'] = str_replace("<","",$data['mobile']);
$data['operator'] = str_replace("<","",$data['operator']);
$data['email'] = str_replace("<","",$data['email']);
$data['wapsite'] = str_replace("<","",$data['wapsite']);
$data['website'] = str_replace("<","",$data['website']);
$photo = str_replace("<","",$photo);
// *
$data['name'] = str_replace("*","",$data['name']);
$data['live'] = str_replace("*","",$data['live']);
$data['mobile'] = str_replace("*","",$data['mobile']);
$data['operator'] = str_replace("*","",$data['operator']);
$data['email'] = str_replace("*","",$data['email']);
$data['about'] = str_replace("*","",$data['about']);
$data['wapsite'] = str_replace("*","",$data['wapsite']);
$data['website'] = str_replace("*","",$data['website']);
$photo = str_replace("*","",$photo);
// =
$data['name'] = str_replace("=","",$data['name']);
$data['live'] = str_replace("=","",$data['live']);
$data['mobile'] = str_replace("=","",$data['mobile']);
$data['operator'] = str_replace("=","",$data['operator']);
$data['email'] = str_replace("=","",$data['email']);
$data['about'] = str_replace("=","",$data['about']);
$data['wapsite'] = str_replace("=","",$data['wapsite']);
$data['website'] = str_replace("=","",$data['website']);
$photo = str_replace("=","",$photo);
// &
$data['name'] = str_replace("&","",$data['name']);
$data['live'] = str_replace("&","",$data['live']);
$data['mobile'] = str_replace("&","",$data['mobile']);
$data['operator'] = str_replace("&","",$data['operator']);
$data['email'] = str_replace("&","",$data['email']);
$data['about'] = str_replace("&","",$data['about']);
$data['wapsite'] = str_replace("&","",$data['wapsite']);
$data['website'] = str_replace("&","",$data['website']);
$photo = str_replace("&","",$photo);
// $
$data['name'] = str_replace("$","",$data['name']);
$data['live'] = str_replace("$","",$data['live']);
$data['mobile'] = str_replace("$","",$data['mobile']);
$data['operator'] = str_replace("$","",$data['operator']);
$data['email'] = str_replace("$","",$data['email']);
$data['about'] = str_replace("$","",$data['about']);
$data['wapsite'] = str_replace("$","",$data['wapsite']);
$data['website'] = str_replace("$","",$data['website']);
$photo = str_replace("$","",$photo);
if(!empty($photo)) { print "".$lang['nick'].": <a href="$photo">".$data['login']."</a><br/>"; } else {
print "".$lang['nick'].": ".$data['login']." <br/>"; }
print $lang['name'].": <b>".$data['name']."</b> <br/>";
print $lang['sex'].": $sex <br/>";
print $lang['status'].": [$status] <br/>";
switch($mod) {
case 'full':
print $lang['birthday'].": ".$data['bday']."-".$data['bmonth']."-".$data['byear']."<br/>";
print $lang['live'].": ".$data['live']." <br/>";
print $lang['phone'].": ".$data['mobile'] ."<br/>";
print $lang['operator'].": ".$data['operator'] ."<br/>";
print "e-mail: ".$to."<br/>";
print $lang['wap'].": <a href="http://".$data['wapsite']."">".$data['wapsite']."</a> <br/>";
print $lang['web'].": <a href="http://".$data['website']."">".$data['website']."</a> <br/>";
print "ICQ: ".$data['icq']." <br/>";
print $lang['posts'].":(".$data['posts'].") <br/>";
print $lang['about'].": ".$data['about']." <br/>";
print $lang['datereg'].":(".date("d:m:Y", $data['rtime']).")<br/>";
}
print "<a href="user.php?s=$s&ci=$ci&id=$id&pass=$pass&room=$room&dbid=$dbid&r=$r&mod=full">".$lang['anketafull']."</a><br/>";
if(!empty($moder)&&empty($data['admin'])) print "<b>:::</b><br/><a href="moder.php?ci=$ci&id=$id&pass=$pass&whoid=$dbid&room=$room&mod=kick">".$lang['kick']."</a><br/>";
if($moder>=2&&empty($data['admin'])) print "<a href="moder.php?ci=$ci&id=$id&pass=$pass&whoid=$dbid&room=$room&mod=kill">".$lang['kill']."</a><br/>";
if($moder>=1&&empty($data['admin'])) print "<anchor>Забанить<go href="moder.php?ci=$ci&id=$id&pass=$pass&whoid=$dbid&mod=ipb" method="post">
<postfield name="act" value="search"/>
<postfield name="who" value="".$data['login'].""/>
</go></anchor><br/>";
if(!empty($admin)) {
if($user_moder>=1) { print "<b>:::</b><br/><a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=delmoder">".$lang['delmoder']."</a><br/>"; }
else {
print "<b>:::</b><br/><a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=makemoder">".$lang['makemoder']."</a><br/>"; }
if($user_moder>=2) { print "<a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=delkiller">".$lang['delkiller']."</a><br/>"; }
else {
print "<a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=makekiller">".$lang['makekiller']."</a><br/>"; }
if($user_moder>=3) { print "<a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=delshpion">".$lang['delshpion']."</a><br/>"; }
else {
print "<a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=makeshpion">Cделать шпионом</a><br/>"; }
if($user_moder>=4) { print "<a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=deltopmoder">".$lang['deltopmoder']."</a><br/>"; }
else {
print "<a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=maketopmoder">".$lang['maketopmoder']."</a><br/>";
print "<anchor>Браузер<go href="admin.php?ci=$ci&id=$id&pass=$pass&mod=ipb" method="post">
<postfield name="act" value="search"/>
<postfield name="who" value="".$data['login'].""/>
</go></anchor><br/>"; }
print "<a href="admin.php?ci=$ci&id=$id&pass=$pass&whoid=".$data['id']."&room=$room&mod=del">".$lang['delete']."</a><br/>";
}
print "<b>:::</b><br/><a href="ignor.php?ci=$ci&id=$id&pass=$pass&room=$room&r=$r&mod=set&whoid=".$data['id']."">".$lang['in_ignor']."</a><br/>";
//в ч�т
if($room)
if ($room == "intim"){
print "<a href="room.php?ci=$ci&id=$id&pass=$pass&key=$key&room=$room&r=$r">".$lang['to_chat']."</a><br/>";
}else{
print "<a href="room.php?ci=$ci&id=$id&pass=$pass&room=$room&r=$r">".$lang['to_chat']."</a><br/>";
}
else print "<a href="enter.php?ci=$ci&id=$id&pass=$pass&r=$r">".$lang['holl']."</a><br/>";
print $fsize2;
} else { print $lang['access_denied']; }
print '</p>'.
'</card>'.
'</wml>';
@mysql_close();
ob_end_flush();
?>