Файл: info.php
Строк: 372
<?php
/* Мод "Профиль"
* Версия v0.0.1
* Дата последнего редактирования 20.01.2015
* Двиг DCMS Special
* Модифицировал densnet
* Файл info.php
* Описание: профиль пользователя
*/
require_once 'sys/inc/start.php';
require_once 'sys/inc/compress.php';
require_once 'sys/inc/sess.php';
require_once 'sys/inc/settings.php';
require_once 'sys/inc/db_connect.php';
require_once 'sys/inc/ipua.php';
require_once 'sys/inc/fnc.php';
require_once 'sys/inc/user.php';
if (isset($user)) {
$ank['id'] = $user['id'];
}
if (isset($_GET['id'])) {
$ank['id'] = intval($_GET['id']);
}
user::only_reg('index.php');
if ($ank['id'] == 0) {
$ank = user::get_user($ank['id']);
$set['title'] = $ank['nick'] . ' - анкета ';
require_once 'sys/inc/thead.php';
title();
aut();
echo "$ank[group_name]<br />n";
if ($ank['ank_about_me'] != NULL) {
echo "О себе: $ank[ank_about_me]<br />";
}
if (isset($_SESSION['refer']) && $_SESSION['refer'] != NULL && otkuda($_SESSION['refer'])) {
echo "<div class = 'razd'><a href='$_SESSION[refer]'>" . img16('left.png') . " " . otkuda($_SESSION['refer']) . "</a></div>n";
}
require_once 'sys/inc/tfoot.php';
exit;
}
$ank = user::get_user($ank['id']);
if (!$ank) {
header("Location: /index.php?" . SID);
exit;
}
$ank['rating'] = intval(@mysql_result(mysql_query("SELECT SUM(`rating`) FROM `user_voice2` WHERE `id_kont` = '$ank[id]'"), 0));
$set['title'] = $ank['nick'] . ' - анкета '; // заголовок страницы
require_once 'sys/inc/thead.php';
if ((!isset($_SESSION['refer']) || $_SESSION['refer'] == NULL) && isset($_SERVER['HTTP_REFERER']) && $_SERVER['HTTP_REFERER'] != NULL &&
!preg_match('#info.php#', $_SERVER['HTTP_REFERER'])) {
$_SESSION['refer'] = str_replace('&', '&', preg_replace('#^http://[^/]*/#', '/', $_SERVER['HTTP_REFERER']));
}
if (isset($_GET['fav']) && isset($user)) {
if (mysql_result(mysql_query("SELECT COUNT(*) FROM `bookmark_user` WHERE `id_user` = '" . $user['id'] . "' AND `id_people` = '" . $ank['id'] . "' LIMIT 1"), 0) == 0 && $_GET['fav'] == 1) {
mysql_query("INSERT INTO `bookmark_user` (`id_people`, `id_user`, `time`) VALUES ('$ank[id]', '$user[id]', '$time')");
}
if (mysql_result(mysql_query("SELECT COUNT(*) FROM `bookmark_user` WHERE `id_user` = '" . $user['id'] . "' AND `id_people` = '" . $ank['id'] . "' LIMIT 1"), 0) == 1 && $_GET['fav'] == 0) {
mysql_query("DELETE FROM `bookmark_user` WHERE `id_user` = '$user[id]' AND `id_people` = '$ank[id]'");
}
header("Location: /info.php?id=$ank[id]");
exit;
}
if (isset($_POST['rating']) && isset($user) && $user['id'] != $ank['id'] && $user['money'] >= 50 && mysql_result(mysql_query("SELECT SUM(`rating`) FROM `user_voice2` WHERE `id_kont` = '$user[id]'"), 0) >= 0) {
$new_r = min(max(@intval($_POST['rating']), -5), 5);
mysql_query("DELETE FROM `user_voice2` WHERE `id_user` = '$user[id]' AND `id_kont` = '$ank[id]' LIMIT 1");
if ($new_r) {
mysql_query("INSERT INTO `user_voice2` (`rating`, `id_user`, `id_kont`) VALUES ('$new_r','$user[id]','$ank[id]')");
}
$ank['rating'] = intval(mysql_result(mysql_query("SELECT SUM(`rating`) FROM `user_voice2` WHERE `id_kont` = '$ank[id]'"), 0));
mysql_query("UPDATE `user` SET `rating` = '$ank[rating]' WHERE `id` = '$ank[id]' LIMIT 1");
if ($new_r > 0) {
mysql_query("INSERT INTO `notification` (`id_user`, `id_kont`, `msg`, `time`) values('$user[id]', '$ank[id]', '" . ($user['sex'] ? 'добавил' : 'добавила') . " Вам рейтинг', '$time')");
}
if ($new_r < 0) {
mysql_query("INSERT INTO `notification` (`id_user`, `id_kont`, `msg`, `time`) values('$user[id]', '$ank[id]', '" . ($user['sex'] ? 'убавил' : 'убавила') . " Вам рейтинг', '$time')");
}
if ($new_r == 0) {
mysql_query("INSERT INTO `notification` (`id_user`, `id_kont`, `msg`, `time`) values('$user[id]', '$ank[id]', '" . ($user['sex'] ? 'оставил' : 'оставила') . " нейтральный рейтинг', '$time')");
}
msg('Ваше мнение о пользователе успешно изменено');
}
title();
aut();
if (isset($user)) {
if (isset($user) && $user['id'] == $ank['id']) {
echo "<table class = 'title'><tr><td>";
echo "<center>";
echo "<a class = 'act rl' title = 'Страница пользователя'>" . img24('001.png') . "</a>";
echo "</center>";
echo "</td><td>";
echo "<center>";
echo "<a class = 'act2 rl' href = '/user/private/' title = 'Приватность страницы'>" . img24('lock.png') . "</a>";
echo "</center>";
echo "</td><td>";
echo "<center>";
echo "<a class = 'act2' href = '/user/hello.php' title = 'Приветствие страницы'>" . img24('status.png') . "</a>";
echo "</center>";
echo "</td></tr></table>";
} else {
}
}
$sql = mysql_query("SELECT * FROM `user_blacklist` WHERE `id_user` = '" . mysql_real_escape_string($ank['id']) . "' AND `id_ank` = '" . mysql_real_escape_string($user['id']) . "';");
if (mysql_num_rows($sql) != 0 AND $user['level'] < 3) {
echo "<div class = 'errs'>Вы не можете просматривать страницу пользователя <b>$ank[nick]</b>. Вы заблокированы пользователем!</div>";
require_once 'sys/inc/tfoot.php';
exit;
}
if (isset($_POST['password'])) {
$set_cook = $_POST['password'];
setcookie("passprofile$ank[id]", $set_cook);
if (isset($_POST['password']) && $_POST['password'] == $ank['profile_password']) {
header("Location: ?id=$ank[id]");
}
}
#Доступ разрешен только пользователю страницы
if ($ank['profile_access'] == 'only_me') {
if ($ank['id'] == $user['id'] && isset($user) || $user['level'] >= 3) {
} else {
echo "<table class = 'razd'><tr><td class = 'icon14'>";
avatar($ank['id'], '48');
echo "</td><td class = 'null'>";
echo "Доступ к профилю <b>$ank[nick]</b> закрыт.<br /><br />";
echo "<a href = '/mail.php?id=$ank[id]' class = 'add' title = 'Отправить сообщение'>" . img16('mail.png') . " Сообщение</a> ";
if (isset($user) && mysql_result(mysql_query("SELECT COUNT(*) FROM `friends` WHERE `user` = '$user[id]' AND `friends` = '$ank[id]'"), 0) == 0) {
echo "<a href = '/user/friends/add.php?id=$ank[id]' class = 'add'>" . img16('user_add.png') . " Добавить в друзья</a>";
} else {
echo "<a href = '/user/friends/new.php?del=$ank[id]' class = 'add'>" . img16('user_del.png') . " Удалить из друзей</a>";
}
echo "</td></tr></table>";
require_once 'sys/inc/tfoot.php';
exit();
}
#Доступ разрешен только друзьям пользователя
} elseif ($ank['profile_access'] == 'friends') {
if ($ank['id'] == $user['id'] && isset($user) || $user['level'] >= 3 || $ank['id'] == $user['id'] && isset($user) || isset($umodd) || mysql_result(mysql_query("SELECT COUNT(*) FROM `friends` WHERE (`user` = '$user[id]' AND `friends` = '$ank[id]') OR (`user` = '$ank[id]' AND `friends` = '$user[id]')"), 0) != 0) {
} else {
echo "<table class = 'razd'><tr><td class = 'icon14'>";
avatar($ank['id'], '48');
echo "</td><td class = 'null'>";
echo "Доступ к профилю <b>$ank[nick]</b> открыт только для друзей пользователя.<br /><br />";
echo "<a href = '/mail.php?id=$ank[id]' class = 'add' title = 'Отправить сообщение'>" . img16('mail.png') . " Сообщение</a> ";
if (isset($user) && mysql_result(mysql_query("SELECT COUNT(*) FROM `friends` WHERE `user` = '$user[id]' AND `friends` = '$ank[id]'"), 0) == 0) {
echo "<a href = '/user/friends/add.php?id=$ank[id]' class = 'add'>" . img16('user_add.png') . " Добавить в друзья</a>";
} else {
echo "<a href = '/user/friends/new.php?del=$ank[id]' class = 'add'>" . img16('user_del.png') . " Удалить из друзей</a>";
}
echo "</td></tr></table>";
require_once 'sys/inc/tfoot.php';
exit();
}
} elseif ($ank['profile_access'] == 'pass') {
if (isset($_COOKIE["passprofile$ank[id]"]) && $_COOKIE["passprofile$ank[id]"] == $ank['profile_password'] || $ank['id'] == $user['id'] && isset($user) || $user['level'] >= 3) {
} else {
if (isset($_POST['password']) && $_POST['password'] != $ank['profile_password']) {
$err[] = "Пароль неправильный.";
}
err();
echo "<table class = 'razd'><tr><td class = 'icon14'>";
avatar($ank['id'], '48');
echo "</td><td class = 'null'>";
echo "<form action = '' method = 'post'>";
echo "Доступ к профилю <b>$ank[nick]</b> доступен только по паролю:<br />";
echo "<div class = 'inputs'>";
echo "<input name = 'password' required = 'required' type = 'password' value = ''/>";
echo "<div class = 'input-icon'>" . img16('key.png') . "</div>";
echo "</div>";
echo "<button class = 'button sign-ins' name = 'submited'>Войти";
echo "</button></form>";
echo "<a href = '/mail.php?id=$ank[id]' class = 'add' title = 'Отправить сообщение'>" . img16('mail.png') . " Сообщение</a> ";
if (isset($user) && mysql_result(mysql_query("SELECT COUNT(*) FROM `friends` WHERE `user` = '$user[id]' AND `friends` = '$ank[id]'"), 0) == 0) {
echo "<a href = '/user/friends/add.php?id=$ank[id]' class = 'add'>" . img16('user_add.png') . " Добавить в друзья</a>";
} else {
echo "<a href = '/user/friends/new.php?del=$ank[id]' class = 'add'>" . img16('user_del.png') . " Удалить из друзей</a>";
}
echo "</td></tr></table>";
require_once 'sys/inc/tfoot.php';
exit();
}
}
#Определение гостей
if (isset($user) && $user['id'] != $ank['id']) {
if (mysql_result(mysql_query("SELECT COUNT(*) FROM `myguests` WHERE `id_ank` = '$ank[id]' AND `id_user`='$user[id]' LIMIT 5"), 0) == 0) {
mysql_query("INSERT INTO `myguests` (`id_ank`, `id_user`, `time`) VALUES ('$ank[id]', '$user[id]', '$time')");
} else {
$guest = mysql_fetch_array(mysql_query("SELECT * FROM `myguests` WHERE `id_ank` = '$ank[id]' AND `id_user`='$user[id]' LIMIT 5"));
mysql_query("UPDATE `myguests` SET `count` = '" . ($guest['count'] + 1) . "', `time`='$time' WHERE `id` = '$guest[id]' LIMIT 5");
}
}
echo "<div class = 'razd'>";
echo user($ank['id']);
echo "</div><table class = 'razd'><tr><td class = 'icon14'>";
avatar($ank['id'], '150');
if ($ank['welcome'] != NULL) {
echo "<div class = 'hello' style = 'padding-top: 0px!important;'>";
echo "<div class = 'hell'><div class = 'hell-img'></div>";
echo "<small><i>" . text::toOutput($ank['welcome']) . "</i></small>";
echo "</div></div>";
}
echo "</td><td class = 'null'>";
$stat = mysql_fetch_array(mysql_query("SELECT * FROM `stat` WHERE `user_id` = '" . $ank['id'] . "'"));
if (isset($stat['user_id']) AND $stat['stat_id'] >= 1) {
$ost = TIME - $stat['time'];
if ($ost > 604800) {
mysql_query("UPDATE `stat` SET `stat_id` = '0', `time` = '0' WHERE `user_id` = '$ank[id]'");
}
echo "<span style = 'float:right;'><img src = '/style/stat/$stat[stat_id].png' /></span>";
}
echo "</td></tr></table>";
if (is_file(H . "/sys/avatar/$ank[id].gif") || is_file(H . "/sys/avatar/$ank[id].jpg") || is_file(H . "/sys/avatar/$ank[id].png")) {
echo "<div class = 'razd'>";
$like = mysql_result(mysql_query("SELECT COUNT(*) FROM `avatar_like` WHERE `id_komm` = '$ank[id]'"), 0);
$k_p = mysql_result(mysql_query("SELECT COUNT(*) FROM `avatar_comments` WHERE `avatar_id` = $ank[id] ", $db), 0);
echo "<a href = '/user/avatar_comm.php?id=$ank[id]' class = 'add'>" . img16('komm.png') . " Комментарии <b>$k_p</b></a> ";
if (mysql_result(mysql_query("SELECT COUNT(*) FROM `avatar_like` WHERE `id_komm` = '$ank[id]' AND `id_user` = '$user[id]' LIMIT 1"), 0) == 0) {
echo "<a href = '/user/avatar_like.php?id=$ank[id]&likes' class = 'add'>Нравится</a> ";
} else {
echo "<a href = '/user/avatar_like.php?id=$ank[id]&unlikes' class = 'addi'>Не нравится</a> ";
}
echo "<a class = 'add' href = '/user/avatar_like_all.php?id=$ank[id]'>" . img16('like.png') . " $like</a>";
$kum = @mysql_result(mysql_query("SELECT `id_user` FROM `avatar_like` WHERE `id_komm` = '$ank[id]'"), 0);
$kom = @mysql_result(mysql_query("SELECT `nick` FROM `user` WHERE `id`='$kum' LIMIT 1"), 0);
$kem = $like - 1;
if ($user['id'] == $kum) {
$vam = "Вам";
} else {
$vam = "<a href='/info.php?id=$kum'>$kom</a>";
}
if ($like == 1) {
echo "<br /><br />";
echo "$vam это нравится";
} elseif ($like == 2) {
echo "<br /><br />";
echo "Это понравилось $vam и <a href = '/user/avatar_like_all.php?id=$ank[id]'> ещё $kem пользователю.</a>";
} elseif ($like >= 3) {
echo "<br /><br />";
echo "Это понравилось $vam и <a href = '/user/avatar_like_all.php?id=$ank[id]'> ещё $kem пользователям.</a>";
}
echo "</div>";
}
if (isset($user) && $user['id'] != $ank['id']) {
echo "<div class = 'razd'>";
echo "<a href = '/mail.php?id=$ank[id]' class = 'add'>" . img16('mail.png') . " Сообщение</a>";
if (isset($user) && mysql_result(mysql_query("SELECT COUNT(*) FROM `friends` WHERE `user` = '$user[id]' AND `friends` = '$ank[id]'"), 0) == 0) {
echo "<br /><br /><a href = '/user/friends/add.php?id=$ank[id]' class = 'add'>" . img16('user_add.png') . " Добавить в друзья</a>";
} else {
echo "<br /><br /><a href = '/user/friends/new.php?del=$ank[id]' class = 'add'>" . img16('user_del.png') . " Убрать из друзей</a>";
}
if (mysql_result(mysql_query("SELECT COUNT(*) FROM `bookmark_user` WHERE `id_user` = '" . $user['id'] . "' AND `id_people` = '" . $ank['id'] . "' LIMIT 1"), 0) == 0) {
echo "<br /><br /><a href = '?id=$ank[id]&fav=1' class = 'add'>" . img16('star_add.png') . " В закладки</a>";
} else {
echo "<br /><br /><a href = '?id=$ank[id]&fav=0' class = 'add'>" . img16('star_del.png') . " Убрать из закладок</a>";
}
if (isset($user) && mysql_result(mysql_query("SELECT COUNT(*) FROM `user_blacklist` WHERE `id_user` = '$user[id]' AND `id_ank` = '$ank[id]'"), 0) == 0) {
echo "<br /><br /><a href = '/user/blacklist/?add=$ank[id]' class = 'add'>" . img16('blacklist.png') . " Заблокировать</a>";
}
if ($ank['id'] != $user['id']) {
echo "<br /><br /><a href = '/modules/gifts/?id=$ank[id]&do' class = 'add'>" . img16('gifts.png') . " Отправить подарок</a>";
}
echo "</div>";
}
$razdel = (isset($_GET['act'])) ? htmlspecialchars($_GET['act']) : null;
switch ($razdel) {
case 'wall':
echo "<div class = 'razd'>";
echo "<a href = '/info.php?id=$ank[id]' class = 'noactiv'>Профиль</a>";
echo "<a href = '/info.php?id=$ank[id]&act=wall' class = 'activ'>Стена</a>";
echo "</div>";
require_once 'user/wall/index.php';
break;
default:
echo "<div class = 'razd'>";
echo "<a href = '/info.php?id=$ank[id]' class = 'activ'>Профиль</a>";
echo "<a href = '/info.php?id=$ank[id]&act=wall' class = 'noactiv'>Стена</a>";
echo "</div>";
require_once 'user/profile/menu.php';
break;
}
if (isset($user) && $user['id'] != $ank['id'] && $user['money'] >= 50 && mysql_result(mysql_query("SELECT SUM(`rating`) FROM `user_voice2` WHERE `id_kont` = '$user[id]'"), 0) >= 0) {
$my_r = intval(@mysql_result(mysql_query("SELECT `rating` FROM `user_voice2` WHERE `id_user` = '$user[id]' AND `id_kont` = '$ank[id]'"), 0));
echo "<form method = 'post' class = 'razd' action = '?id=$ank[id]&$passgen'>n";
echo "<b>Ваше отношение:</b><br />n";
echo "<select name = 'rating'>n";
echo "<option value = '5' " . ($my_r == 5 ? 'selected="selected"' : null) . "> +5 </option>n";
echo "<option value = '4' " . ($my_r == 4 ? 'selected="selected"' : null) . "> +4 </option>n";
echo "<option value = '3' " . ($my_r == 3 ? 'selected="selected"' : null) . "> +3 </option>n";
echo "<option value = '2' " . ($my_r == 2 ? 'selected="selected"' : null) . "> +2 </option>n";
echo "<option value = '1' " . ($my_r == 1 ? 'selected="selected"' : null) . "> +1 </option>n";
echo "<option value = '0' " . ($my_r == 0 ? 'selected="selected"' : null) . "> 0 </option>n";
echo "<option value='-1' " . ($my_r == -1 ? 'selected="selected"' : null) . "> -1 </option>n";
echo "<option value='-2' " . ($my_r == -2 ? 'selected="selected"' : null) . "> -2 </option>n";
echo "<option value='-3' " . ($my_r == -3 ? 'selected="selected"' : null) . "> -3 </option>n";
echo "<option value='-4' " . ($my_r == -4 ? 'selected="selected"' : null) . "> -4 </option>n";
echo "<option value='-5' " . ($my_r == -5 ? 'selected="selected"' : null) . "> -5 </option>n";
echo "</select>n";
echo "<button class = 'add'>";
echo "<img src = '/style/img/tick.png' />";
echo "</button>";
echo "</form>n";
}
if (isset($_SESSION['refer']) && $_SESSION['refer'] != NULL && otkuda($_SESSION['refer'])) {
echo "<div class = 'razd'><a class = 'add' href = '$_SESSION[refer]'>" . img16('left.png') . " " . otkuda($_SESSION['refer']) . "</a></div>";
}
require_once 'sys/inc/tfoot.php';