Файл: titwar.ru/modules/clans/connect.php
Строк: 33
<?php
/////////////////////////////////основные файлы
include('../../inc/cfg.php');
include('../../inc/lostblock.php');
/////////////////////////////////основные файлы
if (isset($_GET['id'])) {$id_clan=num($_GET['id']);} else {exit;}
if (isset($_GET['mod'])) {$mod=num($_GET['mod']);} else {exit;}
if ($mod != "1" and $mod != "2") {exit;}
$clan=mysql_query("SELECT * FROM `clans` WHERE `id`='$id_clan'");
$search_clan=mysql_num_rows($clan);
$clan=mysql_fetch_array($clan);
if ($search_clan != "0")
{
if ($user['clan'] == "0")
{
$prov=mysql_query("SELECT * FROM `clans_prigl` WHERE `id_add`='".num($clan['id_add'])."' and `id_prigl`='".num($user['id'])."'");
$proverka2=mysql_num_rows($prov);
$res=mysql_fetch_array($prov);
if ($proverka2 != "0")
{
/*** фильтрация ***/
if (isset($_GET['mod'])) {$mod=vvod($_GET['mod']);} else {$mod="";}
switch($mod)
{
case '1':
mysql_query("UPDATE `users` SET `clan`='".num($clan['id'])."' WHERE id='".num($user['id'])."'");
mysql_query("DELETE FROM `clans_prigl` WHERE `id_prigl` = '".num($user['id'])."'");
go("/game.php$ssilki1");
break;
case '2':
mysql_query("DELETE FROM `clans_prigl` WHERE `id_prigl` = '".num($user['id'])."'");
go("/game.php$ssilki1");
break;
}
}
else
{
exit;
}
}
else
{
exit;
}
}
else
{
exit;
}
?>