Файл: dragon/set_im.php
Строк: 73
<?
include_once '../sys/inc/start.php';
include_once '../sys/inc/compress.php';
include_once '../sys/inc/sess.php';
include_once '../sys/inc/home.php';
include_once '../sys/inc/settings.php';
include_once '../sys/inc/db_connect.php';
include_once '../sys/inc/ipua.php';
include_once '../sys/inc/fnc.php';
include_once '../sys/inc/user.php';
$set['title']='Изминить имя';
include_once 'inc/head.php';
echo '<div class="niz">';
echo'<center><img src="icon/logodragon.png" alt="" /><center></div>';
$q_name=mysql_fetch_array(mysql_query("SELECT * FROM `pit` WHERE `id_user`='".$user['id']."'"));
if (isset($_POST['save'])&&isset($_GET['name'])){
$name=mysql_escape_string(esc(stripcslashes(htmlspecialchars($_POST['name']))));
if (isset($user)&& mysql_result(mysql_query("SELECT COUNT(*) FROM `pit` WHERE `id_user` = '$q_name[id_user]'"),0) == '0')echo "<div class=err>У вас ешё дракона нету!</div>";
elseif (mysql_result(mysql_query("SELECT COUNT(*) FROM `pit` WHERE `name` = '$name'"),0)!=0)echo "<div class=err>Такое имя уже есть!</div>";
else{
mysql_query("UPDATE `pit` SET `name` = '$name' WHERE `id_user` = '$user[id]' LIMIT 1");
if (!isset($err))msg('Имя дракона успешно изменено');
}
}
if (isset($user)&& mysql_result(mysql_query("SELECT COUNT(*) FROM `pit` WHERE `id_user` = '$q_name[id_user]'"),0) != '0'){
echo '<div class="menu">';
echo "<form method='post' action='?name'>n";
echo "Имя дракона:<br />n<input type='text' name='name' value='$q_name[name]' maxlength='15' /><br />n";
echo "<input type='submit' name='save' value='Изменить' />n";
echo "</form>n";
echo "</div>n";
}
echo '<div class="msg"><a href="index.php?">В игру</a></div></a>';
include_once 'inc/foot.php';
?>