Файл: neuder/game/moder2.php
Строк: 69
<?php
require_once ('../config/func.php');
$title = 'Админ-Панель';
require_once ('../config/header.php');
if($user['moder'] != 3){
header('Location: /game/');
}
switch(htmlspecialchars($_GET['adm'])){
default;
case 'user':
$id = abs(intval($_GET['id']));
$ank = mysql_fetch_assoc(mysql_query("SELECT * FROM `user` WHERE `id` = '".$id."'"));
echo '<div class="title2 center">Редактирование пользователя '.$ank['login'].'</div>';
if(isset($_REQUEST['ok'])) {
$login = text($_POST['login']);
$sila = text($_POST['sila']);
$lovk = text($_POST['lovk']);
$def = text($_POST['def']);
$max_hp = text($_POST['max_hp']);
$moder = abs(intval($_POST['moder']));
$exp = text($_POST['exp']);
$gold = abs(intval($_POST['gold']));
$cristal = abs(intval($_POST['cristal']));
$level = abs(intval($_POST['level']));
mysql_query("UPDATE `user` SET `login` = '".$login."', `sila` = '".$sila."', `lovk` = '".$lovk."', `def` = '".$def."', `max_hp` = '".$max_hp."', `moder` = '".$moder."', `exp` = '".$exp."', `gold` = '".$gold."', `cristal` = '".$cristal."', `level` = '".$level."' WHERE `id` = '".$id."'");
$_SESSION['notif'] = 'Пользователь успешно изменен';
header('Location: /pers/'.$id.'/');
exit();
}
echo '<div class="block">
<form action="" method="post">
Ник:<br /><input type="text" name="login" maxlength="25" value="'.$ank['login'].'" /><br />
<br /><input type="text" name="sila" maxlength="45" value="'.$ank['sil'].'" /><br />
<br /><input type="text" name="lovk" maxlength="40" value="'.$ank['lov'].'" /><br />
<br /><input type="text" name="def" maxlength="40" value="'.$ank['df'].'" /><br />
<br /><input type="text" name="max_hp" maxlength="100" value="'.$ank['max_h'].'" /><br />
<br /><input type="text" name="exp" maxlength="20" value="'.$ank['ex'].'" /><br />
<br /><input type="text" name="gold" maxlength="1000" value="'.$ank['gol'].'" /><br />
<br /><input type="text" name="cristal" maxlength="1000" value="'.$ank['crista'].'" /><br />';
echo '<select name="moder">';
$dat = array('Игрок' => '0', 'Младший модератор' => '1', 'Модератор' => '2', 'Старший модератор' => '3');
foreach ($dat as $key => $value) {
echo ' <option value="'.$value.'"'.($value == $ank['moder'] ? ' selected="selected"' : '') .'>'.$key.'</option>';
}
echo '</select><br/>';
echo 'Уровень (1-30):<br /><input type="text" name="level" value="'.$ank['leve'].'" maxlength="50" /><br />
<input type="submit" name="ok" value="Изменить" />
</form></div>';
break;
}
require_once ('../config/footer.php');
?>