Файл: archive_01122016_1136/public_html/taksi/reg.php
Строк: 27
<?php
include ("../conf.php");
include ("../lock.php");
include ("../functions.php");
if ($user == $myrow["user"] && $pass == $myrow["pass"] && $user != '')
{
bann($user);
if (isset($_GET['id'])) {$id = mysql_real_escape_string(trim($_GET['id']));}
$result44 = mysql_query("SELECT * FROM taksi WHERE id='$id'",$db);
$myrow44 = mysql_fetch_array($result44);
if (mysql_num_rows($result44) > 0)
{
$result2 = mysql_query("SELECT * FROM taksi WHERE id='$id'",$db);
$myrow2 = mysql_fetch_array($result2);
$new_view = $myrow2['view'] + 1;
$update = mysql_query("UPDATE taksi SET view='".$new_view."' WHERE id='".$id."'",$db);
}
$result3 = mysql_query("SELECT * FROM taksi WHERE id='$id'",$db);
$myrow3 = mysql_fetch_array($result3);
if($id != $myrow3['id'])
{
include ("../head.php");
echo "<div class='nav'>";
echo "Такого такси не существует!<br />";
echo "</div>";
echo "<a href=menu.php?user=$user&pass=$pass>В меню</a>";
include ("../foot.php");
exit();
}
include ("../head.php");
mysql_query("INSERT INTO taksists (id_taksi,name_taksi,id) VALUES ('".intval($_GET['id'])."','$myrow44[name]','$myrow[id]')");
mysql_query("UPDATE taksi SET users=users+'1' WHERE id='".intval($_GET['id'])."'",$db);
echo "<div class=nav>Вы устроились в такси: ".$myrow44['name']."</div>";
echo "<a href=../menu.php?user=$user&pass=$pass>В меню</a>";
include ("../foot.php");
exit();
}
else
{
echo "Ошибка! Неверный <b>Ник</b> или <b>Пароль</b><br />";
echo <<<sss
<a href="../index.php">На главную</a>
sss;
}
?>