Файл: ubiznes.mobi/inc/firms/appl.php
Строк: 25
<?
if(isset($_GET['firms']) && isset($_GET['appl'])){
echo'<div class="b-top"> <a href=/?firms> '.hsc($firm['name']).' </a> / Заявки на вступление </div>';
if(isset($_GET['us']) && isset($_GET['act']) && mysql_result(mysql_query("SELECT COUNT(*) FROM `firms_application` WHERE `id_user` = '".intval($_GET['us'])."' AND `id_firm` = '$firm[id]'"),0)>0){
$act=$_GET['act']; $id=abs(intval($_GET['us']));
if($act=="no"){
mysql_query("DELETE FROM `firms_application` WHERE `id_user` = '$id' AND `id_firm` = '$firm[id]'");
heads("Заявка успешно отклонена","/?firms&appl");
}else{
if(mysql_result(mysql_query("SELECT COUNT(*) FROM `firms_user` WHERE `id_firm` = '$firm[id]'"),0)<10){
mysql_query("INSERT INTO `firms_user` SET `id_user` = '$id',`id_firm` = '$firm[id]',`status` = '4'");
mysql_query("DELETE FROM `firms_application` WHERE `id_user` = '$id'");
heads("Заявка успешно принята","/?firms&appl");
}else{
err_game("В фирме максимальное кол-во участников");
}
}
}
$q=mysql_query("SELECT * FROM `firms_application` WHERE `id_firm` = '$firm[id]' ORDER BY `id_user` DESC LIMIT 10");
while($post=mysql_fetch_assoc($q)){
$ank=mysql_fetch_assoc(mysql_query("SELECT * FROM `user` WHERE `id` = '$post[id_user]' LIMIT 1"));
echo '<div class="pan-4">'.nc($post['id_user']).' '.img_icons(16,16,'up').span('epic',rating($ank['level'])).'</br>
<center><a class="block" href="/?firms&appl&us='.$post['id_user'].'&act=no"><font color="red">Отклонить</font></a> | <a class="block" href="/?firms&appl&us='.$post['id_user'].'&act=yes"><font color="lime">Принять</font></a></center></div>';
}
back("/?firms");
include_once'sys/foot.php';
}