Файл: vsime.com/anketa/inc/edit_o_sebe.php
Строк: 22
<?
if(isset($_POST['submited']))
{
if (hsc(@$_POST['mdp'])==$mdp)
{
mysqli_query($dbi, "UPDATE `anketa` SET `o_sebe` = '".my_esc($_POST['o_sebe'])."' WHERE `id_user` = '$ank[id]'");
header("Location:?id=$ank[id]&edit");
msg_sess("Изменения успешно сохранены");exit();
} else hacked_by_Killer();
}
echo "<form method='post' action=''>n";
echo "<div class=list>О себе:<br/>n";
echo "<textarea name='o_sebe' rows='5' cols='17' style='width: 95%' maxlength='400'>".input_value($ank['anketa']['o_sebe'])."</textarea>n";
echo "<input type='hidden' name='mdp' value='$mdp'>n";
echo "<input type='submit' name='submited' value='Изменить' />n";
echo "</form></div>n";
?>