@Ghazascanner
_2019runbot
Ghazascanner File Manager
server :Linux adweb87 2.6.32-754.el6.x86_64 #1 SMP Tue Jun 19 21:26:04 UTC 2018 x86_64
Current Path :
/
home
/
sanchung
/
public_html
/
_member
/
Path :
Upload File :
New :
File
Dir
/home/sanchung/public_html/_member/insert.php
<? include "$_SERVER[DOCUMENT_ROOT]/admin/_setup.php"; $_POST[zip] = "$zip1-$zip2"; //$_POST[birth] = "$year-$month-$day"; $_POST[tel] = "$tel1-$tel2-$tel3"; $_POST[hp] = "$hp1-$hp2-$hp3"; switch($type){ case "join2": $row = $mysql->row("adw_member_cfg", "member_nouserid, join_level, auto_result", ""); $noid = explode(",", $row[member_nouserid]); for($i=0; $i<sizeof($noid); $i++){ if($noid[$i] == $userid){ $lib->alert_back("$userid ´Â »ç¿ëÇÏ½Ç ¼ö ¾ø´Â ¾ÆÀ̵ðÀÔ´Ï´Ù."); break; } } $_POST[level] = $row[join_level]; $_POST[access] = ($row[auto_result] == "1") ? "Y" : "N"; $_POST[jumin] = "$jumin1-$jumin2"; $row = $mysql->row("adw_member", "num", "where userid='$_POST[userid]'"); if($row) $lib->alert_back("¾ÆÀ̵𰡠ÀÌ¹Ì µî·Ï µÇ¾îÀÖ½À´Ï´Ù."); $row = $mysql->row("adw_member", "num", "where jumin='$_POST[jumin]'"); if($row) $lib->alert_back("ÀÌ¹Ì µî·ÏµÈ Áֹεî·Ï ¹øÈ£ÀÔ´Ï´Ù."); $_POST[pass] = $_POST[pass1]; $mysql->insert("adw_member", $_POST); if($ref == "open") $lib->alert_close("ȸ¿ø°¡ÀÔÀ» ÃàÇϵ帳´Ï´Ù."); else $lib->alert_go("ȸ¿ø°¡ÀÔÀ» ÃàÇϵ帳´Ï´Ù.", "/"); exit; break; case "modify": if($pass1 && $pass2) $_POST[pass] = $pass1; $mysql->update("adw_member", $_POST, "where userid='$userid'"); if($res == "open") $lib->alert_close("ȸ¿ø¼öÁ¤À» ¿Ï·áµÇ¾ú½À´Ï´Ù."); else $lib->alert_go("ȸ¿ø¼öÁ¤À» ¿Ï·áµÇ¾ú½À´Ï´Ù.", "/"); exit; break; case "mem_edit": $_POST[pass] = $pass; $_POST[home] = str_replace("http://", "", $_POST[home]); $mysql->update("yts_member", $_POST, "where id='$id'"); echo " <script language='JavaScript'> alert('ȸ¿ø¼öÁ¤ÀÌ ¿Ï·áµÇ¾ú½À´Ï´Ù.'); location.href='/admin/index.php?amode=member_read&id=$id'; </script> "; exit; break; case "delete" : $SQL = "DELETE FROM yts_member WHERE id='$id'"; $RS = mysql_query($SQL); Header("Location:/admin/index.php?amode=member_list&page=$page"); break; case "point_delete": $SQL = "DELETE FROM member_point WHERE num='$num'"; $RS = mysql_query($SQL); Header("Location:/admin/index.php?amode=member_point&page=$page"); break; case"login": $row = $mysql->row("adw_member", "*", "where userid='$userid' and pass='$userpw'"); if(!$row) $lib->alert_back("ÀÏÄ¡ÇÏ´Â Á¤º¸°¡ ¾ø½À´Ï´Ù."); if($row[access] != "Y") $lib->alert_back("°ü¸®ÀÚ ½ÂÀÎÈÄ Á¤»óÀûÀÎ ÀÌ¿ëÀÌ °¡´ÉÇÕ´Ï´Ù."); $_SESSION[MEMBER_ID] = $userid; $_SESSION[MEMBER_PASS] = $row[pass]; $_SESSION[MEMBER_NAME] = $row[name]; $_SESSION[MEMBER_LEVEL] = $row[level]; $_D[lastjoin] = date("y-m-d H:i:s"); $mysql->update("adw_member", $_D, "where userid='$userid' and pass='$userpw'"); $url = ($back_url) ? $back_url : "/"; if($ref == "open"){ echo"<script> opener.location.replace('/'); self.close(); </script>"; } else { $lib->alert_go("", $url); } break; case"logout": $_SESSION[MEMBER_ID] = ""; $_SESSION[MEMBER_PASS] = ""; $_SESSION[MEMBER_NAME] = ""; $_SESSION[MEMBER_LEVEL] = ""; Header("Location: /"); break; } mysql_close(); ?>