Beispiel #1
0
<a href="#" class="btn">' . $LANG['options'] . '</a>
<ul>
<li><a href="?route=payments.php&amp;action=plan_view&amp;type=delete&amp;id=' . $_GET['id'] . '&amp;token=' . $csrf . '" data-delete-msg="' . $LANG['delete_msg'] . '">' . $LANG['delete'] . '</a></li>
</ul>
</div>';
        }
        echo '<a href="?route=payments.php&amp;action=plan_view" class="btn">' . $LANG['payments_plan_view'] . '</a>
</div>';
        if (!empty($LANG['pmts_editplan_subtitle'])) {
            echo '<span>' . $LANG['pmts_editplan_subtitle'] . '</span>';
        }
        echo '</div>';
        if ($plan_exists) {
            if ($_SERVER['REQUEST_METHOD'] == 'POST' && isset($_POST['csrf']) && check_csrf($_POST['csrf'], 'payments_csrf')) {
                if (isset($_POST['name']) && isset($_POST['text']) && isset($_POST['price']) && isset($_POST['credits'])) {
                    if (actions::edit_payment_plan($_GET['id'], array('name' => $_POST['name'], 'description' => $_POST['text'], 'price' => $_POST['price'], 'credits' => $_POST['credits'], 'publish' => isset($_POST['publish']) ? 1 : 0))) {
                        $info = \query\payments::plan_infos($_GET['id']);
                        echo '<div class="a-success">' . $LANG['msg_saved'] . '</div>';
                    } else {
                        echo '<div class="a-error">' . $LANG['msg_error'] . '</div>';
                    }
                }
            } else {
                if (isset($_GET['type']) && isset($_GET['token']) && check_csrf($_GET['token'], 'payments_csrf')) {
                    if ($_GET['type'] == 'delete_image') {
                        if (isset($_GET['id'])) {
                            if (actions::delete_payment_plan_image($_GET['id'])) {
                                $info->image = '';
                                echo '<div class="a-success">' . $LANG['msg_deleted'] . '</div>';
                            } else {
                                echo '<div class="a-error">' . $LANG['msg_error'] . '</div>';