$_CFG['resume_photo_dir'] = $_CFG['site_dir'] . "data/" . $_CFG['resume_photo_dir'] . "/"; $_CFG['resume_photo_dir_thumb'] = $_CFG['site_dir'] . "data/" . $_CFG['resume_photo_dir_thumb'] . "/"; $_CFG['hunter_photo_dir'] = $_CFG['site_dir'] . "data/hunter/"; $_CFG['hunter_photo_dir_thumb'] = $_CFG['site_dir'] . "data/hunter/thumb/"; $upfiles_dir = "../data/" . $_CFG['updir_images'] . "/"; $thumb_dir = "../data/" . $_CFG['updir_thumb'] . "/"; $certificate_dir = "../data/" . $_CFG['updir_certificate'] . "/"; $certificate_train_dir = "../data/" . $_CFG['updir_train_certificate'] . "/"; $hunter_dir = "../data/hunter/"; $thumbwidth = "115"; $thumbheight = "85"; if (empty($_GET['perpage'])) { $_GET['perpage'] = 10; } $perpage = intval($_GET['perpage']); require_once ADMIN_ROOT_PATH . 'include/admin_tpl.inc.php'; date_default_timezone_set("PRC"); if (empty($_SESSION['admin_id']) && $_REQUEST['act'] != 'login' && $_REQUEST['act'] != 'do_login' && $_REQUEST['act'] != 'logout') { if ($_COOKIE['Qishi']['admin_id'] && $_COOKIE['Qishi']['admin_name'] && $_COOKIE['Qishi']['admin_pwd']) { if (check_cookie($_COOKIE['Qishi']['admin_name'], $_COOKIE['Qishi']['admin_pwd'])) { update_admin_info($_COOKIE['Qishi']['admin_name'], false); } else { setcookie("Qishi[admin_id]", '', 1, $QS_cookiepath, $QS_cookiedomain); setcookie("Qishi[admin_name]", '', 1, $QS_cookiepath, $QS_cookiedomain); setcookie("Qishi[admin_pwd]", '', 1, $QS_cookiepath, $QS_cookiedomain); exit('<script type="text/javascript">top.location="admin_login.php?act=login";</script>'); } } else { exit('<script type="text/javascript">top.location="admin_login.php?act=login";</script>'); } }
$captcha = get_cache('captcha'); if (empty($postcaptcha) && $captcha['verify_adminlogin'] == '1') { header("Location:?act=login&err=" . urlencode('验证码不能为空')); exit; } if ($captcha['verify_adminlogin'] == '1' && strcasecmp($_SESSION['imageCaptcha_content'], $postcaptcha) != 0) { write_log("<span style=\"color:#FF0000\">验证码填写错误</span>", $admin_name, 2); header("Location:?act=login&err=" . urlencode('验证码填写错误')); exit; } elseif (check_admin($admin_name, $admin_pwd)) { $admininfo = get_admin_one($admin_name); if (!in_array($_CFG['subsite_id'], explode(',', $admininfo['site_purview'])) && $admininfo['purview'] != "all") { write_log("<span style=\"color:#FF0000\">您没有管理权限</span>", $admin_name, 2); header("Location:?act=login&err=" . urlencode('没有管理权限')); exit; } update_admin_info($admin_name); write_log("成功登录", $admin_name); if ($remember == 1) { $admininfo = get_admin_one($admin_name); setcookie('Qishi[admin_id]', $_SESSION['admin_id'], time() + 86400, $QS_cookiepath, $QS_cookiedomain); setcookie('Qishi[admin_name]', $admin_name, time() + 86400, $QS_cookiepath, $QS_cookiedomain); setcookie('Qishi[admin_pwd]', md5($admin_name . $admininfo['pwd'] . $admininfo['pwd_hash'] . $QS_pwdhash), time() + 86400, $QS_cookiepath, $QS_cookiedomain); } } else { write_log("<span style=\"color:#FF0000\">用户名或密码错误</span>", $admin_name, 2); header("Location:?act=login&err=" . urlencode('用户名或密码错误')); exit; } header("Location: admin_index.php"); }