<?php /** *2012-8-2 | By:NaV! */ //防止恶意调用 define('IN_GM', true); //定义个常量,用来指定本页的内容 define('SCRIPT', 'stu_date'); //引入公共文件 require dirname(__FILE__) . '/includes/common.inc.php'; //判断登录状态和权限 _login_state(2); if ($_GET['action'] == '') { $num = _num_rows("SELECT * FROM gm_stuinfo WHERE gm_active='1'"); //分页模块 _page($num, $_system['stu_date_pagesize']); $res = _query("SELECT * FROM gm_stuinfo WHERE gm_active='1' ORDER BY gm_num LIMIT {$pagenum},{$pagesize}"); } elseif ($_GET['action'] == 'one' and $_POST['value'] != '') { $type = "gm_" . $_POST['type']; $res = _query("SELECT * FROM gm_stuinfo WHERE gm_active='1' AND {$type} LIKE '%{$_POST['value']}%'"); $pagesize = $num = _num_rows_list($res); } if ($_GET['action'] == "del" && $_GET['num']) { $r_s = _fetch_array("SELECT gm_num,gm_teacher,gm_photoname FROM gm_stuinfo WHERE gm_num='{$_GET['num']}' LIMIT 1"); $num_s = _num_rows("SELECT gm_num,gm_teacher FROM gm_stuinfo WHERE gm_num='{$_GET['num']}' LIMIT 1"); if ($num_s) { if ($r_s['gm_teacher']) { $r_t = _fetch_array("SELECT gm_student FROM gm_teacher WHERE gm_username='******'gm_teacher']}' LIMIT 1"); $students = explode(",", $r_t['gm_student']); $students_e = "";
<?php /** *2012-8-22 | By:NaV! */ //防止恶意调用 define('IN_GM', true); //定义个常量,用来指定本页的内容 define('SCRIPT', 'stu_data_s'); //引入公共文件 require dirname(__FILE__) . '/includes/common.inc.php'; //判断登录状态和权限 _login_state(1); //个人信息 if ($_GET['action'] == 'aboutme') { $row = _fetch_array("SELECT * FROM gm_stuinfo AS s INNER JOIN gm_user AS u ON s.gm_num=u.gm_num WHERE s.gm_num='{$_SESSION['num']}'"); } //修改密码 if ($_GET['action'] == 'pass_modify') { //引入验证文件 include ROOT_PATH . 'includes/register.func.php'; $clean = array(); $clean['password'] = _check_password($_POST['password']); $clean['newpassword'] = _check_password($_POST['newpassword']); //判断旧密码是否正确 if (!_num_rows("SELECT gm_num FROM gm_user WHERE gm_active='1' AND gm_num = '{$_SESSION['num']}' AND gm_password = '******'password']}'")) { _alert_back('原密码不正确!'); } if (_query("UPDATE gm_user SET gm_password = '******'newpassword']}' WHERE gm_active='1' AND gm_num = '{$_SESSION['num']}'")) { $string = "密码修改成功!\\n用户名:{$_SESSION['username']}\\n登录帐号:{$_SESSION['num']}\\n密码:{$_POST['newpassword']}"; _alert_back($string);
* Version1.0 * Author: Herman * ---------------------------------------------------------------- * Copy 2015 * ---------------------------------------------------------------- * Date: 2015-7-3 */ session_start(); //定义个常量,用来授权调用includes里面的文件 define('IN_TG', true); //定义个常量,用来指定本页的内容 define('SCRIPT', 'register'); //引入公共文件 require dirname(__FILE__) . '/includes/common.inc.php'; //登录状态 _login_state(); //判断是否提交啦 //创建一个空数组,用来存放提交过的合法数据 $_clean = array(); //可以通过唯一标识符来防止恶意注册,伪装表单跨站攻击等。 //这个存放入数据库的唯一标识符还有第二个用处,就是登录cookies验证 $_clean['uniqid'] = $_POST['uniqid']; $_clean['username'] = $_POST['username']; $_clean['password'] = sha1($_POST['password']); $_clean['question'] = $_POST['question']; $_clean['answer'] = sha1($_POST['answer']); $_clean['face'] = $_POST['face']; $_clean['email'] = $_POST['email']; $_clean['qq'] = $_POST['qq']; $_clean['url'] = $_POST['url']; //新增用户 //在双引号里,直接放变量是可以的,比如$_username,
<?php /** *2012-8-23 By:NaV! */ //防止恶意调用 define('IN_GM', true); //定义个常量,用来指定本页的内容 define('SCRIPT', 'set_admin'); //引入公共文件 require dirname(__FILE__) . '/includes/common.inc.php'; //判断登录状态和权限 _login_state(3); ?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=utf-8" /> <?php require ROOT_PATH . 'includes/title_admin.inc.php'; ?> <script src="js/set.js" type="text/javascript"></script> </head> <body> <?php require ROOT_PATH . 'includes/header_admin.inc.php'; ?> <div id="main"> <div id="left"> <h2>管理导航</h2>