case 'add-league-roster': $team_id = $_POST['team']; $user_id = $_POST['user']; $league_id = $_POST['league']; $roster_id = $_POST['roster']; $ez_team->add_league_member($league_id, $team_id, $roster_id, $user_id); break; case 'remove-league-roster': $team_id = $_POST['team_id']; $user_id = $_POST['user_id']; $league_id = $_POST['league_id']; $ez_team->remove_league_member($league_id, $team_id, $user_id); break; case 'remove-logo': $team_id = $_POST['id']; $ez_team->update_logo($team_id, ''); break; case 'register-league': $team_id = $_POST['tid']; $league_id = $_POST['lid']; $ez_team->register_league($team_id, $league_id); break; case 'register-tournament': $team_id = $_POST['tid']; $tournament_id = $_POST['tournament_id']; $ez_team->register_tournament($team_id, $tournament_id); break; default: break; } } else {
include '../objects/class-user.php'; include '../objects/class-team.php'; $ez_user = new ezLeague_User(); $ez_team = new ezLeague_Team(); if (isset($_SESSION['ez_username'])) { $profile = $ez_user->get_user($_SESSION['ez_username']); $rand = rand('100', '5000'); $now = strtotime('now'); $new_file = $now . '-' . $rand; $allowedExts = array("jpg", "png", "gif", "bmp", "jpeg", "PNG", "JPG", "JPEG", "GIF", "BMP"); $temp = explode(".", $_FILES["file"]["name"]); $extension = end($temp); if (($_FILES["file"]["type"] == "image/gif" || $_FILES["file"]["type"] == "image/jpeg" || $_FILES["file"]["type"] == "image/jpg" || $_FILES["file"]["type"] == "image/pjpeg" || $_FILES["file"]["type"] == "image/x-png" || $_FILES["file"]["type"] == "image/png") && $_FILES["file"]["size"] < 1000000 && in_array($extension, $allowedExts)) { if ($_FILES["file"]["error"] > 0) { echo "Return Code: " . $_FILES["file"]["error"] . "<br>"; } else { if (file_exists("../../logos/" . $now . "-" . $_FILES["file"]["name"])) { echo $now . "-" . $_FILES["file"]["name"] . " already exists. "; } else { move_uploaded_file($_FILES["file"]["tmp_name"], "../../logos/" . $now . "-" . $_FILES["file"]["name"]); $filename = $now . "-" . $_FILES["file"]["name"]; $ez_team->update_logo($profile['guild_id'], $filename); header('Location: ' . $_POST['from']); } } } else { echo "Invalid file"; } } else { echo "users only."; }