示例#1
0
文件: body.php 项目: sarahbx/moers
    echo "onmouseover=\"body_buttonMouseOver('img_feedback')\" ";
    echo "onmouseout=\"body_buttonMouseOut('img_feedback')\" ";
    echo "/>\n";
    echo "</div>\n";
    echo "<div id=\"div_logout\" class=\"class_bodyButton\">Logout<br />\n";
    echo "<img src=\"images/classy-icons-set/png/128x128/computer_delete.png\" id=\"img_logout\" alt=\"Find Event\" ";
    echo "onclick=\"body_buttonMouseOut('img_logout');parent.main_userLogout()\" ";
    echo "onmouseover=\"body_buttonMouseOver('img_logout')\" ";
    echo "onmouseout=\"body_buttonMouseOut('img_logout')\" ";
    echo "/>\n";
    echo "</div>\n";
    echo "<script type=\"text/javascript\">\n";
    echo "window.onload = bodyPageLoaded;\n";
    echo "</script>\n";
    echo "</body>\n</html>\n";
}
//////////////////////////////////////////////////////////////
//////////////////////////////////////////////////////////////
////////////BEGIN SCRIPT EXECUTION BELOW//////////////////////
//////////////////////////////////////////////////////////////
//////////////////////////////////////////////////////////////
if (!isSSL()) {
    header("Location: logout.php");
} else {
    validateSession();
    displayBodyPage();
    ignore_user_abort(true);
    updateMemberStatus();
    die;
    // attempt to guard against any code insertion at the end of the file
}
示例#2
0
function downloadAllFiles($eventKey)
{
    updateMemberStatus();
    $eventQuery = "SELECT * from events WHERE eventID = '" . $eventKey . "'";
    $eventCheck = mysql_query($eventQuery);
    while ($eventInfo = mysql_fetch_array($eventCheck)) {
        $eventDB = $eventInfo['eventDB'];
        $eventType = $eventInfo['eventType'];
        $eventDate = $eventInfo['eventDate'];
        $entriesFilename = $eventType . "_" . $eventDate . '-EntryList.txt';
        $memberFilename = $eventType . "_" . $eventDate . '-MembershipList.txt';
        $printableFilename = $eventType . "_" . $eventDate . '-PrintableList.html';
        $archiveFilename = $eventType . "_" . $eventDate . '-EventFiles.zip';
        $entriesHandle = fopen($entriesFilename, "w+");
        $memberHandle = fopen($memberFilename, "w+");
        $printableHandle = fopen($printableFilename, "w+");
        createEntriesFile($eventInfo, $entriesHandle);
        createMemberFile($eventInfo, $memberHandle);
        createPrintableFile($eventInfo, $printableHandle);
        fclose($entriesHandle);
        fclose($memberHandle);
        fclose($printableHandle);
        $zip = new Ziplib();
        //    if ($archiveHandle = $zip_open($archiveFilename) )
        //    {
        $zip->zl_add_file(file_get_contents($entriesFilename), $entriesFilename, "n");
        $zip->zl_add_file(file_get_contents($memberFilename), $memberFilename, "n");
        $zip->zl_add_file(file_get_contents($printableFilename), $printableFilename, "n");
        //      $zip->close();
        //      $archiveHandle = fopen($archiveFilename, "br");
        header('Pragma: no-cache');
        header('Cache-Control: no-cache, must-revalidate');
        header("Content-type: application/octet-stream");
        header("Content-Disposition: attachment; filename=\"" . basename($archiveFilename) . "\"");
        //      header("Content-length: ".(string)(filesize($archiveFilename)));
        header("Content-Transfer-Encoding: binary\n");
        echo $zip->zl_pack("TEST");
        //      fpassthru($archiveHandle);
        //      fclose($archiveHandle);
        //      unlink($archiveFilename, $archiveHandle);
        //    }
        unlink($entriesFilename);
        unlink($memberFilename);
        unlink($printableFilename);
    }
}
示例#3
0
function displayUserInfoPage()
{
    require 'include/configGlobals.php';
    $hashUsername = getCookie('ID');
    $check = mysql_query("SELECT * FROM users WHERE sha256_user = '******'") or die(mysql_error());
    while ($info = mysql_fetch_array($check)) {
        $username = $info['username'];
        if (isset($_POST['submitEdit'])) {
            $storedMemberType = $info['member'];
            $postFname = addslashes($_POST['firstName']);
            $postLname = addslashes($_POST['lastName']);
            $postAddr1 = addslashes($_POST['address1']);
            $postAddr2 = addslashes($_POST['address2']);
            $postCity = addslashes($_POST['city']);
            $postState = addslashes($_POST['state']);
            $postZip = addslashes($_POST['zipCode']);
            $postHphone = addslashes($_POST['homePhone']);
            $postCphone = addslashes($_POST['cellPhone']);
            $postEmail = addslashes($_POST['email']);
            $postEcontact = addslashes($_POST['eContact']);
            $postEcPhone = addslashes($_POST['eContactPhone']);
            $postEcRel = addslashes($_POST['eContactRel']);
            $postClub = addslashes($_POST['club']);
            if ($storedMemberType == 0 || $storedMemberType == 2 || $storedMemberType == 3) {
                if ($postClub == $club_Abbr) {
                    $postMemberType = 2;
                } else {
                    if ($postClub == "None") {
                        $postMemberType = 0;
                    } else {
                        $postMemberType = 3;
                    }
                }
                // Partner-member
            } else {
                if ($storedMemberType == 1) {
                    $postClub = $club_Abbr;
                    $postMemberType = 1;
                    // Club member (registered on-line)
                }
            }
            // now we insert it into the database
            $update = "UPDATE users SET \n                        fname='{$postFname}', \n                        lname='{$postLname}', \n                        addr1='{$postAddr1}', \n                        addr2='{$postAddr2}', \n                        city='{$postCity}', \n                        state='{$postState}', \n                        zip='{$postZip}', \n                        hphone='{$postHphone}',\n                        cphone='{$postCphone}',\n                        email='{$postEmail}',\n                        econtact='{$postEcontact}',\n                        econtact_phone='{$postEcPhone}',\n                        econtact_rel='{$postEcRel}',\n                        member='{$postMemberType}',\n                        club='{$postClub}'\n                 WHERE username='******'";
            mysql_query($update);
            $check2 = mysql_query("SELECT * FROM users WHERE username = '******'") or die(mysql_error());
            $info2 = mysql_fetch_array($check2);
            if ($info2 && !isUserInfoComplete($info2)) {
                mysql_close();
                echo "<script type=\"text/javascript\">\n";
                echo "parent.main_enablePopupBackButtonHistory();\n";
                echo "</script>\n";
                die("Required user info not complete. Please go back to continue.</body></html>");
            } else {
                ignore_user_abort(true);
                updateMemberStatus();
                echo "<html><body>\n";
                echo "<script language=\"javascript\" type=\"text/javascript\">\n";
                echo "parent.main_enableVehiclesButton(true)\n";
                if (doesUserHaveVehicles()) {
                    echo "parent.main_enableRegisterButton(true);\n";
                } else {
                    echo "parent.main_enableRegisterButton(false);\n";
                }
                echo "parent.main_popupWindowCancel();\n";
                echo "</script></body></html>";
            }
        } else {
            displayUserInfoForm($info);
        }
    }
}
示例#4
0
if ($formulaire == 'action') {
    $action = $_REQUEST['action'];
    $tabIdMember = $_REQUEST['tabIdMember'];
    if (!empty($tabIdMember)) {
        foreach ($tabIdMember as $idMember) {
            if ($action == 'delete') {
                deleteMember($idMember);
            } else {
                if ($action == 'pending') {
                    updateMemberStatus($idMember, '0');
                } else {
                    if ($action == 'email_verified') {
                        updateMemberStatus($idMember, '1');
                    } else {
                        if ($action == 'member') {
                            updateMemberStatus($idMember, '2');
                        }
                    }
                }
            }
        }
    }
}
//////////////////////////////////////////////////////////////////////////////
$rechercheSQL = "WHERE 1 = 1 ";
// DATE
//////////////////////////////////////////////////////////////////////////////
if (!empty($fromDate)) {
    $debut = convertHumanDateDateSQL($fromDate);
    $rechercheSQL = $rechercheSQL . " AND date_creation >= '" . $debut . "'";
}