if ($attach) { $DB = MySql::getInstance(); for ($i = 0; $i < count($attach['name']); $i++) { if ($attach['error'][$i] != 4) { $file_info = uploadFile($attach['name'][$i], $attach['error'][$i], $attach['tmp_name'][$i], $attach['size'][$i], Option::getAttType(), false, $isthumbnail); // 写入附件信息 $query = "INSERT INTO " . DB_PREFIX . "attachment (blogid, filename, filesize, filepath, addtime, width, height, mimetype, thumfor) VALUES ('%s','%s','%s','%s','%s','%s','%s','%s', 0)"; $query = sprintf($query, -1, $file_info['file_name'], $file_info['size'], $file_info['file_path'], time(), $file_info['width'], $file_info['height'], $file_info['mime_type']); $DB->query($query); $aid = $DB->insert_id(); $org_photo_atts[] = $file_info['file_path']; } } } $userData['photos'] = serialize($org_photo_atts); $Viporg_model->updateUser($userData, $uid); emDirect('./viporg.php?active_update=1'); } if ($action == 'add') { include View::getView('header'); require_once View::getView('viporg_add'); include View::getView('footer'); View::output(); } if ($action == 'doadd') { $userData = array(); $userData['vipid'] = isset($_POST['vipid']) ? addslashes(trim($_POST['vipid'])) : ''; $userData['name'] = isset($_POST['name']) ? addslashes(trim($_POST['name'])) : ''; $userData['tname'] = isset($_POST['tname']) ? addslashes(trim($_POST['tname'])) : ''; $userData['create_time'] = isset($_POST['create_time']) ? addslashes(trim($_POST['create_time'])) : ''; $userData['province'] = isset($_POST['province']) ? addslashes(trim($_POST['province'])) : '';