0.8.1a
[gfh.git] / sendsys.php
blob7e4fe4339f9bc2f141a63c9f60a057558e9be3dc
1 <?php include "config.php";
2 function getlevel($username)
4 $sql = "SELECT * FROM users WHERE username='$username'";
5 $result = mysql_query($sql);
6 $myrow = mysql_fetch_array($result);
7 return $myrow["level"];
9 function auth($userid, $password)
11 $sql = "SELECT username FROM users WHERE username='$userid' AND userpass='$password'";
12 $result = mysql_query($sql);
13 if (!mysql_num_rows($result))
14 return 0;
15 else
17 $query_data = mysql_fetch_row($result);
18 return $query_data[0];
21 function getuserid($username)
23 $sql = "SELECT * FROM users WHERE username='$username'";
24 $result = mysql_query($sql);
25 $myrow = mysql_fetch_array($result);
26 return $myrow["userid"];
28 $username = auth($uname, $pword);
29 if (!$username)
31 echo "You are not <a href=login.php>logged in</a>.";
32 exit;
34 $userlevel = getlevel($uname);
35 if ($userlevel <= 49)
37 echo "You cannot be here.";
38 exit;
40 if (!$user)
42 echo "Invalid userID.";
43 exit;
45 if (!$submit)
47 ?>
48 <form method=post action=sendsys.php?user=<?= $user ?>>
49 <textarea cols=60 rows=6 name=body></textarea><br>
50 <br><input type=submit name=submit value="Send"> <input type=reset>
51 </form>
52 <?php exit;
54 if ($submit)
56 if (!$body)
58 echo "You must have a message to send to this user.<br><br>
59 <form method=post action=sendsys.php?user=$user>
60 <textarea cols=60 rows=6 name=body></textarea><br>
61 <br><input type=submit name=submit value=\"Send\"> <input type=reset>
62 </form>";
63 exit;
65 $datethe = date("n/j/y h:i:s A");
66 if ($userlevel == 50)
68 $from = 1;
69 } else
71 $from = 2;
73 $userlevel = getuserid($uname);
74 $body = addslashes($body);
75 $body = ereg_replace("\n", "<br>", $body);
76 $sql =
77 "INSERT INTO systemnot (sysbod,sentat,sendto,sentfrom,active,userid) VALUES ('$body','$datethe','$user','$from','1','$userlevel')";
78 $result = mysql_query($sql);
79 echo mysql_error();
80 $sql = "UPDATE users SET notify='1' WHERE userid='$user'";
81 $result = mysql_query($sql);
82 echo "Notification sent. Return to the user <a href=whois.php?user="
83 .$user
84 .">page</a>. | <a href=topiclist.php?board=1>CE</a>";