Merge changes made in revisions #r9405 to #r9467
[phpbb.git] / phpBB / memberlist.php
blob1ba62f7f8f14a8347497f4d4a16950c99768f4d4
1 <?php
2 /**
4 * @package phpBB3
5 * @version $Id$
6 * @copyright (c) 2005 phpBB Group
7 * @license http://opensource.org/licenses/gpl-license.php GNU Public License
9 */
11 /**
12 * @ignore
14 define('IN_PHPBB', true);
15 if (!defined('PHPBB_ROOT_PATH')) define('PHPBB_ROOT_PATH', './');
16 if (!defined('PHP_EXT')) define('PHP_EXT', substr(strrchr(__FILE__, '.'), 1));
17 include(PHPBB_ROOT_PATH . 'common.' . PHP_EXT);
18 include(PHPBB_ROOT_PATH . 'includes/functions_display.' . PHP_EXT);
20 // Start session management
21 phpbb::$user->session_begin();
22 phpbb::$acl->init(phpbb::$user->data);
23 phpbb::$user->setup(array('memberlist', 'groups'));
25 // Grab data
26 $mode = request_var('mode', '');
27 $action = request_var('action', '');
28 $user_id = request_var('u', ANONYMOUS);
29 $username = request_var('un', '', true);
30 $group_id = request_var('g', 0);
31 $topic_id = request_var('t', 0);
33 // Check our mode...
34 if (!in_array($mode, array('', 'group', 'viewprofile', 'email', 'contact', 'searchuser', 'leaders')))
36 trigger_error('NO_MODE');
39 switch ($mode)
41 case 'email':
42 break;
44 default:
45 // Can this user view profiles/memberlist?
46 if (!phpbb::$acl->acl_gets('u_viewprofile', 'a_user', 'a_useradd', 'a_userdel'))
48 if (!phpbb::$user->is_guest)
50 trigger_error('NO_VIEW_USERS');
53 login_box('', ((isset(phpbb::$user->lang['LOGIN_EXPLAIN_' . strtoupper($mode)])) ? phpbb::$user->lang['LOGIN_EXPLAIN_' . strtoupper($mode)] : phpbb::$user->lang['LOGIN_EXPLAIN_MEMBERLIST']));
55 break;
58 $start = request_var('start', 0);
59 $submit = phpbb_request::is_set_post('submit');
61 $default_key = 'c';
62 $sort_key = request_var('sk', $default_key);
63 $sort_dir = request_var('sd', 'a');
66 // Grab rank information for later
67 $ranks = phpbb_cache::obtain_ranks();
70 // What do you want to do today? ... oops, I think that line is taken ...
71 switch ($mode)
73 case 'leaders':
74 // Display a listing of board admins, moderators
75 include(PHPBB_ROOT_PATH . 'includes/functions_user.' . PHP_EXT);
77 $page_title = phpbb::$user->lang['THE_TEAM'];
78 $template_html = 'memberlist_leaders.html';
80 $user_ary = phpbb::$acl->acl_get_list(false, array('a_', 'm_'), false);
82 $admin_id_ary = $global_mod_id_ary = $mod_id_ary = $forum_id_ary = array();
83 foreach ($user_ary as $forum_id => $forum_ary)
85 foreach ($forum_ary as $auth_option => $id_ary)
87 if (!$forum_id)
89 if ($auth_option == 'a_')
91 $admin_id_ary = array_merge($admin_id_ary, $id_ary);
93 else
95 $global_mod_id_ary = array_merge($global_mod_id_ary, $id_ary);
97 continue;
99 else
101 $mod_id_ary = array_merge($mod_id_ary, $id_ary);
104 if ($forum_id)
106 foreach ($id_ary as $id)
108 $forum_id_ary[$id][] = $forum_id;
114 $admin_id_ary = array_unique($admin_id_ary);
115 $global_mod_id_ary = array_unique($global_mod_id_ary);
117 $mod_id_ary = array_merge($mod_id_ary, $global_mod_id_ary);
118 $mod_id_ary = array_unique($mod_id_ary);
120 // Admin group id...
121 $sql = 'SELECT group_id
122 FROM ' . GROUPS_TABLE . "
123 WHERE group_name = 'ADMINISTRATORS'";
124 $result = phpbb::$db->sql_query($sql);
125 $admin_group_id = (int) phpbb::$db->sql_fetchfield('group_id');
126 phpbb::$db->sql_freeresult($result);
128 // Get group memberships for the admin id ary...
129 $admin_memberships = group_memberships($admin_group_id, $admin_id_ary);
131 $admin_user_ids = array();
133 if (!empty($admin_memberships))
135 // ok, we only need the user ids...
136 foreach ($admin_memberships as $row)
138 $admin_user_ids[$row['user_id']] = true;
141 unset($admin_memberships);
143 $sql = 'SELECT forum_id, forum_name
144 FROM ' . FORUMS_TABLE;
145 $result = phpbb::$db->sql_query($sql);
147 $forums = array();
148 while ($row = phpbb::$db->sql_fetchrow($result))
150 $forums[$row['forum_id']] = $row['forum_name'];
152 phpbb::$db->sql_freeresult($result);
154 $sql = phpbb::$db->sql_build_query('SELECT', array(
155 'SELECT' => 'u.user_id, u.group_id as default_group, u.username, u.username_clean, u.user_colour, u.user_rank, u.user_posts, u.user_allow_pm, g.group_id, g.group_name, g.group_colour, g.group_type, ug.user_id as ug_user_id',
157 'FROM' => array(
158 USERS_TABLE => 'u',
159 GROUPS_TABLE => 'g'
162 'LEFT_JOIN' => array(
163 array(
164 'FROM' => array(USER_GROUP_TABLE => 'ug'),
165 'ON' => 'ug.group_id = g.group_id AND ug.user_pending = 0 AND ug.user_id = ' . phpbb::$user->data['user_id']
169 'WHERE' => phpbb::$db->sql_in_set('u.user_id', array_unique(array_merge($admin_id_ary, $mod_id_ary)), false, true) . '
170 AND u.group_id = g.group_id',
172 'ORDER_BY' => 'g.group_name ASC, u.username_clean ASC'
174 $result = phpbb::$db->sql_query($sql);
176 while ($row = phpbb::$db->sql_fetchrow($result))
178 $which_row = (in_array($row['user_id'], $admin_id_ary)) ? 'admin' : 'mod';
180 // We sort out admins not within the 'Administrators' group.
181 // Else, we will list those as admin only having the permission to view logs for example.
182 if ($which_row == 'admin' && empty($admin_user_ids[$row['user_id']]))
184 // Remove from admin_id_ary, because the user may be a mod instead
185 unset($admin_id_ary[array_search($row['user_id'], $admin_id_ary)]);
187 if (!in_array($row['user_id'], $mod_id_ary) && !in_array($row['user_id'], $global_mod_id_ary))
189 continue;
191 else
193 $which_row = 'mod';
197 $s_forum_select = '';
198 $undisclosed_forum = false;
200 if (isset($forum_id_ary[$row['user_id']]) && !in_array($row['user_id'], $global_mod_id_ary))
202 if ($which_row == 'mod' && sizeof(array_diff(array_keys($forums), $forum_id_ary[$row['user_id']])))
204 foreach ($forum_id_ary[$row['user_id']] as $forum_id)
206 if (isset($forums[$forum_id]))
208 if (phpbb::$acl->acl_get('f_list', $forum_id))
210 $s_forum_select .= '<option value="">' . $forums[$forum_id] . '</option>';
212 else
214 $undisclosed_forum = true;
221 // If the mod is only moderating non-viewable forums we skip the user. There is no gain in displaying the person then...
222 if (!$s_forum_select && $undisclosed_forum)
224 // $s_forum_select = '<option value="">' . phpbb::$user->lang['FORUM_UNDISCLOSED'] . '</option>';
225 continue;
228 // The person is moderating several "public" forums, therefore the person should be listed, but not giving the real group name if hidden.
229 if ($row['group_type'] == GROUP_HIDDEN && !phpbb::$acl->acl_gets('a_group', 'a_groupadd', 'a_groupdel') && $row['ug_user_id'] != phpbb::$user->data['user_id'])
231 $group_name = phpbb::$user->lang['GROUP_UNDISCLOSED'];
232 $u_group = '';
234 else
236 $group_name = ($row['group_type'] == GROUP_SPECIAL) ? phpbb::$user->lang['G_' . $row['group_name']] : $row['group_name'];
237 $u_group = append_sid('memberlist', 'mode=group&amp;g=' . $row['group_id']);
240 $rank_title = $rank_img = '';
241 get_user_rank($row['user_id'], $row['user_rank'], $row['user_posts'], $rank_title, $rank_img, $rank_img_src);
243 phpbb::$template->assign_block_vars($which_row, array(
244 'USER_ID' => $row['user_id'],
245 'FORUMS' => $s_forum_select,
246 'RANK_TITLE' => $rank_title,
247 'GROUP_NAME' => $group_name,
248 'GROUP_COLOR' => $row['group_colour'],
250 'RANK_IMG' => $rank_img,
251 'RANK_IMG_SRC' => $rank_img_src,
253 'U_GROUP' => $u_group,
254 'U_PM' => (phpbb::$config['allow_privmsg'] && phpbb::$acl->acl_get('u_sendpm') && ($row['user_allow_pm'] || phpbb::$acl->acl_gets('a_', 'm_') || phpbb::$acl->acl_getf_global('m_'))) ? append_sid('ucp', 'i=pm&amp;mode=compose&amp;u=' . $row['user_id']) : '',
256 'USERNAME_FULL' => get_username_string('full', $row['user_id'], $row['username'], $row['user_colour']),
257 'USERNAME' => get_username_string('username', $row['user_id'], $row['username'], $row['user_colour']),
258 'USER_COLOR' => get_username_string('colour', $row['user_id'], $row['username'], $row['user_colour']),
259 'U_VIEW_PROFILE' => get_username_string('profile', $row['user_id'], $row['username'], $row['user_colour']),
262 phpbb::$db->sql_freeresult($result);
264 phpbb::$template->assign_vars(array(
265 'PM_IMG' => phpbb::$user->img('icon_contact_pm', phpbb::$user->lang['SEND_PRIVATE_MESSAGE']),
267 break;
269 case 'contact':
271 $page_title = phpbb::$user->lang['IM_USER'];
272 $template_html = 'memberlist_im.html';
274 if (!phpbb::$acl->acl_get('u_sendim'))
276 trigger_error('NOT_AUTHORISED');
279 $presence_img = '';
280 switch ($action)
282 case 'aim':
283 $lang = 'AIM';
284 $sql_field = 'user_aim';
285 $s_select = 'S_SEND_AIM';
286 $s_action = '';
287 break;
289 case 'msnm':
290 $lang = 'MSNM';
291 $sql_field = 'user_msnm';
292 $s_select = 'S_SEND_MSNM';
293 $s_action = '';
294 break;
296 case 'jabber':
297 $lang = 'JABBER';
298 $sql_field = 'user_jabber';
299 $s_select = (@extension_loaded('xml') && phpbb::$config['jab_enable']) ? 'S_SEND_JABBER' : 'S_NO_SEND_JABBER';
300 $s_action = append_sid('memberlist', "mode=contact&amp;action=$action&amp;u=$user_id");
301 break;
303 default:
304 trigger_error('NO_MODE', E_USER_ERROR);
305 break;
308 // Grab relevant data
309 $sql = "SELECT user_id, username, user_email, user_lang, $sql_field
310 FROM " . USERS_TABLE . "
311 WHERE user_id = $user_id
312 AND user_type IN (" . phpbb::USER_NORMAL . ', ' . phpbb::USER_FOUNDER . ')';
313 $result = phpbb::$db->sql_query($sql);
314 $row = phpbb::$db->sql_fetchrow($result);
315 phpbb::$db->sql_freeresult($result);
317 if (!$row)
319 trigger_error('NO_USER');
321 else if (empty($row[$sql_field]))
323 trigger_error('IM_NO_DATA');
326 // Post data grab actions
327 switch ($action)
329 case 'jabber':
330 add_form_key('memberlist_messaging');
332 if ($submit && @extension_loaded('xml') && phpbb::$config['jab_enable'])
334 if (check_form_key('memberlist_messaging'))
337 include_once(PHPBB_ROOT_PATH . 'includes/functions_messenger.' . PHP_EXT);
339 $subject = sprintf(phpbb::$user->lang['IM_JABBER_SUBJECT'], phpbb::$user->data['username'], phpbb::$config['server_name']);
340 $message = utf8_normalize_nfc(request_var('message', '', true));
342 if (empty($message))
344 trigger_error('EMPTY_MESSAGE_IM');
347 $messenger = new messenger(false);
349 $messenger->template('profile_send_im', $row['user_lang']);
350 $messenger->subject(htmlspecialchars_decode($subject));
352 $messenger->replyto(phpbb::$user->data['user_email']);
353 $messenger->im($row['user_jabber'], $row['username']);
355 $messenger->assign_vars(array(
356 'BOARD_CONTACT' => phpbb::$config['board_contact'],
357 'FROM_USERNAME' => htmlspecialchars_decode(phpbb::$user->data['username']),
358 'TO_USERNAME' => htmlspecialchars_decode($row['username']),
359 'MESSAGE' => htmlspecialchars_decode($message))
362 $messenger->send(NOTIFY_IM);
364 $s_select = 'S_SENT_JABBER';
366 else
368 trigger_error('FORM_INVALID');
371 break;
374 // Send vars to the template
375 phpbb::$template->assign_vars(array(
376 'IM_CONTACT' => $row[$sql_field],
377 'A_IM_CONTACT' => addslashes($row[$sql_field]),
379 'U_AIM_CONTACT' => ($action == 'aim') ? 'aim:addbuddy?screenname=' . urlencode($row[$sql_field]) : '',
380 'U_AIM_MESSAGE' => ($action == 'aim') ? 'aim:goim?screenname=' . urlencode($row[$sql_field]) . '&amp;message=' . urlencode(phpbb::$config['sitename']) : '',
382 'USERNAME' => $row['username'],
383 'CONTACT_NAME' => $row[$sql_field],
384 'SITENAME' => phpbb::$config['sitename'],
386 'PRESENCE_IMG' => $presence_img,
388 'L_SEND_IM_EXPLAIN' => phpbb::$user->lang['IM_' . $lang],
389 'L_IM_SENT_JABBER' => sprintf(phpbb::$user->lang['IM_SENT_JABBER'], $row['username']),
391 $s_select => true,
392 'S_IM_ACTION' => $s_action,
395 break;
397 case 'viewprofile':
398 // Display a profile
399 if ($user_id == ANONYMOUS && !$username)
401 trigger_error('NO_USER');
404 // Get user...
405 $sql = 'SELECT *
406 FROM ' . USERS_TABLE . '
407 WHERE ' . (($username) ? "username_clean = '" . phpbb::$db->sql_escape(utf8_clean_string($username)) . "'" : "user_id = $user_id");
408 $result = phpbb::$db->sql_query($sql);
409 $member = phpbb::$db->sql_fetchrow($result);
410 phpbb::$db->sql_freeresult($result);
412 if (!$member)
414 trigger_error('NO_USER');
417 // a_user admins and founder are able to view inactive users and bots to be able to manage them more easily
418 // Normal users are able to see at least users having only changed their profile settings but not yet reactivated.
419 if (!phpbb::$acl->acl_get('a_user') && !phpbb::$user->is_founder)
421 if ($member['user_type'] == phpbb::USER_IGNORE)
423 trigger_error('NO_USER');
425 else if ($member['user_type'] == phpbb::USER_INACTIVE && $member['user_inactive_reason'] != INACTIVE_PROFILE)
427 trigger_error('NO_USER');
431 $user_id = (int) $member['user_id'];
433 // Do the SQL thang
434 $sql = 'SELECT g.group_id, g.group_name, g.group_type
435 FROM ' . GROUPS_TABLE . ' g, ' . USER_GROUP_TABLE . " ug
436 WHERE ug.user_id = $user_id
437 AND g.group_id = ug.group_id" . ((!phpbb::$acl->acl_gets('a_group', 'a_groupadd', 'a_groupdel')) ? ' AND g.group_type <> ' . GROUP_HIDDEN : '') . '
438 AND ug.user_pending = 0
439 ORDER BY g.group_type, g.group_name';
440 $result = phpbb::$db->sql_query($sql);
442 $group_options = '';
443 while ($row = phpbb::$db->sql_fetchrow($result))
445 $group_options .= '<option value="' . $row['group_id'] . '"' . (($row['group_id'] == $member['group_id']) ? ' selected="selected"' : '') . '>' . (($row['group_type'] == GROUP_SPECIAL) ? phpbb::$user->lang['G_' . $row['group_name']] : $row['group_name']) . '</option>';
447 phpbb::$db->sql_freeresult($result);
449 // What colour is the zebra
450 $sql = 'SELECT friend, foe
451 FROM ' . ZEBRA_TABLE . '
452 WHERE zebra_id = ' . $user_id . '
453 AND user_id = ' . phpbb::$user->data['user_id'];
455 $result = phpbb::$db->sql_query($sql);
456 $row = phpbb::$db->sql_fetchrow($result);
457 $foe = ($row['foe']) ? true : false;
458 $friend = ($row['friend']) ? true : false;
459 phpbb::$db->sql_freeresult($result);
461 if (phpbb::$config['load_onlinetrack'])
463 $sql = 'SELECT MAX(session_time) AS session_time, MIN(session_viewonline) AS session_viewonline
464 FROM ' . SESSIONS_TABLE . "
465 WHERE session_user_id = $user_id";
466 $result = phpbb::$db->sql_query($sql);
467 $row = phpbb::$db->sql_fetchrow($result);
468 phpbb::$db->sql_freeresult($result);
470 $member['session_time'] = (isset($row['session_time'])) ? $row['session_time'] : 0;
471 $member['session_viewonline'] = (isset($row['session_viewonline'])) ? $row['session_viewonline'] : 0;
472 unset($row);
475 if (phpbb::$config['load_user_activity'])
477 display_user_activity($member);
480 // Do the relevant calculations
481 $memberdays = max(1, round((time() - $member['user_regdate']) / 86400));
482 $posts_per_day = $member['user_posts'] / $memberdays;
483 $percentage = (phpbb::$config['num_posts']) ? min(100, ($member['user_posts'] / phpbb::$config['num_posts']) * 100) : 0;
486 if ($member['user_sig'])
488 $member['user_sig'] = censor_text($member['user_sig']);
490 if ($member['user_sig_bbcode_bitfield'])
492 include_once(PHPBB_ROOT_PATH . 'includes/bbcode.' . PHP_EXT);
493 $bbcode = new bbcode();
494 $bbcode->bbcode_second_pass($member['user_sig'], $member['user_sig_bbcode_uid'], $member['user_sig_bbcode_bitfield']);
497 $member['user_sig'] = bbcode_nl2br($member['user_sig']);
498 $member['user_sig'] = smiley_text($member['user_sig']);
501 $poster_avatar = get_user_avatar($member['user_avatar'], $member['user_avatar_type'], $member['user_avatar_width'], $member['user_avatar_height']);
503 phpbb::$template->assign_vars(show_profile($member));
505 // Custom Profile Fields
506 $profile_fields = array();
507 if (phpbb::$config['load_cpf_viewprofile'])
509 include_once(PHPBB_ROOT_PATH . 'includes/functions_profile_fields.' . PHP_EXT);
510 $cp = new custom_profile();
511 $profile_fields = $cp->generate_profile_fields_template('grab', $user_id);
512 $profile_fields = (isset($profile_fields[$user_id])) ? $cp->generate_profile_fields_template('show', false, $profile_fields[$user_id]) : array();
515 // We need to check if the module 'zebra' is accessible
516 $zebra_enabled = false;
518 if (phpbb::$user->data['user_id'] != $user_id && phpbb::$user->is_registered)
520 include_once(PHPBB_ROOT_PATH . 'includes/functions_module.' . PHP_EXT);
521 $module = new p_master();
522 $module->list_modules('ucp');
523 $module->set_active('zebra');
525 $zebra_enabled = ($module->active_module === false) ? false : true;
527 unset($module);
530 // If the user has m_approve permission or a_user permission, then list then display unapproved posts
531 if (phpbb::$acl->acl_getf_global('m_approve') || phpbb::$acl->acl_get('a_user'))
533 $sql = 'SELECT COUNT(post_id) as posts_in_queue
534 FROM ' . POSTS_TABLE . '
535 WHERE poster_id = ' . $user_id . '
536 AND post_approved = 0';
537 $result = phpbb::$db->sql_query($sql);
538 $member['posts_in_queue'] = (int) phpbb::$db->sql_fetchfield('posts_in_queue');
539 phpbb::$db->sql_freeresult($result);
541 else
543 $member['posts_in_queue'] = 0;
546 phpbb::$template->assign_vars(array(
547 'L_POSTS_IN_QUEUE' => phpbb::$user->lang('NUM_POSTS_IN_QUEUE', $member['posts_in_queue']),
549 'POSTS_DAY' => sprintf(phpbb::$user->lang['POST_DAY'], $posts_per_day),
550 'POSTS_PCT' => sprintf(phpbb::$user->lang['POST_PCT'], $percentage),
552 'OCCUPATION' => (!empty($member['user_occ'])) ? censor_text($member['user_occ']) : '',
553 'INTERESTS' => (!empty($member['user_interests'])) ? censor_text($member['user_interests']) : '',
554 'SIGNATURE' => $member['user_sig'],
555 'POSTS_IN_QUEUE'=> $member['posts_in_queue'],
557 'AVATAR_IMG' => $poster_avatar,
558 'PM_IMG' => phpbb::$user->img('icon_contact_pm', 'SEND_PRIVATE_MESSAGE'),
559 'EMAIL_IMG' => phpbb::$user->img('icon_contact_email', 'EMAIL'),
560 'WWW_IMG' => phpbb::$user->img('icon_contact_www', 'WWW'),
561 'ICQ_IMG' => phpbb::$user->img('icon_contact_icq', 'ICQ'),
562 'AIM_IMG' => phpbb::$user->img('icon_contact_aim', 'AIM'),
563 'MSN_IMG' => phpbb::$user->img('icon_contact_msnm', 'MSNM'),
564 'YIM_IMG' => phpbb::$user->img('icon_contact_yahoo', 'YIM'),
565 'JABBER_IMG' => phpbb::$user->img('icon_contact_jabber', 'JABBER'),
566 'SEARCH_IMG' => phpbb::$user->img('icon_user_search', 'SEARCH'),
568 'S_PROFILE_ACTION' => append_sid('memberlist', 'mode=group'),
569 'S_GROUP_OPTIONS' => $group_options,
570 'S_CUSTOM_FIELDS' => (isset($profile_fields['row']) && sizeof($profile_fields['row'])) ? true : false,
572 'U_USER_ADMIN' => (phpbb::$acl->acl_get('a_user')) ? append_sid(phpbb::$base_config['admin_folder'] . '/index', 'i=users&amp;mode=overview&amp;u=' . $user_id, true, phpbb::$user->session_id) : '',
573 'U_USER_BAN' => (phpbb::$acl->acl_get('m_ban') && $user_id != phpbb::$user->data['user_id']) ? append_sid('mcp', 'i=ban&amp;mode=user&amp;u=' . $user_id, true, phpbb::$user->session_id) : '',
574 'U_SWITCH_PERMISSIONS' => (phpbb::$acl->acl_get('a_switchperm') && phpbb::$user->data['user_id'] != $user_id) ? append_sid('ucp', "mode=switch_perm&amp;u={$user_id}") : '',
575 'U_MCP_QUEUE' => (phpbb::$acl->acl_getf_global('m_approve')) ? append_sid('mcp', 'i=queue', true, phpbb::$user->session_id) : '',
577 'S_ZEBRA' => (phpbb::$user->data['user_id'] != $user_id && phpbb::$user->is_registered && $zebra_enabled) ? true : false,
578 'U_ADD_FRIEND' => (!$friend) ? append_sid('ucp', 'i=zebra&amp;add=' . urlencode(htmlspecialchars_decode($member['username']))) : '',
579 'U_ADD_FOE' => (!$foe) ? append_sid('ucp', 'i=zebra&amp;mode=foes&amp;add=' . urlencode(htmlspecialchars_decode($member['username']))) : '',
580 'U_REMOVE_FRIEND' => ($friend) ? append_sid('ucp', 'i=zebra&amp;remove=1&amp;usernames[]=' . $user_id) : '',
581 'U_REMOVE_FOE' => ($foe) ? append_sid('ucp', 'i=zebra&amp;remove=1&amp;mode=foes&amp;usernames[]=' . $user_id) : '',
584 if (!empty($profile_fields['row']))
586 phpbb::$template->assign_vars($profile_fields['row']);
589 if (!empty($profile_fields['blockrow']))
591 foreach ($profile_fields['blockrow'] as $field_data)
593 phpbb::$template->assign_block_vars('custom_fields', $field_data);
597 // Inactive reason/account?
598 if ($member['user_type'] == phpbb::USER_INACTIVE)
600 phpbb::$user->add_lang('acp/common');
602 $inactive_reason = phpbb::$user->lang['INACTIVE_REASON_UNKNOWN'];
604 switch ($member['user_inactive_reason'])
606 case INACTIVE_REGISTER:
607 $inactive_reason = phpbb::$user->lang['INACTIVE_REASON_REGISTER'];
608 break;
610 case INACTIVE_PROFILE:
611 $inactive_reason = phpbb::$user->lang['INACTIVE_REASON_PROFILE'];
612 break;
614 case INACTIVE_MANUAL:
615 $inactive_reason = phpbb::$user->lang['INACTIVE_REASON_MANUAL'];
616 break;
618 case INACTIVE_REMIND:
619 $inactive_reason = phpbb::$user->lang['INACTIVE_REASON_REMIND'];
620 break;
623 phpbb::$template->assign_vars(array(
624 'S_USER_INACTIVE' => true,
625 'USER_INACTIVE_REASON' => $inactive_reason,
629 // Now generate page title
630 $page_title = sprintf(phpbb::$user->lang['VIEWING_PROFILE'], $member['username']);
631 $template_html = 'memberlist_view.html';
633 break;
635 case 'email':
637 // Send an email
638 $page_title = phpbb::$user->lang['SEND_EMAIL'];
639 $template_html = 'memberlist_email.html';
641 add_form_key('memberlist_email');
643 if (!phpbb::$config['email_enable'])
645 trigger_error('EMAIL_DISABLED');
648 if (!phpbb::$acl->acl_get('u_sendemail'))
650 trigger_error('NO_EMAIL');
653 // Are we trying to abuse the facility?
654 if (time() - phpbb::$user->data['user_emailtime'] < phpbb::$config['flood_interval'])
656 trigger_error('FLOOD_EMAIL_LIMIT');
659 // Determine action...
660 $user_id = request_var('u', 0);
661 $topic_id = request_var('t', 0);
663 // Send email to user...
664 if ($user_id)
666 if ($user_id == ANONYMOUS || !phpbb::$config['board_email_form'])
668 trigger_error('NO_EMAIL');
671 // Get the appropriate username, etc.
672 $sql = 'SELECT username, user_email, user_allow_viewemail, user_lang, user_jabber, user_notify_type
673 FROM ' . USERS_TABLE . "
674 WHERE user_id = $user_id
675 AND user_type IN (" . phpbb::USER_NORMAL . ', ' . phpbb::USER_FOUNDER . ')';
676 $result = phpbb::$db->sql_query($sql);
677 $row = phpbb::$db->sql_fetchrow($result);
678 phpbb::$db->sql_freeresult($result);
680 if (!$row)
682 trigger_error('NO_USER');
685 // Can we send email to this user?
686 if (!$row['user_allow_viewemail'] && !phpbb::$acl->acl_get('a_user'))
688 trigger_error('NO_EMAIL');
691 else if ($topic_id)
693 // Send topic heads-up to email address
694 $sql = 'SELECT forum_id, topic_title
695 FROM ' . TOPICS_TABLE . "
696 WHERE topic_id = $topic_id";
697 $result = phpbb::$db->sql_query($sql);
698 $row = phpbb::$db->sql_fetchrow($result);
699 phpbb::$db->sql_freeresult($result);
701 if (!$row)
703 trigger_error('NO_TOPIC');
706 if ($row['forum_id'])
708 if (!phpbb::$acl->acl_get('f_read', $row['forum_id']))
710 trigger_error('SORRY_AUTH_READ');
713 if (!phpbb::$acl->acl_get('f_email', $row['forum_id']))
715 trigger_error('NO_EMAIL');
718 else
720 // If global announcement, we need to check if the user is able to at least read and email in one forum...
721 if (!phpbb::$acl->acl_getf_global('f_read'))
723 trigger_error('SORRY_AUTH_READ');
726 if (!phpbb::$acl->acl_getf_global('f_email'))
728 trigger_error('NO_EMAIL');
732 else
734 trigger_error('NO_EMAIL');
737 $error = array();
739 $name = utf8_normalize_nfc(request_var('name', '', true));
740 $email = request_var('email', '');
741 $email_lang = request_var('lang', phpbb::$config['default_lang']);
742 $subject = utf8_normalize_nfc(request_var('subject', '', true));
743 $message = utf8_normalize_nfc(request_var('message', '', true));
744 $cc = phpbb_request::is_set_post('cc_email');
745 $submit = phpbb_request::is_set_post('submit');
747 if ($submit)
749 if (!check_form_key('memberlist_email'))
751 $error[] = 'FORM_INVALID';
753 if ($user_id)
755 if (!$subject)
757 $error[] = phpbb::$user->lang['EMPTY_SUBJECT_EMAIL'];
760 if (!$message)
762 $error[] = phpbb::$user->lang['EMPTY_MESSAGE_EMAIL'];
765 $name = $row['username'];
766 $email_lang = $row['user_lang'];
767 $email = $row['user_email'];
769 else
771 if (!$email || !preg_match('/^' . get_preg_expression('email') . '$/i', $email))
773 $error[] = phpbb::$user->lang['EMPTY_ADDRESS_EMAIL'];
776 if (!$name)
778 $error[] = phpbb::$user->lang['EMPTY_NAME_EMAIL'];
782 if (!sizeof($error))
784 $sql = 'UPDATE ' . USERS_TABLE . '
785 SET user_emailtime = ' . time() . '
786 WHERE user_id = ' . phpbb::$user->data['user_id'];
787 $result = phpbb::$db->sql_query($sql);
789 include_once(PHPBB_ROOT_PATH . 'includes/functions_messenger.' . PHP_EXT);
790 $messenger = new messenger(false);
791 $email_tpl = ($user_id) ? 'profile_send_email' : 'email_notify';
793 $mail_to_users = array();
795 $mail_to_users[] = array(
796 'email_lang' => $email_lang,
797 'email' => $email,
798 'name' => $name,
799 'username' => ($user_id) ? $row['username'] : '',
800 'to_name' => $name,
801 'user_jabber' => ($user_id) ? $row['user_jabber'] : '',
802 'user_notify_type' => ($user_id) ? $row['user_notify_type'] : NOTIFY_EMAIL,
803 'topic_title' => (!$user_id) ? $row['topic_title'] : '',
804 'forum_id' => (!$user_id) ? $row['forum_id'] : 0,
807 // Ok, now the same email if CC specified, but without exposing the users email address
808 if ($cc)
810 $mail_to_users[] = array(
811 'email_lang' => phpbb::$user->data['user_lang'],
812 'email' => phpbb::$user->data['user_email'],
813 'name' => phpbb::$user->data['username'],
814 'username' => phpbb::$user->data['username'],
815 'to_name' => $name,
816 'user_jabber' => phpbb::$user->data['user_jabber'],
817 'user_notify_type' => ($user_id) ? phpbb::$user->data['user_notify_type'] : NOTIFY_EMAIL,
818 'topic_title' => (!$user_id) ? $row['topic_title'] : '',
819 'forum_id' => (!$user_id) ? $row['forum_id'] : 0,
823 foreach ($mail_to_users as $row)
825 $messenger->template($email_tpl, $row['email_lang']);
826 $messenger->replyto(phpbb::$user->data['user_email']);
827 $messenger->to($row['email'], $row['name']);
829 if ($user_id)
831 $messenger->subject(htmlspecialchars_decode($subject));
832 $messenger->im($row['user_jabber'], $row['username']);
833 $notify_type = $row['user_notify_type'];
835 else
837 $notify_type = NOTIFY_EMAIL;
840 $messenger->headers('X-AntiAbuse: Board servername - ' . phpbb::$config['server_name']);
841 $messenger->headers('X-AntiAbuse: User_id - ' . phpbb::$user->data['user_id']);
842 $messenger->headers('X-AntiAbuse: Username - ' . phpbb::$user->data['username']);
843 $messenger->headers('X-AntiAbuse: User IP - ' . phpbb::$user->ip);
845 $messenger->assign_vars(array(
846 'BOARD_CONTACT' => phpbb::$config['board_contact'],
847 'TO_USERNAME' => htmlspecialchars_decode($row['to_name']),
848 'FROM_USERNAME' => htmlspecialchars_decode(phpbb::$user->data['username']),
849 'MESSAGE' => htmlspecialchars_decode($message))
852 if ($topic_id)
854 $messenger->assign_vars(array(
855 'TOPIC_NAME' => htmlspecialchars_decode($row['topic_title']),
856 'U_TOPIC' => generate_board_url() . '/viewtopic.' . PHP_EXT . '?f=' . $row['forum_id'] . "&t=$topic_id")
860 $messenger->send($notify_type);
863 meta_refresh(3, append_sid('index'));
864 $message = ($user_id) ? sprintf(phpbb::$user->lang['RETURN_INDEX'], '<a href="' . append_sid('index') . '">', '</a>') : sprintf(phpbb::$user->lang['RETURN_TOPIC'], '<a href="' . append_sid('viewtopic', "f={$row['forum_id']}&amp;t=$topic_id") . '">', '</a>');
865 trigger_error(phpbb::$user->lang['EMAIL_SENT'] . '<br /><br />' . $message);
869 if ($user_id)
871 phpbb::$template->assign_vars(array(
872 'S_SEND_USER' => true,
873 'USERNAME' => $row['username'],
875 'L_EMAIL_BODY_EXPLAIN' => phpbb::$user->lang['EMAIL_BODY_EXPLAIN'],
876 'S_POST_ACTION' => append_sid('memberlist', 'mode=email&amp;u=' . $user_id),
879 else
881 phpbb::$template->assign_vars(array(
882 'EMAIL' => $email,
883 'NAME' => $name,
884 'S_LANG_OPTIONS' => language_select($email_lang),
886 'L_EMAIL_BODY_EXPLAIN' => phpbb::$user->lang['EMAIL_TOPIC_EXPLAIN'],
887 'S_POST_ACTION' => append_sid('memberlist', 'mode=email&amp;t=' . $topic_id),
891 phpbb::$template->assign_vars(array(
892 'ERROR_MESSAGE' => (sizeof($error)) ? implode('<br />', $error) : '',
893 'SUBJECT' => $subject,
894 'MESSAGE' => $message,
897 break;
899 case 'group':
900 default:
901 // The basic memberlist
902 $page_title = phpbb::$user->lang['MEMBERLIST'];
903 $template_html = 'memberlist_body.html';
905 // Sorting
906 $sort_key_text = array('a' => phpbb::$user->lang['SORT_USERNAME'], 'b' => phpbb::$user->lang['SORT_LOCATION'], 'c' => phpbb::$user->lang['SORT_JOINED'], 'd' => phpbb::$user->lang['SORT_POST_COUNT'], 'e' => phpbb::$user->lang['SORT_EMAIL'], 'f' => phpbb::$user->lang['WEBSITE'], 'g' => phpbb::$user->lang['ICQ'], 'h' => phpbb::$user->lang['AIM'], 'i' => phpbb::$user->lang['MSNM'], 'j' => phpbb::$user->lang['YIM'], 'k' => phpbb::$user->lang['JABBER']);
908 if (phpbb::$acl->acl_get('u_viewonline'))
910 $sort_key_text['l'] = phpbb::$user->lang['SORT_LAST_ACTIVE'];
912 $sort_key_text['m'] = phpbb::$user->lang['SORT_RANK'];
914 $sort_key_sql = array('a' => 'u.username_clean', 'b' => 'u.user_from', 'c' => 'u.user_regdate', 'd' => 'u.user_posts', 'e' => 'u.user_email', 'f' => 'u.user_website', 'g' => 'u.user_icq', 'h' => 'u.user_aim', 'i' => 'u.user_msnm', 'j' => 'u.user_yim', 'k' => 'u.user_jabber');
916 if (phpbb::$acl->acl_get('u_viewonline'))
918 $sort_key_sql['l'] = 'u.user_lastvisit';
920 $sort_key_sql['m'] = 'u.user_rank';
922 $sort_dir_text = array('a' => phpbb::$user->lang['ASCENDING'], 'd' => phpbb::$user->lang['DESCENDING']);
924 $s_sort_key = '';
925 foreach ($sort_key_text as $key => $value)
927 $selected = ($sort_key == $key) ? ' selected="selected"' : '';
928 $s_sort_key .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
931 $s_sort_dir = '';
932 foreach ($sort_dir_text as $key => $value)
934 $selected = ($sort_dir == $key) ? ' selected="selected"' : '';
935 $s_sort_dir .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
938 // Additional sorting options for user search ... if search is enabled, if not
939 // then only admins can make use of this (for ACP functionality)
940 $sql_select = $sql_where_data = $sql_from = $sql_where = $order_by = '';
943 $form = request_var('form', '');
944 $field = request_var('field', '');
945 $select_single = request_var('select_single', false);
947 // Search URL parameters, if any of these are in the URL we do a search
948 $search_params = array('username', 'email', 'icq', 'aim', 'yahoo', 'msn', 'jabber', 'search_group_id', 'joined_select', 'active_select', 'count_select', 'joined', 'active', 'count', 'ip');
950 // We validate form and field here, only id/class allowed
951 $form = (!preg_match('/^[a-z0-9_-]+$/i', $form)) ? '' : $form;
952 $field = (!preg_match('/^[a-z0-9_-]+$/i', $field)) ? '' : $field;
953 if (($mode == 'searchuser' || sizeof(array_intersect(phpbb_request::variable_names(phpbb_request::GET), $search_params)) > 0) && (phpbb::$config['load_search'] || phpbb::$acl->acl_get('a_')))
955 $username = request_var('username', '', true);
956 $email = strtolower(request_var('email', ''));
957 $icq = request_var('icq', '');
958 $aim = request_var('aim', '');
959 $yahoo = request_var('yahoo', '');
960 $msn = request_var('msn', '');
961 $jabber = request_var('jabber', '');
962 $search_group_id = request_var('search_group_id', 0);
964 $joined_select = request_var('joined_select', 'lt');
965 $active_select = request_var('active_select', 'lt');
966 $count_select = request_var('count_select', 'eq');
967 $joined = explode('-', request_var('joined', ''));
968 $active = explode('-', request_var('active', ''));
969 $count = (request_var('count', '') !== '') ? request_var('count', 0) : '';
970 $ipdomain = request_var('ip', '');
972 $find_key_match = array('lt' => '<', 'gt' => '>', 'eq' => '=');
974 $find_count = array('lt' => phpbb::$user->lang['LESS_THAN'], 'eq' => phpbb::$user->lang['EQUAL_TO'], 'gt' => phpbb::$user->lang['MORE_THAN']);
975 $s_find_count = '';
976 foreach ($find_count as $key => $value)
978 $selected = ($count_select == $key) ? ' selected="selected"' : '';
979 $s_find_count .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
982 $find_time = array('lt' => phpbb::$user->lang['BEFORE'], 'gt' => phpbb::$user->lang['AFTER']);
983 $s_find_join_time = '';
984 foreach ($find_time as $key => $value)
986 $selected = ($joined_select == $key) ? ' selected="selected"' : '';
987 $s_find_join_time .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
990 $s_find_active_time = '';
991 foreach ($find_time as $key => $value)
993 $selected = ($active_select == $key) ? ' selected="selected"' : '';
994 $s_find_active_time .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
997 $sql_where .= ($username) ? ' AND u.username_clean ' . phpbb::$db->sql_like_expression(str_replace('*', phpbb::$db->any_char, utf8_clean_string($username))) : '';
998 $sql_where .= ($email) ? ' AND u.user_email ' . phpbb::$db->sql_like_expression(str_replace('*', phpbb::$db->any_char, $email)) . ' ' : '';
999 $sql_where .= ($icq) ? ' AND u.user_icq ' . phpbb::$db->sql_like_expression(str_replace('*', phpbb::$db->any_char, $icq)) . ' ' : '';
1000 $sql_where .= ($aim) ? ' AND u.user_aim ' . phpbb::$db->sql_like_expression(str_replace('*', phpbb::$db->any_char, $aim)) . ' ' : '';
1001 $sql_where .= ($yahoo) ? ' AND u.user_yim ' . phpbb::$db->sql_like_expression(str_replace('*', phpbb::$db->any_char, $yahoo)) . ' ' : '';
1002 $sql_where .= ($msn) ? ' AND u.user_msnm ' . phpbb::$db->sql_like_expression(str_replace('*', phpbb::$db->any_char, $msn)) . ' ' : '';
1003 $sql_where .= ($jabber) ? ' AND u.user_jabber ' . phpbb::$db->sql_like_expression(str_replace('*', phpbb::$db->any_char, $jabber)) . ' ' : '';
1004 $sql_where .= (is_numeric($count)) ? ' AND u.user_posts ' . $find_key_match[$count_select] . ' ' . (int) $count . ' ' : '';
1005 $sql_where .= (sizeof($joined) > 1) ? " AND u.user_regdate " . $find_key_match[$joined_select] . ' ' . gmmktime(0, 0, 0, intval($joined[1]), intval($joined[2]), intval($joined[0])) : '';
1006 $sql_where .= (phpbb::$acl->acl_get('u_viewonline') && sizeof($active) > 1) ? " AND u.user_lastvisit " . $find_key_match[$active_select] . ' ' . gmmktime(0, 0, 0, $active[1], intval($active[2]), intval($active[0])) : '';
1007 $sql_where .= ($search_group_id) ? " AND u.user_id = ug.user_id AND ug.group_id = $search_group_id AND ug.user_pending = 0 " : '';
1009 if ($search_group_id)
1011 $sql_from = ', ' . USER_GROUP_TABLE . ' ug ';
1014 if ($ipdomain && phpbb::$acl->acl_getf_global('m_info'))
1016 if (strspn($ipdomain, 'abcdefghijklmnopqrstuvwxyz'))
1018 $hostnames = gethostbynamel($ipdomain);
1020 if ($hostnames !== false)
1022 $ips = "'" . implode('\', \'', array_map(array($db, 'sql_escape'), preg_replace('#([0-9]{1,3}\.[0-9]{1,3}[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3})#', "\\1", gethostbynamel($ipdomain)))) . "'";
1024 else
1026 $ips = false;
1029 else
1031 $ips = "'" . str_replace('*', '%', phpbb::$db->sql_escape($ipdomain)) . "'";
1034 if ($ips === false)
1036 // A minor fudge but it does the job :D
1037 $sql_where .= " AND u.user_id = 0";
1039 else
1041 $ip_forums = array_keys(phpbb::$acl->acl_getf('m_info', true));
1043 $sql = 'SELECT DISTINCT poster_id
1044 FROM ' . POSTS_TABLE . '
1045 WHERE poster_ip ' . ((strpos($ips, '%') !== false) ? 'LIKE' : 'IN') . " ($ips)
1046 AND forum_id IN (0, " . implode(', ', $ip_forums) . ')';
1047 $result = phpbb::$db->sql_query($sql);
1049 if ($row = phpbb::$db->sql_fetchrow($result))
1051 $ip_sql = array();
1054 $ip_sql[] = $row['poster_id'];
1056 while ($row = phpbb::$db->sql_fetchrow($result));
1058 $sql_where .= ' AND ' . phpbb::$db->sql_in_set('u.user_id', $ip_sql);
1060 else
1062 // A minor fudge but it does the job :D
1063 $sql_where .= " AND u.user_id = 0";
1065 unset($ip_forums);
1067 phpbb::$db->sql_freeresult($result);
1072 $first_char = request_var('first_char', '');
1074 if ($first_char == 'other')
1076 for ($i = 97; $i < 123; $i++)
1078 $sql_where .= ' AND u.username_clean NOT ' . phpbb::$db->sql_like_expression(chr($i) . phpbb::$db->any_char);
1081 else if ($first_char)
1083 $sql_where .= ' AND u.username_clean ' . phpbb::$db->sql_like_expression(substr($first_char, 0, 1) . phpbb::$db->any_char);
1086 // Are we looking at a usergroup? If so, fetch additional info
1087 // and further restrict the user info query
1088 if ($mode == 'group')
1090 // We JOIN here to save a query for determining membership for hidden groups. ;)
1091 $sql = 'SELECT g.*, ug.user_id
1092 FROM ' . GROUPS_TABLE . ' g
1093 LEFT JOIN ' . USER_GROUP_TABLE . ' ug ON (ug.user_pending = 0 AND ug.user_id = ' . phpbb::$user->data['user_id'] . " AND ug.group_id = $group_id)
1094 WHERE g.group_id = $group_id";
1095 $result = phpbb::$db->sql_query($sql);
1096 $group_row = phpbb::$db->sql_fetchrow($result);
1097 phpbb::$db->sql_freeresult($result);
1099 if (!$group_row)
1101 trigger_error('NO_GROUP');
1104 switch ($group_row['group_type'])
1106 case GROUP_OPEN:
1107 $group_row['l_group_type'] = 'OPEN';
1108 break;
1110 case GROUP_CLOSED:
1111 $group_row['l_group_type'] = 'CLOSED';
1112 break;
1114 case GROUP_HIDDEN:
1115 $group_row['l_group_type'] = 'HIDDEN';
1117 // Check for membership or special permissions
1118 if (!phpbb::$acl->acl_gets('a_group', 'a_groupadd', 'a_groupdel') && $group_row['user_id'] != phpbb::$user->data['user_id'])
1120 trigger_error('NO_GROUP');
1122 break;
1124 case GROUP_SPECIAL:
1125 $group_row['l_group_type'] = 'SPECIAL';
1126 break;
1128 case GROUP_FREE:
1129 $group_row['l_group_type'] = 'FREE';
1130 break;
1133 // Misusing the avatar function for displaying group avatars...
1134 $avatar_img = get_user_avatar($group_row['group_avatar'], $group_row['group_avatar_type'], $group_row['group_avatar_width'], $group_row['group_avatar_height'], 'GROUP_AVATAR');
1136 $rank_title = $rank_img = $rank_img_src = '';
1137 if ($group_row['group_rank'])
1139 if (isset($ranks['special'][$group_row['group_rank']]))
1141 $rank_title = $ranks['special'][$group_row['group_rank']]['rank_title'];
1143 $rank_img = (!empty($ranks['special'][$group_row['group_rank']]['rank_image'])) ? '<img src="' . phpbb::$config['ranks_path'] . '/' . $ranks['special'][$group_row['group_rank']]['rank_image'] . '" alt="' . $ranks['special'][$group_row['group_rank']]['rank_title'] . '" title="' . $ranks['special'][$group_row['group_rank']]['rank_title'] . '" /><br />' : '';
1144 $rank_img_src = (!empty($ranks['special'][$group_row['group_rank']]['rank_image'])) ? phpbb::$config['ranks_path'] . '/' . $ranks['special'][$group_row['group_rank']]['rank_image'] : '';
1146 else
1148 $rank_title = '';
1149 $rank_img = '';
1150 $rank_img_src = '';
1153 phpbb::$template->assign_vars(array(
1154 'GROUP_DESC' => generate_text_for_display($group_row['group_desc'], $group_row['group_desc_uid'], $group_row['group_desc_bitfield'], $group_row['group_desc_options']),
1155 'GROUP_NAME' => ($group_row['group_type'] == GROUP_SPECIAL) ? phpbb::$user->lang['G_' . $group_row['group_name']] : $group_row['group_name'],
1156 'GROUP_COLOR' => $group_row['group_colour'],
1157 'GROUP_TYPE' => phpbb::$user->lang['GROUP_IS_' . $group_row['l_group_type']],
1158 'GROUP_RANK' => $rank_title,
1160 'AVATAR_IMG' => $avatar_img,
1161 'RANK_IMG' => $rank_img,
1162 'RANK_IMG_SRC' => $rank_img_src,
1164 'U_PM' => (phpbb::$acl->acl_get('u_sendpm') && phpbb::$acl->acl_get('u_masspm_group') && $group_row['group_receive_pm'] && phpbb::$config['allow_privmsg'] && phpbb::$config['allow_mass_pm']) ? append_sid('ucp', 'i=pm&amp;mode=compose&amp;g=' . $group_id) : '',
1167 $sql_select = ', ug.group_leader';
1168 $sql_from = ', ' . USER_GROUP_TABLE . ' ug ';
1169 $order_by = 'ug.group_leader DESC, ';
1171 $sql_where .= " AND ug.user_pending = 0 AND u.user_id = ug.user_id AND ug.group_id = $group_id";
1172 $sql_where_data = " AND u.user_id = ug.user_id AND ug.group_id = $group_id";
1175 // Sorting and order
1176 if (!isset($sort_key_sql[$sort_key]))
1178 $sort_key = $default_key;
1181 $order_by .= $sort_key_sql[$sort_key] . ' ' . (($sort_dir == 'a') ? 'ASC' : 'DESC');
1183 // Unfortunately we must do this here for sorting by rank, else the sort order is applied wrongly
1184 if ($sort_key == 'm')
1186 $order_by .= ', u.user_posts DESC';
1189 // Count the users ...
1190 if ($sql_where)
1192 $sql = 'SELECT COUNT(u.user_id) AS total_users
1193 FROM ' . USERS_TABLE . " u$sql_from
1194 WHERE u.user_type IN (" . phpbb::USER_NORMAL . ', ' . phpbb::USER_FOUNDER . ")
1195 $sql_where";
1196 $result = phpbb::$db->sql_query($sql);
1197 $total_users = (int) phpbb::$db->sql_fetchfield('total_users');
1198 phpbb::$db->sql_freeresult($result);
1200 else
1202 $total_users = phpbb::$config['num_users'];
1205 $s_char_options = '<option value=""' . ((!$first_char) ? ' selected="selected"' : '') . '>&nbsp; &nbsp;</option>';
1206 for ($i = 97; $i < 123; $i++)
1208 $s_char_options .= '<option value="' . chr($i) . '"' . (($first_char == chr($i)) ? ' selected="selected"' : '') . '>' . chr($i-32) . '</option>';
1210 $s_char_options .= '<option value="other"' . (($first_char == 'other') ? ' selected="selected"' : '') . '>' . phpbb::$user->lang['OTHER'] . '</option>';
1212 // Build a relevant pagination_url
1213 $params = $sort_params = array();
1215 // We do not use request_var() here directly to save some calls (not all variables are set)
1216 $check_params = array(
1217 'g' => array('g', 0),
1218 'sk' => array('sk', $default_key),
1219 'sd' => array('sd', 'a'),
1220 'form' => array('form', ''),
1221 'field' => array('field', ''),
1222 'select_single' => array('select_single', $select_single),
1223 'username' => array('username', '', true),
1224 'email' => array('email', ''),
1225 'icq' => array('icq', ''),
1226 'aim' => array('aim', ''),
1227 'yahoo' => array('yahoo', ''),
1228 'msn' => array('msn', ''),
1229 'jabber' => array('jabber', ''),
1230 'search_group_id' => array('search_group_id', 0),
1231 'joined_select' => array('joined_select', 'lt'),
1232 'active_select' => array('active_select', 'lt'),
1233 'count_select' => array('count_select', 'eq'),
1234 'joined' => array('joined', ''),
1235 'active' => array('active', ''),
1236 'count' => (request_var('count', '') !== '') ? array('count', 0) : array('count', ''),
1237 'ipdomain' => array('ip', ''),
1238 'first_char' => array('first_char', ''),
1241 foreach ($check_params as $key => $call)
1243 if (!phpbb_request::is_set($key))
1245 continue;
1248 $param = call_user_func_array('request_var', $call);
1249 $param = urlencode($key) . '=' . ((is_string($param)) ? urlencode($param) : $param);
1250 $params[] = $param;
1252 if ($key != 'sk' && $key != 'sd')
1254 $sort_params[] = $param;
1257 $u_hide_find_member = append_sid('memberlist', "start=$start" . (!empty($params) ? '&amp;' . implode('&amp;', $params) : ''));
1259 if ($mode)
1261 $params[] = "mode=$mode";
1263 $sort_params[] = "mode=$mode";
1264 $pagination_url = append_sid('memberlist', implode('&amp;', $params));
1265 $sort_url = append_sid('memberlist', implode('&amp;', $sort_params));
1267 unset($search_params, $sort_params);
1269 // Some search user specific data
1270 if ($mode == 'searchuser' && (phpbb::$config['load_search'] || phpbb::$acl->acl_get('a_')))
1272 $group_selected = request_var('search_group_id', 0);
1273 $s_group_select = '<option value="0"' . ((!$group_selected) ? ' selected="selected"' : '') . '>&nbsp;</option>';
1274 $group_ids = array();
1277 * @todo add this to a separate function (function is responsible for returning the groups the user is able to see based on the users group membership)
1280 if (phpbb::$acl->acl_gets('a_group', 'a_groupadd', 'a_groupdel'))
1282 $sql = 'SELECT group_id, group_name, group_type
1283 FROM ' . GROUPS_TABLE;
1285 if (!phpbb::$config['coppa_enable'])
1287 $sql .= " WHERE group_name <> 'REGISTERED_COPPA'";
1290 $sql .= ' ORDER BY group_name ASC';
1292 else
1294 $sql = 'SELECT g.group_id, g.group_name, g.group_type
1295 FROM ' . GROUPS_TABLE . ' g
1296 LEFT JOIN ' . USER_GROUP_TABLE . ' ug
1297 ON (
1298 g.group_id = ug.group_id
1299 AND ug.user_id = ' . phpbb::$user->data['user_id'] . '
1300 AND ug.user_pending = 0
1302 WHERE (g.group_type <> ' . GROUP_HIDDEN . ' OR ug.user_id = ' . phpbb::$user->data['user_id'] . ')';
1304 if (!phpbb::$config['coppa_enable'])
1306 $sql .= " AND g.group_name <> 'REGISTERED_COPPA'";
1309 $sql .= ' ORDER BY g.group_name ASC';
1311 $result = phpbb::$db->sql_query($sql);
1313 while ($row = phpbb::$db->sql_fetchrow($result))
1315 $group_ids[] = $row['group_id'];
1316 $s_group_select .= '<option value="' . $row['group_id'] . '"' . (($group_selected == $row['group_id']) ? ' selected="selected"' : '') . '>' . (($row['group_type'] == GROUP_SPECIAL) ? phpbb::$user->lang['G_' . $row['group_name']] : $row['group_name']) . '</option>';
1318 phpbb::$db->sql_freeresult($result);
1320 if ($group_selected !== 0 && !in_array($group_selected, $group_ids))
1322 trigger_error('NO_GROUP');
1325 phpbb::$template->assign_vars(array(
1326 'USERNAME' => $username,
1327 'EMAIL' => $email,
1328 'ICQ' => $icq,
1329 'AIM' => $aim,
1330 'YAHOO' => $yahoo,
1331 'MSNM' => $msn,
1332 'JABBER' => $jabber,
1333 'JOINED' => implode('-', $joined),
1334 'ACTIVE' => implode('-', $active),
1335 'COUNT' => $count,
1336 'IP' => $ipdomain,
1338 'S_IP_SEARCH_ALLOWED' => (phpbb::$acl->acl_getf_global('m_info')) ? true : false,
1339 'S_IN_SEARCH_POPUP' => ($form && $field) ? true : false,
1340 'S_SEARCH_USER' => true,
1341 'S_FORM_NAME' => $form,
1342 'S_FIELD_NAME' => $field,
1343 'S_SELECT_SINGLE' => $select_single,
1344 'S_COUNT_OPTIONS' => $s_find_count,
1345 'S_SORT_OPTIONS' => $s_sort_key,
1346 'S_JOINED_TIME_OPTIONS' => $s_find_join_time,
1347 'S_ACTIVE_TIME_OPTIONS' => $s_find_active_time,
1348 'S_GROUP_SELECT' => $s_group_select,
1349 'S_USER_SEARCH_ACTION' => append_sid('memberlist', "mode=searchuser&amp;form=$form&amp;field=$field"),
1353 // Get us some users :D
1354 $sql = "SELECT u.user_id
1355 FROM " . USERS_TABLE . " u
1356 $sql_from
1357 WHERE u.user_type IN (" . phpbb::USER_NORMAL . ', ' . phpbb::USER_FOUNDER . ")
1358 $sql_where
1359 ORDER BY $order_by";
1360 $result = phpbb::$db->sql_query_limit($sql, phpbb::$config['topics_per_page'], $start);
1362 $user_list = array();
1363 while ($row = phpbb::$db->sql_fetchrow($result))
1365 $user_list[] = (int) $row['user_id'];
1367 phpbb::$db->sql_freeresult($result);
1368 $leaders_set = false;
1369 // So, did we get any users?
1370 if (sizeof($user_list))
1372 // Session time?! Session time...
1373 $sql = 'SELECT session_user_id, MAX(session_time) AS session_time
1374 FROM ' . SESSIONS_TABLE . '
1375 WHERE session_time >= ' . (time() - phpbb::$config['session_length']) . '
1376 AND ' . phpbb::$db->sql_in_set('session_user_id', $user_list) . '
1377 GROUP BY session_user_id';
1378 $result = phpbb::$db->sql_query($sql);
1380 $session_times = array();
1381 while ($row = phpbb::$db->sql_fetchrow($result))
1383 $session_times[$row['session_user_id']] = $row['session_time'];
1385 phpbb::$db->sql_freeresult($result);
1387 // Do the SQL thang
1388 if ($mode == 'group')
1390 $sql = "SELECT u.*
1391 $sql_select
1392 FROM " . USERS_TABLE . " u
1393 $sql_from
1394 WHERE " . phpbb::$db->sql_in_set('u.user_id', $user_list) . "
1395 $sql_where_data";
1397 else
1399 $sql = 'SELECT *
1400 FROM ' . USERS_TABLE . '
1401 WHERE ' . phpbb::$db->sql_in_set('user_id', $user_list);
1403 $result = phpbb::$db->sql_query($sql);
1405 $id_cache = array();
1406 while ($row = phpbb::$db->sql_fetchrow($result))
1408 $row['session_time'] = (!empty($session_times[$row['user_id']])) ? $session_times[$row['user_id']] : 0;
1409 $row['last_visit'] = (!empty($row['session_time'])) ? $row['session_time'] : $row['user_lastvisit'];
1411 $id_cache[$row['user_id']] = $row;
1413 phpbb::$db->sql_freeresult($result);
1415 // Load custom profile fields
1416 if (phpbb::$config['load_cpf_memberlist'])
1418 include_once(PHPBB_ROOT_PATH . 'includes/functions_profile_fields.' . PHP_EXT);
1419 $cp = new custom_profile();
1421 // Grab all profile fields from users in id cache for later use - similar to the poster cache
1422 $profile_fields_cache = $cp->generate_profile_fields_template('grab', $user_list);
1425 // If we sort by last active date we need to adjust the id cache due to user_lastvisit not being the last active date...
1426 if ($sort_key == 'l')
1428 // uasort($id_cache, create_function('$first, $second', "return (\$first['last_visit'] == \$second['last_visit']) ? 0 : ((\$first['last_visit'] < \$second['last_visit']) ? $lesser_than : ($lesser_than * -1));"));
1429 usort($user_list, '_sort_last_active');
1432 for ($i = 0, $end = sizeof($user_list); $i < $end; ++$i)
1434 $user_id = $user_list[$i];
1435 $row =& $id_cache[$user_id];
1436 $is_leader = (isset($row['group_leader']) && $row['group_leader']) ? true : false;
1437 $leaders_set = ($leaders_set || $is_leader);
1439 $cp_row = array();
1440 if (phpbb::$config['load_cpf_memberlist'])
1442 $cp_row = (isset($profile_fields_cache[$user_id])) ? $cp->generate_profile_fields_template('show', false, $profile_fields_cache[$user_id]) : array();
1445 $memberrow = array_merge(show_profile($row), array(
1446 'ROW_NUMBER' => $i + ($start + 1),
1448 'S_CUSTOM_PROFILE' => (isset($cp_row['row']) && sizeof($cp_row['row'])) ? true : false,
1449 'S_GROUP_LEADER' => $is_leader,
1451 'U_VIEW_PROFILE' => append_sid('memberlist', 'mode=viewprofile&amp;u=' . $user_id))
1454 if (isset($cp_row['row']) && sizeof($cp_row['row']))
1456 $memberrow = array_merge($memberrow, $cp_row['row']);
1459 phpbb::$template->assign_block_vars('memberrow', $memberrow);
1461 if (isset($cp_row['blockrow']) && sizeof($cp_row['blockrow']))
1463 foreach ($cp_row['blockrow'] as $field_data)
1465 phpbb::$template->assign_block_vars('memberrow.custom_fields', $field_data);
1469 unset($id_cache[$user_id]);
1473 // Generate page
1474 phpbb::$template->assign_vars(array(
1475 'PAGINATION' => generate_pagination($pagination_url, $total_users, phpbb::$config['topics_per_page'], $start),
1476 'PAGE_NUMBER' => on_page($total_users, phpbb::$config['topics_per_page'], $start),
1477 'TOTAL_USERS' => ($total_users == 1) ? phpbb::$user->lang['LIST_USER'] : sprintf(phpbb::$user->lang['LIST_USERS'], $total_users),
1479 'PROFILE_IMG' => phpbb::$user->img('icon_user_profile', 'PROFILE'),
1480 'PM_IMG' => phpbb::$user->img('icon_contact_pm', 'SEND_PRIVATE_MESSAGE'),
1481 'EMAIL_IMG' => phpbb::$user->img('icon_contact_email', 'EMAIL'),
1482 'WWW_IMG' => phpbb::$user->img('icon_contact_www', 'WWW'),
1483 'ICQ_IMG' => phpbb::$user->img('icon_contact_icq', 'ICQ'),
1484 'AIM_IMG' => phpbb::$user->img('icon_contact_aim', 'AIM'),
1485 'MSN_IMG' => phpbb::$user->img('icon_contact_msnm', 'MSNM'),
1486 'YIM_IMG' => phpbb::$user->img('icon_contact_yahoo', 'YIM'),
1487 'JABBER_IMG' => phpbb::$user->img('icon_contact_jabber', 'JABBER'),
1488 'SEARCH_IMG' => phpbb::$user->img('icon_user_search', 'SEARCH'),
1490 'U_FIND_MEMBER' => (phpbb::$config['load_search'] || phpbb::$acl->acl_get('a_')) ? append_sid('memberlist', 'mode=searchuser' . (($start) ? "&amp;start=$start" : '') . (!empty($params) ? '&amp;' . implode('&amp;', $params) : '')) : '',
1491 'U_HIDE_FIND_MEMBER' => ($mode == 'searchuser') ? $u_hide_find_member : '',
1492 'U_SORT_USERNAME' => $sort_url . '&amp;sk=a&amp;sd=' . (($sort_key == 'a' && $sort_dir == 'a') ? 'd' : 'a'),
1493 'U_SORT_FROM' => $sort_url . '&amp;sk=b&amp;sd=' . (($sort_key == 'b' && $sort_dir == 'a') ? 'd' : 'a'),
1494 'U_SORT_JOINED' => $sort_url . '&amp;sk=c&amp;sd=' . (($sort_key == 'c' && $sort_dir == 'a') ? 'd' : 'a'),
1495 'U_SORT_POSTS' => $sort_url . '&amp;sk=d&amp;sd=' . (($sort_key == 'd' && $sort_dir == 'a') ? 'd' : 'a'),
1496 'U_SORT_EMAIL' => $sort_url . '&amp;sk=e&amp;sd=' . (($sort_key == 'e' && $sort_dir == 'a') ? 'd' : 'a'),
1497 'U_SORT_WEBSITE' => $sort_url . '&amp;sk=f&amp;sd=' . (($sort_key == 'f' && $sort_dir == 'a') ? 'd' : 'a'),
1498 'U_SORT_LOCATION' => $sort_url . '&amp;sk=b&amp;sd=' . (($sort_key == 'b' && $sort_dir == 'a') ? 'd' : 'a'),
1499 'U_SORT_ICQ' => $sort_url . '&amp;sk=g&amp;sd=' . (($sort_key == 'g' && $sort_dir == 'a') ? 'd' : 'a'),
1500 'U_SORT_AIM' => $sort_url . '&amp;sk=h&amp;sd=' . (($sort_key == 'h' && $sort_dir == 'a') ? 'd' : 'a'),
1501 'U_SORT_MSN' => $sort_url . '&amp;sk=i&amp;sd=' . (($sort_key == 'i' && $sort_dir == 'a') ? 'd' : 'a'),
1502 'U_SORT_YIM' => $sort_url . '&amp;sk=j&amp;sd=' . (($sort_key == 'j' && $sort_dir == 'a') ? 'd' : 'a'),
1503 'U_SORT_ACTIVE' => (phpbb::$acl->acl_get('u_viewonline')) ? $sort_url . '&amp;sk=l&amp;sd=' . (($sort_key == 'l' && $sort_dir == 'a') ? 'd' : 'a') : '',
1504 'U_SORT_RANK' => $sort_url . '&amp;sk=m&amp;sd=' . (($sort_key == 'm' && $sort_dir == 'a') ? 'd' : 'a'),
1505 'U_LIST_CHAR' => $sort_url . '&amp;sk=a&amp;sd=' . (($sort_key == 'l' && $sort_dir == 'a') ? 'd' : 'a'),
1507 'S_SHOW_GROUP' => ($mode == 'group') ? true : false,
1508 'S_VIEWONLINE' => phpbb::$acl->acl_get('u_viewonline'),
1509 'S_LEADERS_SET' => $leaders_set,
1510 'S_MODE_SELECT' => $s_sort_key,
1511 'S_ORDER_SELECT' => $s_sort_dir,
1512 'S_CHAR_OPTIONS' => $s_char_options,
1513 'S_MODE_ACTION' => $pagination_url,
1517 // Output the page
1518 page_header($page_title);
1520 phpbb::$template->set_filenames(array(
1521 'body' => $template_html)
1523 make_jumpbox(append_sid('viewforum'));
1525 page_footer();
1528 * Prepare profile data
1530 function show_profile($data)
1532 $username = $data['username'];
1533 $user_id = $data['user_id'];
1535 $rank_title = $rank_img = $rank_img_src = '';
1536 get_user_rank($user_id, $data['user_rank'], $data['user_posts'], $rank_title, $rank_img, $rank_img_src);
1538 if (!empty($data['user_allow_viewemail']) || phpbb::$acl->acl_get('a_email'))
1540 $email = (phpbb::$config['board_email_form'] && phpbb::$config['email_enable']) ? append_sid('memberlist', 'mode=email&amp;u=' . $user_id) : ((phpbb::$config['board_hide_emails'] && !phpbb::$acl->acl_get('a_email')) ? '' : 'mailto:' . $data['user_email']);
1542 else
1544 $email = '';
1547 if (phpbb::$config['load_onlinetrack'])
1549 $update_time = phpbb::$config['load_online_time'] * 60;
1550 $online = (time() - $update_time < $data['session_time'] && ((isset($data['session_viewonline']) && $data['session_viewonline']) || phpbb::$acl->acl_get('u_viewonline'))) ? true : false;
1552 else
1554 $online = false;
1557 if ($data['user_allow_viewonline'] || phpbb::$acl->acl_get('u_viewonline'))
1559 $last_visit = (!empty($data['session_time'])) ? $data['session_time'] : $data['user_lastvisit'];
1561 else
1563 $last_visit = '';
1566 $age = '';
1568 if (phpbb::$config['allow_birthdays'] && $data['user_birthday'])
1570 list($bday_day, $bday_month, $bday_year) = array_map('intval', explode('-', $data['user_birthday']));
1572 if ($bday_year)
1574 $now = getdate(time() + phpbb::$user->timezone + phpbb::$user->dst - date('Z'));
1576 $diff = $now['mon'] - $bday_month;
1577 if ($diff == 0)
1579 $diff = ($now['mday'] - $bday_day < 0) ? 1 : 0;
1581 else
1583 $diff = ($diff < 0) ? 1 : 0;
1586 $age = (int) ($now['year'] - $bday_year - $diff);
1590 // Dump it out to the template
1591 return array(
1592 'AGE' => $age,
1593 'RANK_TITLE' => $rank_title,
1594 'JOINED' => phpbb::$user->format_date($data['user_regdate']),
1595 'VISITED' => (empty($last_visit)) ? ' - ' : phpbb::$user->format_date($last_visit),
1596 'POSTS' => ($data['user_posts']) ? $data['user_posts'] : 0,
1597 'WARNINGS' => isset($data['user_warnings']) ? $data['user_warnings'] : 0,
1599 'USERNAME_FULL' => get_username_string('full', $user_id, $username, $data['user_colour']),
1600 'USERNAME' => get_username_string('username', $user_id, $username, $data['user_colour']),
1601 'USER_COLOR' => get_username_string('colour', $user_id, $username, $data['user_colour']),
1602 'U_VIEW_PROFILE' => get_username_string('profile', $user_id, $username, $data['user_colour']),
1604 'A_USERNAME' => addslashes(get_username_string('username', $user_id, $username, $data['user_colour'])),
1606 'AVATAR_IMG' => get_user_avatar($data['user_avatar'], $data['user_avatar_type'], $data['user_avatar_width'], $data['user_avatar_height']),
1607 'ONLINE_IMG' => (!phpbb::$config['load_onlinetrack']) ? '' : (($online) ? phpbb::$user->img('icon_user_online', 'ONLINE') : phpbb::$user->img('icon_user_offline', 'OFFLINE')),
1608 'S_ONLINE' => (phpbb::$config['load_onlinetrack'] && $online) ? true : false,
1609 'RANK_IMG' => $rank_img,
1610 'RANK_IMG_SRC' => $rank_img_src,
1611 'ICQ_STATUS_IMG' => (!empty($data['user_icq'])) ? '<img src="http://web.icq.com/whitepages/online?icq=' . $data['user_icq'] . '&amp;img=5" width="18" height="18" />' : '',
1612 'S_JABBER_ENABLED' => (phpbb::$config['jab_enable']) ? true : false,
1614 'U_SEARCH_USER' => (phpbb::$acl->acl_get('u_search')) ? append_sid('search', "author_id=$user_id&amp;sr=posts") : '',
1615 'U_NOTES' => phpbb::$acl->acl_getf_global('m_') ? append_sid('mcp', 'i=notes&amp;mode=user_notes&amp;u=' . $user_id, true, phpbb::$user->session_id) : '',
1616 'U_WARN' => phpbb::$acl->acl_get('m_warn') ? append_sid('mcp', 'i=warn&amp;mode=warn_user&amp;u=' . $user_id, true, phpbb::$user->session_id) : '',
1617 'U_PM' => (phpbb::$config['allow_privmsg'] && phpbb::$acl->acl_get('u_sendpm') && ($data['user_allow_pm'] || phpbb::$acl->acl_gets('a_', 'm_') || phpbb::$acl->acl_getf_global('m_'))) ? append_sid('ucp', 'i=pm&amp;mode=compose&amp;u=' . $user_id) : '',
1618 'U_EMAIL' => $email,
1619 'U_WWW' => (!empty($data['user_website'])) ? $data['user_website'] : '',
1620 'U_ICQ' => ($data['user_icq']) ? 'http://www.icq.com/people/webmsg.php?to=' . urlencode($data['user_icq']) : '',
1621 'U_AIM' => ($data['user_aim'] && phpbb::$acl->acl_get('u_sendim')) ? append_sid('memberlist', 'mode=contact&amp;action=aim&amp;u=' . $user_id) : '',
1622 'U_YIM' => ($data['user_yim']) ? 'http://edit.yahoo.com/config/send_webmesg?.target=' . urlencode($data['user_yim']) . '&amp;.src=pg' : '',
1623 'U_MSN' => ($data['user_msnm'] && phpbb::$acl->acl_get('u_sendim')) ? append_sid('memberlist', 'mode=contact&amp;action=msnm&amp;u=' . $user_id) : '',
1624 'U_JABBER' => ($data['user_jabber'] && phpbb::$acl->acl_get('u_sendim')) ? append_sid('memberlist', 'mode=contact&amp;action=jabber&amp;u=' . $user_id) : '',
1625 'LOCATION' => ($data['user_from']) ? $data['user_from'] : '',
1627 'USER_ICQ' => $data['user_icq'],
1628 'USER_AIM' => $data['user_aim'],
1629 'USER_YIM' => $data['user_yim'],
1630 'USER_MSN' => $data['user_msnm'],
1631 'USER_JABBER' => $data['user_jabber'],
1632 'USER_JABBER_IMG' => ($data['user_jabber']) ? phpbb::$user->img('icon_contact_jabber', $data['user_jabber']) : '',
1634 'L_VIEWING_PROFILE' => sprintf(phpbb::$user->lang['VIEWING_PROFILE'], $username),
1638 function _sort_last_active($first, $second)
1640 global $id_cache, $sort_dir;
1642 $lesser_than = ($sort_dir === 'd') ? -1 : 1;
1644 if (isset($id_cache[$first]['group_leader']) && $id_cache[$first]['group_leader'] && (!isset($id_cache[$second]['group_leader']) || !$id_cache[$second]['group_leader']))
1646 return -1;
1648 else if (isset($id_cache[$second]['group_leader']) && (!isset($id_cache[$first]['group_leader']) || !$id_cache[$first]['group_leader']) && $id_cache[$second]['group_leader'])
1650 return 1;
1652 else
1654 return $lesser_than * (int) ($id_cache[$first]['last_visit'] - $id_cache[$second]['last_visit']);