1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
|
<?php
import_request_variables('pG', 'p_'); if($p_username!="") { $username=trim($p_username); } if($p_password!="") { $password=trim($p_password); } if($p_name!="") { $name=trim($p_name); } if($p_surname!="") { $surname=trim($p_surname); } if($p_sex!="") { $sex=trim($p_sex); } if($p_email!="") { $email=trim($p_email); } if($p_type_user!="") { $type_user=trim($p_type_user); }
$picture=trim($_FILES['picture_file']['name']);
$fail_case = -1; $navig['manage_main_data']="สมัครสมาชิก"; navigator($navig); echo "<br>"; bar_header("สมัครสมาชิก"); // Bar_Header
$md5pass = md5($password); // #################### ตรวจสอบ user ว่าซ้ำกับที่มีแล้วหรือไม่ ###################### $sql="select user from cms_main_user where user='$username'"; $result=mysql_query($sql); $data=mysql_fetch_row($result); if($data[0]!=""){ echo "<fieldset><legend align=left><font color='$datatm[color1]'>สมัครสมาชิก</font></legend> "; echo "<center><br>ชื่อล็อกอิน <font color='FF0000'><b>$username</b></font> มีคนใช้แล้ว <br>กรุณาเปลี่ยนชื่อล็อกอินใหม่"; echo "<FORM METHOD=POST ACTION='index.php?mod=registeration&path=login'>"; echo"<INPUT TYPE='hidden' name='username' value='$username'>"; echo"<INPUT TYPE='hidden' name='name' value='$name'>"; echo"<INPUT TYPE='hidden' name='surname' value='$surname'>"; echo"<INPUT TYPE='hidden' name='email' value='$email'>"; echo"<INPUT TYPE='hidden' name='sex' value='$sex'>"; echo"<INPUT TYPE='submit' value='Back' onmouseover='this.style.cursor=hand'>"; echo"</FORM></center>"; // include('coremain/footer.php'); echo "</fieldset>"; exit; }
$sql_user = "INSERT INTO cms_main_user (user,pass,levels,status) values ('$username','$md5pass','$type_user',1)"; query($sql_user); $id_user = select_query_object("id_user","cms_main_user","user",$username); $id_user = $id_user->id_user; $new_user_path = dirname(dirname(dirname(dirname(__FILE__))))."/$_SESSION[web_name]/users/$id_user/"; $picture_path = dirname(dirname(dirname(dirname(__FILE__))))."/$_SESSION[web_name]/users/$id_user/user_picture/"; mkdir($new_user_path,0777); mkdir($picture_path,0777); //mkdir($_SESSION['web_name']."/users/users/$id_user",0777); if($picture!=""){
while($fail_case != 0) { $strings1=substr($picture,-4); if($strings1!=".gif" and $strings1!=".jpg" and $strings1!=".GIF" and $strings1!=".JPG"){ $fail_case = 1; break; } $name1=create_filename($picture); $dlink=$_SESSION['web_name']."/users/$id_user/user_picture/".$name1; $temp_name=$_FILES['picture_file']['tmp_name']; if (is_uploaded_file($_FILES['picture_file']['tmp_name'])) { if(!move_uploaded_file($temp_name,$dlink)){ $fail_case = 2; break; } }
$fail_case = 0; break; } } //$user_id = mysql_select_id(); $sql_profile = "INSERT INTO cms_user_profile (name,surname,sex,email,id_user,picture) values ('$name','$surname','$sex','$email',$id_user,'$name1')"; query ($sql_profile);
if($_SESSION[admin_web]=="admin"){ echo "<center><br><br>สมัครสมาชิกใหม่ เสร็จแล้ว<br><a href='index.php?mod=manage_user&path=user&id_type=1'><font color='FF0000'>คลิกที่นี่</font></a> เพื่อกลับหน้าจัดการระบบ</center>"; }else{ echo "<center><br><br>สมัครสมาชิกใหม่ เสร็จแล้ว<br>กรุณา Login เข้าสู่ระบบโดย <a href='index.php?mod=login&path=login'><font color='FF0000'>คลิกที่นี่</font></a></center>"; }
?>
|