// Ïîäêëþ÷åíèå include_once($_SERVER['DOCUMENT_ROOT']."/account/mods/autorizator_user.php"); // ============================== // ======== Îáðàáîòêà =========== // ============================== if ((isset($_POST["info"])) && ($_POST["info"] == "ok")) { // Ñîáèðàåì èíòåðåñû if (isset($_POST['form']['interest'])) { $_POST['form']['interest']=implode(":",$_POST['form']['interest']); } else { $_POST['form']['interest']=''; } $birthday=$_POST['form']['year']."-".$_POST['form']['mounth']."-".$_POST['form']['day']; if(trim($_POST['form']['email'])!=''){ $sql = sprintf("UPDATE zlo_users SET pass=%s, city=%s, address=%s, tel=%s, username=%s, sex=%s, birthday=%s, interest=%s, tel2=%s, email=%s WHERE id='".$_SESSION['user']['id']."' ", GetSQLValueString($_POST['form']['pass'], "text"), GetSQLValueString($_POST['form']['city'], "text"), GetSQLValueString($_POST['form']['address'], "text"), GetSQLValueString($_POST['form']['tel'], "text"), GetSQLValueString($_POST['form']['username'], "text"), GetSQLValueString($_POST['form']['sex'], "text"), GetSQLValueString($birthday, "text"), GetSQLValueString($_POST['form']['interest'], "text"), GetSQLValueString($_POST['form']['tel2'], "text"), GetSQLValueString($_POST['form']['email'], "text")); }else{ $sql = sprintf("UPDATE zlo_users SET pass=%s, city=%s, address=%s, tel=%s, username=%s, sex=%s, birthday=%s, interest=%s, tel2=%s WHERE id='".$_SESSION['user']['id']."' ", GetSQLValueString($_POST['form']['pass'], "text"), GetSQLValueString($_POST['form']['city'], "text"), GetSQLValueString($_POST['form']['address'], "text"), GetSQLValueString($_POST['form']['tel'], "text"), GetSQLValueString($_POST['form']['username'], "text"), GetSQLValueString($_POST['form']['sex'], "text"), GetSQLValueString($birthday, "text"), GetSQLValueString($_POST['form']['interest'], "text"), GetSQLValueString($_POST['form']['tel2'], "text")); } //echo $sql."-"; if (!@preg_match("/[à-ÿ]/i",$_POST['form']['pass'])) { $result = mysql_query($sql) or die(mysql_error()); // Îáíîâëÿåì ñåññèþ $_SESSION['user']['pass'] =$_POST['form']['pass']; $_SESSION['user']['name'] =$_POST['form']['username']; $_SESSION['user']['tel'] =$_POST['form']['tel']; $_SESSION['user']['tel2'] =$_POST['form']['tel2']; $_SESSION['user']['address']=$_POST['form']['address']; $_SESSION['user']['city'] =$_POST['form']['city']; echo ""; }else echo ""; } // ============================== // ========== Âûâîä ============= // ============================== $sql = "SELECT * FROM zlo_users as u WHERE u.id=".$_SESSION['user']['id']." "; $result = mysql_query($sql) or die(mysql_error()); if (mysql_affected_rows()!=0) { $userInfo=mysql_fetch_assoc($result); if(isset($_GET['ok'])) $datas = "