// Ïîäêëþ÷åíèå include_once($_SERVER['DOCUMENT_ROOT']."/account/mods/autorizator_admin.php"); // ============================== // ======== Îáðàáîòêà =========== // ============================== // ============= // ==== add ==== // ============= if ((isset($_POST["send"])) && $_POST["send"] == "add") { // UPDATE zlo_users SET interest='44:45' WHERE `mailing`=1 // UPDATE zlo_users SET `mailing`=1 WHERE interest!='' // UPDATE zlo_users SET `mailing`=0 WHERE interest=0 // $error=''; // $error[] = ValidFormData($_POST['user']['email'],'email','email'); // $alert=implode('\r\n',$error); // $mass=array_filter($error); // if (empty($mass)) { $sql0 = "SELECT * FROM zlo_users WHERE email='".$_POST['form']['email']."' OR tel='".$_POST['form']['tel']."' "; $result0 = mysql_query($sql0) or die(mysql_error()); if (mysql_affected_rows()==0) { if ($_POST['form']['email']=='') { $_POST['form']['email']=date('d/m/y/H.i.s').'@user.com'; } if (strpos($_POST['form']['email'],"@user.com")) { $_POST['form']['group']=1; } else { $_POST['form']['group']=2; } $birthday=$_POST['form']['year']."-".$_POST['form']['mounth']."-".$_POST['form']['day']; // Ñîáèðàåì èíòåðåñû if (isset($_POST['form']['interest'])) { $_POST['form']['mailing']=1; $_POST['form']['interest']=implode(":",$_POST['form']['interest']); } else { $_POST['form']['interest']=''; $_POST['form']['mailing']=0; } // Äîáàâëÿåì ïîëüçîâàòåëÿ $sql = sprintf("INSERT INTO zlo_users (login, pass, email, city, address, tel, registered, mailing,username, sex, birthday, interest, tel2, `group`) VALUES (%s, %s, %s, %s, %s, %s, NOW(), %s, %s, %s, %s, %s, %s, %s)", GetSQLValueString($_POST['form']['login'], "text"), GetSQLValueString($_POST['form']['pass'], "text"), GetSQLValueString($_POST['form']['email'], "text"), GetSQLValueString($_POST['form']['city'], "text"), GetSQLValueString($_POST['form']['address'], "text"), GetSQLValueString($_POST['form']['tel'], "text"), GetSQLValueString($_POST['form']['mailing'], "text"), GetSQLValueString($_POST['form']['username'], "text"), GetSQLValueString($_POST['form']['sex'], "text"), GetSQLValueString($birthday, "text"), GetSQLValueString($_POST['form']['interest'], "text"), GetSQLValueString($_POST['form']['tel2'], "text"), GetSQLValueString($_POST['form']['group'], "text")); $result = mysql_query($sql) or die(mysql_error()); $user_id = mysql_insert_id(); $result2 = mysql_query("SELECT * FROM `card` ORDER BY `card` DESC LIMIT 1;") or die(mysql_error()); $row55 = mysql_fetch_assoc($result2); if(!@$row55['card']) $row55['card'] = 0; if(@$row55['card']>0){ $row55['card']++; $discont_id = $row55['card']; $result2 = mysql_query("INSERT INTO `card` (`card`,`user_id`) VALUES ('".$row55['card']."','".$user_id."')"); } echo ""; // } else { // echo""; // } } else { echo ""; } } // ============= // === Edit ==== // ============= if ((isset($_POST["send"])) && ($_POST["send"] == "edit")) { //if ($_SESSION['admin']['group']==1) { // $error=''; // $error[] = ValidFormData($_POST['user']['email'],'email','email'); // $alert=implode('\r\n',$error); // $mass=array_filter($error); // if (empty($mass)) { if ($_POST['form']['email']=='') { $_POST['form']['email']=date('d/m/y/H.i.s').'@user.com'; } // if (strpos($_POST['form']['email'],"@user.com")) { // $_POST['form']['group']=1; // } else { // $_POST['form']['group']=2; // } // Ñîáèðàåì èíòåðåñû if (isset($_POST['form']['interest'])) { $_POST['form']['interest']=implode(":",$_POST['form']['interest']); } else { $_POST['form']['interest']=''; } $birthday=$_POST['form']['year']."-".$_POST['form']['mounth']."-".$_POST['form']['day']; $sql = sprintf("UPDATE zlo_users SET email=%s, pass=%s, city=%s, address=%s, tel=%s, `group`=%s, username=%s, sex=%s, birthday=%s, interest=%s, tel2=%s WHERE id='".$_POST['user']."' ", GetSQLValueString($_POST['form']['email'], "text"), GetSQLValueString($_POST['form']['pass'], "text"), GetSQLValueString($_POST['form']['city'], "text"), GetSQLValueString($_POST['form']['address'], "text"), GetSQLValueString($_POST['form']['tel'], "text"), GetSQLValueString($_POST['form']['group'], "text"), GetSQLValueString($_POST['form']['username'], "text"), GetSQLValueString($_POST['form']['sex'], "text"), GetSQLValueString($birthday, "text"), GetSQLValueString($_POST['form']['interest'], "text"), GetSQLValueString($_POST['form']['tel2'], "text")); if($_SESSION['admin']['id']!=6 && $_SESSION['admin']['id']!=2) $result = mysql_query($sql) or die(mysql_error()); echo ""; // } else { // echo""; // } //} else {echo ""; } } // ============= // === Del ==== // ============= if ((isset($_GET["action"])) && ($_GET["action"] == "del")) { $sql = "DELETE FROM zlo_users WHERE id='".$_GET['user']."'"; $result = mysql_query($sql) or die(mysql_error()); echo ""; } // ============================== // ========== Âûâîä ============= // ============================== // ============= // ==== All ==== // ============= if (!isset($_GET['action'])) { // ***** Àäìèí ðåæèì ***** if(isset($_SESSION['admin']['edit'])) { echo"Äîáàâèòü"; } // *********************** $WHERE='ORDER BY u.id DESC'; // Åñëè ñóùåñòâóåò Ïîèñê if (isset($_POST['search'])) { $pre="u"; if($_POST['field']=='summary') {$pre="o";} $WHERE="WHERE $pre.`".$_POST['field']."` LIKE '%".trim($_POST['look'])."%'"; } // Åñëè ñóùåñòâóåò ñîðòèðîâêà if (isset($_GET['sort_by']) && isset($_GET['sort']) ) { $pre="u"; if($_GET['sort_by']=='summary') {$pre="o";} $WHERE="ORDER BY $pre.`".$_GET['sort_by']."` ".$_GET['sort']." "; } $sql = "SELECT * , u.id AS user_id, g.color FROM zlo_users AS u LEFT JOIN zlo_users_group AS g ON u.group = g.id LEFT JOIN (SELECT user_id AS order_user_id, sum( `total` ) AS `summary` FROM catalogs_orders group by user_id ) o ON u.id = o.order_user_id $WHERE"; $pager['sql']= $sql; $pager=pagerGetRun($pager,30,15); $result = mysql_query($pager['sql']) or die(mysql_error()); $th=array("id"=>"id", "username"=>"ÔÈÎ","tel"=>"òåëåôîí","email"=>"email","group"=>"Ãðóïïà", "registered"=>"Äàòà ðåã.","summary"=>"Ñóììà çàêàçà",""=>"",""=>""); if (mysql_affected_rows()!=0) { // === Ïîèñê === echo'Ýêñïîðòèðîâàòü ïîëüçîâàòåëåé'; echo"
$value | "; } echo"||||||||
---|---|---|---|---|---|---|---|---|
".$user['user_id']." | ".$user['username']." | ".$user['tel']." | ".$user['email']." | ".viewBook('zlo_users_group', $user['group'], 'id','name')." | ".$user['registered']." | ".FreandlyDigits($total)." ãðí. | Êóïîí | "; echo""; echo" |