📄 profile.asp
字号:
<%response.buffer = true%>
<!--#INCLUDE FILE="inc/db_inc.asp"-->
<!--#INCLUDE FILE="inc/md5_inc.asp"-->
<!--#INCLUDE FILE="inc/char_inc.asp"-->
<!--#INCLUDE FILE="header.asp"-->
<%
dim ip, strip, killip
dim StrSql, toptext, rs, rs2, StrHtml, StrHtml2, error, sex, avatar, err
StrHtml = loadtemplate("htmltop")
StrHtml = Replace(StrHtml, "{pagetitle}", loadtemplate("profiletitle"))
StrHtml = Replace(StrHtml, "{forumtitle}", boardtitle)
response.write StrHtml
StrHtml = loadtemplate("pagetitle")
if request.cookies("sf")("username") = "" then
toptext = loadtemplate("toptextguest")
else
toptext = loadtemplate("toptextuser")
end if
toptext = toptext & loadtemplate("toptext")
StrHtml = Replace(StrHtml, "{top_text}", toptext)
StrHtml = Replace(StrHtml, "{username}", request.cookies("sf")("username"))
response.write StrHtml
' 论坛关闭
StrSql = "select * from sf_setup"
Set rs2 = Conn.Execute(StrSql)
if rs2("forumclose") = 1 then
StrHtml = loadtemplate("error")
StrHtml = Replace(StrHtml, "{error_text}", rs2("forumclosehint"))
response.write StrHtml
response.end
end if
' 禁止IP访问
if rs2("killip") = 1 then
userip = cstr(request.ServerVariables("REMOTE_ADDR"))
killiplist = rs2("killiplist")
if killiplist <> "" and userip <> "" then
killip = split(killiplist, "|")
struserip = split(userip, ".")
i = 0
do until i > ubound(killip)
strkillip = split(killip(i), ".")
bolkill = true
if (struserip(0) <> strkillip(0)) and (strkillip(0) <> "*") then bolkill = false
if (struserip(1) <> strkillip(1)) and (strkillip(1) <> "*") then bolkill = false
if (struserip(2) <> strkillip(2)) and (strkillip(2) <> "*") then bolkill = false
if (struserip(3) <> strkillip(3)) and (strkillip(3) <> "*") then bolkill = false
if bolkill then
StrHtml = loadtemplate("error")
StrHtml = Replace(StrHtml, "{error_text}", rs2("killiphint"))
response.write StrHtml
Response.End
end if
i = i + 1
loop
end if
end if
StrHtml = loadtemplate("pagepath")
StrHtml = Replace(StrHtml, "{path_text}", "<a href=""index.asp"">" & boardtitle & "</a> » " & loadtemplate("profiletitle"))
response.write StrHtml
step = ChkSql(request("step"))
select case step
case "2"
error = ""
err = false
if request("oldpassword") = "" then
err = true
else
StrSql = "select password from sf_user where username = '" & ChkSql(request.cookies("sf")("username")) & "'"
Set rs2 = Conn.Execute(StrSql)
if rs2.bof or rs2.eof then
err = true
else
if md5(request("oldpassword")) <> rs2("password") then err = true
end if
end if
if err then
StrHtml = loadtemplate("error")
StrHtml = Replace(StrHtml, "{error_text}", loadtemplate("err_chkpassword"))
response.write StrHtml
response.end
end if
if request("password") <> "" then
if strLength(request("password")) < 6 or request("password") <> request("password2") then error = error & "<br><li>" & loadtemplate("err_password")
end if
if not IsValidEmail(request("email")) then error = error & "<br><li>" & loadtemplate("err_email")
if request("sign") <> "" then
if strLength(request("sign")) > 200 then error = error & "<br><li>" & loadtemplate("err_sign")
end if
if request("birthday_y") = "" or request("birthday_m") = "" or request("birthday_d") = "" then
birthday = "1900-01-01"
else
if not (IsNumeric(request("birthday_y")) or IsNumeric(request("birthday_m")) or IsNumeric(request("birthday_d"))) then
error = error & "<br><li>" & loadtemplate("err_birthday")
else
birthday = ChkSql(request("birthday_y")) & "-" & ChkSql(request("birthday_m")) & "-" & ChkSql(request("birthday_d"))
end if
end if
if request("defineavatar") = "1" then
err = false
if (not IsValidSqlValue(request("defineavatarpath"))) or strLength(request("defineavatarpath")) < 10 then
err = true
else
if instr(request("defineavatarpath"),"http://") <= 0 then err = true
end if
if (not IsNumeric(request("avatarwidth"))) or (not IsNumeric(request("avatarheight"))) then
err = true
else
if cint(request("avatarwidth")) > 120 or cint(request("avatarheight")) > 120 then err = true
end if
if err then error = error & "<br><li>" & loadtemplate("err_defineavatar")
end if
if error <> "" then
StrHtml = loadtemplate("error")
StrHtml = Replace(StrHtml, "{error_text}", error)
response.write StrHtml
response.end
end if
sex = request("sex")
StrSql = "update sf_user set"
if request("password") <> "" then
StrSql = StrSql & " password = '" & md5(ChkSql(request("password"))) & "',"
end if
if IsValidEmail(request("email")) then StrSql = StrSql & " email = '" & ChkSql(request("email")) & "',"
StrSql = StrSql & " homepage = '" & ChkSql(server.htmlencode(request("homepage"))) & "', "
StrSql = StrSql & " qq = '" & ChkSql(server.htmlencode(request("qq"))) & "', "
StrSql = StrSql & " [like] = '" & ChkSql(server.htmlencode(request("like"))) & "', "
StrSql = StrSql & " sex = " & sex & ", "
StrSql = StrSql & " country = '" & ChkSql(server.htmlencode(request("country"))) & "', "
StrSql = StrSql & " signature = '" & ChkSql(server.htmlencode(request("sign"))) & "', "
if request("showmail") = "1" then
StrSql = StrSql & " showemail = 0, "
else
StrSql = StrSql & " showemail = 1, "
end if
if request("invisible") = "1" then
StrSql = StrSql & " invisible = 1, "
else
StrSql = StrSql & " invisible = 0, "
end if
if request("defineavatar") = "1" then
StrSql = StrSql & " avatar = '', "
else
StrSql = StrSql & " avatar = '" & ChkSql(server.htmlencode(request("avatar"))) & "', "
end if
'自定义头像开始
StrSql = StrSql & " defineavatar = '" & ChkSql(server.htmlencode(request("defineavatarpath"))) & "', "
StrSql = StrSql & " avatarwidth = " & ChkSql(request("avatarwidth")) & ", "
StrSql = StrSql & " avatarheight = " & ChkSql(request("avatarheight")) & ", "
'自定义头像结束
StrSql = StrSql & " birthday = '" & birthday & "'"
StrSql = StrSql & " where username = '" & ChkSql(request.cookies("sf")("username")) & "'"
Conn.Execute(StrSql)
if request("password") <> "" then
response.cookies("sf")("username")= ChkSql(request("username"))
response.cookies("sf")("password")= md5(request("password"))
end if
StrHtml = loadtemplate("hint")
StrHtml = Replace(StrHtml, "{hint_text}", loadtemplate("hint_profile"))
StrHtml = Replace(StrHtml, "{pro_name}", "index.asp")
response.write StrHtml
case else
StrSql = "select * from sf_user where username = '" & ChkSql(request.cookies("sf")("username")) & "'"
Set rs2 = Conn.Execute(StrSql)
if rs2.bof or rs2.eof then
error = ""
error = error & "<br><li>" & loadtemplate("err_unregistered")
StrHtml = loadtemplate("error")
StrHtml = Replace(StrHtml, "{error_text}", error)
response.write StrHtml
response.end
end if
StrHtml = loadtemplate("profile")
StrHtml = Replace(StrHtml, "{user_name}", rs2("username"))
StrHtml = Replace(StrHtml, "{email}", rs2("email"))
StrHtml = Replace(StrHtml, "{country}", rs2("country"))
StrHtml = Replace(StrHtml, "{qq}", rs2("qq"))
StrHtml = Replace(StrHtml, "{homepage}", rs2("homepage"))
StrHtml = Replace(StrHtml, "{like}", rs2("like"))
StrHtml = Replace(StrHtml, "{defineavatar}", rs2("defineavatar"))
StrHtml = Replace(StrHtml, "{avatarwidth}", rs2("avatarwidth"))
StrHtml = Replace(StrHtml, "{avatarheight}", rs2("avatarheight"))
StrHtml = Replace(StrHtml, "{sign}", rs2("signature"))
StrHtml = Replace(StrHtml, "{y}", year(rs2("birthday")))
StrHtml = Replace(StrHtml, "{m}", month(rs2("birthday")))
StrHtml = Replace(StrHtml, "{d}", day(rs2("birthday")))
if rs2("sex") = 1 then
StrHtml = Replace(StrHtml, "{sex1_box}", "<input type=""radio"" name=""sex"" value=""1"" checked>")
StrHtml = Replace(StrHtml, "{sex2_box}", "<input type=""radio"" name=""sex"" value=""2"">")
else
StrHtml = Replace(StrHtml, "{sex1_box}", "<input type=""radio"" name=""sex"" value=""1"">")
StrHtml = Replace(StrHtml, "{sex2_box}", "<input type=""radio"" name=""sex"" value=""2"" checked>")
end if
if rs2("avatar") = "" then
StrHtml2 = "<input type=""radio"" name=""defineavatar"" value=""1"" checked>"
StrHtml = Replace(StrHtml, "{defineavatar_box}", StrHtml2)
StrHtml2 = "<input type=""radio"" name=""defineavatar"" value=""0"">"
StrHtml = Replace(StrHtml, "{avatar_box}", StrHtml2)
else
StrHtml2 = "<input type=""radio"" name=""defineavatar"" value=""0"" checked>"
StrHtml = Replace(StrHtml, "{avatar_box}", StrHtml2)
StrHtml2 = "<input type=""radio"" name=""defineavatar"" value=""1"">"
StrHtml = Replace(StrHtml, "{defineavatar_box}", StrHtml2)
end if
StrHtml = Replace(StrHtml, "{defineavatar_box}", StrHtml2)
if rs2("invisible") = 0 then
StrHtml2 = "<input type=""checkbox"" name=""invisible"" value=""1"">"
else
StrHtml2 = "<input type=""checkbox"" name=""invisible"" value=""1"" checked>"
end if
StrHtml = Replace(StrHtml, "{invisible_box}", StrHtml2)
if rs2("showemail") = 0 then
StrHtml2 = "<input type=""checkbox"" name=""showmail"" value=""1"" checked>"
else
StrHtml2 = "<input type=""checkbox"" name=""showmail"" value=""1"">"
end if
StrHtml = Replace(StrHtml, "{showmail_box}", StrHtml2)
avatar = rs2("avatar")
if avatar = "" then avatar = "1.gif"
StrSql = "select title, avatarpath from sf_avatar"
Set rs2 = Conn.Execute(StrSql)
StrHtml2 = "<select name=""avatar"" size=""8"" onChange=""document.images['avatarimg'].src='image/avatar/'+options[selectedIndex].value;"">"
if not(rs2.bof or rs2.eof) then
do until rs2.eof
StrHtml2 = StrHtml2 & chr(10) &"<option value=""" & rs2("avatarpath") & """"
if rs2("avatarpath") = avatar then
StrHtml2 = StrHtml2 & " selected"
avatar = rs2("avatarpath")
end if
StrHtml2 = StrHtml2 & ">" & rs2("title") & "</option>"
rs2.movenext
loop
end if
StrHtml2 = StrHtml2 & "</select>"
StrHtml2 = StrHtml2 & chr(10) & "<img id=""avatarimg"" src=""" & "image/avatar/" & avatar & """>"
StrHtml = Replace(StrHtml, "{avatar_select}", StrHtml2)
response.write StrHtml
response.write sfcopyright
end select
response.write loadtemplate("htmlbottom")
response.end
Conn.Close
Set Conn = nothing
Set rs = nothing
Set rs2 = nothing
set ip = nothing
set strip = nothing
set killip = nothing
%>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -