📄 savesmusic.asp
字号:
<!--#include file="conn.asp" -->
<!--#include file="const.asp" -->
<!--#include file="function.asp" -->
<%
MusicId=request("MusicId")
ForUser=Checkin(trim(request("ForUser")))
FromUser=Checkin(trim(request("FromUser")))
Words=request("Words")
Password=Checkin(trim(request("Password")))
founerr=false
set rs=server.createobject("adodb.recordset")
if Instr(request("Words"),"=")>0 or Instr(request("Words"),"%")>0 or Instr(request("Words"),chr(32))>0 or Instr(request("Words"),"&")>0 or Instr(request("Words"),chr(34))>0 or Instr(request("Words"),chr(9))>0 or Instr(request("Words"),"$")>0 or Instr(request("Words"),"<")>0 or Instr(request("Words"),">")>0 then
errmsg=errmsg+"<br>"+"<li>中含有非法字符,您只能使用汉字、英文字母、数字和常用标点符号!!!"
founderr=true
end if
if MusicId="" then
founderr=true
errmsg=errmsg+"<br><li>请选择歌曲</li>"
end if
if ForUser="" then
founderr=true
errmsg=errmsg+"<br><li>送给谁???</li>"
end if
if FromUser="" then
founderr=true
errmsg=errmsg+"<br><li>谁送的???</li>"
end if
if Password="" then
founderr=true
errmsg=errmsg+"<br><li>密码不能为空</li>"
end if
if Words="" then
founderr=true
errmsg=errmsg+"<br><li>密码不能为空</li>"
end if
set rs=conn.execute("SELECT UserName from user where UserName='"&ForUser&"'")
if rs.eof then
founderr=true
errmsg=errmsg+"<br><li>此人尚未注册,无法点歌给他(她)"
end if
rs.close
sql="select UserName,PassWord,logins,email from user where UserName='"&FromUser&"' and PassWord='"&Password&"'"
rs.Open sql,conn,1,3
if rs.eof then
founderr=true
errmsg=errmsg+"<br><li>用户名或密码错误!请重新登陆。"
else
if isnull(session("DJ58User")) or isnull(Session("HappyMusicPwd")) or FromUser<>session("DJ58User") or Password<>Session("HappyMusicPwd") then
rs("logins")=rs("logins")+1
session("DJ58User")=FromUser
session("HappyMusicPwd")=Password
rs.Update
end if
useremail=rs("email")
end if
rs.close
if founderr=true then
call error()
else
sql="select SMusics,points from user where UserName='"&session("DJ58User")&"'"
rs.Open sql,conn,1,3
if not rs.eof then
rs("SMusics")=rs("SMusics")+1
rs("points")=rs("points")+1
rs.Update
end if
rs.Close
set rs=conn.execute("SELECT * FROM MusicList where id="+MusicId)
MusicName=rs("MusicName")
rs.close
sql="select * from SendMusic where (id is null)"
rs.Open sql,conn,1,3
rs.AddNew
rs("FromUser")=session("DJ58User")
rs("ForUser")=ForUser
rs("MusicName")=MusicName
rs("MusicId")=MusicId
rs("Words")=Words
rs("DateAndTime")=now()
rs("IsNew")=true
rs("ip")=Request.ServerVariables("REMOTE_ADDR")
rs.Update
rs.close
%>
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=gb2312">
<title>点歌成功</title>
<STYLE>
td {font-size:9pt}
</STYLE></head>
点歌成功
</body>
</html>
<%
end if
set rs=nothing
conn.close
set conn=nothing
%>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -