📄 message.asp
字号:
<meta http-equiv="Content-Type" content="text/html; charset=gb2312">
<% data_path="../../" 'ACC连接数据库路径,对SQL无效 %>
<!--#include file="../../conn/conn.asp"-->
<!--#include file="../../inc/safe.asp"-->
<!--#include file="../checkrole.asp"-->
<%
call checkuser("ly")
if Not ChkPost then
response.write "<script language='javascript'>"
response.write"parent.location.href='"&HOPE_InstallDir&"login/login1.asp';</SCRIPT>"
response.end
end if
Sub GetSafeCode
Dim test,Result
on error resume next
Set test=Server.CreateObject("Adodb.Stream")
Set test=Nothing
If Err Then
Dim zNum
Randomize timer
zNum = cint(8999*Rnd+1000)
Session("SafeCode") = zNum
Result = Session("SafeCode")
Else
Result = "<img src=""../../inc/Safecode.asp"" align=""absmiddle"" align=""absmiddle"">"
End If
Response.Write Result
End Sub
%>
<script Language="JavaScript">
function check()
{
if (trim(form1.messageTitle.value)=="") {
alert("主题不能为空!");
form1.messageTitle.focus();
return (false);
}
if (trim(form1.messageContent.value)=="") {
alert("主要内容不能为空!");
form1.messageContent.focus();
return (false);
}
else
document.form1.submit();
}
//-->
function trim(inputString) {
if (typeof inputString != "string") { return inputString; }
var retValue = inputString;
var ch = retValue.substring(0, 1);
while (ch == " ") {
//检查字符串开始部分的空格
retValue = retValue.substring(1, retValue.length);
ch = retValue.substring(0, 1);
}
ch = retValue.substring(retValue.length-1, retValue.length);
while (ch == " ") {
//检查字符串结束部分的空格
retValue = retValue.substring(0, retValue.length-1);
ch = retValue.substring(retValue.length-1, retValue.length);
}
while (retValue.indexOf(" ") != -1) {
//将文字中间多个相连的空格变为一个空格
retValue = retValue.substring(0, retValue.indexOf(" ")) + retValue.substring(retValue.indexOf(" ")+1, retValue.length);
}
return retValue;
}
//-->
</script>
<%
year_now = year(date())
month_now = month(date())
day_now = day(date())
dim sql
dim rs
dim info_id
info_id=Replace_Text(request("info_id"))
Verifycode=Replace_Text(request("Verifycode"))
title=Replace_Text(request.form("messageTitle"))
content=Replace_Text(request.form("messageContent"))
needtrust=Replace_Text(request.form("needtrust"))
sendemail=Replace_Text(request.form("sendemail"))
saveSendMessage=Replace_Text(request.form("saveSendMessage"))
sendContact=Replace_Text(request.form("sendContact"))
checkdate=Replace_Text(request.form("checkdate"))
start_year=Replace_Text(request.form("start_year"))
start_month=Replace_Text(request.form("start_month"))
start_day=Replace_Text(request.form("start_day"))
requestinfo=Replace_Text(request.form("requestinfo"))
mycid=Replace_Text(request.form("mycid"))
gogo=request("gogo")
if gogo<>"" then
if not isnumeric(Verifycode) then
response.Write("<script language=javascript>alert('请输入正确的验证码!');history.back(-1);</script>")
response.End()
end if
if clng(Verifycode)<>Session("SafeCode") then
response.Write("<script language=javascript>alert('请输入正确的验证码!');history.back(-1);</script>")
response.End()
end if
if saveSendMessage<>"" then
set rs1=server.createobject("adodb.recordset")
sql1="select * from Yixiang_getprice1 where (id is null)"
rs1.open sql1,conn,1,3
rs1.addnew
rs1("title")=title
rs1("content")=content
if sendemail<>"" then
rs1("sendemail")=1
end if
if needtrust<>"" then
rs1("needtrust")=1
end if
if sendContact<>"" then
rs1("sendcontact")=1
end if
if checkdate<>"" then
rs1("checkdate")=1
rs1("limitedtime")=start_year&"年"&start_month&"月"&start_day
end if
rs1("requestinfo")=requestinfo
rs1("mycid")=mycid
rs1("sendcid")=session("id")
rs1("datetime")=now()
rs1.update
end if
set rs=server.createobject("adodb.recordset")
sql="select * from Yixiang_getprice where (id is null)"
rs.open sql,conn,1,3
rs.addnew
rs("title")=title
rs("content")=content
if sendemail<>"" then
rs("sendemail")=1
end if
if needtrust<>"" then
rs("needtrust")=1
end if
if sendContact<>"" then
rs("sendcontact")=1
end if
if checkdate<>"" then
rs("checkdate")=1
rs("limitedtime")=start_year&"年"&start_month&"月"&start_day
end if
rs("requestinfo")=requestinfo
rs("mycid")=mycid
rs("sendcid")=session("id")
rs("datetime")=now()
if saveSendMessage<>"" then
rs("getprice1id")=rs1("id")
rs1.close
set rs1=nothing
end if
rs.update
response.Write("<script language=javascript>alert('消息发送成功!');window.close();</script>")
response.End()
rs.close
set rs=nothing
end if
'----------------------------------------------------------
%><!--#include file="head.asp"-->
<%
sql="select Yixiang_info.*,wygkcn_corporation.* from Yixiang_Info,wygkcn_corporation where Yixiang_info.info_id="&info_id&" and wygkcn_corporation.id=Yixiang_info.gsid and wygkcn_corporation.flag=1"
Set rs= Server.CreateObject("ADODB.Recordset")
rs.open sql,conn,1,1
if rs.eof then
response.Write("<script language=javascript>alert('对不起,没有您要查询的信息 !');history.back(-1);</script>")
response.End()
else
gsid=rs("gsid")
if gsid=session("id") then
response.write"<SCRIPT language=JavaScript>alert('请不要向自己询价!');"
response.write"javascript:window.close();</ script>"
response.end
end if
set rsblak=conn.execute("select id from Yixiang_memberRelation where [user]='"&rs("user")&"' and secuser='"&session("user")&"' and relation=-1")
'关系是-1就黑名单关系不能询价
if not (rsblak.eof and rsblak.bof) then
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -