update.php
来自「通达OA2007SE源代码 非常好的」· PHP 代码 · 共 137 行
PHP
137 行
<?
include_once 'inc/auth.php';
include_once 'inc/utility_all.php';
include_once 'inc/check_type.php';
echo '
<html>
<head>
<title>修改用户</title>
<meta http-equiv="Content-Type" content="text/html; charset=gb2312">
</head>
<body class="bodycolor" topmargin="5">
';
if ((($BIND_IP != '') AND !is_ip ($BIND_IP)))
{
message ('', 'IP地址无效');
button_back ();
exit ();
}
if (($USER_ID == 'admin'))
{
$USER_PRIV = 1;
$POST_PRIV = 1;
}
if ((strstr ($BYNAME, '\\\'') != false))
{
message ('错误', '别名中含有非法字符');
button_back ();
exit ();
}
if ((($BIRTHDAY != '') AND !is_date ($BIRTHDAY)))
{
message ('错误', ('生日格式不合法,应形如:'.date ('Y-m-d', time ())));
button_back ();
exit ();
}
if (($BYNAME == $USER_ID))
{
message ('错误', '用户名和别名不能相同');
button_back ();
exit ();
}
if (($BYNAME != ''))
{
$query = (((((((''.'select * from USER where USER_ID!=\'').$USER_ID).'\' and BYNAME=\'').$BYNAME).'\' or USER_ID=\'').$BYNAME).'\'');
$cursor = exequery ($connection, $query);
if ($ROW = mysql_fetch_array ($cursor))
{
message ('错误', (('用户名或别名 '.$BYNAME).' 已存在'));
button_back ();
exit ();
}
}
if (($USER_NO == ''))
{
$USER_NO = 10;
}
if (!is_number ($USER_NO))
{
message ('错误', '用户排序号应为数字');
button_back ();
exit ();
}
if (($NOT_LOGIN == 'on'))
{
$NOT_LOGIN = 1;
}
else
{
$NOT_LOGIN = 0;
}
if (($NOT_VIEW_USER == 'on'))
{
$NOT_VIEW_USER = 1;
}
else
{
$NOT_VIEW_USER = 0;
}
if (($NOT_VIEW_TABLE == 'on'))
{
$NOT_VIEW_TABLE = 1;
}
else
{
$NOT_VIEW_TABLE = 0;
}
if (($MOBIL_NO_HIDDEN == 'on'))
{
$MOBIL_NO_HIDDEN = '1';
}
else
{
$MOBIL_NO_HIDDEN = '0';
}
if (($USEING_KEY == 'on'))
{
$USEING_KEY = 1;
}
else
{
$USEING_KEY = 0;
}
$EMAIL_CAPACITY = intval ($EMAIL_CAPACITY);
$FOLDER_CAPACITY = intval ($FOLDER_CAPACITY);
if ((($EMAIL_CAPACITY != '') AND (!is_int ($EMAIL_CAPACITY) OR ($EMAIL_CAPACITY < 0))))
{
message ('错误', '内部邮箱容量应为整数!');
button_back ();
exit ();
}
if ((($FOLDER_CAPACITY != '') AND (!is_int ($FOLDER_CAPACITY) OR ($FOLDER_CAPACITY < 0))))
{
message ('错误', '个人文件柜容量应为整数!');
button_back ();
exit ();
}
$query = (((((((((((((((((((((((((((((((((((((((((((((((''.'update USER set USER_NAME=\'').$USER_NAME).'\',SEX=\'').$SEX).'\',DEPT_ID=').$DEPT_ID).',DUTY_TYPE=').$DUTY_TYPE).',USER_PRIV=\'').$USER_PRIV).'\',POST_PRIV=\'').$POST_PRIV).'\',POST_DEPT=\'').$TO_ID).'\',CANBROADCAST=\'').$CANBROADCAST).'\',EMAIL_CAPACITY=').$EMAIL_CAPACITY).',FOLDER_CAPACITY=').$FOLDER_CAPACITY).',USER_PRIV_OTHER=\'').$PRIV_ID).'\',USER_NO=').$USER_NO).',NOT_LOGIN=\'').$NOT_LOGIN).'\',NOT_VIEW_USER=\'').$NOT_VIEW_USER).'\',NOT_VIEW_TABLE=\'').$NOT_VIEW_TABLE).'\',BYNAME=\'').$BYNAME).'\',BIRTHDAY=\'').$BIRTHDAY).'\',THEME=\'').$THEME).'\',MOBIL_NO=\'').$MOBIL_NO).'\',MOBIL_NO_HIDDEN=\'').$MOBIL_NO_HIDDEN).'\',BIND_IP=\'').$BIND_IP).'\',USEING_KEY=\'').$USEING_KEY).'\' where USER_ID=\'').$USER_ID).'\'');
exequery ($connection, $query);
add_log (7, $USER_ID, $LOGIN_USER_ID);
echo '<s';
echo 'cript>
';
if (($DEPT_ID != $DEPT_ID1))
{
echo 'parent.user_list.location.reload();
';
}
echo '
location="user_new.php?DEPT_ID=';
echo $DEPT_ID1;
echo '";
</script>
</body>
</html>
';
?>
⌨️ 快捷键说明
复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?