File size: 2.71Kb
<html>
<title>BaN PaNeL</title>
<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd">
<link rel="shortcut icon" href="pics/do.jpg" type="image/x-icon"/>
<link href="../theme/style.css" rel="stylesheet" type="text/css" />
<?php include "../inc/def.php"; ?>
<?
$user=secureget('user');
$appeal=secure('appeal');
$reason=secure('reason');
$act=secureget('act');
$hammad = mysql_query("SELECT * FROM users WHERE user='$user'");
$khan = mysql_fetch_array($hammad);
if ($act=="approve")
{
mysql_query('DELETE FROM bans WHERE username="'.$user.'"');
echo '<div class="blk">'.$user.' Ban successfully removed</div>';
echo '<div class="menu">He can now use Services again</div>';
include "../inc/footer.php";
die();
}
if ($act=="reject")
{
echo '<div class="phdr">Rejecting Users Appeal</div>';
echo'<div class="line">Write Rejection Reason</div>
<form action="?act=rejected&user='.$user.'" method="post">
Message: <input type="text" name="appeal" /><br>
<input type="submit" value="Reject appeal" />
</form>';
include "../inc/footer.php";
die();
}
if ($act=="rejected")
{
echo '<div class="phdr">Rejected Users Appeal</div>';
echo '<div class="menu">DonE</div>';
mysql_query('UPDATE bans SET appeal_rep = "'.$appeal.'"
WHERE username = "'.$user.'"');
include "../inc/footer.php";
die();
}
if ($act=="addban")
{
echo '<div class="phdr">'.$user.' Banned</div>';
echo '<div class="menu">DonE He will not able to use services</div>';
mysql_query('INSERT INTO bans (user, username, reason)
VALUES ("'.$khan['id'].'", "'.$user.'", "'.$reason.'")');
mysql_query('DELETE FROM comp WHERE uid="'.$khan['id'].'"');
echo '<div class="blk">'.$user.' Ban successfully removed</div>';
include "../inc/footer.php";
die();
}
echo '<div class="blk">BaN PaNeL</div>';
echo '<div class="blk">UnBaN appeals</div>';
$result = mysql_query('SELECT * FROM bans WHERE appeal_rep="" AND appeal!="" ');
while ($row = mysql_fetch_array($result, MYSQL_ASSOC)) {
echo '<div class="phdr"><b><a href="profile.php?user='.$row['username'].'">'.$row['username'].'</a></b></div>
<div class="lgn">appeal : '.$row['appeal'].' ...<b>Action</b>: <a href="?act=approve&user='.$row['username'].'">Remove BaN</a> | <a href="?act=reject&user='.$row['username'].'">Reject</a></div>';
}
echo '<div class="blk">All banned Users</div>';
$wolf = mysql_query('SELECT * FROM bans');
while ($row = mysql_fetch_array($wolf, MYSQL_ASSOC)) {
echo '<div class="phdr"><b><a href="profile.php?user='.$row['username'].'">'.$row['username'].'</a></b></div>
<div class="lgn"><b>Action</b>: <a href="?act=approve&user='.$row['username'].'">Remove BaN</a> | <a href="?act=reject&user='.$row['username'].'">Reject</a></div>';
}
include "../inc/footer.php";
?>