View file xmyx.ru/files/groups/php/zakrep.php

File size: 1.59Kb
<?

if (isset($_SERVER['HTTP_X_REQUESTED_WITH']) && !empty($_SERVER['HTTP_X_REQUESTED_WITH']) && strtolower($_SERVER['HTTP_X_REQUESTED_WITH']) == 'xmlhttprequest')
{
    define("H", $_SERVER["DOCUMENT_ROOT"].'/');
    include_once H.'sys/inc/start.php';
    include_once H.'sys/inc/compress.php';
    include_once H.'sys/inc/sess.php';
    include_once H.'sys/inc/settings.php';
    include_once H.'sys/inc/db_connect.php';
    include_once H.'sys/inc/ipua.php';
    include_once H.'sys/inc/fnc.php';
    include_once H.'sys/inc/user.php';
    
    require H.'club/config.php';
    
    if (isset($_GET['id']))
    {
        $post = mysql_fetch_assoc(mysql_query("SELECT * FROM `groups_wall` WHERE `id` = '".abs(intval($_GET['id']))."' LIMIT 1"));
    }
    if (isset($_GET['id']) && isset($post) && $post['id'] > 0 && isset($user) && ($user['id'] == $post['id_user'] || $user['level'] >= 4))
    {
        if ($post['zakrep'] == 0)
        {
            mysql_query("UPDATE `groups_wall` SET `zakrep` = '0' WHERE `id_group` = '".$post['id_group']."'");
	    mysql_query("UPDATE `groups_wall` SET `zakrep` = '1' WHERE `id` = '$post[id]' AND `id_group` = '".$post['id_group']."' LIMIT 1");
            ?>
            Открепить
            <?
        } else {
            mysql_query("UPDATE `groups_wall` SET `zakrep` = '0' WHERE `id_group` = '".$post['id_group']."'");
            ?>
            Закрепить
            <?
        }
    }else {
            
            ?>
            Ошибка
            <?
    }
} else {
    exit("<center>А вот хрен тебе ,.!..<br />by Tw1nGo</center>");
}
?>