File size: 3.28Kb
<?
//=============================
#Version WapuS_ToP_final
#Script By: Black1992
#Email: skyangel15@inbox.lv
#Icq: 414454754
#Url: http://WaPuS.pp.Ru
//=============================
error_reporting(0);
include ("../config.php");
include ("../inc/config.inc.php");
require '../inc/functions.inc.php';
include ("../head.php");
function filtr_text($message){
//$message=str_replace("|","",$message);
$message=str_replace("||","",$message);
$message=str_replace("&","",$message);
$message=str_replace("\"","",$message);
//$message=str_replace(">","",$message);
//$message=str_replace("<","",$message);
$message=htmlspecialchars($message);
$message=str_replace("'","",$message);
$message=str_replace("\"","",$message);
$message=str_replace("\$","",$message);
$message=str_replace("$","",$message);
$message=str_replace("\\","", $message);
$message=str_replace("`","", $message);
$message=str_replace("%","", $message);
$message=stripslashes(trim($message));
return $message;
}
if (isset($_GET['login'])) {$login = $_GET['login']; }
if (isset($_GET['p'])) {$p = $_GET['p']; }
admin_auth();
if(!$AUTH){
header("Location: index.php");
echo"<div class=\"rek3\">Пароль неверный! <a href=\"" . $rating_url. "admin/index.php\">$rating_name</a> </div>";
echo "
<div class=\"news\">
<a href=\"" . $rating_url. "index.php\">$rating_name</a>
<img src=\"./../img/gt.gif\" alt=\">\" />Реклама
</div>
";
include("./../foot_code.php");
exit;
}
if(!isset($_GET['p'])){
$title='Ошибка Пароля';
include_once("../head.php");
echo '<div class="rek3">Пароль неверный! <a href=\"" . $rating_url. "admin/index.php\">$rating_name</a><br>
«<a href="index.php?login='.$login.'&p='.$truepass.'">В админку</a></div>';
include_once("../foot_code.php");
exit; }
if (isset($_GET["id"])) {$id = $_GET["id"];}
if (!isset($id))
{
$result = mysql_query("SELECT title, id FROM recl");
$myrow = mysql_fetch_array ($result);
echo "<div class='main'>Выберите рекламу для изманения<br/></div>";
do
{
printf ("<div class='rek3'><a href='edit_recl.php?id=%s&login=%s&p=%s'>%s</a></div>", $myrow["id"], $login, $p, $myrow["title"]);
}
while ($myrow = mysql_fetch_array ($result));
}
else
{
$result = mysql_query("SELECT * FROM recl WHERE id=$id");
$myrow = mysql_fetch_array ($result);
echo "<div class='main'>Редактирование рекламы</div><div class='rek3'>";
print <<<HERE
<form name='form1' method='post' action='update_recl.php?login=$login&p=$p'>
<label>Название рекламы<br>
<input type="text" name="title" id="title" value=" $myrow[title]">
</label>
<br/>
<label>Ссылка (url) <br>
<input type="text" name="link" value="$myrow[link]">
</label>
<br/>
<input name="id" type="hidden" value="$myrow[id]">
<label>
<input type="submit" name="submit" id="submit" value="Сохранить">
</label>
<br/></div>
</form>
HERE;
}
//Footer
echo "
<div class=\"news\">
<a href=\"" . $rating_url. "index.php\">$rating_name</a>
<img src=\"./../img/gt.gif\" alt=\">\" />Реклама
</div>
";
include("./../foot_code.php");
?>