include('include\incl.php'); unset($login); $login = $_SESSION["cupbot"]; if ($login && $_GET[download] == 'beta') { $fil = './filer/m910qCupbot.exe'; header('Content-Type: application/octet-stream'); header('Content-Disposition: attachment; filename="m910qCupbot BETA.exe"'); header("Content-Transfer-Encoding: binary"); readfile($fil); exit; } fixposts(); if ($_GET[logout]) { session_unregister($_SESSION["cupbot"]); unset($_SESSION["cupbot"]); unset($login); } if ($_POST[navn] && $_POST[kode]) { unset($id); $resultat = mysql_query("SELECT id FROM users WHERE name='$_POST[navn]' AND pass='$_POST[kode]'"); while ($raekke = mysql_fetch_array($resultat)) { extract($raekke); } if ($id) { $_SESSION["cupbot"] = $id; $login = $id; }else{ $fejllogin = 'Forkert bruger eller kode.'; } } ?>
if ($login) { unset($fejl); if ($_POST[tekst]) { mysql_query("UPDATE users SET tekst='$_POST[tekst]' WHERE id='$login'"); } if ($_POST[botname]) { $regex = 0; if (!ereg("^[a-zA-Z0-9_|^{}`´-]{2,15}$", str_replace('/', '', str_replace('[', '', str_replace(']', '', $_POST[botname]))))) { $regex = 1; } if (!ereg("^[a-zA-Z]{1}$", substr($_POST[botname], 0, 1))) { $regex = 1; } if (!$regex) { mysql_query("UPDATE users SET botname='$_POST[botname]' WHERE id='$login'"); }else{ $fejl[botname] = 'Botname must contain only characters -_[]{}\|`^. The nickname can\'t begin with a digit or a hyphen.'; } } if (isset($_POST[authname]) || isset($_POST[authpass])) { $sql_authname = fix($_POST[authname]); $sql_authpass = fix($_POST[authpass]); mysql_query("UPDATE users SET authname='$sql_authname', authpass='$sql_authpass' WHERE id='$login'"); } $resultat = mysql_query("SELECT name, chan, tekst, botname, authname, authpass FROM users WHERE id='$login' LIMIT 1"); while ($raekke = mysql_fetch_array($resultat)) { extract($raekke); } $tekst = htmlspecialchars($tekst, ENT_NOQUOTES); echo' "; }else{ ?> |