HEX
Server: Apache/2.4.59 (Debian)
System: Linux skycube.cz 4.19.0-25-amd64 #1 SMP Debian 4.19.289-2 (2023-08-08) x86_64
User: ilya (534)
PHP: 7.3.31-1~deb10u7
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,
Upload Files
File: /var/www/ilya/data/www/afish-ka.ru/admin/modules/firms/comments.inc
<?

//- Настройки модуля -----------------------------------------------------------
permission("mcp"); // tcp-техники; acp-админы; mcp-модеры; cp-рядовые участники
$skin_pname = "Отзывы посетителей на заведение";
$temp_html="";
//------------------------------------------------------------------------------

if(isset($_GET['delete'])) {
	$result = query("SELECT * FROM `opinions` WHERE `id`='".$_GET['delete']."'");

	if(mysql_num_rows($result)==1) {
		$data = mysql_fetch_array($result);

		cache_delete(array("opinions_actions"),$data['fid'].".html");
			
		query("DELETE FROM `opinions` WHERE `id`='".$_GET['delete']."'");
		header("Location: ./?m=".$_GET['m']."&task=comments&id=".$data['fid']);
	}
	else {
		header("Location: ./?m=".$_GET['m']."&task=list");
	}
}

$result = query("SELECT * FROM `firms` WHERE `id`=".$_GET['id'].";");

if(mysql_num_rows($result)!=1)
	header("Location: ./?m=".$_GET['m']."&task=list");
else {
	$firm = mysql_fetch_array($result);
	$skin_pname = "Отзывы посетителей на заведение &laquo;<a href=\"./?m=".$_GET['m']."&task=edit&id=".$_GET['id']."\">".$firm['title']."</a>&raquo;";
	$result = query("SELECT * FROM `opinions` WHERE `fid`='".$_GET['id']."';");
	
	if(mysql_num_rows($result)==0)
		$temp_html = "<p>Отзывов на заведение &laquo;".$firm['title']."&raquo; нет</p>";
	else {
		$list_opinions = "";
		while($data=mysql_fetch_array($result)) {
			$id = $data['id'];
			$author = $data['author'];
			$datetime = $data['datetime'];
			$text = $data['text'];
			
			$list_opinions .= preg_replace("/{%(\w+)%}/ee", "$\\1",skin_html("firms_comment.htm",0));     
		}
	}
}
	
$temp_html .= $list_opinions;

skin_html_design($temp_html);

?>