|
From: Paul S. O. <ps...@us...> - 2001-12-21 16:00:44
|
Update of /cvsroot/phpbb/phpBB2/includes
In directory usw-pr-cvs1:/tmp/cvs-serv9770/includes
Modified Files:
functions.php
Log Message:
More \' updates
Index: functions.php
===================================================================
RCS file: /cvsroot/phpbb/phpBB2/includes/functions.php,v
retrieving revision 1.96
retrieving revision 1.97
diff -C2 -r1.96 -r1.97
*** functions.php 2001/12/19 16:07:31 1.96
--- functions.php 2001/12/21 16:00:41 1.97
***************
*** 100,104 ****
$sql = "SELECT *
FROM " . USERS_TABLE . "
! WHERE username = '$username'
AND user_id <> " . ANONYMOUS;
if(!$result = $db->sql_query($sql))
--- 100,104 ----
$sql = "SELECT *
FROM " . USERS_TABLE . "
! WHERE username = '" . str_replace("\'", "''", $username) . "'
AND user_id <> " . ANONYMOUS;
if(!$result = $db->sql_query($sql))
***************
*** 331,335 ****
$template_name = $row['template_name'] ;
! $template = new Template($phpbb_root_path . $template_path . $template_name, $db);
if( $template )
--- 331,335 ----
$template_name = $row['template_name'] ;
! $template = new Template($phpbb_root_path . $template_path . $template_name, $board_config, $db);
if( $template )
***************
*** 391,403 ****
//
- // Create a GMT timestamp
- //
- function get_gmt_ts()
- {
- $time = @time();
- return($time);
- }
-
- //
// Pagination routine, generates
// page number sequence
--- 391,394 ----
***************
*** 516,524 ****
WHERE ug.user_id = u.user_id
AND g.group_id = ug.group_id
! AND ( LOWER(u.username) = '" . strtolower($username) . "'
! OR LOWER(g.group_name) = '" . strtolower($username) . "' )";
$sql_disallow = "SELECT disallow_username
FROM " . DISALLOW_TABLE . "
! WHERE '$username' LIKE disallow_username";
if($result = $db->sql_query($sql_users))
{
--- 507,515 ----
WHERE ug.user_id = u.user_id
AND g.group_id = ug.group_id
! AND ( LOWER(u.username) = '" . strtolower(str_replace("\'", "''", $username)) . "'
! OR LOWER(g.group_name) = '" . strtolower(str_replace("\'", "''", $username)) . "' )";
$sql_disallow = "SELECT disallow_username
FROM " . DISALLOW_TABLE . "
! WHERE '" . str_replace("\'", "''", $username) . "' LIKE disallow_username";
if($result = $db->sql_query($sql_users))
{
***************
*** 542,551 ****
WHERE ug.user_id = u.user_id
AND g.group_id = ug.group_id
! AND ( LOWER(u.username) = '" . strtolower($username) . "'
! OR LOWER(g.group_name) = '" . strtolower($username) . "' )
UNION
SELECT disallow_username, NULL
FROM " . DISALLOW_TABLE . "
! WHERE '$username' LIKE disallow_username";
if($result = $db->sql_query($sql))
{
--- 533,542 ----
WHERE ug.user_id = u.user_id
AND g.group_id = ug.group_id
! AND ( LOWER(u.username) = '" . strtolower(str_replace("\'", "''", $username)) . "'
! OR LOWER(g.group_name) = '" . strtolower(str_replace("\'", "''", $username)) . "' )
UNION
SELECT disallow_username, NULL
FROM " . DISALLOW_TABLE . "
! WHERE '" . str_replace("\'", "''", $username) . "' LIKE disallow_username";
if($result = $db->sql_query($sql))
{
***************
*** 929,933 ****
$sql = "SELECT username
FROM " . USERS_TABLE . "
! WHERE username LIKE '$username_search'
ORDER BY username";
if( !$result = $db->sql_query($sql) )
--- 920,924 ----
$sql = "SELECT username
FROM " . USERS_TABLE . "
! WHERE username LIKE '" . str_replace("\'", "''", $username_search) . "'
ORDER BY username";
if( !$result = $db->sql_query($sql) )
***************
*** 1211,1213 ****
}
! ?>
--- 1202,1204 ----
}
! ?>
\ No newline at end of file
|