<?php
header('content-Type:text/html;charset=UTF-8');
function _post($str,$de=''){
return isset($_POST[$str])?htmlspecialchars(trim($_POST[$str]),ENT_QUOTES):$de;
}
$id=_post('hidden_id');
$password=_post('source');
$tel= _post("info");
$email=_post('content');
function preg($num1,$num2,$num3){
$num1 = !preg_match($num2, $num1)?
exit($num3):htmlspecialchars(trim($num1));
}
if(!empty($password)){
preg($password,"/^[a-zA-Z][a-zA-Z0-9_!@#]{5,9}$/","你起个密码太费劲了。首个要字母,长度6-10.");
}
preg($tel,"/^(13[0-9]|14[57]|15[0-9]|18[0-9])\d{8}$/","你确定这号打得通?");
preg($email,'/^\w+([+-.]\w+)*@\w+([-.]\w+)*\.\w+([-.]\w+)*$/',"连个邮箱都不好好写");
$conn=@mysql_connect('localhost','root','');
$db=mysql_select_db('myitem',$conn);
mysql_query('set names utf8',$conn);
mysql_query('SET character_set_client=binary',$conn);
if(!empty($password)){
$sql="UPDATE reg SET password=MD5('$password'),tel='$tel',email='$email' WHERE id='$id'";
}else{
$sql="UPDATE reg SET tel='$tel',email='$email' WHERE id='$id'";
}
mysql_query($sql,$conn);
if(mysql_affected_rows()>0){
$_SESSION['one']=1;
header('location:../after_end/userlist.php');
}else{
$_SESSION['one']=0;
header('location:../after_end/userlist.php');
}
header('content-Type:text/html;charset=UTF-8');
function _post($str,$de=''){
return isset($_POST[$str])?htmlspecialchars(trim($_POST[$str]),ENT_QUOTES):$de;
}
$id=_post('hidden_id');
$password=_post('source');
$tel= _post("info");
$email=_post('content');
function preg($num1,$num2,$num3){
$num1 = !preg_match($num2, $num1)?
exit($num3):htmlspecialchars(trim($num1));
}
if(!empty($password)){
preg($password,"/^[a-zA-Z][a-zA-Z0-9_!@#]{5,9}$/","你起个密码太费劲了。首个要字母,长度6-10.");
}
preg($tel,"/^(13[0-9]|14[57]|15[0-9]|18[0-9])\d{8}$/","你确定这号打得通?");
preg($email,'/^\w+([+-.]\w+)*@\w+([-.]\w+)*\.\w+([-.]\w+)*$/',"连个邮箱都不好好写");
$conn=@mysql_connect('localhost','root','');
$db=mysql_select_db('myitem',$conn);
mysql_query('set names utf8',$conn);
mysql_query('SET character_set_client=binary',$conn);
if(!empty($password)){
$sql="UPDATE reg SET password=MD5('$password'),tel='$tel',email='$email' WHERE id='$id'";
}else{
$sql="UPDATE reg SET tel='$tel',email='$email' WHERE id='$id'";
}
mysql_query($sql,$conn);
if(mysql_affected_rows()>0){
$_SESSION['one']=1;
header('location:../after_end/userlist.php');
}else{
$_SESSION['one']=0;
header('location:../after_end/userlist.php');
}