diff --git a/admin/admin.php b/admin/admin.php index 3e65d53..9265a12 100644 --- a/admin/admin.php +++ b/admin/admin.php @@ -7,7 +7,8 @@ session_start(); //require_once '../functions.php'; -if (empty($user['admin'])) { +$user = new User($_SESSION['uid']); +if (!$user->admin) { header("HTTP/1.0 404 Not Found"); exit; } @@ -63,21 +64,6 @@ if ($_POST['ali']) { //Что делает эта штука? db::c()->query('INSERT INTO `aligns` (`align`,`img`,`name`,`accses`) VALUES ("?s","?s","?s","?s") ON DUPLICATE KEY UPDATE `img` = "?s", `name` = "?s", `accses` = "?s"', $_POST['ali'], $_POST['im'], $_POST['txt'], imp($accs), $_POST['im'], $_POST['txt'], imp($accs)); } -if ($_POST['sbr_par']) { - $sb_pers = db::c()->query('SELECT `id`, `nextup`, `level` FROM `users` WHERE `login` = "?s" LIMIT 1', $_POST['sbr_par'])->fetch_assoc_array(); - undressall($sb_pers['id']); - $levelstats = statsat($sb_pers['nextup']); - //Ох боюсь я за этот запрос! - db::c()->query(' - UPDATE `users` - SET `stats` = ?i, `sila` = ?i, `lovk` = ?i, `inta` = ?i, `intel` = ?i, `vinos` = ?i, - `maxhp` = ?i, `master` = ?i, `noj` = ?i, `mec` = ?i, `topor` = ?i, `dubina` = ?i, - `mlight` = ?i, `mgray` = ?i, `mdark` = ?i - WHERE `id` = ?i', - ($levelstats['stats'] - 9), 3, 3, 3, 0, $levelstats['vinos'], ($levelstats['vinos'] * 6), $levelstats['master'], 0, 0, 0, 0, 0, 0, 0, $sb_pers['id']); - echo "Все прошло удачно. Персонаж может перераспределить параметры."; -} - $aligns = db::c()->query('SELECT `img`,`align`,`name` FROM `aligns` ORDER BY `align`'); ?> @@ -247,10 +233,6 @@ $aligns = db::c()->query('SELECT `img`,`align`,`name` FROM `aligns` ORDER BY `al -
- Сброс параметров персонажа -
-
Добавить вещь