Remove cp1251. Я сильно недооценивал трудолюбие неизвестного кодера.

This commit is contained in:
2023-01-10 19:26:14 +02:00
parent 008f36c094
commit b3810d2349
147 changed files with 267 additions and 1295 deletions

View File

@@ -46,7 +46,7 @@ if (isset($_POST['clan_name'])) {
$_POST['clan_align'] = 7;
}
$clan_name = substr(htmlspecialchars($_POST['clan_name'], null, 'cp1251'), 0, 30);
$clan_name = substr(htmlspecialchars($_POST['clan_name'], null), 0, 30);
$cnt = mysql_fetch_array(
mysql_query('SELECT * FROM `clan` WHERE `name` = "' . mysql_real_escape_string($clan_name) . '" LIMIT 1')
@@ -81,27 +81,28 @@ if (isset($_POST['clan_name'])) {
mysql_query(
'UPDATE `users` SET `money2` = "' . $u->info['money2'] . '" WHERE `id` = "' . $u->info['id'] . '" LIMIT 1'
);
mysql_query(
'INSERT INTO `_clan` (`uid`,`time`,`city`,`name`,`name2`,`site`,`img1`,`img2`,`info`,`money`,`align`) VALUES (
"' . $u->info['id'] . '","' . time() . '",
"' . $u->info['city'] . '",
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_name'], null, 'cp1251')) . '",
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_name'], null, 'cp1251')) . '",
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_site'], null, 'cp1251')) . '",
"' . mysql_real_escape_string(htmlspecialchars($file[1], null, 'cp1251')) . '",
"",
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_name'], null)) . '",
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_name'], null)) . '",
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_site'], null)) . '",
"' . mysql_real_escape_string(htmlspecialchars($file[1], null)) . '",
"",
"",
"' . $tr_money2 . '",
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_align'], null, 'cp1251')) . '"
"' . mysql_real_escape_string(htmlspecialchars($_POST['clan_align'], null)) . '"
)'
);
$lzv = [
'id' => mysql_insert_id(),
'name' => htmlspecialchars($_POST['clan_name'], null, 'cp1251'),
'name' => htmlspecialchars($_POST['clan_name'], null),
'time' => time(),
];
$re = 'Вы успешно подали заявку на регистрацию клана "' . htmlspecialchars(
$_POST['clan_name'], null, 'cp1251'
$_POST['clan_name'], null
) . '". (' . $tr_money2 . 'екр.)';
} else {
$re = 'Маленький значок: ' . Uploader::$error;