Файл: who_rating.php
Строк: 154
<?
include_once 'sys/includes/start.php';
include_once 'sys/includes/compress.php';
include_once 'sys/includes/sess.php';
include_once 'sys/includes/home.php';
include_once 'sys/includes/settings.php';
include_once 'sys/includes/db_connect.php';
include_once 'sys/includes/ipua.php';
include_once 'sys/includes/fnc.php';
include_once 'sys/includes/user.php';
if (isset($user))
{
$ank['id']=$user['id'];
}
if (isset($_GET['id']))
{
$ank['id']=intval($_GET['id']);
}
$ank=get_user($ank['id']);
if (!$ank)
{
header("Location: /index.php?".SID);
exit;
}
$set['title']=$ank['nick'].' - отзывы ';
include_once 'sys/includes/header.php';
title();
auter();
if ((!isset($_SESSION['refer']) || $_SESSION['refer']==NULL) && isset($_SERVER['HTTP_REFERER']) && $_SERVER['HTTP_REFERER']!=NULL && !preg_match('#info.php#',$_SERVER['HTTP_REFERER']))
{
$_SESSION['refer']=str_replace('&','&',preg_replace('#^http://[^/]*/#','/', $_SERVER['HTTP_REFERER']));
}
if (isset($_POST['rating']) && isset($user) && isset($_POST['msg']) && $user['id']!=$ank['id'] && $user['balls']>=50 && mysql_result(mysql_query("SELECT SUM(`rating`) FROM `user_voice2` WHERE `id_kont` = '$user[id]'"),0)>=0)
{
$msg=mysql_real_escape_string($_POST['msg']);
if (strlen($msg)<3)
{
$err='Короткий Отзыв';
}
if (strlen($msg)>1024)
{
$err='Длиный Отзыв';
}
else if (mysql_result(mysql_query("SELECT COUNT(*) FROM `user_voice2` WHERE `id_user` = '$user[id]' AND `msg` = '".my_esc($msg)."' LIMIT 1"),0)!=0)
{
$err='Ваш отзыв повторяется';
}
if (!isset($err))
{
$new_r=min(max(@intval($_POST['rating']),-2),2);
mysql_query("DELETE FROM `user_voice2` WHERE `id_user` = '$user[id]' AND `id_kont` = '$ank[id]' LIMIT 1");
if ($new_r)
{
mysql_query("INSERT INTO `user_voice2` (`rating`, `id_user`, `id_kont`, `msg`, `time`) VALUES ('$new_r','$user[id]','$ank[id]', '$msg', '$time')");
}
$ank['rating']=intval(mysql_result(mysql_query("SELECT SUM(`rating`) FROM `user_voice2` WHERE `id_kont` = '$ank[id]'"),0));
mysql_query("UPDATE `user` SET `rating` = '$ank[rating]' WHERE `id` = '$ank[id]' LIMIT 1");
if ($new_r>0)
{
mysql_query("INSERT INTO `mail` (`id_user`, `id_kont`, `msg`, `time`) values('0', '$ank[id]', '$user[nick] оставил о Вас [url=/who_rating.php]положительный отзыв[/url]', '$time')");
}
if ($new_r<0)
{
mysql_query("INSERT INTO `mail` (`id_user`, `id_kont`, `msg`, `time`) values('0', '$ank[id]', '$user[nick] оставил о Вас [url=/who_rating.php]негативный отзыв[/url]', '$time')");
}
if ($new_r==0)
{
mysql_query("INSERT INTO `mail` (`id_user`, `id_kont`, `msg`, `time`) values('0', '$ank[id]', '$user[nick] оставил о Вас [url=/who_rating.php]нейтральный отзыв[/url]', '$time')");
}
msg('Ваше мнение о пользователе успешно изменено');
}
}
err();
if (isset($user))
{
$ank['id']=$user['id'];
}
if (isset($_GET['id']))
{
$ank['id']=intval($_GET['id']);
}
if (isset($user) && $user['id']!=$ank['id'] && $user['balls']>=50 && mysql_result(mysql_query("SELECT SUM(`rating`) FROM `user_voice2` WHERE `id_kont` = '$user[id]'"),0)>=0)
{
$my_r=intval(@mysql_result(mysql_query("SELECT `rating` FROM `user_voice2` WHERE `id_user` = '$user[id]' AND `id_kont` = '$ank[id]'"),0));
echo "<form method='post' action='?id=$ank[id]&$passgen'>";
echo "<div class='forum_tema'>";
echo "<b>Ваше отношение:</b><br />";
echo "<select name='rating'>";
echo "<option value='2' ".($my_r==2?'selected="selected"':null).">Замечательное</option>";
echo "<option value='1' ".($my_r==1?'selected="selected"':null).">Положительное</option>";
echo "<option value='0' ".($my_r==0?'selected="selected"':null).">Нейтральное</option>";
echo "<option value='-1' ".($my_r==-1?'selected="selected"':null).">Не очень...</option>";
echo "<option value='-2' ".($my_r==-2?'selected="selected"':null).">Негативное</option>";
echo "</select><br />";
echo "</div>";
echo "<div class='forum_tema'>";
echo "Текст: <br />";
echo "<textarea name='msg'></textarea><br />";
echo "</div>";
echo "<div class='forum_tema'>";
echo "<input type='submit' value='Оставить отзыв' />";
echo "</div>";
echo "</form>";
}
$k_post=mysql_result(mysql_query("SELECT COUNT(*) FROM `user_voice2` WHERE `id_kont` = '$ank[id]'"),0);
$k_page=k_page($k_post,$set['p_str']);
$page=page($k_page);
$start=$set['p_str']*$page-$set['p_str'];
if ($k_post==0)
{
echo "<table style='width:100%' cellspacing='1' cellpadding='1'><tr>";
echo "<td class='err'>";
echo "<b>Нет отзывов!</b>";
echo "</td>";
echo "</tr></table>";
}
$q=mysql_query("SELECT * FROM `user_voice2` WHERE `id_kont` = '$ank[id]' ORDER BY `time` DESC LIMIT $start, $set[p_str]");
while ($post=mysql_fetch_assoc($q))
{
echo "<table style='width:100%' cellspacing='1' cellpadding='1'><tr>";
$ank=get_user($post['id_user']);
echo "<td class='icon14'>";
avatar_mini($ank['id']);
echo "</td>";
echo "<td class='p_t'>";
echo "".status($ank['id'])."";
echo "<a href='/info.php?id=$ank[id]'>";
echo GradientText("$ank[nick]", "$ank[ncolor]", "$ank[ncolor2]");
echo "</a> ";
echo "".online($ank['id'])." (".vremja($post['time']).")";
echo "</td>";
echo "</tr>";
echo "<tr>";
echo "<td class='p_m' colspan='2'>";
echo "<b>Отзыв:</b><br />";
switch ($post['rating'])
{
case 2:echo "Замечательный<br />"; break;
case 1:echo "Положительный<br />"; break;
case 0:echo "Нейтральный<br />"; break;
case -1:echo "Не очень...<br />"; break;
case -2:echo "Негативный<br />"; break;
}
echo "".stripcslashes(htmlspecialchars($post['msg']))."<br />";
echo "</td>";
echo "</tr></table>";
}
echo "<a href='/umenu.php'><div class='foot'>";
echo "<img src='/s-klub/img/left.png'> Кабинет<br />";
echo "</div></a>";
if ($k_page>1)
{
str('who_rating.php?id='.$user_id.'&',$k_page,$page);
}
include_once 'sys/includes/footer.php';
?>