Version 0.7

This commit is contained in:
nemunaire 2007-11-20 12:00:00 +01:00
commit c117da6d77
148 changed files with 1914 additions and 801 deletions

View file

@ -1,15 +1,15 @@
<?php
require_once('connectBDD.php');
if (isset($_POST['code']) && isset($_POST['pseudo']) && isset($_POST['mail']) && isset($_POST['mdp2']) && isset($_POST['mdp']) && isset($_POST['race'])) {
$code = strtoupper(str_replace('\'','\'\'',$_POST['code']));
$code = strtoupper(mysql_real_escape_string($_POST['code']));
$req = mysql_query("SELECT * FROM cds_beta WHERE `code` = '$code' AND `utilise` = '0'");
if(mysql_num_rows($req) >= 1) {
$pseudo = str_replace('\'','\'\'',$_POST['pseudo']);
$mail = str_replace('\'','\'\'',$_POST['mail']);
$mdp = str_replace('\'','\'\'',$_POST['mdp']);
$mdp2 = str_replace('\'','\'\'',$_POST['mdp2']);
$race = str_replace('\'','\'\'',$_POST['race']);
$code = str_replace('\'','\'\'',$_POST['code']);
$pseudo = mysql_real_escape_string($_POST['pseudo']);
$mail = mysql_real_escape_string($_POST['mail']);
$mdp = mysql_real_escape_string($_POST['mdp']);
$mdp2 = mysql_real_escape_string($_POST['mdp2']);
$race = mysql_real_escape_string($_POST['race']);
mysql_query("UPDATE `cds_beta` SET `user` = '$pseudo', `utilise` = '1' WHERE `code`='$code';") or die ("erreur sql ".mysql_error());
$erreurs = '<table style="width: 75%; margin-left: auto; margin-right: auto;">';
$inscriptOk = true;
@ -60,7 +60,6 @@ if (isset($_POST['code']) && isset($_POST['pseudo']) && isset($_POST['mail']) &&
print $erreurs.'</table>';
}
else {
mysql_query("UPDATE `cds_beta` SET `user` = '$pseudo', `utilise` = '1' WHERE `code`='$code';") or die ("erreur sql ".mysql_error());
$time = time();
$ip = $_SERVER["REMOTE_ADDR"];
// Activer la ligne suivante pour crypter les mots de passe dans la base de données
@ -71,7 +70,7 @@ if (isset($_POST['code']) && isset($_POST['pseudo']) && isset($_POST['mail']) &&
$galaxie = 1;
//$galaxie = mt_rand(2,4);
$ss = mt_rand(1,100);
$pos = mt_rand(1,15);
$pos = mt_rand(1,12);
// Test pour savoir si la planète est déjà habitée
$result = mysql_query("SELECT id FROM planete WHERE galaxie='$galaxie' AND ss='$ss' AND position='$pos'");