|
|
发表于 2013-7-16 22:09:59
|
显示全部楼层
$email = trim($_POST['email']);" P d( e1 q: K" M8 X
$pwd = trim($_POST['pwd']);
$ Q3 f+ U) O9 p9 v $cktime = $_POST['cktime'];
& s$ N1 P0 C5 E& \& ?9 f( i+ d3 F% d 5 w1 c/ s, w' w& M+ s
if($email=='' || $pwd=='') qiMsg("所有输入项都不能为空^_^");
0 L' u! E) G% Y. H
0 { p$ K6 E/ n8 H5 ]# ? $countAdmin = $db->once_fetch_assoc("select count(*) from ".dbprefix."user where `email`='$email'");9 f: y4 x( q2 o8 I' ?. }# i
$ |5 J5 |, G' a& c7 X6 e; @3 V8 f
if($countAdmin['count(*)'] == 0) qiMsg('用户Email不存在!');
% X$ a$ i$ Q3 n4 T/ ^
; X- D8 R# C: S: E/ G( b/ b $strAdmin = $db->once_fetch_assoc("select * from ".dbprefix."user where `email`='$email'");
' x7 g f- j' v/ P) d 7 p5 F& G5 N% w9 i4 \' e
if(md5($strAdmin['salt'].$pwd)!==$strAdmin['pwd']) tsNotice('用户密码错误!'); 7 @: ^& v9 _( t1 m, P
5 m: [+ H/ _8 s4 K3 O0 m" {. I$ r $strAdminInfo = $db->once_fetch_assoc("select userid,username,isadmin from ".dbprefix."user_info where email='$email'");
1 e# f: l' x! ]! w% R # N( l8 }. `3 L7 c- ^% [$ }% f
if($strAdminInfo['isadmin'] != 1) qiMsg("你无权登录后台管理!");
' A8 C- `- g: Z5 ^" |/ x
. i% \( @$ a ] N- A! s& ^ $_SESSION['tsadmin'] = $strAdminInfo;( S" b/ } k( J+ @8 x
0 V9 u( G) @% w/ A header("Location: ".SITE_URL."index.php?app=system");2 |" |) M9 T9 ~- N% a* \8 H) h
6 |9 l+ p/ o6 Z% T8 _# R
|
|