|
|
发表于 2013-7-16 22:09:59
|陕西|
显示全部楼层
$email = trim($_POST['email']);
" D7 J% V/ S& Z: C% g7 ] $pwd = trim($_POST['pwd']);7 d( }3 O, @3 w0 V& q
$cktime = $_POST['cktime'];
* |5 d# n+ z5 Q8 v- Q 0 W$ |) a! D" K5 D
if($email=='' || $pwd=='') qiMsg("所有输入项都不能为空^_^");2 e) b3 y% u6 V4 F
8 S' X6 B6 r& y6 t
$countAdmin = $db->once_fetch_assoc("select count(*) from ".dbprefix."user where `email`='$email'");
9 i7 |$ c& K8 j/ ?' E9 S9 ^3 h) p
6 W Z2 l& l' V3 ^: y* P% M! y if($countAdmin['count(*)'] == 0) qiMsg('用户Email不存在!');
2 T: o" k& C/ n4 {+ n% s
8 k% X1 G4 S8 B% h) N% m $strAdmin = $db->once_fetch_assoc("select * from ".dbprefix."user where `email`='$email'");
2 _* m& S; _5 f N! t) q f: F7 O 3 h" F9 ]3 z+ d: w: S$ W6 Y
if(md5($strAdmin['salt'].$pwd)!==$strAdmin['pwd']) tsNotice('用户密码错误!'); 7 x9 f* Z8 D: F7 D! z- @) U# J
9 u$ J" |: N3 r4 N' v# B& Y L- v $strAdminInfo = $db->once_fetch_assoc("select userid,username,isadmin from ".dbprefix."user_info where email='$email'");$ e" O5 ^& @8 ]. B% x) z
F; G; n8 _$ g' z( l
if($strAdminInfo['isadmin'] != 1) qiMsg("你无权登录后台管理!");( S7 w* M5 \3 I' z' X& I
- Z) P& ?$ w8 _7 Y$ V
$_SESSION['tsadmin'] = $strAdminInfo;
+ x6 U% V, r! D4 ?& T& D1 _
8 C% _, R( f* W. S header("Location: ".SITE_URL."index.php?app=system");& m" t/ Q' n4 q$ D# a
. }, Q- }3 l( ^$ E# F
|
|