|
|
发表于 2013-7-16 22:09:59
|陕西|
显示全部楼层
$email = trim($_POST['email']);! `+ w8 }. a' t( m
$pwd = trim($_POST['pwd']);
$ E7 T( Q. _6 |1 j5 }! N* F4 \ $cktime = $_POST['cktime'];
1 k& a6 H7 x5 o
. m# L0 T% g, |& }& W7 M3 B9 W if($email=='' || $pwd=='') qiMsg("所有输入项都不能为空^_^");3 A/ h& t' B( A) [0 n8 F
; R& }5 }0 ]( ?3 _, B& a' T9 t, i $countAdmin = $db->once_fetch_assoc("select count(*) from ".dbprefix."user where `email`='$email'");/ W2 W/ e% J& ~/ [7 y+ @
- _- x1 t4 x# \! e& _
if($countAdmin['count(*)'] == 0) qiMsg('用户Email不存在!');
, C7 r+ c2 b1 I, m" O8 e
. @# G2 a5 N* p3 ^: w2 ]- F. o $strAdmin = $db->once_fetch_assoc("select * from ".dbprefix."user where `email`='$email'");9 b. ?6 D7 i. o7 {/ Y+ |# y
E3 [7 C4 a+ H0 J5 L, M! d if(md5($strAdmin['salt'].$pwd)!==$strAdmin['pwd']) tsNotice('用户密码错误!');
; E; @& Q: f( O0 Z* e% z# r7 P! }
! M) H' l+ ]+ G+ I A) Z% w5 @ $strAdminInfo = $db->once_fetch_assoc("select userid,username,isadmin from ".dbprefix."user_info where email='$email'");
1 d/ r |% [% f; q) N' C + R# V, J7 r, y. O" k3 T& k/ N8 z
if($strAdminInfo['isadmin'] != 1) qiMsg("你无权登录后台管理!");0 v" L; u( v; P' R
" f1 b$ x1 e2 H% a
$_SESSION['tsadmin'] = $strAdminInfo;
& i4 m# b5 ~! `( I
d% L) m4 f/ y& b" l2 y9 w header("Location: ".SITE_URL."index.php?app=system");
1 O" k1 e7 \, ^" `# p6 {+ f
$ d4 G- k6 P( a% _! a1 d% N) _ |
|