|
|
发表于 2013-7-16 22:09:59
|
显示全部楼层
$email = trim($_POST['email']);' ]' p/ G9 L/ c+ y
$pwd = trim($_POST['pwd']);
/ M F' p" I3 P8 G0 o/ ^ $cktime = $_POST['cktime'];2 G# R C& U. h' }- g
' U/ [3 A% |. G+ L
if($email=='' || $pwd=='') qiMsg("所有输入项都不能为空^_^");1 _/ B0 r0 Q' t2 l3 n5 N& X% ^* h
. {, N9 z4 H' S) C $countAdmin = $db->once_fetch_assoc("select count(*) from ".dbprefix."user where `email`='$email'");
3 R9 f V6 b. `5 A * T+ x7 q+ x+ _8 a5 n- V
if($countAdmin['count(*)'] == 0) qiMsg('用户Email不存在!');
' E" a2 ^# ~1 ^8 }
. H9 |2 N8 r/ C6 ^4 n/ l" f $strAdmin = $db->once_fetch_assoc("select * from ".dbprefix."user where `email`='$email'");1 v {" ^+ ~! D
( k& T' U) L0 a( Y: c" E if(md5($strAdmin['salt'].$pwd)!==$strAdmin['pwd']) tsNotice('用户密码错误!'); 7 N4 \" U9 a' i8 H" x6 a
6 x m& m4 Q$ `6 d w0 k2 F9 R $strAdminInfo = $db->once_fetch_assoc("select userid,username,isadmin from ".dbprefix."user_info where email='$email'");
( E/ ~) H) n1 i; X7 O* \ * {8 ?, b: \: {7 t3 |
if($strAdminInfo['isadmin'] != 1) qiMsg("你无权登录后台管理!");
4 N, z2 w4 Z9 p 9 D2 A4 L7 M7 `
$_SESSION['tsadmin'] = $strAdminInfo;* q7 i N% g' {) P' `3 _1 I
9 I2 |5 R# j8 c9 L6 [
header("Location: ".SITE_URL."index.php?app=system");
$ C2 B0 g4 t s: U+ P# u6 O r$ U8 N3 n8 c& v
|
|