-
Notifications
You must be signed in to change notification settings - Fork 3
/
invitetoquestion.php
90 lines (66 loc) · 2.22 KB
/
invitetoquestion.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
<?php
$headcommands='';
include('header.php');
// sanitize url
if ( !isset($_GET[QUERY_KEY_QUESTION]) || !is_numeric($_GET[QUERY_KEY_QUESTION]) )
{
header("Location: error_page.php");
exit;
}
if ( isset($_GET[QUERY_KEY_ROOM]) && (hasTags($_GET[QUERY_KEY_ROOM]) || !checkMaxStringLength($_GET[QUERY_KEY_ROOM], MAX_LEN_ROOM)) )
{
header("Location: error_page.php");
exit;
}
#$userid=isloggedin();
if ($userid)
{
$question = (int)$_GET[QUERY_KEY_QUESTION];
$room = isset($_GET[QUERY_KEY_ROOM]) ? $_GET[QUERY_KEY_ROOM] : "";
$sql = 'SELECT id, username FROM users WHERE email != "" ';
$response = mysql_query($sql);
if (mysql_num_rows($response) > 0)
{
echo "<h2>{$VGA_CONTENT['invite_users_txt']}</h2>";
echo "<h3>" . $VGA_CONTENT['inviteusers_exp_txt'] . "</h3><br />";
$sql2 = 'SELECT questions.title FROM questions WHERE questions.id = '.$question;
$response2 = mysql_query($sql2);
$row2 = mysql_fetch_array($response2);
echo "<h3>".$row2[0]."</h3>";
echo "<p>{$VGA_CONTENT['invite_msg_txt']}</p>";
echo "<h3>{$VGA_CONTENT['users_txt']}</h3>";
?>
<form method="POST" action="inviteuserstoquestion.php">
<input type="hidden" name="question" value="<?php echo $question; ?>" />
<input type="hidden" name="room" value="<?php echo $room; ?>" />
<table border="1">
<?php
$RoomsI=RoomsUsed($userid);
while ($row = mysql_fetch_array($response))
{
$RoomsThee=RoomsUsed($row[0]);
$WhereHaveWeMet=array();
$WhereHaveWeMet=WhereHaveWeMet($RoomsI,$RoomsThee);
if ($WhereHaveWeMet) # if (1)
{
echo '<tr><td><p>';
echo WriteUserVsReader($row[0],$userid);
echo '</p></td><td>';
echo '<Input type = "Checkbox" Name ="users[]" title="'.$VGA_CONTENT['check2invite_title'] . '" value="'.$row[0].'" /></td></tr>';
}
}
?>
</tr>
<tr><td></td><td><input type = "Submit" Name = "Submit" title="<?=$VGA_CONTENT['submit2invite_title']?>" VALUE = "<?=$VGA_CONTENT['submit_button']?>"></td>
</tr></table>
</form>
<?php
}
echo "<a href=logout.php>Logout</a>";
}
else
{
DoLogin();
}
include('footer.php');
?>