1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
|
<? include("../manage/category/common.php"); $upload_filename = "";
if( isset($Mid) && isset($Mpassword1) && isset($Mname) && $mode == "insert"){
$Mjumin = $jumin2;
// ÁֹιøÈ£ Áߺ¹Ã¼Å© Ãß°¡
$juminQry = "select Mjumin from member WHERE Mjumin = '$Mjumin' "; $juminResult = mysql_query($juminQry);
// if(mysql_num_rows($juminResult) > 0){ // Áߺ¹
?> <!-- <script> parent.Msg("ÀÌ¹Ì °¡ÀÔµÈ Áֹεî·Ï¹øÈ£ÀÔ´Ï´Ù. ´Ù½Ã È®ÀÎÇØ ÁÖ¼¼¿ä"); // parent.location.href = "join.php"; </script> --> <? // } // else { if(isset($stamp_name) && $stamp_name !== "" ) { $body_file_name = strstr($stamp_name,"."); if($body_file_name == ".gif" || $body_file_name == ".GIF" || $body_file_name == ".jpg" || $body_file_name == ".JPG" || $body_file_name == ".BMP" || $body_file_name == ".bmp") { } else { ?> <script language="JavaScript">alert("À̹ÌÁö ÆÄÀϸ¸ ¾÷·ÎµåÇÒ ¼ö ÀÖ½À´Ï´Ù.");history.back();</script> <? exit; } $upload_filename = $Mid.$body_file_name; copy($stamp, "/home/mjc1/public_html/member/stamp/$upload_filename"); //Ãß°¡ unlink($stamp); } else { $upload_filename = ""; }
$Maddnum = $post1."-".$post2; $Mtel1 = $tel1."-".$tel2."-".$tel3; $Mhp = $phone1."-".$phone2."-".$phone3; $reg_date = date('Y-m-d',Time()); /* $insertQry = " insert into member values ( '','$Mid','$Mpassword1','$Mname','$Mjumin','$Mcompany','$Maddnum','$Madd','$Mtel1','', '$Mhp','$Memail','$Msw1','','2','2','2','FALSE','$reg_date','', '0','','','0','0','0','','','','', '1','$companyNum','$upte','$upjong','$upload_filename',0 */ if ($Msw1 == 17) { //ÀÌÁö°è»ê¼·Î °¡ÀÔÀ» ÇÏ¸é ¹«Á¶°Ç ³ëÃâµÇµµ·ÏÇÑ´Ù. $insertQry = " insert into member (Mcode, Mid, Mpassword, Mname, Mjumin, Mcompany, Maddnum, Madd, Mtel1, Mtel2, Mhp, Memail, Msw1, Msw2, Mup, Mper, Mdiv, Mcnted, reg_date, Mtext, Mcheck, Mrank, Mtemp, Certi_num, End_day, Start_day, Com_num, Com_name, Com_address, w_large, LicenseUserNum, companyNum, upte, upjong, stamp, isdisplay, Certi_ver) values ( '','$Mid','$Mpassword1','$Mname','$Mjumin','$Mcompany','$Maddnum','$Madd','$Mtel1','', '$Mhp','$Memail','$Msw1','','2','2','1','FALSE','$reg_date','', '0','','{$_SERVER['SCRIPT_FILENAME']}','0','0','0','0','','','', '1','$companyNum','$upte','$upjong','$upload_filename',1,'')"; } else { //ÀÌÁö°è»ê¼ ÀÌ¿ÜÀÇ ÇÁ·Î±×·¥Àº °¡ÀԽÿ¡´Â ³ëÃâµÇÁö ¾Ê´Â´Ù. $insertQry = " insert into member (Mcode, Mid, Mpassword, Mname, Mjumin, Mcompany, Maddnum, Madd, Mtel1, Mtel2, Mhp, Memail, Msw1, Msw2, Mup, Mper, Mdiv, Mcnted, reg_date, Mtext, Mcheck, Mrank, Mtemp, Certi_num, End_day, Start_day, Com_num, Com_name, Com_address, w_large, LicenseUserNum, companyNum, upte, upjong, stamp, isdisplay, Certi_ver) values ( '','$Mid','$Mpassword1','$Mname','$Mjumin','$Mcompany','$Maddnum','$Madd','$Mtel1','', '$Mhp','$Memail','$Msw1','','2','2','1','FALSE','$reg_date','', '0','','{$_SERVER['SCRIPT_FILENAME']}','0','0','0','0','','','', '1','$companyNum','$upte','$upjong','$upload_filename',0,'')"; } /* )"; */
mysql_query($insertQry);
?> <script> parent.Msg("¹ÌÁø¼ÒÇÁÆ®¿¡ ȸ¿øÀ¸·Î °¡ÀԵǾú½À´Ï´Ù.°¨»çÇÕ´Ï´Ù."); parent.location.href = "mall.php"; </script> <? }
} else if($mode == "update"){
$upload_filename = "";
if(isset($stamp_name) && $stamp_name !== "" ) { $body_file_name = strstr($stamp_name,".");
if($body_file_name == ".gif" || $body_file_name == ".GIF" || $body_file_name == ".jpg" || $body_file_name == ".JPG" || $body_file_name == ".BMP" || $body_file_name == ".bmp") { } else { ?> <script language="JavaScript">alert("À̹ÌÁö ÆÄÀϸ¸ ¾÷·ÎµåÇÒ ¼ö ÀÖ½À´Ï´Ù.");history.back();</script> <? exit; }
$upload_filename = $_COOKIE[USERID].$body_file_name; copy($stamp, "/home/mjc1/public_html/member/stamp/$upload_filename"); //¼öÁ¤ unlink($stamp); } else { $upload_filename = $uploaded_filename; }
$Maddnum = $post1."-".$post2; $Mtel1 = $tel1."-".$tel2."-".$tel3; $Mhp = $phone1."-".$phone2."-".$phone3;
if( isset($Mpassword1) && $Mpassword1 !== "" ) { $_set = " Mpassword = '$Mpassword1' , "; }
$updateQry = " UPDATE member SET $_set Maddnum = '$Maddnum', Madd='$Madd', Mtel1 ='$Mtel1', Mhp ='$Mhp',Memail = '$Memail', companyNum = '$companyNum', upte='$upte', upjong='$upjong', stamp='$upload_filename', Mcompany = '$Mcompany' WHERE Mid = '$_COOKIE[USERID]' ";
mysql_query($updateQry); // echo $updateQry; ?> <script> parent.Msg("ȸ¿øÁ¤º¸¼öÁ¤ÀÌ Á¤»óÀûÀ¸·Î ÀÌ·ç¾îÁ³½À´Ï´Ù."); parent.location.href = "mypage.php"; </script> <? } ?>
|