| @@ -21,17 +21,17 @@ if ($dopost == 'save') { | |||||
| CheckCSRF(); | CheckCSRF(); | ||||
| if (function_exists('password_hash') && !empty($row['pwd_new'])) { | if (function_exists('password_hash') && !empty($row['pwd_new'])) { | ||||
| if (!is_array($row) || !password_verify($oldpwd, $row['pwd_new'])) { | if (!is_array($row) || !password_verify($oldpwd, $row['pwd_new'])) { | ||||
| ShowMsg('您输入的旧密码错误或没填写,修改资料失败', '-1'); | |||||
| ShowMsg('您输入的旧密码错误或没填写,修改资料失败', 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } | } | ||||
| } else { | } else { | ||||
| if (!is_array($row) || $row['pwd'] != md5($oldpwd)) { | if (!is_array($row) || $row['pwd'] != md5($oldpwd)) { | ||||
| ShowMsg('您输入的旧密码错误或没填写,修改资料失败', '-1'); | |||||
| ShowMsg('您输入的旧密码错误或没填写,修改资料失败', 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } | } | ||||
| } | } | ||||
| if ($userpwd != $userpwdok) { | if ($userpwd != $userpwdok) { | ||||
| ShowMsg('您两次输入的新密码不一致', '-1'); | |||||
| ShowMsg('您两次输入的新密码不一致', 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } | } | ||||
| $addupquery = ''; | $addupquery = ''; | ||||
| @@ -71,14 +71,14 @@ if ($dopost == 'save') { | |||||
| //修改安全问题或邮箱 | //修改安全问题或邮箱 | ||||
| if ($email != $row['email'] || ($newsafequestion != 0 && $newsafeanswer != '')) { | if ($email != $row['email'] || ($newsafequestion != 0 && $newsafeanswer != '')) { | ||||
| if ($row['safequestion'] != 0 && ($row['safequestion'] != $safequestion || $row['safeanswer'] != $safeanswer)) { | if ($row['safequestion'] != 0 && ($row['safequestion'] != $safequestion || $row['safeanswer'] != $safeanswer)) { | ||||
| ShowMsg('您的旧安全问题及答案不正确,不能修改邮箱或安全问题', '-1'); | |||||
| ShowMsg('您的旧安全问题及答案不正确,不能修改邮箱或安全问题', 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } | } | ||||
| //修改邮箱 | //修改邮箱 | ||||
| if (!empty($email)) { | if (!empty($email)) { | ||||
| if ($email != $row['email']) { | if ($email != $row['email']) { | ||||
| if (!CheckEmail($email)) { | if (!CheckEmail($email)) { | ||||
| ShowMsg('邮箱格式不正确', '-1'); | |||||
| ShowMsg('邮箱格式不正确', 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } else { | } else { | ||||
| $addupquery .= ",email='$email',spacesta='-10'"; | $addupquery .= ",email='$email',spacesta='-10'"; | ||||
| @@ -88,7 +88,7 @@ if ($dopost == 'save') { | |||||
| //修改安全问题 | //修改安全问题 | ||||
| if ($newsafequestion != 0 && $newsafeanswer != '') { | if ($newsafequestion != 0 && $newsafeanswer != '') { | ||||
| if (strlen($newsafeanswer) > 30) { | if (strlen($newsafeanswer) > 30) { | ||||
| ShowMsg('您的新安全问题的答案太长了,请保持在30字节以内', '-1'); | |||||
| ShowMsg('您的新安全问题的答案太长了,请保持在30字节以内', 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } else { | } else { | ||||
| $newsafequestion = HtmlReplace($newsafequestion, 1); | $newsafequestion = HtmlReplace($newsafequestion, 1); | ||||
| @@ -101,14 +101,14 @@ if ($dopost == 'save') { | |||||
| if ($uname != $row['uname']) { | if ($uname != $row['uname']) { | ||||
| $rs = CheckUserID($uname, '昵称或公司名称', FALSE); | $rs = CheckUserID($uname, '昵称或公司名称', FALSE); | ||||
| if ($rs != 'ok') { | if ($rs != 'ok') { | ||||
| ShowMsg($rs, '-1'); | |||||
| ShowMsg($rs, 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } | } | ||||
| $addupquery .= ",uname='$uname'"; | $addupquery .= ",uname='$uname'"; | ||||
| } | } | ||||
| //性别 | //性别 | ||||
| if (!in_array($sex, array('男', '女', '保密'))) { | if (!in_array($sex, array('男', '女', '保密'))) { | ||||
| ShowMsg('请选择正常的性别', '-1'); | |||||
| ShowMsg('请选择正常的性别', 'edit_baseinfo.php'); | |||||
| exit(); | exit(); | ||||
| } | } | ||||
| $query1 = "UPDATE `#@__member` SET $pp='$pwd',sex='$sex'{$addupquery} WHERE mid='".$cfg_ml->M_ID."' "; | $query1 = "UPDATE `#@__member` SET $pp='$pwd',sex='$sex'{$addupquery} WHERE mid='".$cfg_ml->M_ID."' "; | ||||