国内流行的内容管理系统(CMS)多端全媒体解决方案 https://www.dedebiz.com
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

81 lines
4.0KB

  1. <?php
  2. /**
  3. * 添加系统管理员
  4. *
  5. * @version $Id: sys_admin_user_add.php 1 16:22 2010年7月20日Z tianya $
  6. * @package DedeBIZ.Administrator
  7. * @copyright Copyright (c) 2022, DedeBIZ.COM
  8. * @license https://www.dedebiz.com/license
  9. * @link https://www.dedebiz.com
  10. */
  11. require_once(dirname(__FILE__)."/config.php");
  12. CheckPurview('sys_User');
  13. require_once(DEDEINC."/typelink/typelink.class.php");
  14. if (empty($dopost)) $dopost = '';
  15. if ($dopost == 'add') {
  16. CheckCSRF();
  17. if (preg_match("#[^0-9a-zA-Z_@!\.-]#", $pwd) || preg_match("#[^0-9a-zA-Z_@!\.-]#", $userid)) {
  18. ShowMsg('密码或或用户名不合法,<br>请使用[0-9a-zA-Z_@!.-]内的字符', '-1', 0, 3000);
  19. exit();
  20. }
  21. $safecodeok = substr(md5($cfg_cookie_encode.$randcode), 0, 24);
  22. if ($safecode != $safecodeok) {
  23. ShowMsg('请填写安全验证串', '-1', 0, 3000);
  24. exit();
  25. }
  26. $row = $dsql->GetOne("SELECT COUNT(*) AS dd FROM `#@__member` WHERE userid LIKE '$userid' ");
  27. if ($row['dd'] > 0) {
  28. ShowMsg('用户名已存在', '-1');
  29. exit();
  30. }
  31. $pfd = "pwd";
  32. $mpwd = md5($pwd);
  33. $pwd = substr(md5($pwd), 5, 20);
  34. if (function_exists('password_hash')) {
  35. $pfd = "pwd_new";
  36. $mpwd = password_hash($pwd, PASSWORD_BCRYPT);
  37. $pwd = password_hash($pwd, PASSWORD_BCRYPT);
  38. }
  39. $typeid = join(',', $typeids);
  40. if ($typeid == '0') $typeid = '';
  41. //关连前台会员帐号
  42. $adminquery = "INSERT INTO `#@__member` (`mtype`,`userid`,`$pfd`,`uname`,`sex`,`rank`,`money`,`email`, `scores` ,`matt` ,`face`,`safequestion`,`safeanswer` ,`jointime` ,`joinip` ,`logintime` ,`loginip` )
  43. VALUES ('个人','$userid','$mpwd','$uname','男','100','0','$email','1000','10','','0','','0','','0',''); ";
  44. $dsql->ExecuteNoneQuery($adminquery);
  45. $mid = $dsql->GetLastID();
  46. if ($mid <= 0) {
  47. die($dsql->GetError().' 数据库出错');
  48. }
  49. //后台管理员
  50. $inquery = "INSERT INTO `#@__admin`(id,usertype,userid,$pfd,uname,typeid,tname,email)
  51. VALUES('$mid','$usertype','$userid','$pwd','$uname','$typeid','$tname','$email'); ";
  52. $rs = $dsql->ExecuteNoneQuery($inquery);
  53. $adminquery = "INSERT INTO `#@__member_person` (`mid`,`onlynet`,`sex`,`uname`,`qq`,`msn`,`tel`,`mobile`,`place`,`oldplace`,`birthday`,`star`, `income` , `education` , `height` , `bodytype` , `blood` , `vocation` , `smoke` , `marital` , `house` ,`drink` , `datingtype` , `language` , `nature` , `lovemsg` , `address`,`uptime`)
  54. VALUES ('$mid', '1', '男', '{$userid}', '', '', '', '', '0', '0','1980-01-01', '1', '0', '0', '160', '0', '0', '0', '0', '0', '0','0', '0', '', '', '', '','0'); ";
  55. $dsql->ExecuteNoneQuery($adminquery);
  56. $adminquery = "INSERT INTO `#@__member_tj` (`mid`,`article`,`album`,`archives`,`homecount`,`pagecount`,`feedback`,`friend`,`stow`)
  57. VALUES ('$mid','0','0','0','0','0','0','0','0'); ";
  58. $dsql->ExecuteNoneQuery($adminquery);
  59. $adminquery = "Insert Into `#@__member_space`(`mid` ,`pagesize` ,`matt` ,`spacename` ,`spacelogo` ,`spacestyle`, `sign` ,`spacenews`)
  60. Values('$mid','10','0','{$uname}的空间','','person','',''); ";
  61. $dsql->ExecuteNoneQuery($adminquery);
  62. ShowMsg('成功增加一个用户', 'sys_admin_user.php');
  63. exit();
  64. }
  65. $randcode = mt_rand(10000, 99999);
  66. $safecode = substr(md5($cfg_cookie_encode.$randcode), 0, 24);
  67. $typeOptions = '';
  68. $dsql->SetQuery(" SELECT id,typename FROM `#@__arctype` WHERE reid=0 AND (ispart=0 OR ispart=1) ");
  69. $dsql->Execute('op');
  70. while ($row = $dsql->GetObject('op')) {
  71. $topc = $row->id;
  72. $typeOptions .= "<option value='{$row->id}' class='btype'>{$row->typename}</option>\r\n";
  73. $dsql->SetQuery(" SELECT id,typename FROM `#@__arctype` WHERE reid={$row->id} AND (ispart=0 OR ispart=1) ");
  74. $dsql->Execute('s');
  75. while ($row = $dsql->GetObject('s')) {
  76. $typeOptions .= "<option value='{$row->id}' class='stype'>—{$row->typename}</option>\r\n";
  77. }
  78. }
  79. make_hash();
  80. include DedeInclude('templets/sys_admin_user_add.htm');