if(!defined("IN_SITE")){
print "Pls stop haxing";
exit;
}
$me = $_GET["page"];
$linktome = buildlinkback($me);
if(!$loggedin){
?>
} else {
if($sess_user_status < 2){
FineMoney(100,true);
} else {
?>
Admin Page
Bank functions
Items
User functions
Stock Market
Random Things
switch($_GET["function"]){
case "random";
?>
Random Items
Jobs
switch($_GET["subfunction"]){
case "jobs";
break;
}
break;
case "bank";
?>
Bank Page
Add Bank Account
Edit Bank Account
Delete Bank Account
switch($_GET["subfunction"]){
case "add_account";
?>
Add account
if(isset($_POST["submit"])){
$acc_name = addslashes($_POST["account_name"]);
$acc_min = $_POST["account_min"];
$acc_interest = $_POST["account_interest"];
if(is_numeric($acc_min) && is_numeric($acc_interest)){
$AccQ = mysql_query("INSERT INTO bank_types values('0', '$acc_name', '$acc_min', '$acc_interest')") or print(mysql_error() . " " . __FILE__ . " #" . __LINE__);
print "Made $acc_name!";
} else {
print "Account minimum and account intrest must be a number!";
}
}
?>
break;
case "edit_account";
?>
Edit Account
if($_POST["part"] == "2"){
$acc_id = $_POST["acc_id"];
$acc_name = addslashes($_POST["account_name"]);
$acc_min = $_POST["account_min"];
$acc_interest = $_POST["account_interest"];
if(is_numeric($acc_min) && is_numeric($acc_interest)){
$AccQ = mysql_query("UPDATE bank_types set name = '$acc_name', min = '$acc_min', rate ='$acc_interest' WHERE type_id = '$acc_id'") or print(mysql_error() . " " . __FILE__ . " #" . __LINE__);
print "Edited $acc_name!";
} else {
print "Account minimum and account intrest must be a number!";
}
}
if($_POST["part"] == "1"){
$acc_id = addslashes($_POST["account_id"]);
$BankTypeQ = mysql_query("SELECT * from bank_types where type_id = '$acc_id'") or print(mysql_error() . " " . __FILE__ . " #" . __LINE__);
$BankTypeR = mysql_fetch_array($BankTypeQ);
?>
}
if(!isset($_POST["part"])){
//Get types
$GetQ = mysql_query("SELECT * from bank_types") or print(mysql_error() . " " . __FILE__ . " #" . __LINE__);
?>
}
break;
case "delete_account";
?>
Delete Account
break;
}
break;
case "user";
?>
User Menu
switch($_GET["subfunction"]){
case "ban";
?>
Ban Account
break;
case "unban";
?>
Unban Account
break;
}
break;
case "items";
?>
Items
Add Item
Edit Item
Remove Item
switch($_GET["subfunction"]){
case "add_item";
?>
Add Item
if(isset($_POST["name"], $_POST["cost"], $_POST["min"], $_POST["imageurl"], $_POST["type"])) {
if($post['type'] == "weapons")
mysql_query("INSERT INTO `{$post_safe['type']}` (name, cost, min_damage, max_damage, img_thumb, img_big) values ('{$post_safe['name']}', '{$post_safe['cost']}', '{$post_safe['min']}', '{$post_safe['max']}', '{$post_safe['imageurl']}', '{$post_safe['imageurl2']}')") or die(mysql_error() . " " . __FILE__ . " #" . __LINE__);
else
mysql_query("INSERT INTO `$type` values ('0', '$name', '$cost', '$value', '$image_url','$image_url_big')") or die(mysql_error() . " " . __FILE__ . " #" . __LINE__);
print "Added {$post['name']}, cost: {$post['cost']}.";
} else {
?>
}
break;
case "edit_item";
?>
Edit Item
if($_POST["part"] == "3"){
$name = addslashes($_POST["name"]);
$id = addslashes($_POST["id"]);
$cost = addslashes($_POST["cost"]);
$value = addslashes($_POST["value"]);
$cost = intval($cost);
$value = intval($value);
$image_url = addslashes($_POST["imageurl"]);
$image_url_big = addslashes($_POST["imgageurl2"]);
$type = $_POST["type"];
mysql_query("UPDATE `$type` set name = '$name', cost = '$cost', value = '$value', img_thumb = '$image_url', img_big = '$image_url_big' WHERE $type_id = '$id'") or print(mysql_error() . " " . __FILE__ . " #" . __LINE__);
print "Edited $name";
}
if($_POST["part"] == "2"){
$type = addslashes($_POST["type"]);
$item_id = addslashes($_POST["item"]);
$GetQ = mysql_query("SELECT * from $type where $type_id = '$item_id'") or print(mysql_error() . " " . __FILE__ . " #" . __LINE__);
$ItemR = mysql_fetch_array($GetQ);
?>
}
if($_POST["part"] == "1"){
$type = addslashes($_POST["type"]);
$GetQ = mysql_query("SELECT * from $type") or print(mysql_error() . " " . __FILE__ . " #" . __LINE__);
?>
}
if(!isset($_POST["part"])){
?>
}
break;
case "remove_item";
?>
Remove Item
break;
}
break;
case "stock_market";
?>
Stock Market
Add Stocks
Edit Stocks
Remove Stocks
switch($_GET["subfunction"]){
case "add_stocks";
?>
Add Stocks
break;
case "edit_stocks";
?>
Edit Stocks
break;
case "remove_stocks";
?>
Remove Stocks
break;
}
break;
}
}
}
?>