require("lib.php"); auth(); $err_str = ""; $done = 0; if(isset($password) && isset($password1)){ if($password1 != $password2) $err_str = "新密码与确认新密码不一致"; else{ $qry_string = "SELECT password FROM user WHERE userid=$ss_userid"; $result = $db_query($qry_string, $mySQL_ID) or mysql_die(); $row=$db_fetch_array($result); if($row[0] != $password && (crypt($password, $row[0]) != $row[0])){ $err_str = "旧密码不正确"; } else{ if(ereg("\"",$password1)){ $err_str = "新密码不能包含特殊字符"; } else{ $qry_string = "UPDATE user SET password=\"$password1\" WHERE userid=$ss_userid"; $db_query($qry_string, $mySQL_ID) or mysql_die(); $done = 1; } } } } ?>
|
|
|