phpBB
Statistics
| Revision:

root / branches / phpBB-3_0_0 / phpBB / memberlist.php

History | View | Annotate | Download (61.5 kB)

1 272 thefinn
<?php
2 7736 acydburn
/**
3 5114 acydburn
*
4 5114 acydburn
* @package phpBB3
5 5114 acydburn
* @version $Id$
6 7736 acydburn
* @copyright (c) 2005 phpBB Group
7 7736 acydburn
* @license http://opensource.org/licenses/gpl-license.php GNU Public License
8 5114 acydburn
*
9 5114 acydburn
*/
10 272 thefinn
11 5114 acydburn
/**
12 5883 acydburn
* @ignore
13 5114 acydburn
*/
14 4975 psotfx
define('IN_PHPBB', true);
15 7954 acydburn
$phpbb_root_path = (defined('PHPBB_ROOT_PATH')) ? PHPBB_ROOT_PATH : './';
16 4484 psotfx
$phpEx = substr(strrchr(__FILE__, '.'), 1);
17 6015 acydburn
include($phpbb_root_path . 'common.' . $phpEx);
18 6829 acydburn
include($phpbb_root_path . 'includes/functions_display.' . $phpEx);
19 646 psotfx
20 272 thefinn
// Start session management
21 5247 acydburn
$user->session_begin();
22 2958 psotfx
$auth->acl($user->data);
23 4970 psotfx
$user->setup(array('memberlist', 'groups'));
24 3969 psotfx
25 3628 psotfx
// Grab data
26 6882 dhn2
$mode                = request_var('mode', '');
27 6882 dhn2
$action                = request_var('action', '');
28 6882 dhn2
$user_id        = request_var('u', ANONYMOUS);
29 6882 dhn2
$username        = request_var('un', '', true);
30 6882 dhn2
$group_id        = request_var('g', 0);
31 6882 dhn2
$topic_id        = request_var('t', 0);
32 3628 psotfx
33 7384 acydburn
// Check our mode...
34 7384 acydburn
if (!in_array($mode, array('', 'group', 'viewprofile', 'email', 'contact', 'searchuser', 'leaders')))
35 7384 acydburn
{
36 7384 acydburn
        trigger_error('NO_MODE');
37 7384 acydburn
}
38 7384 acydburn
39 3953 psotfx
switch ($mode)
40 3589 psotfx
{
41 3953 psotfx
        case 'email':
42 6015 acydburn
        break;
43 3969 psotfx
44 3953 psotfx
        default:
45 4883 acydburn
                // Can this user view profiles/memberlist?
46 3969 psotfx
                if (!$auth->acl_gets('u_viewprofile', 'a_user', 'a_useradd', 'a_userdel'))
47 3953 psotfx
                {
48 3953 psotfx
                        if ($user->data['user_id'] != ANONYMOUS)
49 3953 psotfx
                        {
50 5138 acydburn
                                trigger_error('NO_VIEW_USERS');
51 3953 psotfx
                        }
52 3650 psotfx
53 5995 acydburn
                        login_box('', ((isset($user->lang['LOGIN_EXPLAIN_' . strtoupper($mode)])) ? $user->lang['LOGIN_EXPLAIN_' . strtoupper($mode)] : $user->lang['LOGIN_EXPLAIN_MEMBERLIST']));
54 3953 psotfx
                }
55 6015 acydburn
        break;
56 3589 psotfx
}
57 3589 psotfx
58 4578 psotfx
$start        = request_var('start', 0);
59 4578 psotfx
$submit = (isset($_POST['submit'])) ? true : false;
60 2849 psotfx
61 6538 acydburn
$default_key = 'c';
62 6538 acydburn
$sort_key = request_var('sk', $default_key);
63 4578 psotfx
$sort_dir = request_var('sd', 'a');
64 2849 psotfx
65 2849 psotfx
66 3589 psotfx
// Grab rank information for later
67 6572 acydburn
$ranks = $cache->obtain_ranks();
68 3510 psotfx
69 3510 psotfx
70 3650 psotfx
// What do you want to do today? ... oops, I think that line is taken ...
71 3625 psotfx
switch ($mode)
72 3598 psotfx
{
73 3650 psotfx
        case 'leaders':
74 5160 acydburn
                // Display a listing of board admins, moderators
75 7201 acydburn
                include($phpbb_root_path . 'includes/functions_user.' . $phpEx);
76 8120 kellanved
77 5199 acydburn
                $page_title = $user->lang['THE_TEAM'];
78 5160 acydburn
                $template_html = 'memberlist_leaders.html';
79 5160 acydburn
80 4883 acydburn
                $user_ary = $auth->acl_get_list(false, array('a_', 'm_'), false);
81 4758 psotfx
82 6975 acydburn
                $admin_id_ary = $global_mod_id_ary = $mod_id_ary = $forum_id_ary = array();
83 4758 psotfx
                foreach ($user_ary as $forum_id => $forum_ary)
84 4758 psotfx
                {
85 4758 psotfx
                        foreach ($forum_ary as $auth_option => $id_ary)
86 4758 psotfx
                        {
87 6975 acydburn
                                if (!$forum_id)
88 5824 acydburn
                                {
89 6975 acydburn
                                        if ($auth_option == 'a_')
90 6975 acydburn
                                        {
91 6975 acydburn
                                                $admin_id_ary = array_merge($admin_id_ary, $id_ary);
92 6975 acydburn
                                        }
93 6975 acydburn
                                        else
94 6975 acydburn
                                        {
95 6975 acydburn
                                                $global_mod_id_ary = array_merge($global_mod_id_ary, $id_ary);
96 6975 acydburn
                                        }
97 5824 acydburn
                                        continue;
98 5824 acydburn
                                }
99 5824 acydburn
                                else
100 5824 acydburn
                                {
101 5824 acydburn
                                        $mod_id_ary = array_merge($mod_id_ary, $id_ary);
102 5824 acydburn
                                }
103 5160 acydburn
104 5160 acydburn
                                if ($forum_id)
105 5160 acydburn
                                {
106 5160 acydburn
                                        foreach ($id_ary as $id)
107 5160 acydburn
                                        {
108 5160 acydburn
                                                $forum_id_ary[$id][] = $forum_id;
109 5160 acydburn
                                        }
110 5160 acydburn
                                }
111 4758 psotfx
                        }
112 4758 psotfx
                }
113 4758 psotfx
114 5824 acydburn
                $admin_id_ary = array_unique($admin_id_ary);
115 6975 acydburn
                $global_mod_id_ary = array_unique($global_mod_id_ary);
116 6975 acydburn
117 6975 acydburn
                $mod_id_ary = array_merge($mod_id_ary, $global_mod_id_ary);
118 5824 acydburn
                $mod_id_ary = array_unique($mod_id_ary);
119 5824 acydburn
120 6149 acydburn
                // Admin group id...
121 6149 acydburn
                $sql = 'SELECT group_id
122 6149 acydburn
                        FROM ' . GROUPS_TABLE . "
123 6149 acydburn
                        WHERE group_name = 'ADMINISTRATORS'";
124 6149 acydburn
                $result = $db->sql_query($sql);
125 6149 acydburn
                $admin_group_id = (int) $db->sql_fetchfield('group_id');
126 6149 acydburn
                $db->sql_freeresult($result);
127 6149 acydburn
128 7201 acydburn
                // Get group memberships for the admin id ary...
129 7201 acydburn
                $admin_memberships = group_memberships($admin_group_id, $admin_id_ary);
130 8120 kellanved
131 7201 acydburn
                $admin_user_ids = array();
132 8801 acydburn
133 7722 kellanved
                if (!empty($admin_memberships))
134 7201 acydburn
                {
135 7722 kellanved
                        // ok, we only need the user ids...
136 7722 kellanved
                        foreach ($admin_memberships as $row)
137 7722 kellanved
                        {
138 7722 kellanved
                                $admin_user_ids[$row['user_id']] = true;
139 7722 kellanved
                        }
140 7201 acydburn
                }
141 7201 acydburn
                unset($admin_memberships);
142 7201 acydburn
143 8146 acydburn
                $sql = 'SELECT forum_id, forum_name
144 8306 acydburn
                        FROM ' . FORUMS_TABLE;
145 4758 psotfx
                $result = $db->sql_query($sql);
146 8306 acydburn
147 5160 acydburn
                $forums = array();
148 5160 acydburn
                while ($row = $db->sql_fetchrow($result))
149 5160 acydburn
                {
150 5160 acydburn
                        $forums[$row['forum_id']] = $row['forum_name'];
151 5160 acydburn
                }
152 4758 psotfx
                $db->sql_freeresult($result);
153 4758 psotfx
154 5885 davidmj
                $sql = $db->sql_build_query('SELECT', array(
155 6698 acydburn
                        'SELECT'        => 'u.user_id, u.group_id as default_group, u.username, u.username_clean, u.user_colour, u.user_rank, u.user_posts, u.user_allow_pm, g.group_id, g.group_name, g.group_colour, g.group_type, ug.user_id as ug_user_id',
156 5885 davidmj
157 5885 davidmj
                        'FROM'                => array(
158 5885 davidmj
                                USERS_TABLE                => 'u',
159 5885 davidmj
                                GROUPS_TABLE        => 'g'
160 5885 davidmj
                        ),
161 5885 davidmj
162 5885 davidmj
                        'LEFT_JOIN'        => array(
163 5885 davidmj
                                array(
164 5885 davidmj
                                        'FROM'        => array(USER_GROUP_TABLE => 'ug'),
165 6081 acydburn
                                        'ON'        => 'ug.group_id = g.group_id AND ug.user_pending = 0 AND ug.user_id = ' . $user->data['user_id']
166 5885 davidmj
                                )
167 5885 davidmj
                        ),
168 5885 davidmj
169 7722 kellanved
                        'WHERE'                => $db->sql_in_set('u.user_id', array_unique(array_merge($admin_id_ary, $mod_id_ary)), false, true) . '
170 6015 acydburn
                                AND u.group_id = g.group_id',
171 5885 davidmj
172 6650 acydburn
                        'ORDER_BY'        => 'g.group_name ASC, u.username_clean ASC'
173 5885 davidmj
                ));
174 5160 acydburn
                $result = $db->sql_query($sql);
175 5160 acydburn
176 5160 acydburn
                while ($row = $db->sql_fetchrow($result))
177 4758 psotfx
                {
178 5160 acydburn
                        $which_row = (in_array($row['user_id'], $admin_id_ary)) ? 'admin' : 'mod';
179 5160 acydburn
180 7201 acydburn
                        // We sort out admins not within the 'Administrators' group.
181 7201 acydburn
                        // Else, we will list those as admin only having the permission to view logs for example.
182 7201 acydburn
                        if ($which_row == 'admin' && empty($admin_user_ids[$row['user_id']]))
183 6149 acydburn
                        {
184 6149 acydburn
                                // Remove from admin_id_ary, because the user may be a mod instead
185 6149 acydburn
                                unset($admin_id_ary[array_search($row['user_id'], $admin_id_ary)]);
186 6149 acydburn
187 6975 acydburn
                                if (!in_array($row['user_id'], $mod_id_ary) && !in_array($row['user_id'], $global_mod_id_ary))
188 6149 acydburn
                                {
189 6149 acydburn
                                        continue;
190 6149 acydburn
                                }
191 6149 acydburn
                                else
192 6149 acydburn
                                {
193 6149 acydburn
                                        $which_row = 'mod';
194 6149 acydburn
                                }
195 6149 acydburn
                        }
196 6149 acydburn
197 5160 acydburn
                        $s_forum_select = '';
198 6538 acydburn
                        $undisclosed_forum = false;
199 5896 acydburn
200 6975 acydburn
                        if (isset($forum_id_ary[$row['user_id']]) && !in_array($row['user_id'], $global_mod_id_ary))
201 5160 acydburn
                        {
202 5896 acydburn
                                if ($which_row == 'mod' && sizeof(array_diff(array_keys($forums), $forum_id_ary[$row['user_id']])))
203 5160 acydburn
                                {
204 5896 acydburn
                                        foreach ($forum_id_ary[$row['user_id']] as $forum_id)
205 5160 acydburn
                                        {
206 6538 acydburn
                                                if (isset($forums[$forum_id]))
207 5896 acydburn
                                                {
208 6538 acydburn
                                                        if ($auth->acl_get('f_list', $forum_id))
209 6538 acydburn
                                                        {
210 6538 acydburn
                                                                $s_forum_select .= '<option value="">' . $forums[$forum_id] . '</option>';
211 6538 acydburn
                                                        }
212 6538 acydburn
                                                        else
213 6538 acydburn
                                                        {
214 6538 acydburn
                                                                $undisclosed_forum = true;
215 6538 acydburn
                                                        }
216 5896 acydburn
                                                }
217 5160 acydburn
                                        }
218 5160 acydburn
                                }
219 5160 acydburn
                        }
220 5896 acydburn
221 7143 acydburn
                        // If the mod is only moderating non-viewable forums we skip the user. There is no gain in displaying the person then...
222 6538 acydburn
                        if (!$s_forum_select && $undisclosed_forum)
223 6538 acydburn
                        {
224 7143 acydburn
//                                $s_forum_select = '<option value="">' . $user->lang['FORUM_UNDISCLOSED'] . '</option>';
225 7143 acydburn
                                continue;
226 6538 acydburn
                        }
227 6538 acydburn
228 7143 acydburn
                        // The person is moderating several "public" forums, therefore the person should be listed, but not giving the real group name if hidden.
229 5160 acydburn
                        if ($row['group_type'] == GROUP_HIDDEN && !$auth->acl_gets('a_group', 'a_groupadd', 'a_groupdel') && $row['ug_user_id'] != $user->data['user_id'])
230 5160 acydburn
                        {
231 6081 acydburn
                                $group_name = $user->lang['GROUP_UNDISCLOSED'];
232 5160 acydburn
                                $u_group = '';
233 5160 acydburn
                        }
234 5160 acydburn
                        else
235 5160 acydburn
                        {
236 5160 acydburn
                                $group_name = ($row['group_type'] == GROUP_SPECIAL) ? $user->lang['G_' . $row['group_name']] : $row['group_name'];
237 6015 acydburn
                                $u_group = append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=group&amp;g=' . $row['group_id']);
238 5160 acydburn
                        }
239 5160 acydburn
240 5160 acydburn
                        $rank_title = $rank_img = '';
241 9082 acydburn
                        get_user_rank($row['user_rank'], (($row['user_id'] == ANONYMOUS) ? false : $row['user_posts']), $rank_title, $rank_img, $rank_img_src);
242 5160 acydburn
243 5160 acydburn
                        $template->assign_block_vars($which_row, array(
244 5160 acydburn
                                'USER_ID'                => $row['user_id'],
245 5160 acydburn
                                'FORUMS'                => $s_forum_select,
246 5160 acydburn
                                'RANK_TITLE'        => $rank_title,
247 5160 acydburn
                                'GROUP_NAME'        => $group_name,
248 5160 acydburn
                                'GROUP_COLOR'        => $row['group_colour'],
249 5160 acydburn
250 5160 acydburn
                                'RANK_IMG'                => $rank_img,
251 5358 subblue
                                'RANK_IMG_SRC'        => $rank_img_src,
252 5160 acydburn
253 6589 acydburn
                                'U_GROUP'                        => $u_group,
254 6662 acydburn
                                'U_PM'                                => ($config['allow_privmsg'] && $auth->acl_get('u_sendpm') && ($row['user_allow_pm'] || $auth->acl_gets('a_', 'm_') || $auth->acl_getf_global('m_'))) ? append_sid("{$phpbb_root_path}ucp.$phpEx", 'i=pm&amp;mode=compose&amp;u=' . $row['user_id']) : '',
255 6643 acydburn
256 6643 acydburn
                                'USERNAME_FULL'                => get_username_string('full', $row['user_id'], $row['username'], $row['user_colour']),
257 6643 acydburn
                                'USERNAME'                        => get_username_string('username', $row['user_id'], $row['username'], $row['user_colour']),
258 6643 acydburn
                                'USER_COLOR'                => get_username_string('colour', $row['user_id'], $row['username'], $row['user_colour']),
259 6643 acydburn
                                'U_VIEW_PROFILE'        => get_username_string('profile', $row['user_id'], $row['username'], $row['user_colour']),
260 6643 acydburn
                        ));
261 4758 psotfx
                }
262 5160 acydburn
                $db->sql_freeresult($result);
263 4758 psotfx
264 5160 acydburn
                $template->assign_vars(array(
265 6237 acydburn
                        'PM_IMG'                => $user->img('icon_contact_pm', $user->lang['SEND_PRIVATE_MESSAGE']))
266 5160 acydburn
                );
267 6015 acydburn
        break;
268 3650 psotfx
269 3848 psotfx
        case 'contact':
270 8120 kellanved
271 3848 psotfx
                $page_title = $user->lang['IM_USER'];
272 3848 psotfx
                $template_html = 'memberlist_im.html';
273 4145 psotfx
274 7242 acydburn
                if (!$auth->acl_get('u_sendim'))
275 7242 acydburn
                {
276 7242 acydburn
                        trigger_error('NOT_AUTHORISED');
277 7242 acydburn
                }
278 7242 acydburn
279 4145 psotfx
                $presence_img = '';
280 4145 psotfx
                switch ($action)
281 4145 psotfx
                {
282 4145 psotfx
                        case 'aim':
283 4145 psotfx
                                $lang = 'AIM';
284 4145 psotfx
                                $sql_field = 'user_aim';
285 4145 psotfx
                                $s_select = 'S_SEND_AIM';
286 4145 psotfx
                                $s_action = '';
287 6015 acydburn
                        break;
288 4970 psotfx
289 4145 psotfx
                        case 'msnm':
290 4145 psotfx
                                $lang = 'MSNM';
291 4145 psotfx
                                $sql_field = 'user_msnm';
292 4145 psotfx
                                $s_select = 'S_SEND_MSNM';
293 4145 psotfx
                                $s_action = '';
294 6015 acydburn
                        break;
295 4145 psotfx
296 4145 psotfx
                        case 'jabber':
297 4145 psotfx
                                $lang = 'JABBER';
298 4145 psotfx
                                $sql_field = 'user_jabber';
299 5967 acydburn
                                $s_select = (@extension_loaded('xml') && $config['jab_enable']) ? 'S_SEND_JABBER' : 'S_NO_SEND_JABBER';
300 6015 acydburn
                                $s_action = append_sid("{$phpbb_root_path}memberlist.$phpEx", "mode=contact&amp;action=$action&amp;u=$user_id");
301 6015 acydburn
                        break;
302 4883 acydburn
303 4883 acydburn
                        default:
304 7456 acydburn
                                trigger_error('NO_MODE', E_USER_ERROR);
305 6015 acydburn
                        break;
306 4145 psotfx
                }
307 4145 psotfx
308 4145 psotfx
                // Grab relevant data
309 4970 psotfx
                $sql = "SELECT user_id, username, user_email, user_lang, $sql_field
310 4970 psotfx
                        FROM " . USERS_TABLE . "
311 5108 acydburn
                        WHERE user_id = $user_id
312 5108 acydburn
                                AND user_type IN (" . USER_NORMAL . ', ' . USER_FOUNDER . ')';
313 4145 psotfx
                $result = $db->sql_query($sql);
314 6015 acydburn
                $row = $db->sql_fetchrow($result);
315 6015 acydburn
                $db->sql_freeresult($result);
316 4145 psotfx
317 6015 acydburn
                if (!$row)
318 4145 psotfx
                {
319 7918 kellanved
                        trigger_error('NO_USER');
320 4145 psotfx
                }
321 7918 kellanved
                else if (empty($row[$sql_field]))
322 7918 kellanved
                {
323 7918 kellanved
                        trigger_error('IM_NO_DATA');
324 7918 kellanved
                }
325 4145 psotfx
326 4145 psotfx
                // Post data grab actions
327 4145 psotfx
                switch ($action)
328 4145 psotfx
                {
329 4145 psotfx
                        case 'jabber':
330 8120 kellanved
                                add_form_key('memberlist_messaging');
331 8120 kellanved
332 5967 acydburn
                                if ($submit && @extension_loaded('xml') && $config['jab_enable'])
333 4145 psotfx
                                {
334 8120 kellanved
                                        if (check_form_key('memberlist_messaging'))
335 8120 kellanved
                                        {
336 4145 psotfx
337 8120 kellanved
                                                include_once($phpbb_root_path . 'includes/functions_messenger.' . $phpEx);
338 4145 psotfx
339 8120 kellanved
                                                $subject = sprintf($user->lang['IM_JABBER_SUBJECT'], $user->data['username'], $config['server_name']);
340 8120 kellanved
                                                $message = utf8_normalize_nfc(request_var('message', '', true));
341 7836 acydburn
342 8120 kellanved
                                                if (empty($message))
343 8120 kellanved
                                                {
344 8120 kellanved
                                                        trigger_error('EMPTY_MESSAGE_IM');
345 8120 kellanved
                                                }
346 4145 psotfx
347 8120 kellanved
                                                $messenger = new messenger(false);
348 4145 psotfx
349 8120 kellanved
                                                $messenger->template('profile_send_im', $row['user_lang']);
350 8120 kellanved
                                                $messenger->subject(htmlspecialchars_decode($subject));
351 4145 psotfx
352 8120 kellanved
                                                $messenger->replyto($user->data['user_email']);
353 8120 kellanved
                                                $messenger->im($row['user_jabber'], $row['username']);
354 4145 psotfx
355 8120 kellanved
                                                $messenger->assign_vars(array(
356 8120 kellanved
                                                        'BOARD_CONTACT'        => $config['board_contact'],
357 8120 kellanved
                                                        'FROM_USERNAME'        => htmlspecialchars_decode($user->data['username']),
358 8120 kellanved
                                                        'TO_USERNAME'        => htmlspecialchars_decode($row['username']),
359 8120 kellanved
                                                        'MESSAGE'                => htmlspecialchars_decode($message))
360 8120 kellanved
                                                );
361 4145 psotfx
362 8120 kellanved
                                                $messenger->send(NOTIFY_IM);
363 8120 kellanved
364 8120 kellanved
                                                $s_select = 'S_SENT_JABBER';
365 8120 kellanved
                                        }
366 8120 kellanved
                                        else
367 8120 kellanved
                                        {
368 8120 kellanved
                                                trigger_error('FORM_INVALID');
369 8120 kellanved
                                        }
370 4145 psotfx
                                }
371 6015 acydburn
                        break;
372 4145 psotfx
                }
373 4145 psotfx
374 4145 psotfx
                // Send vars to the template
375 4145 psotfx
                $template->assign_vars(array(
376 4970 psotfx
                        'IM_CONTACT'        => $row[$sql_field],
377 8099 acydburn
                        'A_IM_CONTACT'        => addslashes($row[$sql_field]),
378 8099 acydburn
379 8099 acydburn
                        'U_AIM_CONTACT'        => ($action == 'aim') ? 'aim:addbuddy?screenname=' . urlencode($row[$sql_field]) : '',
380 8099 acydburn
                        'U_AIM_MESSAGE'        => ($action == 'aim') ? 'aim:goim?screenname=' . urlencode($row[$sql_field]) . '&amp;message=' . urlencode($config['sitename']) : '',
381 8099 acydburn
382 5952 acydburn
                        'USERNAME'                => $row['username'],
383 4970 psotfx
                        'CONTACT_NAME'        => $row[$sql_field],
384 5952 acydburn
                        'SITENAME'                => $config['sitename'],
385 4145 psotfx
386 4970 psotfx
                        'PRESENCE_IMG'                => $presence_img,
387 4145 psotfx
388 4970 psotfx
                        'L_SEND_IM_EXPLAIN'        => $user->lang['IM_' . $lang],
389 4970 psotfx
                        'L_IM_SENT_JABBER'        => sprintf($user->lang['IM_SENT_JABBER'], $row['username']),
390 4145 psotfx
391 4970 psotfx
                        $s_select                        => true,
392 4145 psotfx
                        'S_IM_ACTION'                => $s_action)
393 4145 psotfx
                );
394 4145 psotfx
395 6015 acydburn
        break;
396 3848 psotfx
397 3625 psotfx
        case 'viewprofile':
398 3625 psotfx
                // Display a profile
399 6232 acydburn
                if ($user_id == ANONYMOUS && !$username)
400 3625 psotfx
                {
401 5138 acydburn
                        trigger_error('NO_USER');
402 3625 psotfx
                }
403 3589 psotfx
404 5595 acydburn
                // Get user...
405 7007 acydburn
                $sql = 'SELECT *
406 7007 acydburn
                        FROM ' . USERS_TABLE . '
407 7007 acydburn
                        WHERE ' . (($username) ? "username_clean = '" . $db->sql_escape(utf8_clean_string($username)) . "'" : "user_id = $user_id");
408 5595 acydburn
                $result = $db->sql_query($sql);
409 6015 acydburn
                $member = $db->sql_fetchrow($result);
410 6015 acydburn
                $db->sql_freeresult($result);
411 5595 acydburn
412 6015 acydburn
                if (!$member)
413 5595 acydburn
                {
414 5595 acydburn
                        trigger_error('NO_USER');
415 5595 acydburn
                }
416 5595 acydburn
417 7150 acydburn
                // a_user admins and founder are able to view inactive users and bots to be able to manage them more easily
418 7384 acydburn
                // Normal users are able to see at least users having only changed their profile settings but not yet reactivated.
419 7150 acydburn
                if (!$auth->acl_get('a_user') && $user->data['user_type'] != USER_FOUNDER)
420 7150 acydburn
                {
421 7154 acydburn
                        if ($member['user_type'] == USER_IGNORE)
422 7150 acydburn
                        {
423 7150 acydburn
                                trigger_error('NO_USER');
424 7150 acydburn
                        }
425 7154 acydburn
                        else if ($member['user_type'] == USER_INACTIVE && $member['user_inactive_reason'] != INACTIVE_PROFILE)
426 7150 acydburn
                        {
427 7150 acydburn
                                trigger_error('NO_USER');
428 7150 acydburn
                        }
429 7150 acydburn
                }
430 7150 acydburn
431 6232 acydburn
                $user_id = (int) $member['user_id'];
432 6232 acydburn
433 10392 bantu
                // Get group memberships
434 10392 bantu
                // Also get visiting user's groups to determine hidden group memberships if necessary.
435 10392 bantu
                $auth_hidden_groups = ($user_id === (int) $user->data['user_id'] || $auth->acl_gets('a_group', 'a_groupadd', 'a_groupdel')) ? true : false;
436 10392 bantu
                $sql_uid_ary = ($auth_hidden_groups) ? array($user_id) : array($user_id, (int) $user->data['user_id']);
437 10392 bantu
438 3625 psotfx
                // Do the SQL thang
439 10392 bantu
                $sql = 'SELECT g.group_id, g.group_name, g.group_type, ug.user_id
440 10392 bantu
                        FROM ' . GROUPS_TABLE . ' g, ' . USER_GROUP_TABLE . ' ug
441 10392 bantu
                        WHERE ' . $db->sql_in_set('ug.user_id', $sql_uid_ary) . '
442 10392 bantu
                                AND g.group_id = ug.group_id
443 10393 bantu
                                AND ug.user_pending = 0';
444 3625 psotfx
                $result = $db->sql_query($sql);
445 3589 psotfx
446 10394 bantu
                // Divide data into profile data and current user data
447 10392 bantu
                $profile_groups = $user_groups = array();
448 3628 psotfx
                while ($row = $db->sql_fetchrow($result))
449 3625 psotfx
                {
450 10392 bantu
                        $row['user_id'] = (int) $row['user_id'];
451 10392 bantu
                        $row['group_id'] = (int) $row['group_id'];
452 10392 bantu
453 10392 bantu
                        if ($row['user_id'] == $user_id)
454 10392 bantu
                        {
455 10392 bantu
                                $profile_groups[] = $row;
456 10392 bantu
                        }
457 10392 bantu
                        else
458 10392 bantu
                        {
459 10392 bantu
                                $user_groups[$row['group_id']] = $row['group_id'];
460 10392 bantu
                        }
461 3625 psotfx
                }
462 6462 grahamje
                $db->sql_freeresult($result);
463 3672 psotfx
464 10393 bantu
                // Filter out hidden groups and sort groups by name
465 10393 bantu
                $group_data = $group_sort = array();
466 10392 bantu
                foreach ($profile_groups as $row)
467 10392 bantu
                {
468 10393 bantu
                        if ($row['group_type'] == GROUP_SPECIAL)
469 10392 bantu
                        {
470 10393 bantu
                                // Lookup group name in language dictionary
471 10393 bantu
                                if (isset($user->lang['G_' . $row['group_name']]))
472 10393 bantu
                                {
473 10393 bantu
                                        $row['group_name'] = $user->lang['G_' . $row['group_name']];
474 10393 bantu
                                }
475 10393 bantu
                        }
476 10393 bantu
                        else if (!$auth_hidden_groups && $row['group_type'] == GROUP_HIDDEN && !isset($user_groups[$row['group_id']]))
477 10393 bantu
                        {
478 10393 bantu
                                // Skip over hidden groups the user cannot see
479 10392 bantu
                                continue;
480 10392 bantu
                        }
481 10392 bantu
482 10393 bantu
                        $group_sort[$row['group_id']] = utf8_clean_string($row['group_name']);
483 10393 bantu
                        $group_data[$row['group_id']] = $row;
484 10392 bantu
                }
485 10392 bantu
                unset($profile_groups);
486 10392 bantu
                unset($user_groups);
487 10393 bantu
                asort($group_sort);
488 10392 bantu
489 10393 bantu
                $group_options = '';
490 10393 bantu
                foreach ($group_sort as $group_id => $null)
491 10393 bantu
                {
492 10393 bantu
                        $row = $group_data[$group_id];
493 10393 bantu
494 10393 bantu
                        $group_options .= '<option value="' . $row['group_id'] . '"' . (($row['group_id'] == $member['group_id']) ? ' selected="selected"' : '') . '>' . $row['group_name'] . '</option>';
495 10393 bantu
                }
496 10393 bantu
                unset($group_data);
497 10393 bantu
                unset($group_sort);
498 10393 bantu
499 6462 grahamje
                // What colour is the zebra
500 6462 grahamje
                $sql = 'SELECT friend, foe
501 6462 grahamje
                        FROM ' . ZEBRA_TABLE . "
502 6462 grahamje
                        WHERE zebra_id = $user_id
503 6462 grahamje
                                AND user_id = {$user->data['user_id']}";
504 6462 grahamje
505 6462 grahamje
                $result = $db->sql_query($sql);
506 6462 grahamje
                $row = $db->sql_fetchrow($result);
507 6462 grahamje
                $foe = ($row['foe']) ? true : false;
508 6462 grahamje
                $friend = ($row['friend']) ? true : false;
509 6462 grahamje
                $db->sql_freeresult($result);
510 6462 grahamje
511 6123 grahamje
                if ($config['load_onlinetrack'])
512 6123 grahamje
                {
513 6123 grahamje
                        $sql = 'SELECT MAX(session_time) AS session_time, MIN(session_viewonline) AS session_viewonline
514 6123 grahamje
                                FROM ' . SESSIONS_TABLE . "
515 6123 grahamje
                                WHERE session_user_id = $user_id";
516 6123 grahamje
                        $result = $db->sql_query($sql);
517 6123 grahamje
                        $row = $db->sql_fetchrow($result);
518 6123 grahamje
                        $db->sql_freeresult($result);
519 4065 psotfx
520 6123 grahamje
                        $member['session_time'] = (isset($row['session_time'])) ? $row['session_time'] : 0;
521 6123 grahamje
                        $member['session_viewonline'] = (isset($row['session_viewonline'])) ? $row['session_viewonline'] :        0;
522 6123 grahamje
                        unset($row);
523 6123 grahamje
                }
524 4065 psotfx
525 5624 acydburn
                if ($config['load_user_activity'])
526 3672 psotfx
                {
527 5931 acydburn
                        display_user_activity($member);
528 3672 psotfx
                }
529 4145 psotfx
530 4970 psotfx
                // Do the relevant calculations
531 4065 psotfx
                $memberdays = max(1, round((time() - $member['user_regdate']) / 86400));
532 4065 psotfx
                $posts_per_day = $member['user_posts'] / $memberdays;
533 5624 acydburn
                $percentage = ($config['num_posts']) ? min(100, ($member['user_posts'] / $config['num_posts']) * 100) : 0;
534 3625 psotfx
535 3625 psotfx
536 4145 psotfx
                if ($member['user_sig'])
537 4145 psotfx
                {
538 6321 naderman
                        $member['user_sig'] = censor_text($member['user_sig']);
539 6321 naderman
540 6321 naderman
                        if ($member['user_sig_bbcode_bitfield'])
541 6321 naderman
                        {
542 6321 naderman
                                include_once($phpbb_root_path . 'includes/bbcode.' . $phpEx);
543 6321 naderman
                                $bbcode = new bbcode();
544 6321 naderman
                                $bbcode->bbcode_second_pass($member['user_sig'], $member['user_sig_bbcode_uid'], $member['user_sig_bbcode_bitfield']);
545 6321 naderman
                        }
546 6321 naderman
547 8050 naderman
                        $member['user_sig'] = bbcode_nl2br($member['user_sig']);
548 6321 naderman
                        $member['user_sig'] = smiley_text($member['user_sig']);
549 4145 psotfx
                }
550 4145 psotfx
551 7330 acydburn
                $poster_avatar = get_user_avatar($member['user_avatar'], $member['user_avatar_type'], $member['user_avatar_width'], $member['user_avatar_height']);
552 6015 acydburn
553 10065 nickvergessen
                // We need to check if the modules 'zebra' ('friends' & 'foes' mode),  'notes' ('user_notes' mode) and  'warn' ('warn_user' mode) are accessible to decide if we can display appropriate links
554 10065 nickvergessen
                $zebra_enabled = $friends_enabled = $foes_enabled = $user_notes_enabled = $warn_user_enabled = false;
555 4065 psotfx
556 9619 toonarmy
                // Only check if the user is logged in
557 9619 toonarmy
                if ($user->data['is_registered'])
558 9619 toonarmy
                {
559 9619 toonarmy
                        if (!class_exists('p_master'))
560 9619 toonarmy
                        {
561 9619 toonarmy
                                include($phpbb_root_path . 'includes/functions_module.' . $phpEx);
562 9619 toonarmy
                        }
563 9619 toonarmy
                        $module = new p_master();
564 9619 toonarmy
565 9619 toonarmy
                        $module->list_modules('ucp');
566 9619 toonarmy
                        $module->list_modules('mcp');
567 9619 toonarmy
568 9619 toonarmy
                        $user_notes_enabled = ($module->loaded('notes', 'user_notes')) ? true : false;
569 9619 toonarmy
                        $warn_user_enabled = ($module->loaded('warn', 'warn_user')) ? true : false;
570 9619 toonarmy
                        $zebra_enabled = ($module->loaded('zebra')) ? true : false;
571 10065 nickvergessen
                        $friends_enabled = ($module->loaded('zebra', 'friends')) ? true : false;
572 10065 nickvergessen
                        $foes_enabled = ($module->loaded('zebra', 'foes')) ? true : false;
573 9619 toonarmy
574 9619 toonarmy
                        unset($module);
575 9619 toonarmy
                }
576 9619 toonarmy
577 9619 toonarmy
                $template->assign_vars(show_profile($member, $user_notes_enabled, $warn_user_enabled));
578 9619 toonarmy
579 4984 acydburn
                // Custom Profile Fields
580 4984 acydburn
                $profile_fields = array();
581 4984 acydburn
                if ($config['load_cpf_viewprofile'])
582 4984 acydburn
                {
583 6015 acydburn
                        include_once($phpbb_root_path . 'includes/functions_profile_fields.' . $phpEx);
584 4984 acydburn
                        $cp = new custom_profile();
585 4984 acydburn
                        $profile_fields = $cp->generate_profile_fields_template('grab', $user_id);
586 4984 acydburn
                        $profile_fields = (isset($profile_fields[$user_id])) ? $cp->generate_profile_fields_template('show', false, $profile_fields[$user_id]) : array();
587 4984 acydburn
                }
588 4984 acydburn
589 8801 acydburn
                // If the user has m_approve permission or a_user permission, then list then display unapproved posts
590 8801 acydburn
                if ($auth->acl_getf_global('m_approve') || $auth->acl_get('a_user'))
591 8801 acydburn
                {
592 8801 acydburn
                        $sql = 'SELECT COUNT(post_id) as posts_in_queue
593 8801 acydburn
                                FROM ' . POSTS_TABLE . '
594 8801 acydburn
                                WHERE poster_id = ' . $user_id . '
595 8801 acydburn
                                        AND post_approved = 0';
596 8801 acydburn
                        $result = $db->sql_query($sql);
597 8801 acydburn
                        $member['posts_in_queue'] = (int) $db->sql_fetchfield('posts_in_queue');
598 8801 acydburn
                        $db->sql_freeresult($result);
599 8801 acydburn
                }
600 8801 acydburn
                else
601 8801 acydburn
                {
602 8801 acydburn
                        $member['posts_in_queue'] = 0;
603 8801 acydburn
                }
604 8801 acydburn
605 3625 psotfx
                $template->assign_vars(array(
606 8801 acydburn
                        'L_POSTS_IN_QUEUE'        => $user->lang('NUM_POSTS_IN_QUEUE', $member['posts_in_queue']),
607 8801 acydburn
608 3625 psotfx
                        'POSTS_DAY'                        => sprintf($user->lang['POST_DAY'], $posts_per_day),
609 3625 psotfx
                        'POSTS_PCT'                        => sprintf($user->lang['POST_PCT'], $percentage),
610 3625 psotfx
611 5059 psotfx
                        'OCCUPATION'        => (!empty($member['user_occ'])) ? censor_text($member['user_occ']) : '',
612 5059 psotfx
                        'INTERESTS'                => (!empty($member['user_interests'])) ? censor_text($member['user_interests']) : '',
613 6321 naderman
                        'SIGNATURE'                => $member['user_sig'],
614 8801 acydburn
                        'POSTS_IN_QUEUE'=> $member['posts_in_queue'],
615 3625 psotfx
616 4065 psotfx
                        'AVATAR_IMG'        => $poster_avatar,
617 6237 acydburn
                        'PM_IMG'                => $user->img('icon_contact_pm', $user->lang['SEND_PRIVATE_MESSAGE']),
618 6237 acydburn
                        'EMAIL_IMG'                => $user->img('icon_contact_email', $user->lang['EMAIL']),
619 6237 acydburn
                        'WWW_IMG'                => $user->img('icon_contact_www', $user->lang['WWW']),
620 6237 acydburn
                        'ICQ_IMG'                => $user->img('icon_contact_icq', $user->lang['ICQ']),
621 6237 acydburn
                        'AIM_IMG'                => $user->img('icon_contact_aim', $user->lang['AIM']),
622 6237 acydburn
                        'MSN_IMG'                => $user->img('icon_contact_msnm', $user->lang['MSNM']),
623 6237 acydburn
                        'YIM_IMG'                => $user->img('icon_contact_yahoo', $user->lang['YIM']),
624 6237 acydburn
                        'JABBER_IMG'        => $user->img('icon_contact_jabber', $user->lang['JABBER']),
625 6237 acydburn
                        'SEARCH_IMG'        => $user->img('icon_user_search', $user->lang['SEARCH']),
626 4065 psotfx
627 6015 acydburn
                        'S_PROFILE_ACTION'        => append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=group'),
628 4970 psotfx
                        'S_GROUP_OPTIONS'        => $group_options,
629 5138 acydburn
                        'S_CUSTOM_FIELDS'        => (isset($profile_fields['row']) && sizeof($profile_fields['row'])) ? true : false,
630 3628 psotfx
631 6015 acydburn
                        'U_USER_ADMIN'                        => ($auth->acl_get('a_user')) ? append_sid("{$phpbb_root_path}adm/index.$phpEx", 'i=users&amp;mode=overview&amp;u=' . $user_id, true, $user->session_id) : '',
632 9140 acydburn
                        'U_USER_BAN'                        => ($auth->acl_get('m_ban') && $user_id != $user->data['user_id']) ? append_sid("{$phpbb_root_path}mcp.$phpEx", 'i=ban&amp;mode=user&amp;u=' . $user_id, true, $user->session_id) : '',
633 8801 acydburn
                        'U_MCP_QUEUE'                        => ($auth->acl_getf_global('m_approve')) ? append_sid("{$phpbb_root_path}mcp.$phpEx", 'i=queue', true, $user->session_id) : '',
634 8574 Kellanved
635 9915 Kellanved
                        'U_SWITCH_PERMISSIONS'        => ($auth->acl_get('a_switchperm') && $user->data['user_id'] != $user_id) ? append_sid("{$phpbb_root_path}ucp.$phpEx", "mode=switch_perm&amp;u={$user_id}&amp;hash=" . generate_link_hash('switchperm')) : '',
636 5790 acydburn
637 9617 rxu
                        'S_USER_NOTES'                => ($user_notes_enabled) ? true : false,
638 9617 rxu
                        'S_WARN_USER'                => ($warn_user_enabled) ? true : false,
639 6135 acydburn
                        'S_ZEBRA'                        => ($user->data['user_id'] != $user_id && $user->data['is_registered'] && $zebra_enabled) ? true : false,
640 10065 nickvergessen
                        'U_ADD_FRIEND'                => (!$friend && !$foe && $friends_enabled) ? append_sid("{$phpbb_root_path}ucp.$phpEx", 'i=zebra&amp;add=' . urlencode(htmlspecialchars_decode($member['username']))) : '',
641 10065 nickvergessen
                        'U_ADD_FOE'                        => (!$friend && !$foe && $foes_enabled) ? append_sid("{$phpbb_root_path}ucp.$phpEx", 'i=zebra&amp;mode=foes&amp;add=' . urlencode(htmlspecialchars_decode($member['username']))) : '',
642 10065 nickvergessen
                        'U_REMOVE_FRIEND'        => ($friend && $friends_enabled) ? append_sid("{$phpbb_root_path}ucp.$phpEx", 'i=zebra&amp;remove=1&amp;usernames[]=' . $user_id) : '',
643 10065 nickvergessen
                        'U_REMOVE_FOE'                => ($foe && $foes_enabled) ? append_sid("{$phpbb_root_path}ucp.$phpEx", 'i=zebra&amp;remove=1&amp;mode=foes&amp;usernames[]=' . $user_id) : '',
644 6462 grahamje
                ));
645 5138 acydburn
646 6015 acydburn
                if (!empty($profile_fields['row']))
647 5138 acydburn
                {
648 5138 acydburn
                        $template->assign_vars($profile_fields['row']);
649 5138 acydburn
                }
650 5138 acydburn
651 6015 acydburn
                if (!empty($profile_fields['blockrow']))
652 5138 acydburn
                {
653 5138 acydburn
                        foreach ($profile_fields['blockrow'] as $field_data)
654 5138 acydburn
                        {
655 5138 acydburn
                                $template->assign_block_vars('custom_fields', $field_data);
656 5138 acydburn
                        }
657 5138 acydburn
                }
658 3625 psotfx
659 6628 acydburn
                // Inactive reason/account?
660 6628 acydburn
                if ($member['user_type'] == USER_INACTIVE)
661 6628 acydburn
                {
662 6628 acydburn
                        $user->add_lang('acp/common');
663 6628 acydburn
664 6628 acydburn
                        $inactive_reason = $user->lang['INACTIVE_REASON_UNKNOWN'];
665 6628 acydburn
666 6628 acydburn
                        switch ($member['user_inactive_reason'])
667 6628 acydburn
                        {
668 6628 acydburn
                                case INACTIVE_REGISTER:
669 6628 acydburn
                                        $inactive_reason = $user->lang['INACTIVE_REASON_REGISTER'];
670 6628 acydburn
                                break;
671 6628 acydburn
672 6628 acydburn
                                case INACTIVE_PROFILE:
673 6628 acydburn
                                        $inactive_reason = $user->lang['INACTIVE_REASON_PROFILE'];
674 6628 acydburn
                                break;
675 6628 acydburn
676 6628 acydburn
                                case INACTIVE_MANUAL:
677 6628 acydburn
                                        $inactive_reason = $user->lang['INACTIVE_REASON_MANUAL'];
678 6628 acydburn
                                break;
679 6628 acydburn
680 6628 acydburn
                                case INACTIVE_REMIND:
681 6628 acydburn
                                        $inactive_reason = $user->lang['INACTIVE_REASON_REMIND'];
682 6628 acydburn
                                break;
683 6628 acydburn
                        }
684 8120 kellanved
685 6628 acydburn
                        $template->assign_vars(array(
686 6628 acydburn
                                'S_USER_INACTIVE'                => true,
687 6628 acydburn
                                'USER_INACTIVE_REASON'        => $inactive_reason)
688 6628 acydburn
                        );
689 6628 acydburn
                }
690 6628 acydburn
691 7934 kellanved
                // Now generate page title
692 5247 acydburn
                $page_title = sprintf($user->lang['VIEWING_PROFILE'], $member['username']);
693 5247 acydburn
                $template_html = 'memberlist_view.html';
694 5247 acydburn
695 5247 acydburn
        break;
696 5247 acydburn
697 3625 psotfx
        case 'email':
698 5784 acydburn
699 3625 psotfx
                // Send an email
700 3625 psotfx
                $page_title = $user->lang['SEND_EMAIL'];
701 3625 psotfx
                $template_html = 'memberlist_email.html';
702 3625 psotfx
703 8120 kellanved
                add_form_key('memberlist_email');
704 8120 kellanved
705 5138 acydburn
                if (!$config['email_enable'])
706 3598 psotfx
                {
707 5138 acydburn
                        trigger_error('EMAIL_DISABLED');
708 4145 psotfx
                }
709 4145 psotfx
710 4145 psotfx
                if (!$auth->acl_get('u_sendemail'))
711 3598 psotfx
                {
712 5138 acydburn
                        trigger_error('NO_EMAIL');
713 3625 psotfx
                }
714 3598 psotfx
715 3625 psotfx
                // Are we trying to abuse the facility?
716 3625 psotfx
                if (time() - $user->data['user_emailtime'] < $config['flood_interval'])
717 3625 psotfx
                {
718 5138 acydburn
                        trigger_error('FLOOD_EMAIL_LIMIT');
719 3625 psotfx
                }
720 3625 psotfx
721 5784 acydburn
                // Determine action...
722 5784 acydburn
                $user_id = request_var('u', 0);
723 5784 acydburn
                $topic_id = request_var('t', 0);
724 3980 psotfx
725 5784 acydburn
                // Send email to user...
726 5784 acydburn
                if ($user_id)
727 3625 psotfx
                {
728 5784 acydburn
                        if ($user_id == ANONYMOUS || !$config['board_email_form'])
729 5784 acydburn
                        {
730 5784 acydburn
                                trigger_error('NO_EMAIL');
731 5784 acydburn
                        }
732 5784 acydburn
733 3980 psotfx
                        // Get the appropriate username, etc.
734 4970 psotfx
                        $sql = 'SELECT username, user_email, user_allow_viewemail, user_lang, user_jabber, user_notify_type
735 4145 psotfx
                                FROM ' . USERS_TABLE . "
736 3980 psotfx
                                WHERE user_id = $user_id
737 4603 psotfx
                                        AND user_type IN (" . USER_NORMAL . ', ' . USER_FOUNDER . ')';
738 3980 psotfx
                        $result = $db->sql_query($sql);
739 5784 acydburn
                        $row = $db->sql_fetchrow($result);
740 5784 acydburn
                        $db->sql_freeresult($result);
741 3625 psotfx
742 5784 acydburn
                        if (!$row)
743 3598 psotfx
                        {
744 5138 acydburn
                                trigger_error('NO_USER');
745 3625 psotfx
                        }
746 3980 psotfx
747 3980 psotfx
                        // Can we send email to this user?
748 5138 acydburn
                        if (!$row['user_allow_viewemail'] && !$auth->acl_get('a_user'))
749 3625 psotfx
                        {
750 5138 acydburn
                                trigger_error('NO_EMAIL');
751 3625 psotfx
                        }
752 3980 psotfx
                }
753 5784 acydburn
                else if ($topic_id)
754 3980 psotfx
                {
755 5784 acydburn
                        // Send topic heads-up to email address
756 4970 psotfx
                        $sql = 'SELECT forum_id, topic_title
757 4145 psotfx
                                FROM ' . TOPICS_TABLE . "
758 3980 psotfx
                                WHERE topic_id = $topic_id";
759 3980 psotfx
                        $result = $db->sql_query($sql);
760 5784 acydburn
                        $row = $db->sql_fetchrow($result);
761 5784 acydburn
                        $db->sql_freeresult($result);
762 3598 psotfx
763 5784 acydburn
                        if (!$row)
764 3625 psotfx
                        {
765 5138 acydburn
                                trigger_error('NO_TOPIC');
766 3598 psotfx
                        }
767 3980 psotfx
768 5824 acydburn
                        if ($row['forum_id'])
769 3980 psotfx
                        {
770 5824 acydburn
                                if (!$auth->acl_get('f_read', $row['forum_id']))
771 5824 acydburn
                                {
772 7919 kellanved
                                        trigger_error('SORRY_AUTH_READ');
773 5824 acydburn
                                }
774 5824 acydburn
775 5824 acydburn
                                if (!$auth->acl_get('f_email', $row['forum_id']))
776 5824 acydburn
                                {
777 5824 acydburn
                                        trigger_error('NO_EMAIL');
778 5824 acydburn
                                }
779 3980 psotfx
                        }
780 5824 acydburn
                        else
781 5824 acydburn
                        {
782 5824 acydburn
                                // If global announcement, we need to check if the user is able to at least read and email in one forum...
783 5824 acydburn
                                if (!$auth->acl_getf_global('f_read'))
784 5824 acydburn
                                {
785 7919 kellanved
                                        trigger_error('SORRY_AUTH_READ');
786 5824 acydburn
                                }
787 3980 psotfx
788 5824 acydburn
                                if (!$auth->acl_getf_global('f_email'))
789 5824 acydburn
                                {
790 5824 acydburn
                                        trigger_error('NO_EMAIL');
791 5824 acydburn
                                }
792 3980 psotfx
                        }
793 3980 psotfx
                }
794 5784 acydburn
                else
795 5784 acydburn
                {
796 5784 acydburn
                        trigger_error('NO_EMAIL');
797 5784 acydburn
                }
798 3980 psotfx
799 3980 psotfx
                $error = array();
800 5784 acydburn
801 7920 acydburn
                $name                = utf8_normalize_nfc(request_var('name', '', true));
802 5784 acydburn
                $email                = request_var('email', '');
803 5784 acydburn
                $email_lang = request_var('lang', $config['default_lang']);
804 7920 acydburn
                $subject        = utf8_normalize_nfc(request_var('subject', '', true));
805 7920 acydburn
                $message        = utf8_normalize_nfc(request_var('message', '', true));
806 5784 acydburn
                $cc                        = (isset($_POST['cc_email'])) ? true : false;
807 5784 acydburn
                $submit                = (isset($_POST['submit'])) ? true : false;
808 5784 acydburn
809 4578 psotfx
                if ($submit)
810 3980 psotfx
                {
811 8120 kellanved
                        if (!check_form_key('memberlist_email'))
812 8120 kellanved
                        {
813 8120 kellanved
                                $error[] = 'FORM_INVALID';
814 8120 kellanved
                        }
815 5784 acydburn
                        if ($user_id)
816 3980 psotfx
                        {
817 4970 psotfx
                                if (!$subject)
818 3980 psotfx
                                {
819 3980 psotfx
                                        $error[] = $user->lang['EMPTY_SUBJECT_EMAIL'];
820 3980 psotfx
                                }
821 3980 psotfx
822 4970 psotfx
                                if (!$message)
823 3980 psotfx
                                {
824 3980 psotfx
                                        $error[] = $user->lang['EMPTY_MESSAGE_EMAIL'];
825 3980 psotfx
                                }
826 5784 acydburn
827 5784 acydburn
                                $name = $row['username'];
828 5784 acydburn
                                $email_lang = $row['user_lang'];
829 5784 acydburn
                                $email = $row['user_email'];
830 3980 psotfx
                        }
831 3598 psotfx
                        else
832 3598 psotfx
                        {
833 7813 acydburn
                                if (!$email || !preg_match('/^' . get_preg_expression('email') . '$/i', $email))
834 3980 psotfx
                                {
835 3980 psotfx
                                        $error[] = $user->lang['EMPTY_ADDRESS_EMAIL'];
836 3980 psotfx
                                }
837 3980 psotfx
838 4970 psotfx
                                if (!$name)
839 3980 psotfx
                                {
840 3980 psotfx
                                        $error[] = $user->lang['EMPTY_NAME_EMAIL'];
841 3980 psotfx
                                }
842 3598 psotfx
                        }
843 2673 psotfx
844 3980 psotfx
                        if (!sizeof($error))
845 3625 psotfx
                        {
846 4145 psotfx
                                $sql = 'UPDATE ' . USERS_TABLE . '
847 4145 psotfx
                                        SET user_emailtime = ' . time() . '
848 4145 psotfx
                                        WHERE user_id = ' . $user->data['user_id'];
849 3625 psotfx
                                $result = $db->sql_query($sql);
850 3598 psotfx
851 6015 acydburn
                                include_once($phpbb_root_path . 'includes/functions_messenger.' . $phpEx);
852 5784 acydburn
                                $messenger = new messenger(false);
853 5784 acydburn
                                $email_tpl = ($user_id) ? 'profile_send_email' : 'email_notify';
854 3727 psotfx
855 6135 acydburn
                                $mail_to_users = array();
856 4578 psotfx
857 6135 acydburn
                                $mail_to_users[] = array(
858 6135 acydburn
                                        'email_lang'                => $email_lang,
859 6135 acydburn
                                        'email'                                => $email,
860 6135 acydburn
                                        'name'                                => $name,
861 6198 acydburn
                                        'username'                        => ($user_id) ? $row['username'] : '',
862 6135 acydburn
                                        'to_name'                        => $name,
863 6198 acydburn
                                        'user_jabber'                => ($user_id) ? $row['user_jabber'] : '',
864 6198 acydburn
                                        'user_notify_type'        => ($user_id) ? $row['user_notify_type'] : NOTIFY_EMAIL,
865 6198 acydburn
                                        'topic_title'                => (!$user_id) ? $row['topic_title'] : '',
866 6198 acydburn
                                        'forum_id'                        => (!$user_id) ? $row['forum_id'] : 0,
867 6135 acydburn
                                );
868 4578 psotfx
869 6135 acydburn
                                // Ok, now the same email if CC specified, but without exposing the users email address
870 6135 acydburn
                                if ($cc)
871 4583 psotfx
                                {
872 6135 acydburn
                                        $mail_to_users[] = array(
873 6135 acydburn
                                                'email_lang'                => $user->data['user_lang'],
874 6135 acydburn
                                                'email'                                => $user->data['user_email'],
875 6135 acydburn
                                                'name'                                => $user->data['username'],
876 6135 acydburn
                                                'username'                        => $user->data['username'],
877 6135 acydburn
                                                'to_name'                        => $name,
878 6135 acydburn
                                                'user_jabber'                => $user->data['user_jabber'],
879 6135 acydburn
                                                'user_notify_type'        => ($user_id) ? $user->data['user_notify_type'] : NOTIFY_EMAIL,
880 6198 acydburn
                                                'topic_title'                => (!$user_id) ? $row['topic_title'] : '',
881 6198 acydburn
                                                'forum_id'                        => (!$user_id) ? $row['forum_id'] : 0,
882 6135 acydburn
                                        );
883 4583 psotfx
                                }
884 4583 psotfx
885 6135 acydburn
                                foreach ($mail_to_users as $row)
886 3625 psotfx
                                {
887 6135 acydburn
                                        $messenger->template($email_tpl, $row['email_lang']);
888 6135 acydburn
                                        $messenger->replyto($user->data['user_email']);
889 6135 acydburn
                                        $messenger->to($row['email'], $row['name']);
890 3598 psotfx
891 6135 acydburn
                                        if ($user_id)
892 6135 acydburn
                                        {
893 6548 acydburn
                                                $messenger->subject(htmlspecialchars_decode($subject));
894 6135 acydburn
                                                $messenger->im($row['user_jabber'], $row['username']);
895 6135 acydburn
                                                $notify_type = $row['user_notify_type'];
896 6135 acydburn
                                        }
897 6135 acydburn
                                        else
898 6135 acydburn
                                        {
899 6135 acydburn
                                                $notify_type = NOTIFY_EMAIL;
900 6135 acydburn
                                        }
901 3903 psotfx
902 11568 git-gate
                                        $messenger->anti_abuse_headers($config, $user);
903 3727 psotfx
904 5784 acydburn
                                        $messenger->assign_vars(array(
905 6826 acydburn
                                                'BOARD_CONTACT'        => $config['board_contact'],
906 6548 acydburn
                                                'TO_USERNAME'        => htmlspecialchars_decode($row['to_name']),
907 6548 acydburn
                                                'FROM_USERNAME'        => htmlspecialchars_decode($user->data['username']),
908 6548 acydburn
                                                'MESSAGE'                => htmlspecialchars_decode($message))
909 5784 acydburn
                                        );
910 6135 acydburn
911 6135 acydburn
                                        if ($topic_id)
912 6135 acydburn
                                        {
913 6135 acydburn
                                                $messenger->assign_vars(array(
914 6548 acydburn
                                                        'TOPIC_NAME'        => htmlspecialchars_decode($row['topic_title']),
915 6135 acydburn
                                                        'U_TOPIC'                => generate_board_url() . "/viewtopic.$phpEx?f=" . $row['forum_id'] . "&t=$topic_id")
916 6135 acydburn
                                                );
917 6135 acydburn
                                        }
918 6135 acydburn
919 6135 acydburn
                                        $messenger->send($notify_type);
920 5784 acydburn
                                }
921 5784 acydburn
922 6015 acydburn
                                meta_refresh(3, append_sid("{$phpbb_root_path}index.$phpEx"));
923 6930 acydburn
                                $message = ($user_id) ? sprintf($user->lang['RETURN_INDEX'], '<a href="' . append_sid("{$phpbb_root_path}index.$phpEx") . '">', '</a>') : sprintf($user->lang['RETURN_TOPIC'],  '<a href="' . append_sid("{$phpbb_root_path}viewtopic.$phpEx", "f={$row['forum_id']}&amp;t=$topic_id") . '">', '</a>');
924 3980 psotfx
                                trigger_error($user->lang['EMAIL_SENT'] . '<br /><br />' . $message);
925 3625 psotfx
                        }
926 3625 psotfx
                }
927 3625 psotfx
928 5784 acydburn
                if ($user_id)
929 3980 psotfx
                {
930 3980 psotfx
                        $template->assign_vars(array(
931 5784 acydburn
                                'S_SEND_USER'        => true,
932 5784 acydburn
                                'USERNAME'                => $row['username'],
933 8120 kellanved
934 5784 acydburn
                                'L_EMAIL_BODY_EXPLAIN'        => $user->lang['EMAIL_BODY_EXPLAIN'],
935 6015 acydburn
                                'S_POST_ACTION'                        => append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=email&amp;u=' . $user_id))
936 5784 acydburn
                        );
937 5784 acydburn
                }
938 5784 acydburn
                else
939 5784 acydburn
                {
940 5784 acydburn
                        $template->assign_vars(array(
941 5784 acydburn
                                'EMAIL'                                => $email,
942 5784 acydburn
                                'NAME'                                => $name,
943 5784 acydburn
                                'S_LANG_OPTIONS'        => language_select($email_lang),
944 3980 psotfx
945 5784 acydburn
                                'L_EMAIL_BODY_EXPLAIN'        => $user->lang['EMAIL_TOPIC_EXPLAIN'],
946 6015 acydburn
                                'S_POST_ACTION'                        => append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=email&amp;t=' . $topic_id))
947 3980 psotfx
                        );
948 3980 psotfx
                }
949 5138 acydburn
950 3598 psotfx
                $template->assign_vars(array(
951 9421 Kellanved
                        'ERROR_MESSAGE'                => (sizeof($error)) ? implode('<br />', $error) : '',
952 9421 Kellanved
                        'SUBJECT'                        => $subject,
953 9421 Kellanved
                        'MESSAGE'                        => $message,
954 9421 Kellanved
                        )
955 5784 acydburn
                );
956 3510 psotfx
957 5784 acydburn
        break;
958 3980 psotfx
959 4970 psotfx
        case 'group':
960 3625 psotfx
        default:
961 3625 psotfx
                // The basic memberlist
962 3625 psotfx
                $page_title = $user->lang['MEMBERLIST'];
963 3625 psotfx
                $template_html = 'memberlist_body.html';
964 3024 psotfx
965 3625 psotfx
                // Sorting
966 8460 acydburn
                $sort_key_text = array('a' => $user->lang['SORT_USERNAME'], 'b' => $user->lang['SORT_LOCATION'], 'c' => $user->lang['SORT_JOINED'], 'd' => $user->lang['SORT_POST_COUNT'], 'f' => $user->lang['WEBSITE'], 'g' => $user->lang['ICQ'], 'h' => $user->lang['AIM'], 'i' => $user->lang['MSNM'], 'j' => $user->lang['YIM'], 'k' => $user->lang['JABBER']);
967 8460 acydburn
                $sort_key_sql = array('a' => 'u.username_clean', 'b' => 'u.user_from', 'c' => 'u.user_regdate', 'd' => 'u.user_posts', 'f' => 'u.user_website', 'g' => 'u.user_icq', 'h' => 'u.user_aim', 'i' => 'u.user_msnm', 'j' => 'u.user_yim', 'k' => 'u.user_jabber');
968 3625 psotfx
969 8460 acydburn
                if ($auth->acl_get('a_user'))
970 6628 acydburn
                {
971 8460 acydburn
                        $sort_key_text['e'] = $user->lang['SORT_EMAIL'];
972 8460 acydburn
                        $sort_key_sql['e'] = 'u.user_email';
973 6628 acydburn
                }
974 6628 acydburn
975 6628 acydburn
                if ($auth->acl_get('u_viewonline'))
976 6628 acydburn
                {
977 8460 acydburn
                        $sort_key_text['l'] = $user->lang['SORT_LAST_ACTIVE'];
978 6628 acydburn
                        $sort_key_sql['l'] = 'u.user_lastvisit';
979 6628 acydburn
                }
980 8460 acydburn
981 8460 acydburn
                $sort_key_text['m'] = $user->lang['SORT_RANK'];
982 8524 acydburn
                $sort_key_sql['m'] = 'u.user_rank';
983 6628 acydburn
984 3625 psotfx
                $sort_dir_text = array('a' => $user->lang['ASCENDING'], 'd' => $user->lang['DESCENDING']);
985 3625 psotfx
986 3650 psotfx
                $s_sort_key = '';
987 3625 psotfx
                foreach ($sort_key_text as $key => $value)
988 3598 psotfx
                {
989 3625 psotfx
                        $selected = ($sort_key == $key) ? ' selected="selected"' : '';
990 3625 psotfx
                        $s_sort_key .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
991 3625 psotfx
                }
992 3598 psotfx
993 3650 psotfx
                $s_sort_dir = '';
994 3625 psotfx
                foreach ($sort_dir_text as $key => $value)
995 3625 psotfx
                {
996 3625 psotfx
                        $selected = ($sort_dir == $key) ? ' selected="selected"' : '';
997 3625 psotfx
                        $s_sort_dir .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
998 3625 psotfx
                }
999 3598 psotfx
1000 3848 psotfx
                // Additional sorting options for user search ... if search is enabled, if not
1001 3848 psotfx
                // then only admins can make use of this (for ACP functionality)
1002 7097 davidmj
                $sql_select = $sql_where_data = $sql_from = $sql_where = $order_by = '';
1003 6015 acydburn
1004 8120 kellanved
1005 6864 dhn2
                $form                        = request_var('form', '');
1006 6864 dhn2
                $field                        = request_var('field', '');
1007 8099 acydburn
                $select_single         = request_var('select_single', false);
1008 5160 acydburn
1009 9004 toonarmy
                // Search URL parameters, if any of these are in the URL we do a search
1010 9004 toonarmy
                $search_params = array('username', 'email', 'icq', 'aim', 'yahoo', 'msn', 'jabber', 'search_group_id', 'joined_select', 'active_select', 'count_select', 'joined', 'active', 'count', 'ip');
1011 9004 toonarmy
1012 8099 acydburn
                // We validate form and field here, only id/class allowed
1013 8099 acydburn
                $form = (!preg_match('/^[a-z0-9_-]+$/i', $form)) ? '' : $form;
1014 8099 acydburn
                $field = (!preg_match('/^[a-z0-9_-]+$/i', $field)) ? '' : $field;
1015 9004 toonarmy
                if (($mode == 'searchuser' || sizeof(array_intersect(array_keys($_GET), $search_params)) > 0) && ($config['load_search'] || $auth->acl_get('a_')))
1016 3625 psotfx
                {
1017 6513 acydburn
                        $username        = request_var('username', '', true);
1018 6628 acydburn
                        $email                = strtolower(request_var('email', ''));
1019 4578 psotfx
                        $icq                = request_var('icq', '');
1020 4578 psotfx
                        $aim                = request_var('aim', '');
1021 4578 psotfx
                        $yahoo                = request_var('yahoo', '');
1022 4578 psotfx
                        $msn                = request_var('msn', '');
1023 5010 acydburn
                        $jabber                = request_var('jabber', '');
1024 5199 acydburn
                        $search_group_id        = request_var('search_group_id', 0);
1025 10257 acydburn
1026 10257 acydburn
                        // when using these, make sure that we actually have values defined in $find_key_match
1027 4578 psotfx
                        $joined_select        = request_var('joined_select', 'lt');
1028 4578 psotfx
                        $active_select        = request_var('active_select', 'lt');
1029 4578 psotfx
                        $count_select        = request_var('count_select', 'eq');
1030 10257 acydburn
1031 4578 psotfx
                        $joined                        = explode('-', request_var('joined', ''));
1032 4578 psotfx
                        $active                        = explode('-', request_var('active', ''));
1033 6046 naderman
                        $count                        = (request_var('count', '') !== '') ? request_var('count', 0) : '';
1034 4578 psotfx
                        $ipdomain                = request_var('ip', '');
1035 4578 psotfx
1036 3625 psotfx
                        $find_key_match = array('lt' => '<', 'gt' => '>', 'eq' => '=');
1037 3625 psotfx
1038 3625 psotfx
                        $find_count = array('lt' => $user->lang['LESS_THAN'], 'eq' => $user->lang['EQUAL_TO'], 'gt' => $user->lang['MORE_THAN']);
1039 3625 psotfx
                        $s_find_count = '';
1040 3625 psotfx
                        foreach ($find_count as $key => $value)
1041 3625 psotfx
                        {
1042 3625 psotfx
                                $selected = ($count_select == $key) ? ' selected="selected"' : '';
1043 3625 psotfx
                                $s_find_count .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
1044 3625 psotfx
                        }
1045 3625 psotfx
1046 3625 psotfx
                        $find_time = array('lt' => $user->lang['BEFORE'], 'gt' => $user->lang['AFTER']);
1047 3625 psotfx
                        $s_find_join_time = '';
1048 3625 psotfx
                        foreach ($find_time as $key => $value)
1049 3625 psotfx
                        {
1050 3625 psotfx
                                $selected = ($joined_select == $key) ? ' selected="selected"' : '';
1051 3625 psotfx
                                $s_find_join_time .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
1052 3625 psotfx
                        }
1053 3625 psotfx
1054 3625 psotfx
                        $s_find_active_time = '';
1055 3625 psotfx
                        foreach ($find_time as $key => $value)
1056 3625 psotfx
                        {
1057 3625 psotfx
                                $selected = ($active_select == $key) ? ' selected="selected"' : '';
1058 3625 psotfx
                                $s_find_active_time .= '<option value="' . $key . '"' . $selected . '>' . $value . '</option>';
1059 3625 psotfx
                        }
1060 3625 psotfx
1061 7795 acydburn
                        $sql_where .= ($username) ? ' AND u.username_clean ' . $db->sql_like_expression(str_replace('*', $db->any_char, utf8_clean_string($username))) : '';
1062 8460 acydburn
                        $sql_where .= ($auth->acl_get('a_user') && $email) ? ' AND u.user_email ' . $db->sql_like_expression(str_replace('*', $db->any_char, $email)) . ' ' : '';
1063 7795 acydburn
                        $sql_where .= ($icq) ? ' AND u.user_icq ' . $db->sql_like_expression(str_replace('*', $db->any_char, $icq)) . ' ' : '';
1064 7795 acydburn
                        $sql_where .= ($aim) ? ' AND u.user_aim ' . $db->sql_like_expression(str_replace('*', $db->any_char, $aim)) . ' ' : '';
1065 7795 acydburn
                        $sql_where .= ($yahoo) ? ' AND u.user_yim ' . $db->sql_like_expression(str_replace('*', $db->any_char, $yahoo)) . ' ' : '';
1066 7795 acydburn
                        $sql_where .= ($msn) ? ' AND u.user_msnm ' . $db->sql_like_expression(str_replace('*', $db->any_char, $msn)) . ' ' : '';
1067 7795 acydburn
                        $sql_where .= ($jabber) ? ' AND u.user_jabber ' . $db->sql_like_expression(str_replace('*', $db->any_char, $jabber)) . ' ' : '';
1068 10256 Kellanved
                        $sql_where .= (is_numeric($count) && isset($find_key_match[$count_select])) ? ' AND u.user_posts ' . $find_key_match[$count_select] . ' ' . (int) $count . ' ' : '';
1069 11072 git-gate
1070 11072 git-gate
                        if (isset($find_key_match[$joined_select]) && sizeof($joined) == 3)
1071 11072 git-gate
                        {
1072 11072 git-gate
                                // Before PHP 5.1 an error value -1 can be returned instead of false.
1073 11072 git-gate
                                // Theoretically gmmktime() can also legitimately return -1 as an actual timestamp.
1074 11072 git-gate
                                // But since we do not pass the $second parameter to gmmktime(),
1075 11072 git-gate
                                // an actual unix timestamp -1 cannot be returned in this case.
1076 11072 git-gate
                                // Thus we can check whether it is -1 and treat -1 as an error.
1077 11072 git-gate
                                $joined_time = gmmktime(0, 0, 0, (int) $joined[1], (int) $joined[2], (int) $joined[0]);
1078 11072 git-gate
1079 11072 git-gate
                                if ($joined_time !== false && $joined_time !== -1)
1080 11072 git-gate
                                {
1081 11072 git-gate
                                        $sql_where .= " AND u.user_regdate " . $find_key_match[$joined_select] . ' ' . $joined_time;
1082 11072 git-gate
                                }
1083 11072 git-gate
                        }
1084 11072 git-gate
1085 11072 git-gate
                        if (isset($find_key_match[$active_select]) && sizeof($active) == 3 && $auth->acl_get('u_viewonline'))
1086 11072 git-gate
                        {
1087 11072 git-gate
                                $active_time = gmmktime(0, 0, 0, (int) $active[1], (int) $active[2], (int) $active[0]);
1088 11072 git-gate
1089 11072 git-gate
                                if ($active_time !== false && $active_time !== -1)
1090 11072 git-gate
                                {
1091 11072 git-gate
                                        $sql_where .= " AND u.user_lastvisit " . $find_key_match[$active_select] . ' ' . $active_time;
1092 11072 git-gate
                                }
1093 11072 git-gate
                        }
1094 11072 git-gate
1095 7418 acydburn
                        $sql_where .= ($search_group_id) ? " AND u.user_id = ug.user_id AND ug.group_id = $search_group_id AND ug.user_pending = 0 " : '';
1096 6015 acydburn
1097 5199 acydburn
                        if ($search_group_id)
1098 5199 acydburn
                        {
1099 5199 acydburn
                                $sql_from = ', ' . USER_GROUP_TABLE . ' ug ';
1100 5199 acydburn
                        }
1101 3625 psotfx
1102 6046 naderman
                        if ($ipdomain && $auth->acl_getf_global('m_info'))
1103 3625 psotfx
                        {
1104 6734 davidmj
                                if (strspn($ipdomain, 'abcdefghijklmnopqrstuvwxyz'))
1105 6178 acydburn
                                {
1106 6178 acydburn
                                        $hostnames = gethostbynamel($ipdomain);
1107 3625 psotfx
1108 6178 acydburn
                                        if ($hostnames !== false)
1109 3625 psotfx
                                        {
1110 6178 acydburn
                                                $ips = "'" . implode('\', \'', array_map(array($db, 'sql_escape'), preg_replace('#([0-9]{1,3}\.[0-9]{1,3}[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3})#', "\\1", gethostbynamel($ipdomain)))) . "'";
1111 3625 psotfx
                                        }
1112 6178 acydburn
                                        else
1113 6178 acydburn
                                        {
1114 6178 acydburn
                                                $ips = false;
1115 6178 acydburn
                                        }
1116 3625 psotfx
                                }
1117 3625 psotfx
                                else
1118 3625 psotfx
                                {
1119 6178 acydburn
                                        $ips = "'" . str_replace('*', '%', $db->sql_escape($ipdomain)) . "'";
1120 6178 acydburn
                                }
1121 6178 acydburn
1122 6178 acydburn
                                if ($ips === false)
1123 6178 acydburn
                                {
1124 3625 psotfx
                                        // A minor fudge but it does the job :D
1125 6271 acydburn
                                        $sql_where .= " AND u.user_id = 0";
1126 3625 psotfx
                                }
1127 6178 acydburn
                                else
1128 6178 acydburn
                                {
1129 6178 acydburn
                                        $ip_forums = array_keys($auth->acl_getf('m_info', true));
1130 6178 acydburn
1131 6178 acydburn
                                        $sql = 'SELECT DISTINCT poster_id
1132 6178 acydburn
                                                FROM ' . POSTS_TABLE . '
1133 6734 davidmj
                                                WHERE poster_ip ' . ((strpos($ips, '%') !== false) ? 'LIKE' : 'IN') . " ($ips)
1134 6178 acydburn
                                                        AND forum_id IN (0, " . implode(', ', $ip_forums) . ')';
1135 6178 acydburn
                                        $result = $db->sql_query($sql);
1136 6178 acydburn
1137 6178 acydburn
                                        if ($row = $db->sql_fetchrow($result))
1138 6178 acydburn
                                        {
1139 6178 acydburn
                                                $ip_sql = array();
1140 6178 acydburn
                                                do
1141 6178 acydburn
                                                {
1142 6178 acydburn
                                                        $ip_sql[] = $row['poster_id'];
1143 6178 acydburn
                                                }
1144 6178 acydburn
                                                while ($row = $db->sql_fetchrow($result));
1145 6178 acydburn
1146 6271 acydburn
                                                $sql_where .= ' AND ' . $db->sql_in_set('u.user_id', $ip_sql);
1147 6178 acydburn
                                        }
1148 6178 acydburn
                                        else
1149 6178 acydburn
                                        {
1150 6178 acydburn
                                                // A minor fudge but it does the job :D
1151 6271 acydburn
                                                $sql_where .= " AND u.user_id = 0";
1152 6178 acydburn
                                        }
1153 6178 acydburn
                                        unset($ip_forums);
1154 6178 acydburn
1155 6178 acydburn
                                        $db->sql_freeresult($result);
1156 6178 acydburn
                                }
1157 3625 psotfx
                        }
1158 3625 psotfx
                }
1159 3625 psotfx
1160 5160 acydburn
                $first_char = request_var('first_char', '');
1161 5160 acydburn
1162 5160 acydburn
                if ($first_char == 'other')
1163 5160 acydburn
                {
1164 6537 naderman
                        for ($i = 97; $i < 123; $i++)
1165 5160 acydburn
                        {
1166 7789 acydburn
                                $sql_where .= ' AND u.username_clean NOT ' . $db->sql_like_expression(chr($i) . $db->any_char);
1167 5160 acydburn
                        }
1168 5160 acydburn
                }
1169 5160 acydburn
                else if ($first_char)
1170 5160 acydburn
                {
1171 7789 acydburn
                        $sql_where .= ' AND u.username_clean ' . $db->sql_like_expression(substr($first_char, 0, 1) . $db->any_char);
1172 5160 acydburn
                }
1173 5407 acydburn
1174 4970 psotfx
                // Are we looking at a usergroup? If so, fetch additional info
1175 4970 psotfx
                // and further restrict the user info query
1176 4970 psotfx
                if ($mode == 'group')
1177 4970 psotfx
                {
1178 5160 acydburn
                        // We JOIN here to save a query for determining membership for hidden groups. ;)
1179 5160 acydburn
                        $sql = 'SELECT g.*, ug.user_id
1180 5160 acydburn
                                FROM ' . GROUPS_TABLE . ' g
1181 6114 acydburn
                                LEFT JOIN ' . USER_GROUP_TABLE . ' ug ON (ug.user_pending = 0 AND ug.user_id = ' . $user->data['user_id'] . " AND ug.group_id = $group_id)
1182 5160 acydburn
                                WHERE g.group_id = $group_id";
1183 4970 psotfx
                        $result = $db->sql_query($sql);
1184 6015 acydburn
                        $group_row = $db->sql_fetchrow($result);
1185 6015 acydburn
                        $db->sql_freeresult($result);
1186 4970 psotfx
1187 6015 acydburn
                        if (!$group_row)
1188 4970 psotfx
                        {
1189 5138 acydburn
                                trigger_error('NO_GROUP');
1190 4970 psotfx
                        }
1191 4970 psotfx
1192 5160 acydburn
                        switch ($group_row['group_type'])
1193 4970 psotfx
                        {
1194 4970 psotfx
                                case GROUP_OPEN:
1195 5199 acydburn
                                        $group_row['l_group_type'] = 'OPEN';
1196 6015 acydburn
                                break;
1197 6015 acydburn
1198 4970 psotfx
                                case GROUP_CLOSED:
1199 5199 acydburn
                                        $group_row['l_group_type'] = 'CLOSED';
1200 6015 acydburn
                                break;
1201 6015 acydburn
1202 4970 psotfx
                                case GROUP_HIDDEN:
1203 5199 acydburn
                                        $group_row['l_group_type'] = 'HIDDEN';
1204 5160 acydburn
1205 5160 acydburn
                                        // Check for membership or special permissions
1206 5160 acydburn
                                        if (!$auth->acl_gets('a_group', 'a_groupadd', 'a_groupdel') && $group_row['user_id'] != $user->data['user_id'])
1207 5160 acydburn
                                        {
1208 5160 acydburn
                                                trigger_error('NO_GROUP');
1209 5160 acydburn
                                        }
1210 6015 acydburn
                                break;
1211 6015 acydburn
1212 4970 psotfx
                                case GROUP_SPECIAL:
1213 5199 acydburn
                                        $group_row['l_group_type'] = 'SPECIAL';
1214 6015 acydburn
                                break;
1215 6015 acydburn
1216 4970 psotfx
                                case GROUP_FREE:
1217 5199 acydburn
                                        $group_row['l_group_type'] = 'FREE';
1218 6015 acydburn
                                break;
1219 4970 psotfx
                        }
1220 4970 psotfx
1221 7330 acydburn
                        // Misusing the avatar function for displaying group avatars...
1222 7330 acydburn
                        $avatar_img = get_user_avatar($group_row['group_avatar'], $group_row['group_avatar_type'], $group_row['group_avatar_width'], $group_row['group_avatar_height'], 'GROUP_AVATAR');
1223 6660 acydburn
1224 5358 subblue
                        $rank_title = $rank_img = $rank_img_src = '';
1225 6177 acydburn
                        if ($group_row['group_rank'])
1226 4970 psotfx
                        {
1227 5523 subblue
                                if (isset($ranks['special'][$group_row['group_rank']]))
1228 5523 subblue
                                {
1229 5523 subblue
                                        $rank_title = $ranks['special'][$group_row['group_rank']]['rank_title'];
1230 5523 subblue
                                }
1231 6364 acydburn
                                $rank_img = (!empty($ranks['special'][$group_row['group_rank']]['rank_image'])) ? '<img src="' . $config['ranks_path'] . '/' . $ranks['special'][$group_row['group_rank']]['rank_image'] . '" alt="' . $ranks['special'][$group_row['group_rank']]['rank_title'] . '" title="' . $ranks['special'][$group_row['group_rank']]['rank_title'] . '" /><br />' : '';
1232 5358 subblue
                                $rank_img_src = (!empty($ranks['special'][$group_row['group_rank']]['rank_image'])) ? $config['ranks_path'] . '/' . $ranks['special'][$group_row['group_rank']]['rank_image'] : '';
1233 4970 psotfx
                        }
1234 6177 acydburn
                        else
1235 5160 acydburn
                        {
1236 5160 acydburn
                                $rank_title = '';
1237 5160 acydburn
                                $rank_img = '';
1238 5358 subblue
                                $rank_img_src = '';
1239 5160 acydburn
                        }
1240 4970 psotfx
1241 4970 psotfx
                        $template->assign_vars(array(
1242 6188 davidmj
                                'GROUP_DESC'        => generate_text_for_display($group_row['group_desc'], $group_row['group_desc_uid'], $group_row['group_desc_bitfield'], $group_row['group_desc_options']),
1243 5199 acydburn
                                'GROUP_NAME'        => ($group_row['group_type'] == GROUP_SPECIAL) ? $user->lang['G_' . $group_row['group_name']] : $group_row['group_name'],
1244 5160 acydburn
                                'GROUP_COLOR'        => $group_row['group_colour'],
1245 5199 acydburn
                                'GROUP_TYPE'        => $user->lang['GROUP_IS_' . $group_row['l_group_type']],
1246 4970 psotfx
                                'GROUP_RANK'        => $rank_title,
1247 4970 psotfx
1248 4970 psotfx
                                'AVATAR_IMG'        => $avatar_img,
1249 4970 psotfx
                                'RANK_IMG'                => $rank_img,
1250 5358 subblue
                                'RANK_IMG_SRC'        => $rank_img_src,
1251 4970 psotfx
1252 8911 acydburn
                                'U_PM'                        => ($auth->acl_get('u_sendpm') && $auth->acl_get('u_masspm_group') && $group_row['group_receive_pm'] && $config['allow_privmsg'] && $config['allow_mass_pm']) ? append_sid("{$phpbb_root_path}ucp.$phpEx", 'i=pm&amp;mode=compose&amp;g=' . $group_id) : '',)
1253 4970 psotfx
                        );
1254 4970 psotfx
1255 5160 acydburn
                        $sql_select = ', ug.group_leader';
1256 4970 psotfx
                        $sql_from = ', ' . USER_GROUP_TABLE . ' ug ';
1257 5160 acydburn
                        $order_by = 'ug.group_leader DESC, ';
1258 5160 acydburn
1259 6114 acydburn
                        $sql_where .= " AND ug.user_pending = 0 AND u.user_id = ug.user_id AND ug.group_id = $group_id";
1260 7195 davidmj
                        $sql_where_data = " AND u.user_id = ug.user_id AND ug.group_id = $group_id";
1261 4970 psotfx
                }
1262 8801 acydburn
1263 3625 psotfx
                // Sorting and order
1264 6538 acydburn
                if (!isset($sort_key_sql[$sort_key]))
1265 6538 acydburn
                {
1266 6538 acydburn
                        $sort_key = $default_key;
1267 6538 acydburn
                }
1268 6538 acydburn
1269 6930 acydburn
                $order_by .= $sort_key_sql[$sort_key] . ' ' . (($sort_dir == 'a') ? 'ASC' : 'DESC');
1270 3625 psotfx
1271 8524 acydburn
                // Unfortunately we must do this here for sorting by rank, else the sort order is applied wrongly
1272 8524 acydburn
                if ($sort_key == 'm')
1273 8524 acydburn
                {
1274 8524 acydburn
                        $order_by .= ', u.user_posts DESC';
1275 8524 acydburn
                }
1276 8524 acydburn
1277 3625 psotfx
                // Count the users ...
1278 4970 psotfx
                if ($sql_where)
1279 3712 psotfx
                {
1280 4970 psotfx
                        $sql = 'SELECT COUNT(u.user_id) AS total_users
1281 4970 psotfx
                                FROM ' . USERS_TABLE . " u$sql_from
1282 5108 acydburn
                                WHERE u.user_type IN (" . USER_NORMAL . ', ' . USER_FOUNDER . ")
1283 4970 psotfx
                                $sql_where";
1284 3712 psotfx
                        $result = $db->sql_query($sql);
1285 6015 acydburn
                        $total_users = (int) $db->sql_fetchfield('total_users');
1286 5160 acydburn
                        $db->sql_freeresult($result);
1287 3712 psotfx
                }
1288 3712 psotfx
                else
1289 3712 psotfx
                {
1290 3712 psotfx
                        $total_users = $config['num_users'];
1291 3712 psotfx
                }
1292 3625 psotfx
1293 3897 psotfx
                // Build a relevant pagination_url
1294 6969 acydburn
                $params = $sort_params = array();
1295 8072 acydburn
1296 8072 acydburn
                // We do not use request_var() here directly to save some calls (not all variables are set)
1297 8072 acydburn
                $check_params = array(
1298 8072 acydburn
                        'g'                                => array('g', 0),
1299 8072 acydburn
                        'sk'                        => array('sk', $default_key),
1300 8072 acydburn
                        'sd'                        => array('sd', 'a'),
1301 8072 acydburn
                        'form'                        => array('form', ''),
1302 8072 acydburn
                        'field'                        => array('field', ''),
1303 8444 acydburn
                        'select_single'        => array('select_single', $select_single),
1304 8072 acydburn
                        'username'                => array('username', '', true),
1305 8072 acydburn
                        'email'                        => array('email', ''),
1306 8072 acydburn
                        'icq'                        => array('icq', ''),
1307 8072 acydburn
                        'aim'                        => array('aim', ''),
1308 8072 acydburn
                        'yahoo'                        => array('yahoo', ''),
1309 8072 acydburn
                        'msn'                        => array('msn', ''),
1310 8072 acydburn
                        'jabber'                => array('jabber', ''),
1311 8072 acydburn
                        'search_group_id'        => array('search_group_id', 0),
1312 8072 acydburn
                        'joined_select'        => array('joined_select', 'lt'),
1313 8072 acydburn
                        'active_select'        => array('active_select', 'lt'),
1314 8072 acydburn
                        'count_select'        => array('count_select', 'eq'),
1315 8072 acydburn
                        'joined'                => array('joined', ''),
1316 8072 acydburn
                        'active'                => array('active', ''),
1317 8078 acydburn
                        'count'                        => (request_var('count', '') !== '') ? array('count', 0) : array('count', ''),
1318 9684 nickvergessen
                        'ip'                        => array('ip', ''),
1319 8072 acydburn
                        'first_char'        => array('first_char', ''),
1320 8072 acydburn
                );
1321 8072 acydburn
1322 11304 git-gate
                $u_first_char_params = array();
1323 8072 acydburn
                foreach ($check_params as $key => $call)
1324 3625 psotfx
                {
1325 8072 acydburn
                        if (!isset($_REQUEST[$key]))
1326 3650 psotfx
                        {
1327 8072 acydburn
                                continue;
1328 8072 acydburn
                        }
1329 5858 acydburn
1330 8072 acydburn
                        $param = call_user_func_array('request_var', $call);
1331 8072 acydburn
                        $param = urlencode($key) . '=' . ((is_string($param)) ? urlencode($param) : $param);
1332 8072 acydburn
                        $params[] = $param;
1333 6114 acydburn
1334 11304 git-gate
                        if ($key != 'first_char')
1335 11304 git-gate
                        {
1336 11304 git-gate
                                $u_first_char_params[] = $param;
1337 11304 git-gate
                        }
1338 8072 acydburn
                        if ($key != 'sk' && $key != 'sd')
1339 8072 acydburn
                        {
1340 8072 acydburn
                                $sort_params[] = $param;
1341 3650 psotfx
                        }
1342 3897 psotfx
                }
1343 3650 psotfx
1344 9004 toonarmy
                $u_hide_find_member = append_sid("{$phpbb_root_path}memberlist.$phpEx", "start=$start" . (!empty($params) ? '&amp;' . implode('&amp;', $params) : ''));
1345 5160 acydburn
1346 9004 toonarmy
                if ($mode)
1347 9004 toonarmy
                {
1348 9004 toonarmy
                        $params[] = "mode=$mode";
1349 9004 toonarmy
                }
1350 9054 toonarmy
                $sort_params[] = "mode=$mode";
1351 9054 toonarmy
1352 6015 acydburn
                $pagination_url = append_sid("{$phpbb_root_path}memberlist.$phpEx", implode('&amp;', $params));
1353 6969 acydburn
                $sort_url = append_sid("{$phpbb_root_path}memberlist.$phpEx", implode('&amp;', $sort_params));
1354 6015 acydburn
1355 9004 toonarmy
                unset($search_params, $sort_params);
1356 6969 acydburn
1357 11304 git-gate
                $u_first_char_params = implode('&amp;', $u_first_char_params);
1358 11304 git-gate
                $u_first_char_params .= ($u_first_char_params) ? '&amp;' : '';
1359 11304 git-gate
1360 11304 git-gate
                $first_characters = array();
1361 11304 git-gate
                $first_characters[''] = $user->lang['ALL'];
1362 11304 git-gate
                for ($i = 97; $i < 123; $i++)
1363 11304 git-gate
                {
1364 11304 git-gate
                        $first_characters[chr($i)] = chr($i - 32);
1365 11304 git-gate
                }
1366 11304 git-gate
                $first_characters['other'] = $user->lang['OTHER'];
1367 11304 git-gate
1368 11304 git-gate
                foreach ($first_characters as $char => $desc)
1369 11304 git-gate
                {
1370 11304 git-gate
                        $template->assign_block_vars('first_char', array(
1371 11304 git-gate
                                'DESC'                        => $desc,
1372 11304 git-gate
                                'VALUE'                        => $char,
1373 11304 git-gate
                                'S_SELECTED'        => ($first_char == $char) ? true : false,
1374 11304 git-gate
                                'U_SORT'                => append_sid("{$phpbb_root_path}memberlist.$phpEx", $u_first_char_params . 'first_char=' . $char) . '#memberlist',
1375 11304 git-gate
                        ));
1376 11304 git-gate
                }
1377 11304 git-gate
1378 3897 psotfx
                // Some search user specific data
1379 4578 psotfx
                if ($mode == 'searchuser' && ($config['load_search'] || $auth->acl_get('a_')))
1380 3897 psotfx
                {
1381 5199 acydburn
                        $group_selected = request_var('search_group_id', 0);
1382 5199 acydburn
                        $s_group_select = '<option value="0"' . ((!$group_selected) ? ' selected="selected"' : '') . '>&nbsp;</option>';
1383 8429 acydburn
                        $group_ids = array();
1384 5199 acydburn
1385 9075 acydburn
                        /**
1386 9075 acydburn
                        * @todo add this to a separate function (function is responsible for returning the groups the user is able to see based on the users group membership)
1387 9075 acydburn
                        */
1388 9075 acydburn
1389 7433 acydburn
                        if ($auth->acl_gets('a_group', 'a_groupadd', 'a_groupdel'))
1390 7433 acydburn
                        {
1391 7433 acydburn
                                $sql = 'SELECT group_id, group_name, group_type
1392 9075 acydburn
                                        FROM ' . GROUPS_TABLE;
1393 9075 acydburn
1394 9075 acydburn
                                if (!$config['coppa_enable'])
1395 9075 acydburn
                                {
1396 9075 acydburn
                                        $sql .= " WHERE group_name <> 'REGISTERED_COPPA'";
1397 9075 acydburn
                                }
1398 9075 acydburn
1399 9075 acydburn
                                $sql .= ' ORDER BY group_name ASC';
1400 7433 acydburn
                        }
1401 7433 acydburn
                        else
1402 7433 acydburn
                        {
1403 7433 acydburn
                                $sql = 'SELECT g.group_id, g.group_name, g.group_type
1404 7433 acydburn
                                        FROM ' . GROUPS_TABLE . ' g
1405 7433 acydburn
                                        LEFT JOIN ' . USER_GROUP_TABLE . ' ug
1406 7433 acydburn
                                                ON (
1407 7433 acydburn
                                                        g.group_id = ug.group_id
1408 7433 acydburn
                                                        AND ug.user_id = ' . $user->data['user_id'] . '
1409 7433 acydburn
                                                        AND ug.user_pending = 0
1410 7433 acydburn
                                                )
1411 9075 acydburn
                                        WHERE (g.group_type <> ' . GROUP_HIDDEN . ' OR ug.user_id = ' . $user->data['user_id'] . ')';
1412 9075 acydburn
1413 9075 acydburn
                                if (!$config['coppa_enable'])
1414 9075 acydburn
                                {
1415 9156 toonarmy
                                        $sql .= " AND g.group_name <> 'REGISTERED_COPPA'";
1416 9075 acydburn
                                }
1417 9075 acydburn
1418 9075 acydburn
                                $sql .= ' ORDER BY g.group_name ASC';
1419 7433 acydburn
                        }
1420 5199 acydburn
                        $result = $db->sql_query($sql);
1421 5199 acydburn
1422 5199 acydburn
                        while ($row = $db->sql_fetchrow($result))
1423 5199 acydburn
                        {
1424 8429 acydburn
                                $group_ids[] = $row['group_id'];
1425 5199 acydburn
                                $s_group_select .= '<option value="' . $row['group_id'] . '"' . (($group_selected == $row['group_id']) ? ' selected="selected"' : '') . '>' . (($row['group_type'] == GROUP_SPECIAL) ? $user->lang['G_' . $row['group_name']] : $row['group_name']) . '</option>';
1426 5199 acydburn
                        }
1427 5199 acydburn
                        $db->sql_freeresult($result);
1428 5199 acydburn
1429 8429 acydburn
                        if ($group_selected !== 0 && !in_array($group_selected, $group_ids))
1430 8429 acydburn
                        {
1431 8429 acydburn
                                trigger_error('NO_GROUP');
1432 8429 acydburn
                        }
1433 8429 acydburn
1434 3625 psotfx
                        $template->assign_vars(array(
1435 3625 psotfx
                                'USERNAME'        => $username,
1436 3625 psotfx
                                'EMAIL'                => $email,
1437 3625 psotfx
                                'ICQ'                => $icq,
1438 3625 psotfx
                                'AIM'                => $aim,
1439 3625 psotfx
                                'YAHOO'                => $yahoo,
1440 3625 psotfx
                                'MSNM'                => $msn,
1441 5010 acydburn
                                'JABBER'        => $jabber,
1442 3625 psotfx
                                'JOINED'        => implode('-', $joined),
1443 3625 psotfx
                                'ACTIVE'        => implode('-', $active),
1444 4970 psotfx
                                'COUNT'                => $count,
1445 4970 psotfx
                                'IP'                => $ipdomain,
1446 3625 psotfx
1447 7558 acydburn
                                'S_IP_SEARCH_ALLOWED'        => ($auth->acl_getf_global('m_info')) ? true : false,
1448 8460 acydburn
                                'S_EMAIL_SEARCH_ALLOWED'=> ($auth->acl_get('a_user')) ? true : false,
1449 7543 acydburn
                                'S_IN_SEARCH_POPUP'                => ($form && $field) ? true : false,
1450 6015 acydburn
                                'S_SEARCH_USER'                        => true,
1451 6015 acydburn
                                'S_FORM_NAME'                        => $form,
1452 6015 acydburn
                                'S_FIELD_NAME'                        => $field,
1453 6894 acydburn
                                'S_SELECT_SINGLE'                => $select_single,
1454 6015 acydburn
                                'S_COUNT_OPTIONS'                => $s_find_count,
1455 6015 acydburn
                                'S_SORT_OPTIONS'                => $s_sort_key,
1456 6015 acydburn
                                'S_JOINED_TIME_OPTIONS'        => $s_find_join_time,
1457 6015 acydburn
                                'S_ACTIVE_TIME_OPTIONS'        => $s_find_active_time,
1458 5199 acydburn
                                'S_GROUP_SELECT'                => $s_group_select,
1459 7909 acydburn
                                'S_USER_SEARCH_ACTION'        => append_sid("{$phpbb_root_path}memberlist.$phpEx", "mode=searchuser&amp;form=$form&amp;field=$field"))
1460 3598 psotfx
                        );
1461 3625 psotfx
                }
1462 3598 psotfx
1463 7097 davidmj
                // Get us some users :D
1464 7097 davidmj
                $sql = "SELECT u.user_id
1465 5160 acydburn
                        FROM " . USERS_TABLE . " u
1466 5160 acydburn
                                $sql_from
1467 4970 psotfx
                        WHERE u.user_type IN (" . USER_NORMAL . ', ' . USER_FOUNDER . ")
1468 7104 davidmj
                                $sql_where
1469 7104 davidmj
                        ORDER BY $order_by";
1470 3712 psotfx
                $result = $db->sql_query_limit($sql, $config['topics_per_page'], $start);
1471 3625 psotfx
1472 7097 davidmj
                $user_list = array();
1473 5138 acydburn
                while ($row = $db->sql_fetchrow($result))
1474 3625 psotfx
                {
1475 7097 davidmj
                        $user_list[] = (int) $row['user_id'];
1476 5138 acydburn
                }
1477 5138 acydburn
                $db->sql_freeresult($result);
1478 8755 Kellanved
                $leaders_set = false;
1479 7097 davidmj
                // So, did we get any users?
1480 7097 davidmj
                if (sizeof($user_list))
1481 6894 acydburn
                {
1482 7097 davidmj
                        // Session time?! Session time...
1483 7097 davidmj
                        $sql = 'SELECT session_user_id, MAX(session_time) AS session_time
1484 7097 davidmj
                                FROM ' . SESSIONS_TABLE . '
1485 7097 davidmj
                                WHERE session_time >= ' . (time() - $config['session_length']) . '
1486 7097 davidmj
                                        AND ' . $db->sql_in_set('session_user_id', $user_list) . '
1487 7097 davidmj
                                GROUP BY session_user_id';
1488 7097 davidmj
                        $result = $db->sql_query($sql);
1489 6894 acydburn
1490 7097 davidmj
                        $session_times = array();
1491 7097 davidmj
                        while ($row = $db->sql_fetchrow($result))
1492 3625 psotfx
                        {
1493 7097 davidmj
                                $session_times[$row['session_user_id']] = $row['session_time'];
1494 5138 acydburn
                        }
1495 7097 davidmj
                        $db->sql_freeresult($result);
1496 3628 psotfx
1497 7097 davidmj
                        // Do the SQL thang
1498 7418 acydburn
                        if ($mode == 'group')
1499 7418 acydburn
                        {
1500 7418 acydburn
                                $sql = "SELECT u.*
1501 7418 acydburn
                                                $sql_select
1502 7418 acydburn
                                        FROM " . USERS_TABLE . " u
1503 7418 acydburn
                                                $sql_from
1504 7418 acydburn
                                        WHERE " . $db->sql_in_set('u.user_id', $user_list) . "
1505 7418 acydburn
                                                $sql_where_data";
1506 7418 acydburn
                        }
1507 7418 acydburn
                        else
1508 7418 acydburn
                        {
1509 7418 acydburn
                                $sql = 'SELECT *
1510 7418 acydburn
                                        FROM ' . USERS_TABLE . '
1511 7418 acydburn
                                        WHERE ' . $db->sql_in_set('user_id', $user_list);
1512 7418 acydburn
                        }
1513 7097 davidmj
                        $result = $db->sql_query($sql);
1514 5160 acydburn
1515 7097 davidmj
                        $id_cache = array();
1516 7097 davidmj
                        while ($row = $db->sql_fetchrow($result))
1517 7097 davidmj
                        {
1518 7097 davidmj
                                $row['session_time'] = (!empty($session_times[$row['user_id']])) ? $session_times[$row['user_id']] : 0;
1519 7097 davidmj
                                $row['last_visit'] = (!empty($row['session_time'])) ? $row['session_time'] : $row['user_lastvisit'];
1520 6015 acydburn
1521 7097 davidmj
                                $id_cache[$row['user_id']] = $row;
1522 7097 davidmj
                        }
1523 7097 davidmj
                        $db->sql_freeresult($result);
1524 8120 kellanved
1525 7097 davidmj
                        // Load custom profile fields
1526 7097 davidmj
                        if ($config['load_cpf_memberlist'])
1527 7097 davidmj
                        {
1528 7097 davidmj
                                include_once($phpbb_root_path . 'includes/functions_profile_fields.' . $phpEx);
1529 7097 davidmj
                                $cp = new custom_profile();
1530 4970 psotfx
1531 7097 davidmj
                                // Grab all profile fields from users in id cache for later use - similar to the poster cache
1532 7097 davidmj
                                $profile_fields_cache = $cp->generate_profile_fields_template('grab', $user_list);
1533 7097 davidmj
                        }
1534 7097 davidmj
1535 7097 davidmj
                        // If we sort by last active date we need to adjust the id cache due to user_lastvisit not being the last active date...
1536 7097 davidmj
                        if ($sort_key == 'l')
1537 5138 acydburn
                        {
1538 8359 acydburn
//                                uasort($id_cache, create_function('$first, $second', "return (\$first['last_visit'] == \$second['last_visit']) ? 0 : ((\$first['last_visit'] < \$second['last_visit']) ? $lesser_than : ($lesser_than * -1));"));
1539 8755 Kellanved
                                usort($user_list,  '_sort_last_active');
1540 5138 acydburn
                        }
1541 3625 psotfx
1542 7104 davidmj
                        for ($i = 0, $end = sizeof($user_list); $i < $end; ++$i)
1543 5138 acydburn
                        {
1544 7104 davidmj
                                $user_id = $user_list[$i];
1545 7104 davidmj
                                $row =& $id_cache[$user_id];
1546 8755 Kellanved
                                $is_leader = (isset($row['group_leader']) && $row['group_leader']) ? true : false;
1547 8755 Kellanved
                                $leaders_set = ($leaders_set || $is_leader);
1548 7104 davidmj
1549 7097 davidmj
                                $cp_row = array();
1550 7097 davidmj
                                if ($config['load_cpf_memberlist'])
1551 5138 acydburn
                                {
1552 7097 davidmj
                                        $cp_row = (isset($profile_fields_cache[$user_id])) ? $cp->generate_profile_fields_template('show', false, $profile_fields_cache[$user_id]) : array();
1553 5138 acydburn
                                }
1554 7097 davidmj
1555 7097 davidmj
                                $memberrow = array_merge(show_profile($row), array(
1556 7097 davidmj
                                        'ROW_NUMBER'                => $i + ($start + 1),
1557 7097 davidmj
1558 7097 davidmj
                                        'S_CUSTOM_PROFILE'        => (isset($cp_row['row']) && sizeof($cp_row['row'])) ? true : false,
1559 8755 Kellanved
                                        'S_GROUP_LEADER'        => $is_leader,
1560 7097 davidmj
1561 7097 davidmj
                                        'U_VIEW_PROFILE'        => append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=viewprofile&amp;u=' . $user_id))
1562 7097 davidmj
                                );
1563 7097 davidmj
1564 7097 davidmj
                                if (isset($cp_row['row']) && sizeof($cp_row['row']))
1565 7097 davidmj
                                {
1566 7097 davidmj
                                        $memberrow = array_merge($memberrow, $cp_row['row']);
1567 7097 davidmj
                                }
1568 7097 davidmj
1569 7097 davidmj
                                $template->assign_block_vars('memberrow', $memberrow);
1570 7097 davidmj
1571 7097 davidmj
                                if (isset($cp_row['blockrow']) && sizeof($cp_row['blockrow']))
1572 7097 davidmj
                                {
1573 7097 davidmj
                                        foreach ($cp_row['blockrow'] as $field_data)
1574 7097 davidmj
                                        {
1575 7097 davidmj
                                                $template->assign_block_vars('memberrow.custom_fields', $field_data);
1576 7097 davidmj
                                        }
1577 7097 davidmj
                                }
1578 7097 davidmj
1579 7097 davidmj
                                unset($id_cache[$user_id]);
1580 3625 psotfx
                        }
1581 5138 acydburn
                }
1582 8120 kellanved
1583 5138 acydburn
                // Generate page
1584 5138 acydburn
                $template->assign_vars(array(
1585 6015 acydburn
                        'PAGINATION'        => generate_pagination($pagination_url, $total_users, $config['topics_per_page'], $start),
1586 6015 acydburn
                        'PAGE_NUMBER'        => on_page($total_users, $config['topics_per_page'], $start),
1587 5138 acydburn
                        'TOTAL_USERS'        => ($total_users == 1) ? $user->lang['LIST_USER'] : sprintf($user->lang['LIST_USERS'], $total_users),
1588 3598 psotfx
1589 6237 acydburn
                        'PROFILE_IMG'        => $user->img('icon_user_profile', $user->lang['PROFILE']),
1590 6237 acydburn
                        'PM_IMG'                => $user->img('icon_contact_pm', $user->lang['SEND_PRIVATE_MESSAGE']),
1591 6237 acydburn
                        'EMAIL_IMG'                => $user->img('icon_contact_email', $user->lang['EMAIL']),
1592 6237 acydburn
                        'WWW_IMG'                => $user->img('icon_contact_www', $user->lang['WWW']),
1593 6237 acydburn
                        'ICQ_IMG'                => $user->img('icon_contact_icq', $user->lang['ICQ']),
1594 6237 acydburn
                        'AIM_IMG'                => $user->img('icon_contact_aim', $user->lang['AIM']),
1595 6237 acydburn
                        'MSN_IMG'                => $user->img('icon_contact_msnm', $user->lang['MSNM']),
1596 6237 acydburn
                        'YIM_IMG'                => $user->img('icon_contact_yahoo', $user->lang['YIM']),
1597 6237 acydburn
                        'JABBER_IMG'        => $user->img('icon_contact_jabber', $user->lang['JABBER']),
1598 6237 acydburn
                        'SEARCH_IMG'        => $user->img('icon_user_search', $user->lang['SEARCH']),
1599 4145 psotfx
1600 9004 toonarmy
                        'U_FIND_MEMBER'                        => ($config['load_search'] || $auth->acl_get('a_')) ? append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=searchuser' . (($start) ? "&amp;start=$start" : '') . (!empty($params) ? '&amp;' . implode('&amp;', $params) : '')) : '',
1601 6015 acydburn
                        'U_HIDE_FIND_MEMBER'        => ($mode == 'searchuser') ? $u_hide_find_member : '',
1602 6969 acydburn
                        'U_SORT_USERNAME'                => $sort_url . '&amp;sk=a&amp;sd=' . (($sort_key == 'a' && $sort_dir == 'a') ? 'd' : 'a'),
1603 6969 acydburn
                        'U_SORT_FROM'                        => $sort_url . '&amp;sk=b&amp;sd=' . (($sort_key == 'b' && $sort_dir == 'a') ? 'd' : 'a'),
1604 6969 acydburn
                        'U_SORT_JOINED'                        => $sort_url . '&amp;sk=c&amp;sd=' . (($sort_key == 'c' && $sort_dir == 'a') ? 'd' : 'a'),
1605 6969 acydburn
                        'U_SORT_POSTS'                        => $sort_url . '&amp;sk=d&amp;sd=' . (($sort_key == 'd' && $sort_dir == 'a') ? 'd' : 'a'),
1606 6969 acydburn
                        'U_SORT_EMAIL'                        => $sort_url . '&amp;sk=e&amp;sd=' . (($sort_key == 'e' && $sort_dir == 'a') ? 'd' : 'a'),
1607 6969 acydburn
                        'U_SORT_WEBSITE'                => $sort_url . '&amp;sk=f&amp;sd=' . (($sort_key == 'f' && $sort_dir == 'a') ? 'd' : 'a'),
1608 7290 davidmj
                        'U_SORT_LOCATION'                => $sort_url . '&amp;sk=b&amp;sd=' . (($sort_key == 'b' && $sort_dir == 'a') ? 'd' : 'a'),
1609 6969 acydburn
                        'U_SORT_ICQ'                        => $sort_url . '&amp;sk=g&amp;sd=' . (($sort_key == 'g' && $sort_dir == 'a') ? 'd' : 'a'),
1610 6969 acydburn
                        'U_SORT_AIM'                        => $sort_url . '&amp;sk=h&amp;sd=' . (($sort_key == 'h' && $sort_dir == 'a') ? 'd' : 'a'),
1611 6969 acydburn
                        'U_SORT_MSN'                        => $sort_url . '&amp;sk=i&amp;sd=' . (($sort_key == 'i' && $sort_dir == 'a') ? 'd' : 'a'),
1612 6969 acydburn
                        'U_SORT_YIM'                        => $sort_url . '&amp;sk=j&amp;sd=' . (($sort_key == 'j' && $sort_dir == 'a') ? 'd' : 'a'),
1613 7805 acydburn
                        'U_SORT_ACTIVE'                        => ($auth->acl_get('u_viewonline')) ? $sort_url . '&amp;sk=l&amp;sd=' . (($sort_key == 'l' && $sort_dir == 'a') ? 'd' : 'a') : '',
1614 6969 acydburn
                        'U_SORT_RANK'                        => $sort_url . '&amp;sk=m&amp;sd=' . (($sort_key == 'm' && $sort_dir == 'a') ? 'd' : 'a'),
1615 6969 acydburn
                        'U_LIST_CHAR'                        => $sort_url . '&amp;sk=a&amp;sd=' . (($sort_key == 'l' && $sort_dir == 'a') ? 'd' : 'a'),
1616 3598 psotfx
1617 5138 acydburn
                        'S_SHOW_GROUP'                => ($mode == 'group') ? true : false,
1618 7805 acydburn
                        'S_VIEWONLINE'                => $auth->acl_get('u_viewonline'),
1619 8755 Kellanved
                        'S_LEADERS_SET'                => $leaders_set,
1620 5138 acydburn
                        'S_MODE_SELECT'                => $s_sort_key,
1621 5138 acydburn
                        'S_ORDER_SELECT'        => $s_sort_dir,
1622 8072 acydburn
                        'S_MODE_ACTION'                => $pagination_url)
1623 5138 acydburn
                );
1624 2448 psotfx
}
1625 2448 psotfx
1626 3612 psotfx
// Output the page
1627 9961 Kellanved
page_header($page_title, false);
1628 3612 psotfx
1629 3612 psotfx
$template->set_filenames(array(
1630 3625 psotfx
        'body' => $template_html)
1631 3612 psotfx
);
1632 6015 acydburn
make_jumpbox(append_sid("{$phpbb_root_path}viewforum.$phpEx"));
1633 3612 psotfx
1634 3969 psotfx
page_footer();
1635 3612 psotfx
1636 5114 acydburn
/**
1637 5160 acydburn
* Prepare profile data
1638 5160 acydburn
*/
1639 9619 toonarmy
function show_profile($data, $user_notes_enabled = false, $warn_user_enabled = false)
1640 5160 acydburn
{
1641 6015 acydburn
        global $config, $auth, $template, $user, $phpEx, $phpbb_root_path;
1642 5160 acydburn
1643 5160 acydburn
        $username = $data['username'];
1644 5160 acydburn
        $user_id = $data['user_id'];
1645 5160 acydburn
1646 5358 subblue
        $rank_title = $rank_img = $rank_img_src = '';
1647 9082 acydburn
        get_user_rank($data['user_rank'], (($user_id == ANONYMOUS) ? false : $data['user_posts']), $rank_title, $rank_img, $rank_img_src);
1648 6770 acydburn
1649 10756 git-gate
        if ((!empty($data['user_allow_viewemail']) && $auth->acl_get('u_sendemail')) || $auth->acl_get('a_user'))
1650 5071 acydburn
        {
1651 8460 acydburn
                $email = ($config['board_email_form'] && $config['email_enable']) ? append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=email&amp;u=' . $user_id) : (($config['board_hide_emails'] && !$auth->acl_get('a_user')) ? '' : 'mailto:' . $data['user_email']);
1652 5071 acydburn
        }
1653 5071 acydburn
        else
1654 5071 acydburn
        {
1655 5071 acydburn
                $email = '';
1656 5071 acydburn
        }
1657 596 psotfx
1658 6123 grahamje
        if ($config['load_onlinetrack'])
1659 6123 grahamje
        {
1660 6123 grahamje
                $update_time = $config['load_online_time'] * 60;
1661 7847 kellanved
                $online = (time() - $update_time < $data['session_time'] && ((isset($data['session_viewonline']) && $data['session_viewonline']) || $auth->acl_get('u_viewonline'))) ? true : false;
1662 6123 grahamje
        }
1663 6123 grahamje
        else
1664 6123 grahamje
        {
1665 6123 grahamje
                $online = false;
1666 6123 grahamje
        }
1667 5341 grahamje
1668 6628 acydburn
        if ($data['user_allow_viewonline'] || $auth->acl_get('u_viewonline'))
1669 6628 acydburn
        {
1670 6628 acydburn
                $last_visit = (!empty($data['session_time'])) ? $data['session_time'] : $data['user_lastvisit'];
1671 6628 acydburn
        }
1672 6628 acydburn
        else
1673 6628 acydburn
        {
1674 6628 acydburn
                $last_visit = '';
1675 6628 acydburn
        }
1676 6628 acydburn
1677 6151 naderman
        $age = '';
1678 6151 naderman
1679 7909 acydburn
        if ($config['allow_birthdays'] && $data['user_birthday'])
1680 6151 naderman
        {
1681 6151 naderman
                list($bday_day, $bday_month, $bday_year) = array_map('intval', explode('-', $data['user_birthday']));
1682 6151 naderman
1683 6151 naderman
                if ($bday_year)
1684 6151 naderman
                {
1685 11309 git-gate
                        $now = phpbb_gmgetdate(time() + $user->timezone + $user->dst);
1686 6151 naderman
1687 6321 naderman
                        $diff = $now['mon'] - $bday_month;
1688 6241 naderman
                        if ($diff == 0)
1689 6241 naderman
                        {
1690 6321 naderman
                                $diff = ($now['mday'] - $bday_day < 0) ? 1 : 0;
1691 6241 naderman
                        }
1692 6241 naderman
                        else
1693 6241 naderman
                        {
1694 6241 naderman
                                $diff = ($diff < 0) ? 1 : 0;
1695 6241 naderman
                        }
1696 6241 naderman
1697 11374 git-gate
                        $age = max(0, (int) ($now['year'] - $bday_year - $diff));
1698 6151 naderman
                }
1699 6151 naderman
        }
1700 6151 naderman
1701 4145 psotfx
        // Dump it out to the template
1702 4145 psotfx
        return array(
1703 6151 naderman
                'AGE'                        => $age,
1704 4970 psotfx
                'RANK_TITLE'        => $rank_title,
1705 5701 acydburn
                'JOINED'                => $user->format_date($data['user_regdate']),
1706 5701 acydburn
                'VISITED'                => (empty($last_visit)) ? ' - ' : $user->format_date($last_visit),
1707 4145 psotfx
                'POSTS'                        => ($data['user_posts']) ? $data['user_posts'] : 0,
1708 6589 acydburn
                'WARNINGS'                => isset($data['user_warnings']) ? $data['user_warnings'] : 0,
1709 3612 psotfx
1710 6730 acydburn
                'USERNAME_FULL'                => get_username_string('full', $user_id, $username, $data['user_colour']),
1711 6730 acydburn
                'USERNAME'                        => get_username_string('username', $user_id, $username, $data['user_colour']),
1712 6730 acydburn
                'USER_COLOR'                => get_username_string('colour', $user_id, $username, $data['user_colour']),
1713 6730 acydburn
                'U_VIEW_PROFILE'        => get_username_string('profile', $user_id, $username, $data['user_colour']),
1714 6730 acydburn
1715 8099 acydburn
                'A_USERNAME'                => addslashes(get_username_string('username', $user_id, $username, $data['user_colour'])),
1716 8099 acydburn
1717 8645 acydburn
                'AVATAR_IMG'                => get_user_avatar($data['user_avatar'], $data['user_avatar_type'], $data['user_avatar_width'], $data['user_avatar_height']),
1718 6930 acydburn
                'ONLINE_IMG'                => (!$config['load_onlinetrack']) ? '' : (($online) ? $user->img('icon_user_online', 'ONLINE') : $user->img('icon_user_offline', 'OFFLINE')),
1719 6123 grahamje
                'S_ONLINE'                        => ($config['load_onlinetrack'] && $online) ? true : false,
1720 5967 acydburn
                'RANK_IMG'                        => $rank_img,
1721 5967 acydburn
                'RANK_IMG_SRC'                => $rank_img_src,
1722 6015 acydburn
                'ICQ_STATUS_IMG'        => (!empty($data['user_icq'])) ? '<img src="http://web.icq.com/whitepages/online?icq=' . $data['user_icq'] . '&amp;img=5" width="18" height="18" />' : '',
1723 5967 acydburn
                'S_JABBER_ENABLED'        => ($config['jab_enable']) ? true : false,
1724 3628 psotfx
1725 9619 toonarmy
                'S_WARNINGS'        => ($auth->acl_getf_global('m_') || $auth->acl_get('m_warn')) ? true : false,
1726 9619 toonarmy
1727 6015 acydburn
                'U_SEARCH_USER'        => ($auth->acl_get('u_search')) ? append_sid("{$phpbb_root_path}search.$phpEx", "author_id=$user_id&amp;sr=posts") : '',
1728 9619 toonarmy
                'U_NOTES'                => ($user_notes_enabled && $auth->acl_getf_global('m_')) ? append_sid("{$phpbb_root_path}mcp.$phpEx", 'i=notes&amp;mode=user_notes&amp;u=' . $user_id, true, $user->session_id) : '',
1729 9619 toonarmy
                'U_WARN'                => ($warn_user_enabled && $auth->acl_get('m_warn')) ? append_sid("{$phpbb_root_path}mcp.$phpEx", 'i=warn&amp;mode=warn_user&amp;u=' . $user_id, true, $user->session_id) : '',
1730 6662 acydburn
                'U_PM'                        => ($config['allow_privmsg'] && $auth->acl_get('u_sendpm') && ($data['user_allow_pm'] || $auth->acl_gets('a_', 'm_') || $auth->acl_getf_global('m_'))) ? append_sid("{$phpbb_root_path}ucp.$phpEx", 'i=pm&amp;mode=compose&amp;u=' . $user_id) : '',
1731 4506 psotfx
                'U_EMAIL'                => $email,
1732 4506 psotfx
                'U_WWW'                        => (!empty($data['user_website'])) ? $data['user_website'] : '',
1733 9482 terrafrost
                'U_SHORT_WWW'                        => (!empty($data['user_website'])) ? ((strlen($data['user_website']) > 55) ? substr($data['user_website'], 0, 39) . ' ... ' . substr($data['user_website'], -10) : $data['user_website']) : '',
1734 11092 git-gate
                'U_ICQ'                        => ($data['user_icq']) ? 'http://www.icq.com/people/' . urlencode($data['user_icq']) . '/' : '',
1735 7242 acydburn
                'U_AIM'                        => ($data['user_aim'] && $auth->acl_get('u_sendim')) ? append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=contact&amp;action=aim&amp;u=' . $user_id) : '',
1736 8092 acydburn
                'U_YIM'                        => ($data['user_yim']) ? 'http://edit.yahoo.com/config/send_webmesg?.target=' . urlencode($data['user_yim']) . '&amp;.src=pg' : '',
1737 7242 acydburn
                'U_MSN'                        => ($data['user_msnm'] && $auth->acl_get('u_sendim')) ? append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=contact&amp;action=msnm&amp;u=' . $user_id) : '',
1738 7242 acydburn
                'U_JABBER'                => ($data['user_jabber'] && $auth->acl_get('u_sendim')) ? append_sid("{$phpbb_root_path}memberlist.$phpEx", 'mode=contact&amp;action=jabber&amp;u=' . $user_id) : '',
1739 5398 subblue
                'LOCATION'                => ($data['user_from']) ? $data['user_from'] : '',
1740 7242 acydburn
1741 7242 acydburn
                'USER_ICQ'                        => $data['user_icq'],
1742 7242 acydburn
                'USER_AIM'                        => $data['user_aim'],
1743 7242 acydburn
                'USER_YIM'                        => $data['user_yim'],
1744 7242 acydburn
                'USER_MSN'                        => $data['user_msnm'],
1745 7242 acydburn
                'USER_JABBER'                => $data['user_jabber'],
1746 7242 acydburn
                'USER_JABBER_IMG'        => ($data['user_jabber']) ? $user->img('icon_contact_jabber', $data['user_jabber']) : '',
1747 7242 acydburn
1748 5341 grahamje
                'L_VIEWING_PROFILE'        => sprintf($user->lang['VIEWING_PROFILE'], $username),
1749 3598 psotfx
        );
1750 3598 psotfx
}
1751 3598 psotfx
1752 8755 Kellanved
function _sort_last_active($first, $second)
1753 8755 Kellanved
{
1754 8755 Kellanved
        global $id_cache, $sort_dir;
1755 8801 acydburn
1756 8928 Kellanved
        $lesser_than = ($sort_dir === 'd') ? -1 : 1;
1757 8801 acydburn
1758 8755 Kellanved
        if (isset($id_cache[$first]['group_leader']) && $id_cache[$first]['group_leader'] && (!isset($id_cache[$second]['group_leader']) || !$id_cache[$second]['group_leader']))
1759 8755 Kellanved
        {
1760 8928 Kellanved
                return -1;
1761 8755 Kellanved
        }
1762 8755 Kellanved
        else if (isset($id_cache[$second]['group_leader']) && (!isset($id_cache[$first]['group_leader']) || !$id_cache[$first]['group_leader']) && $id_cache[$second]['group_leader'])
1763 8755 Kellanved
        {
1764 8928 Kellanved
                return 1;
1765 8755 Kellanved
        }
1766 8755 Kellanved
        else
1767 8755 Kellanved
        {
1768 8755 Kellanved
                return $lesser_than * (int) ($id_cache[$first]['last_visit'] - $id_cache[$second]['last_visit']);
1769 8755 Kellanved
        }
1770 8755 Kellanved
}
1771 8755 Kellanved
1772 2448 psotfx
?>