4
ExtremeDating - a Hackathon 2013 project.
5
Copyright (C) 2013 Gustav Hartvigsson <gustav.hartvigsson@gmail.com>
6
Copyright (C) 2013 Daniel Johansson <maila@danieljohansson.nu>
9
This program is free software: you can redistribute it and/or modify
10
it under the terms of the GNU Affero General Public License as
11
published by the Free Software Foundation, either version 3 of the
12
License, or (at your option) any later version.
14
This program is distributed in the hope that it will be useful,
15
but WITHOUT ANY WARRANTY; without even the implied warranty of
16
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17
GNU Affero General Public License for more details.
19
You should have received a copy of the GNU Affero General Public License
20
along with this program. If not, see <http://www.gnu.org/licenses/>.
4
<title>Extreme Dating - Create User</title>
23
<title>Extreme Dating - Create User</title>
24
<link rel="stylesheet" type="text/css" href="css/main.css"/>
25
<meta http-equiv="Content-Type" content="text/html;charset=utf-8">
7
28
include "php/db.php";
29
include "php/salt.php";
8
30
if(isset($_POST['hiddenStuff']) && $_POST['hiddenStuff'] == "Something Strange") {
9
$password = sha1($_POST['passwd']."salt");
31
$password = sha1($_POST['passwd'].$pwd_salt);
10
32
//If there is a $_POST that indicates that the add userscript should be run.
35
if(isset($_FILES["image"]["tmp_name"])){
36
$tmpFile = $_FILES["image"]["tmp_name"];
37
$handle = fopen($tmpFile,"r");
38
$fileSize = $_FILES['image']['size'];
39
$output = fread($handle, filesize($tmpFile));
40
$output = base64_encode ($output);
12
42
if (isset($_SESSION['userType']) && $_POST['isSuperUser'] == true && $_SESSION['userType'] == 1) {
13
43
$query = "INSERT INTO Users (
45
78
'{$_POST['firstName']}',
46
79
'{$_POST['surName']}',
47
80
'{$_POST['eMail']}',
87
} catch (PDOException $err) {
52
90
echo "<body> <h1> New user added! </h1> </body>";
92
header("Location:./index.php");
57
96
<body id="wrapper">
59
99
<h1> Create a new user </h1>
61
<form action="./adduser.php" method="POST">
101
<form action="./adduser.php" method="POST" enctype="multipart/form-data">
62
102
<table border="0">
64
104
if(isset($_SESSION['userType']) && $_SESSION['userType'] == 1 ) {
96
136
<td> <label for="city"> City </label> </td>
97
137
<td> <input type="input" name="city" id="city" /> </td>
140
<td> <label for="file"> Profile Image </label> </td>
141
<td> <input type="file" name="image" id="image" /> </td>
100
144
<td><input name="hiddenStuff" value="Something Strange" type="hidden"/></td>
101
<td><input id="input" type="submit" action="./adduser.php" value="Registera mig"/></td>
145
<td><input id="inputbutton1" type="submit" action="./adduser.php" value="Registera mig"/></td>