--- article.php.old Fri Jul 12 14:37:33 2002 +++ article.php Fri Jul 12 14:44:46 2002 @@ -27,6 +27,7 @@ include('mainfile.php'); if (address@hidden && address@hidden) { exit(); } +isRealUser($HTTP_COOKIE_VARS['user']); dbconnect(); if ($save) { --- banners.php.old Fri Jul 12 14:53:15 2002 +++ banners.php Fri Jul 12 14:58:05 2002 @@ -25,7 +25,7 @@ # $Id: banners.php,v 1.2 2002/06/22 14:18:31 pawal Exp $ if (!isset($config)) { include('config.php'); } -if (eregi("banners.php",$PHP_SELF)) include('mainfile.php'); +if (eregi("banners\.php",$SCRIPT_NAME)) include('mainfile.php'); dbconnect(); /********************************************/ @@ -61,7 +61,7 @@ if ($imptotal == $impmade) { mysql_query("INSERT INTO bannerfinish VALUES (NULL, '$cid', '$impmade', '$clicks', '$date', now())"); - mysql_query("DELETE FROM banner WHERE bid=$bid"); + mysql_query("DELETE FROM banner WHERE bid='$bid'"); } echo "
\"\"

"; } @@ -74,9 +74,9 @@ /********************************************/ function clickbanner($bid) { - $bresult = mysql_query("select clickurl from banner where bid=$bid"); + $bresult = mysql_query("select clickurl from banner where bid='$bid'"); list($clickurl) = mysql_fetch_row($bresult); - mysql_query("update banner set clicks=clicks+1 where bid=$bid"); + mysql_query("update banner set clicks=clicks+1 where bid='$bid'"); mysql_free_result($bresult); Header("Location: $clickurl"); } @@ -320,14 +320,3 @@ viewbanner(); break; } - - - - - - - - - - - --- friend.php.old Fri Jul 12 15:05:12 2002 +++ friend.php Fri Jul 12 15:06:52 2002 @@ -25,6 +25,7 @@ # $Id: friend.php,v 1.3 2002/06/22 14:18:31 pawal Exp $ include('mainfile.php'); +isRealUser($HTTP_COOKIE_VARS['user']); function FriendSend($sid) { if(!isset($sid)) { exit(); } --- robots.txt.old Fri Jul 12 15:12:37 2002 +++ robots.txt Fri Jul 12 15:12:52 2002 @@ -1,7 +1,7 @@ User-agent: * -Dissallow: /images -Dissallow: /themes -Dissallow: /print.php -Dissallow: /avantgo.php -Dissallow: /friend.php \ No newline at end of file +Disallow: /images +Disallow: /themes +Disallow: /print.php +Disallow: /avantgo.php +Disallow: /friend.php --- search.php.old Fri Jul 12 15:13:22 2002 +++ search.php Fri Jul 12 15:14:52 2002 @@ -26,6 +26,7 @@ include('mainfile.php'); dbconnect(); +isRealUser($HTTP_COOKIE_VARS['user']); cookiedecode($user); $rmflags = rmflags(); $offset = 30; --- submit.php.old Fri Jul 12 15:15:45 2002 +++ submit.php Fri Jul 12 15:16:38 2002 @@ -26,6 +26,7 @@ # $Id: submit.php,v 1.2 2002/06/22 14:18:31 pawal Exp $ include('mainfile.php'); +isRealUser($HTTP_COOKIE_VARS['user']); function defaultDisplay() { include('header.php');