include("db.inc");
$query = "SELECT username FROM user_table WHERE id='$id'";
$result = query_db($query);
// did we get anything back
if (count($result) != 0) {
while (list($key, $arr) = each($result)) {
$row = $arr; // get a row
$username = $row['username'];
}
}
?>
MST3K.ORG: Tape Trading - Leave Feedback For
include("header.php"); ?>
Tape Trading: Leave Feedback For
$invalid = 0;
if ($addcomment) {
$query = "SELECT * FROM user_table WHERE userid='$userid' AND pass=ENCRYPT('$password', '.xv')";
$result = query_db($query);
if (count($result) != 0) {
$query = "INSERT INTO ratings (userid,fromuser,date,type,comment) VALUES ('$id','$username',NOW(),'$type','$comment')";
insert_into($query);
$query = "SELECT * FROM trader WHERE id='$id'";
$result = query_db($query);
if (count($result) != 0) {
$row = $result[0];
$rating = $row['rating'] + $type;
$query = "UPDATE trader SET rating='$rating' WHERE id='$id'";
insert_into($query);
}
?>
Your feedback has been received.
} else {
$invalid = 1;
?>
Your username and password are incorrect. Please try again.
}
}
if ($invalid || !$addcomment) {
?>
}
include("footer.php");
?>