$viewusername=addslashes($_GET["user"]);
if(trim($viewusername)==""){
Error("No Such user", "This user does not exist.");
} else {
//begin querying
$query = "SELECT * from profiles where username='$viewusername'";
$result = mysql_query($query);
$num = mysql_num_rows($result);
if($num!=0) {
$rows=mysql_fetch_array($result);
//get level
$query = "SELECT level from users where username='$viewusername'";
$res = mysql_query($query);
$data = mysql_fetch_array($res);
$otherlevel = $data["level"];
//end get level
//begin comment retreiving
$query1 = "SELECT * from comments where addrto='$viewusername' ORDER BY time DESC";
$comments = mysql_query($query1);
$num = 0;
if($comments != ""){
$num = mysql_num_rows($comments);
}
//end comment retrieving
$rows["interests"] = stripslashes(str_replace("\n","
",$rows["interests"]));
$rows["hobbies"] = stripslashes(str_replace("\n","
",$rows["hobbies"]));
$rows["about"] = stripslashes(str_replace("\n","
",$rows["about"]));
startpage("$viewusername's Page");
?>
$filename = "images/profiles/".base64_encode($viewusername).".jpg";
if (file_exists($filename)) {
echo " ";
} else {
echo "No Profile Image!";
}
?>
echo chr(13)."Username: ".$rows["username"]." Firstname: ".$rows["firstname"]." ".chr(13)."Lastname: ".$rows["lastname"];
echo " ";
if($username!=""){
print "Send a message to (".$rows["username"].")";
} ?> |
Interests: print $rows["interests"] ?>
Marital Status: print stripslashes($rows["maritalstatus"]) ?>
Hobbies: print $rows["hobbies"] ?>
Pets: print stripslashes($rows["pets"]) ?>
|
About me:
print $rows["about"] ?>
|
[Post a comment]
if($num > 0){
while($data = mysql_fetch_array($comments)){
$data["message"] = stripslashes(str_replace("\n"," ",$data["message"]));
echo " Comment from: ".$data["addrfrom"]." Message: ".$data["message"]." Time: ".date("d-n-Y g:i:s A", $data["time"])."\n";
}
}
?>
|
|
if($otherlevel==1){
echo "Offical website Debugger
";
}
if($otherlevel==2){
echo "Offical Administrator
";
}
endpage();
} else {
Error("Incorrect Profile information","This User may not exist, or does not have a profile!");
}
}
?>