X-Git-Url: http://git.harvie.cz/?a=blobdiff_plain;f=wwwroot%2Finc%2Feventz%2Fk_wallet.inc;h=863215f0a04a4c619b4e8a6ecea6bef31acf4b89;hb=38927c4d48865f73d1b965f1a07c76efe4339a9a;hp=6012a4760af42e796c642244ac11e0d8b073b1ac;hpb=51ff32267c4949bad6a8dddc502cbc01ed56edc8;p=mirrors%2FKyberia-bloodline.git diff --git a/wwwroot/inc/eventz/k_wallet.inc b/wwwroot/inc/eventz/k_wallet.inc index 6012a47..863215f 100644 --- a/wwwroot/inc/eventz/k_wallet.inc +++ b/wwwroot/inc/eventz/k_wallet.inc @@ -4,7 +4,7 @@ function k_wallet() { global $db,$node,$error; $user_id=$_SESSION['user_id']; -$k_request=mysql_real_escape_string($_POST['k_wallet']); +$k_request=db_escape_string($_POST['k_wallet']); $kset=$db->query("select user_k from users where user_id='$user_id'"); $kset->next(); @@ -19,8 +19,8 @@ $k_request = (int) $k_request; //integer only.. if (($k_wallet+(-1*$k_request)) < 0 or ($user_k-(-1*$k_request)) < 0 or (!$k_request)) { -$error="Chybne zadanie alebo na to proste nemas:-)"; -return false; + $error="Chybne zadanie alebo na to proste nemas:-)"; + return false; } $db->query("update users set k_wallet=k_wallet+(-1*$k_request) , user_k=user_k-(-1*$k_request) where user_id='$user_id'");