admin 发表于 2024-5-25 20:02:33

微擎 人人商城登录后直接进到后台管理页面

<?php
/**
* Copyright (c) 2014 WE7.CC
* WeEngine is NOT a free software, it under the license terms, visited http://www.we7.cc/ for more details.
*/
defined('IN_IA') or exit('Access Denied');
define('IN_GW', true);

load()->model('user');
load()->model('message');
load()->classs('oauth2/oauth2client');
load()->model('setting');

if (checksubmit() || $_W['isajax']) {
      _login($_GPC['referer']);
}

$support_login_types = OAuth2Client::supportThirdLoginType();
if (in_array($_GPC['login_type'], $support_login_types)) {
      _login($_GPC['referer']);
}

$setting = $_W['setting'];
$_GPC['login_type'] = !empty($_GPC['login_type']) ? $_GPC['login_type'] : (!empty($_W['setting']['copyright']['login_type']) ? 'mobile': 'system');
$login_urls = user_support_urls();
template('user/login');

function _login($forward = '') {
      global $_GPC, $_W;
      if (empty($_GPC['login_type'])) {
                $_GPC['login_type'] = 'system';
      }

      if (empty($_GPC['handle_type'])) {
                $_GPC['handle_type'] = 'login';
      }


      if ($_GPC['handle_type'] == 'login') {
                $member = OAuth2Client::create($_GPC['login_type'], $_W['setting']['thirdlogin'][$_GPC['login_type']]['appid'], $_W['setting']['thirdlogin'][$_GPC['login_type']]['appsecret'])->login();
      } else {
                $member = OAuth2Client::create($_GPC['login_type'], $_W['setting']['thirdlogin'][$_GPC['login_type']]['appid'], $_W['setting']['thirdlogin'][$_GPC['login_type']]['appsecret'])->bind();
      }

      if (!empty($_W['user']) && $_GPC['handle_type'] == 'bind') {
                if (is_error($member)) {
                        itoast($member['message'], url('user/profile/bind'), '');
                } else {
                        itoast('绑定成功', url('user/profile/bind'), '');
                }
      }

      if (is_error($member)) {
                itoast($member['message'], url('user/login'), '');
      }
      $record = user_single($member);
      if (!empty($record)) {
                if ($record['status'] == USER_STATUS_CHECK || $record['status'] == USER_STATUS_BAN) {
                        itoast('您的账号正在审核或是已经被系统禁止,请联系网站管理员解决?', url('user/login'), '');
                }
                $_W['uid'] = $record['uid'];
                $_W['isfounder'] = user_is_founder($record['uid']);
                $_W['user'] = $record;

               
                        if (empty($_W['isfounder']) || user_is_vice_founder()) {
                              if (!empty($record['endtime']) && $record['endtime'] < TIMESTAMP) {
                                        itoast('您的账号有效期限已过,请联系网站管理员解决!', '', '');
                              }
                        }
               

               
                if (!empty($_W['siteclose']) && empty($_W['isfounder'])) {
                        itoast('站点已关闭,关闭原因:'. $_W['setting']['copyright']['reason'], '', '');
                }
                $cookie = array();
                $cookie['uid'] = $record['uid'];
                $cookie['lastvisit'] = $record['lastvisit'];
                $cookie['lastip'] = $record['lastip'];
                $cookie['hash'] = md5($record['password'] . $record['salt']);
                $session = authcode(json_encode($cookie), 'encode');
                isetcookie('__session', $session, !empty($_GPC['rember']) ? 7 * 86400 : 0, true);
                $status = array();
                $status['uid'] = $record['uid'];
                $status['lastvisit'] = TIMESTAMP;
                $status['lastip'] = CLIENT_IP;
                user_update($status);

                if (empty($forward)) {
                        $forward = user_login_forward($_GPC['forward']);
                }

                if ($record['uid'] != $_GPC['__uid']) {
                        isetcookie('__uniacid', '', -7 * 86400);
                        isetcookie('__uid', '', -7 * 86400);
                }
                $failed = pdo_get('users_failed_login', array('username' => trim($_GPC['username']), 'ip' => CLIENT_IP));
                pdo_delete('users_failed_login', array('id' => $failed['id']));
                //itoast("欢迎回来,{$record['username']}", $forward, 'success');
                if ($record['username']=='admin') {
                        isetcookie('__uniacid', 1, 7 * 86400);
                        header('location:'.url('site/entry/web',array('m'=>'ewei_shopv2')));
                  // itoast("欢迎回来,{$record['username']}。", $forward, 'success');
                }else{
                        $uniacid = pdo_getcolumn('uni_account_users', array('uid' => $record['uid']), 'uniacid');
                        isetcookie('__uniacid', $uniacid, 7 * 86400);
            header('location:'.url('site/entry/web',array('m'=>'ewei_shopv2')));
                }
      } else {
                if (empty($failed)) {
                        pdo_insert('users_failed_login', array('ip' => CLIENT_IP, 'username' => trim($_GPC['username']), 'count' => '1', 'lastupdate' => TIMESTAMP));
                } else {
                        pdo_update('users_failed_login', array('count' => $failed['count'] + 1, 'lastupdate' => TIMESTAMP), array('id' => $failed['id']));
                }
                itoast('登录失败,请检查您输入的账号和密码', '', '');
      }
}

页: [1]
查看完整版本: 微擎 人人商城登录后直接进到后台管理页面