2009-09-01 03:30:50 +04:00
|
|
|
<?php
|
|
|
|
/*
|
2013-03-07 01:22:53 +04:00
|
|
|
* Copyright 2005-2013 the original author or authors.
|
|
|
|
*
|
|
|
|
* Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
* you may not use this file except in compliance with the License.
|
|
|
|
* You may obtain a copy of the License at
|
|
|
|
*
|
|
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
*
|
|
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
|
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
* See the License for the specific language governing permissions and
|
|
|
|
* limitations under the License.
|
2009-09-01 03:30:50 +04:00
|
|
|
*/
|
|
|
|
|
|
|
|
require_once('../libs/common.php');
|
|
|
|
require_once('../libs/operator.php');
|
|
|
|
require_once('../libs/settings.php');
|
|
|
|
|
|
|
|
$errors = array();
|
|
|
|
$page = array('version' => $version, 'showform' => true);
|
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
$opId = verifyparam("id", "/^\d{1,9}$/");
|
2009-09-01 03:30:50 +04:00
|
|
|
$token = verifyparam("token", "/^[\dabcdef]+$/");
|
|
|
|
|
|
|
|
$operator = operator_by_id($opId);
|
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
if (!$operator) {
|
2009-09-01 03:30:50 +04:00
|
|
|
$errors[] = "No such operator";
|
|
|
|
$page['showform'] = false;
|
2011-02-26 17:06:19 +03:00
|
|
|
} else if ($token != $operator['vcrestoretoken']) {
|
2009-09-01 03:30:50 +04:00
|
|
|
$errors[] = "Wrong token";
|
|
|
|
$page['showform'] = false;
|
|
|
|
}
|
|
|
|
|
|
|
|
if (count($errors) == 0 && isset($_POST['password'])) {
|
|
|
|
$password = getparam('password');
|
|
|
|
$passwordConfirm = getparam('passwordConfirm');
|
2011-02-26 17:06:19 +03:00
|
|
|
|
|
|
|
if (!$password)
|
2009-09-01 03:30:50 +04:00
|
|
|
$errors[] = no_field("form.field.password");
|
|
|
|
|
2011-02-26 17:06:19 +03:00
|
|
|
if ($password != $passwordConfirm)
|
2009-09-01 03:30:50 +04:00
|
|
|
$errors[] = getlocal("my_settings.error.password_match");
|
2011-02-26 17:06:19 +03:00
|
|
|
|
2009-09-01 03:30:50 +04:00
|
|
|
if (count($errors) == 0) {
|
|
|
|
$page['isdone'] = true;
|
|
|
|
|
|
|
|
$link = connect();
|
2011-02-26 17:06:19 +03:00
|
|
|
$query = "update ${mysqlprefix}chatoperator set vcpassword = '" . md5($password) . "', vcrestoretoken = '' where operatorid = " . $opId;
|
2009-09-01 03:30:50 +04:00
|
|
|
perform_query($query, $link);
|
2011-11-09 18:16:37 +04:00
|
|
|
close_connection($link);
|
2011-02-26 17:06:19 +03:00
|
|
|
|
2012-03-15 01:18:54 +04:00
|
|
|
$page['loginname'] = $operator['vclogin'];
|
2009-09-01 03:30:50 +04:00
|
|
|
start_html_output();
|
|
|
|
require('../view/resetpwd.php');
|
|
|
|
exit;
|
2011-02-26 17:06:19 +03:00
|
|
|
}
|
2009-09-01 03:30:50 +04:00
|
|
|
}
|
|
|
|
|
|
|
|
$page['id'] = $opId;
|
|
|
|
$page['token'] = $token;
|
|
|
|
$page['isdone'] = false;
|
|
|
|
start_html_output();
|
|
|
|
require('../view/resetpwd.php');
|
2013-03-13 01:03:50 +04:00
|
|
|
?>
|