/upload/admin/model/user/user.php

https://bitbucket.org/mjalajel/opencart · PHP · 101 lines · 75 code · 26 blank · 0 comment · 13 complexity · 9e2fd3df2a0dd109ba1c4f8e81f95f5b MD5 · raw file

  1. <?php
  2. class ModelUserUser extends Model {
  3. public function addUser($data) {
  4. $this->db->query("INSERT INTO `" . DB_PREFIX . "user` SET username = '" . $this->db->escape($data['username']) . "', user_group_id = '" . (int)$data['user_group_id'] . "', salt = '" . $this->db->escape($salt = substr(md5(uniqid(rand(), true)), 0, 9)) . "', password = '" . $this->db->escape(sha1($salt . sha1($salt . sha1($data['password'])))) . "', firstname = '" . $this->db->escape($data['firstname']) . "', lastname = '" . $this->db->escape($data['lastname']) . "', email = '" . $this->db->escape($data['email']) . "', image = '" . $this->db->escape(html_entity_decode($data['image'], ENT_QUOTES, 'UTF-8')) . "', status = '" . (int)$data['status'] . "', date_added = NOW()");
  5. }
  6. public function editUser($user_id, $data) {
  7. $this->db->query("UPDATE `" . DB_PREFIX . "user` SET username = '" . $this->db->escape($data['username']) . "', user_group_id = '" . (int)$data['user_group_id'] . "', firstname = '" . $this->db->escape($data['firstname']) . "', lastname = '" . $this->db->escape($data['lastname']) . "', email = '" . $this->db->escape($data['email']) . "', image = '" . $this->db->escape(html_entity_decode($data['image'], ENT_QUOTES, 'UTF-8')) . "', status = '" . (int)$data['status'] . "' WHERE user_id = '" . (int)$user_id . "'");
  8. if ($data['password']) {
  9. $this->db->query("UPDATE `" . DB_PREFIX . "user` SET salt = '" . $this->db->escape($salt = substr(md5(uniqid(rand(), true)), 0, 9)) . "', password = '" . $this->db->escape(sha1($salt . sha1($salt . sha1($data['password'])))) . "' WHERE user_id = '" . (int)$user_id . "'");
  10. }
  11. }
  12. public function editPassword($user_id, $password) {
  13. $this->db->query("UPDATE `" . DB_PREFIX . "user` SET salt = '" . $this->db->escape($salt = substr(md5(uniqid(rand(), true)), 0, 9)) . "', password = '" . $this->db->escape(sha1($salt . sha1($salt . sha1($password)))) . "', code = '' WHERE user_id = '" . (int)$user_id . "'");
  14. }
  15. public function editCode($email, $code) {
  16. $this->db->query("UPDATE `" . DB_PREFIX . "user` SET code = '" . $this->db->escape($code) . "' WHERE LCASE(email) = '" . $this->db->escape(utf8_strtolower($email)) . "'");
  17. }
  18. public function deleteUser($user_id) {
  19. $this->db->query("DELETE FROM `" . DB_PREFIX . "user` WHERE user_id = '" . (int)$user_id . "'");
  20. }
  21. public function getUser($user_id) {
  22. $query = $this->db->query("SELECT *, (SELECT ug.name FROM `" . DB_PREFIX . "user_group` ug WHERE ug.user_group_id = u.user_group_id) AS user_group FROM `" . DB_PREFIX . "user` u WHERE u.user_id = '" . (int)$user_id . "'");
  23. return $query->row;
  24. }
  25. public function getUserByUsername($username) {
  26. $query = $this->db->query("SELECT * FROM `" . DB_PREFIX . "user` WHERE username = '" . $this->db->escape($username) . "'");
  27. return $query->row;
  28. }
  29. public function getUserByCode($code) {
  30. $query = $this->db->query("SELECT * FROM `" . DB_PREFIX . "user` WHERE code = '" . $this->db->escape($code) . "' AND code != ''");
  31. return $query->row;
  32. }
  33. public function getUsers($data = array()) {
  34. $sql = "SELECT * FROM `" . DB_PREFIX . "user`";
  35. $sort_data = array(
  36. 'username',
  37. 'status',
  38. 'date_added'
  39. );
  40. if (isset($data['sort']) && in_array($data['sort'], $sort_data)) {
  41. $sql .= " ORDER BY " . $data['sort'];
  42. } else {
  43. $sql .= " ORDER BY username";
  44. }
  45. if (isset($data['order']) && ($data['order'] == 'DESC')) {
  46. $sql .= " DESC";
  47. } else {
  48. $sql .= " ASC";
  49. }
  50. if (isset($data['start']) || isset($data['limit'])) {
  51. if ($data['start'] < 0) {
  52. $data['start'] = 0;
  53. }
  54. if ($data['limit'] < 1) {
  55. $data['limit'] = 20;
  56. }
  57. $sql .= " LIMIT " . (int)$data['start'] . "," . (int)$data['limit'];
  58. }
  59. $query = $this->db->query($sql);
  60. return $query->rows;
  61. }
  62. public function getTotalUsers() {
  63. $query = $this->db->query("SELECT COUNT(*) AS total FROM `" . DB_PREFIX . "user`");
  64. return $query->row['total'];
  65. }
  66. public function getTotalUsersByGroupId($user_group_id) {
  67. $query = $this->db->query("SELECT COUNT(*) AS total FROM `" . DB_PREFIX . "user` WHERE user_group_id = '" . (int)$user_group_id . "'");
  68. return $query->row['total'];
  69. }
  70. public function getTotalUsersByEmail($email) {
  71. $query = $this->db->query("SELECT COUNT(*) AS total FROM `" . DB_PREFIX . "user` WHERE LCASE(email) = '" . $this->db->escape(utf8_strtolower($email)) . "'");
  72. return $query->row['total'];
  73. }
  74. }
  75. ?>