1){ $strMail=GetCustomerEmail($usernumber); $strName=$GLOBALS['uname']; } include ('/var/www/vhosts/homeofpoi.com/httpdocs/pre_code_new/filler_images.php'); //Function for getting the Client Email //==================================================== function GetCustomerEmail($strUBBID){ $GLOBALS['DB'] = dbconnecti(); $sql="select USER_REAL_EMAIL,encrypted from w3t_USER_PROFILE where USER_ID='$strUBBID'"; $result = mysqli_query($GLOBALS['DB'],$sql) or die("Error getting the customer email"); if ($result){ if (mysqli_num_rows($result)>0){ $myrow=mysqli_fetch_row($result); $email=$myrow[0]; $encrypted=$myrow[1]; if($encrypted){$email=do_crypt($myrow[0],'d');} } } return $email; } //==================================================== //Function for checking if the User has already //Entered //==================================================== function CheckEntry ($strMail,$strDate){ $GLOBALS['DB'] = dbconnecti(); $strMail=do_crypt(strtolower($strMail)); $sql = "Select * from competition_entry where email='$strMail' and DateofEntry='$strDate'"; $result=mysqli_query($GLOBALS['DB'],$sql) or die("Error checking user Entry"); if ($result) { if (mysqli_num_rows($result)>0){ $boolEntry=true; } else{ $boolEntry = false; } } return $boolEntry; } //==================================================== //Function for seeing how many entries there are //entered for current month //==================================================== function NumberEntry ($strDate){ $GLOBALS['DB'] = dbconnecti(); $sql = "Select * from competition_entry where DateofEntry='$strDate'"; $result=mysqli_query($GLOBALS['DB'],$sql) or die("Error checking number of Entry"); $strnumentry = 0; if ($result) { $strnumentry=mysqli_num_rows($result); } return $strnumentry; } // Check for spam attempts function str_contains($haystack, $needle) { $haystack = strtolower($haystack); $needle = strtolower($needle); $needlePos = strpos($haystack, $needle); return ($needlePos === false ? false : ($needlePos+1)); } function decryptpromotion2($strpromotional){ $code2 = array("7", "0", "2", "3", "4", "5", "6", "1", "8", "9"); $code1 = array("or", "so", "ca", "b", "s", "m", "fi", "de", "ng", "qu"); $string = str_replace($code1, $code2, $strpromotional); $string = $string - 41264376587; $string = $string / 4654; return $string; } $boolError=false; //==================================================== //Form Being Submitted //==================================================== if(ISSET($_GET['auto'])){ $auto=decryptpromotion2(cleanthishere($_GET['auto'])); if(is_numeric($auto)){ $GLOBALS['DB'] = dbconnecti(); $sql = "Select * from competition_entry where ID='$auto'"; $result=mysqli_query($GLOBALS['DB'],$sql) or die("Error checking number of Entry"); $strnumentry = 0; if ($result) { if (mysqli_num_rows($result)>0){ $myrow=mysqli_fetch_row($result); $strName=clean($myrow[1]); $strMail=clean($myrow[2]); $strItems=clean($myrow[3]); $encrypted=$myrow[6]; if($encrypted){ $strName=do_crypt($myrow[1],'d'); $strMail=do_crypt($myrow[2],'d'); } $strDate = date('F Y'); $strMail=strtolower($strMail); //==================================================== //Checking the User Entry //==================================================== $boolEntry=CheckEntry ($strMail,$strDate); //echo $boolEntry; if ($boolEntry){ $strError = cleanthishere($strName).", Thank you for your entry. You are already registered for this draw"; $boolError = true; $strName=''; $strMail=''; $strItems=''; } else{ $GLOBALS['DB'] = dbconnecti(); $sql="insert into competition_entry (name,email,itemlist,dateofentry,encrypted) values "; $sql .="('".do_crypt($strName)."','".do_crypt($strMail)."','".makesafesql($strItems)."','$strDate','1')"; mysqli_query($GLOBALS['DB'],$sql) or die("Error Entering the user entry"); $boolEntered = true; $strName=''; $strMail=''; $strItems=''; } } } } } else if(ISSET($_GET['otherdraw'])){ $auto=decryptpromotion2(cleanthishere($_GET['otherdraw'])); if(is_numeric($auto)){ $GLOBALS['DB'] = dbconnecti(); $sql = "Select * from w3t_USERS where USER_ID='$auto'"; $result=mysqli_query($GLOBALS['DB'],$sql) or die("Error checking number of Entry"); $strnumentry = 0; if ($result) { if (mysqli_num_rows($result)>0){ $myrow=mysqli_fetch_array($result); $strName=clean($myrow['USER_DISPLAY_NAME']); $strMail=strtolower($myrow['USER_REGISTRATION_EMAIL']); $encrypted=$myrow['encrypted']; if($encrypted){ $strName=clean(do_crypt($myrow['USER_DISPLAY_NAME'],'d')); $strMail=strtolower(do_crypt($myrow['USER_REGISTRATION_EMAIL'],'d')); } $strItems=''; $strDate = date('F Y'); //==================================================== //Checking the User Entry //==================================================== $boolEntry=CheckEntry ($strMail,$strDate); //echo $boolEntry; if ($boolEntry){ $strError = cleanthishere($strName).", Thank you for your entry. You are already registered for this draw"; $boolError = true; $strName=''; $strMail=''; $strItems=''; } else{ $GLOBALS['DB'] = dbconnecti(); $sql="insert into competition_entry (name,email,itemlist,dateofentry,encrypted) values "; $sql .="('".do_crypt($strName)."','".do_crypt($strMail)."','".makesafesql($strItems)."','$strDate','1')"; mysqli_query($GLOBALS['DB'],$sql) or die("Error Entering the user entry"); $boolEntered = true; $strName=''; $strMail=''; $strItems=''; } } } } } else if (isset($_POST['enterdraw'])){ test_csrf();// if does not have the correct form token will add to error_log and go to https://www.homeofpoi.com/access_denied_form.php $strName=clean($_POST['name']); $strMail=strtolower(clean($_POST['mail'])); $strItems=clean($_POST['itemlist']); //==================================================== //Error Checking Data //==================================================== $strError = ""; if ($strName == ""){ $strError .= "Please enter your name
"; $boolError = true; } if ($strMail == ""){ $strError .= "Please enter your email address
"; $boolError = true; } if ($strItems == ""){ $strError .= "Please enter the items you want should you win
"; $boolError = true; } if ($strMail != "" && ! CheckMail( $strMail )) { $strError .= "".language_convert("Please enter your correct email address")."
"; $boolError = true; } if(stristr($strName,"MIME")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strName,"Content-Type")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strName,"bcc:")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strName,"====")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strName,"http")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strName,"www.")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strMail,"MIME")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strMail,"Content-Type")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strMail,"bcc:")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strMail,"====")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strMail,"http")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strMail,"www.")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strItems,"MIME")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strItems,"Content-Type")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strItems,"bcc:")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strItems,"====")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strItems,"http")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} if(stristr($strItems,"www.")!==FALSE) {$strError = "Invalid message coding
";$boolError = true;} $strError .=""; if($boolError==false){ $strDate = date('F Y'); //==================================================== //Replacing the Commas in the itemlist with hyphens //==================================================== if (substr_count($strItems,",") > 0){ $strItems = ereg_replace (","," - ",$strItems); } if (substr_count($strItems,"\n") > 0){ $strItems = str_replace("\n", " - ", $strItems); } $strItems = preg_replace('/[\s\n\r]+/',' ',$strItems); $strItems = strip_tags($strItems); //==================================================== //Checking the User Entry //==================================================== $boolEntry=CheckEntry ($strMail,$strDate); //echo $boolEntry; $strMail=strtolower($strMail); if ($boolEntry){ $strError = cleanthishere($strName).", Thank you for your entry. You are already registered for this draw"; $boolError = true; $strName=''; $strMail=''; $strItems=''; } else{ $GLOBALS['DB'] = dbconnecti(); $sql="insert into competition_entry (name,email,itemlist,dateofentry,encrypted) values "; $sql .="('".do_crypt($strName)."','".do_crypt($strMail)."','".makesafesql($strItems)."','$strDate','1')"; mysqli_query($GLOBALS['DB'],$sql) or die("Error Entering the user entry"); $boolEntered = true; $strName=''; $strMail=''; $strItems=''; } } } //==================================================== //Setting the Date //==================================================== $strDate = date('F Y'); $strnumber=NumberEntry($strDate); if ($boolEntered){ $notify_message='Thank you for your entry. Results will be emailed to you at the beginning of the next month.'; } $alert_message=$strError; $header_title=language_convert("Free Monthly Competition"); $responsivetabs=FALSE; $home_banner=FALSE; $feature_slider=FALSE; $feature_slider=FALSE; $name1=language_convert("Home"); $link1=$GLOBALS['language_url_prefix'].'/'; $name2=language_convert("Community"); $link2=$GLOBALS['language_url_prefix'].'/community/home.php'; $name3=language_convert("Competitions"); $link3=$GLOBALS['language_url_prefix'].'/competition'.$GLOBALS['web_version'].'/view-competitions.php'; $name4=$header_title; $link4=''; $name5=''; $link5=''; $header_description=""; $privacy = ''; include ('/var/www/vhosts/homeofpoi.com/httpdocs/new_templates/advertising.php'); include ('/var/www/vhosts/homeofpoi.com/httpdocs/new_templates/main_header.php'); include ('/var/www/vhosts/homeofpoi.com/httpdocs/new_templates/main_nav.php'); ?>

Fatal error: Uncaught Error: Call to undefined function show_breadcrumbs() in /var/www/vhosts/homeofpoi.com/httpdocs/competition/competitionEntry.php:385 Stack trace: #0 {main} thrown in /var/www/vhosts/homeofpoi.com/httpdocs/competition/competitionEntry.php on line 385