Projekt

Obecné

Profil

« Předchozí | Další » 

Revize fbcb777f

Přidáno uživatelem Petr Lukašík před téměř 6 roky(ů)

Re #7580 administrace - články

Zobrazit rozdíly:

old/html/multidic/app/webroot/administration/add_article.php
13 13
      echo $string;
14 14
  }
15 15

  
16

  
17
if (Empty($language) || $language == "") {
16
if (Empty(@$_REQUEST['language']) || @$_REQUEST['language'] == "") {
18 17
  $krok = 0;
19 18
}
20
else if (Empty($source) || $source == "") {
19
else if (Empty(@$_REQUEST['source']) || @$_REQUEST['source'] == "") {
21 20
  $krok = 1;
22 21
}
23 22
else {
......
58 57
    <form action="" method="POST" name="new_article_form1">
59 58
      <table>
60 59
      <tr class="akt">
61
        <td><?php echo(get_source_chooser($language))?></td>
60
        <td><?php echo(get_source_chooser(@$_REQUEST['language']))?></td>
62 61
      </tr>
63 62
      <tr class="nadpis_sekce">
64 63
        <td>
65
          <input type="hidden" name="language" value="<?php echo $language?>">
64
          <input type="hidden" name="language" value="<?php echo @$_REQUEST['language']?>">
66 65
          <input type="hidden" name="action" value="select_source">
67 66
          <input type="submit" value="Dál">
68 67
        </td>
......
79 78
  
80 79
  $zobrazit_znovu = true;  
81 80

  
82
    if (!Empty($action) && $action == "insert_new_article") {
81
    if (!Empty(@$_REQUEST['action']) && @$_REQUEST['action'] == "insert_new_article") {
83 82

  
84
    $user = $ses_IDuser;
83
    $user = $_SESSION['ses_IDuser'];
85 84
  
86 85
  
87
    if (Empty($lection)) {
86
    if (Empty(@$_REQUEST['lection'])) {
88 87
      print_hlasku("Lekci musíte vyplnit");
89 88
    }
90 89
    else {
91
      if (insert_article($language,$source,$lection,$title,$body,$note,$user)) {
90
      if (insert_article(@$_REQUEST['language'],@$_REQUEST['source'],@$_REQUEST['lection'],@$_REQUEST['title'],@$_REQUEST['body'],@$_REQUEST['note'],$user)) {
92 91
        print_hlasku ("Článek přidán...");
92
      }else{
93
          print_hlasku("Nastala chyba při vytváření článku");
93 94
      }
94 95

  
95 96
      $zobrazit_znovu = false;
......
125 126
      <table>
126 127
      <tr class="akt">
127 128
        <td>název</td>
128
        <td<?php if ($language == 1 || $language == 2) echo " dir=\"rtl\"" ?>>
129
        <input type="text" <?php if ($language == 1 || $language == 2) echo "class=\"arabic\"\n" ?>
129
        <td<?php if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo " dir=\"rtl\"" ?>>
130
        <input type="text" <?php if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo "class=\"arabic\"\n" ?>
130 131
               name="title"  
131
               size="29"<?php znova($title)?> 
132
               size="29"<?php znova(@$_REQUEST['title'])?>
132 133
               onfocus="aktivujKlavesnici('new_article_form.title')" /></td>
133 134
      </tr>
134 135
      <tr class="akt">
135 136
        <td>text</td>
136
        <td<?php if ($language == 1 || $language == 2) echo " dir=\"rtl\"" ?>>
137
        <textarea <?php if ($language == 1 || $language == 2) echo "class=\"arabic\"\n" ?>
137
        <td<?php if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo " dir=\"rtl\"" ?>>
138
        <textarea <?php if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo "class=\"arabic\"\n" ?>
138 139
            name="body" 
139 140
            rows="7" 
140 141
            wrap="PHYSICAL" 
141 142
            cols="25"
142 143
            onfocus="aktivujKlavesnici('new_article_form.body')"
143
        ><?php znova_hodnota($body) ?></textarea>       
144
        ><?php znova_hodnota(@$_REQUEST['body']) ?></textarea>       
144 145
               
145 146
               
146 147
               </td>
147 148
      </tr>
148 149
      <tr class="akt">
149 150
        <td>poznámka</td>
150
        <td><input type="text" name="note"  size="50"<?php znova($note)?> /></td>
151
        <td><input type="text" name="note"  size="50"<?php znova(@$_REQUEST['note'])?> /></td>
151 152
      </tr>
152 153
      <tr class="akt">
153 154
        <td>lekce*</td>
154
        <td><input type="text" name="lection"  size="50"<?php znova($lection)?> /></td>
155
        <td><input type="text" name="lection"  size="50"<?php znova(@$_REQUEST['lection'])?> /></td>
155 156
      </tr>
156 157
      <tr class="nadpis_sekce">
157 158
        <td>
158
          <input type="hidden" name="language" value="<?php echo $language?>">
159
          <input type="hidden" name="source" value="<?php echo $source?>">
159
          <input type="hidden" name="language" value="<?php echo @$_REQUEST['language']?>">
160
          <input type="hidden" name="source" value="<?php echo @$_REQUEST['source']?>">
160 161
          <input type="hidden" name="action" value="insert_new_article">
161 162
        </td>
162 163
        <td><input type="submit" value="Vlož"></td>
old/html/multidic/app/webroot/administration/add_article_voice.php
3 3
  require_once("./administration/voice.php");
4 4
  $znovu = true;
5 5

  
6
if (!Empty($action) && $action == "add_article_voice") {
6
if (!Empty(@$_REQUEST['action']) && @$_REQUEST['action'] == "add_article_voice") {
7 7
  
8
  if (Empty($soubor)) {
8
  if (Empty(@$_REQUEST['soubor'])) {
9 9
    print_hlasku("Musíte vybrat soubor");
10 10
  }
11 11
  else {
12 12
    $znovu = false;
13
    save_article_voice($soubor,$article_id);
13
    save_article_voice(@$_REQUEST['soubor'],@$_REQUEST['article_id']);
14 14
    echo_zpet_do_clanku();
15 15
  }
16 16
}
......
47 47
      <tr class="nadpis_sekce">
48 48
        <td>
49 49
          <input type="hidden" name="action" value="add_article_voice">
50
          <input type="hidden" name="article_id" value="<?php echo $article_id?>">
50
          <input type="hidden" name="article_id" value="<?php echo @$_REQUEST['article_id']?>">
51 51
        </td>
52 52
        <td><input type="submit" value="Vlož"></td>
53 53
      </tr>
old/html/multidic/app/webroot/administration/article.php
5 5
  require_once("./classes/db.php");
6 6
  $spojeni = new DB_Sql();
7 7
  $dotaz = "UPDATE article SET autorized = true
8
                        WHERE \"IDarticle\" = '$ID'";
8
                        WHERE IDarticle = '$ID'";
9 9
  $spojeni->query($dotaz);
10 10
  if ($spojeni->connection->errno != 0) {
11 11
    return false;
......
26 26
}
27 27

  
28 28
function get_row_of_table($Record) {
29
  global $language;
30
  global $order;
31
  global $od;
32
  global $limit;
33
  global $contrains_source;
34
  global $contrains_lection;
29
  $language = $Record['language'];
30
  $contrains_source = $_REQUEST['contrains_source'];
31
  $contrains_lection = $_REQUEST['contrains_lection'];
35 32

  
36 33
  $nav_str = "language=$language&contrains_source=$contrains_source&contrains_lection=$contrains_lection";
37 34

  
38 35
  //pr($Record);
39
  
36
  $navrat = "";
40 37
  $navrat .= "  <tr>\n";
41 38
  $navrat .= '    <td>
42 39
                <a href="?nav_id=list_article&action=delete_article&article_id='.$Record[0].'&'.$nav_str.'">smaž</a>
......
98 95
                    $contrains_lection = "all",
99 96
                    $nonauthorized = false) {
100 97

  
101
  global $language;
102 98

  
103 99
  global $order;
104 100
  global $od;
......
108 104
  $od    = $l_od;
109 105
  $limit = $l_limit;
110 106

  
107
  $language = $_REQUEST['language'];
108
  $contrains_source = $_REQUEST['contrains_source'];
109
  $contrains_lection = $_REQUEST['contrains_lection'];
111 110

  
112 111
  $nav = ($nonauthorized)? "list_nonauthorized_article" : "list_article";
113 112
  $nav_str = "language=$language&contrains_source=$contrains_source&contrains_lection=$contrains_lection";
......
159 158
}
160 159

  
161 160
function get_pocet_clanku($contrains_source, $contrains_lection, $nonauthorized) {
162
  global $language;
163
  require_once("./classes/db.php");
161
  $language = $_REQUEST['language'];
162

  
164 163
  $spojeni = new DB_Sql();
165 164
  //$spojeni->debug = true;
166
  $dotaz = "SELECT \"IDarticle\" FROM article";
165
  $dotaz = "SELECT IDarticle FROM article";
167 166
   if ($nonauthorized == true) {
168 167
    $dotaz .= " WHERE autorized = false";
169 168
	}
......
257 256
function get_article($id) {
258 257
  require_once("./classes/db.php");
259 258
  $spojeni = new DB_Sql();
260
  $dotaz = "SELECT * FROM article WHERE \"IDarticle\" = '$id'";
259
  $dotaz = "SELECT * FROM article WHERE IDarticle = '$id'";
261 260
  $radky = $spojeni->query($dotaz);
262 261
  $spojeni->next_record();
263 262

  
264 263
  if ($spojeni->connection->errno != 0) {
265
    print_hlasku("Clanek se nepodařilo načíst.");
264
    print_hlasku("Članek se nepodařilo načíst.");
266 265
  }
267 266

  
268
  return $spojeni->Record;
267
  return $spojeni->row;
269 268
}
270 269

  
271 270
function delete_article($ID) {
272 271
  require_once("./classes/db.php");
273 272
  $spojeni = new DB_Sql();
274
  $dotaz = "DELETE FROM article WHERE \"IDarticle\" = '$ID'";
273
  $dotaz = "DELETE FROM article WHERE IDarticle = '$ID'";
275 274
  $spojeni->query($dotaz);
276 275
  if ($spojeni->connection->errno != 0) {
277 276
    return false;
......
287 286
                            body = '".AddSlashes($body)."',
288 287
                            note = '".AddSlashes($note)."',
289 288
                            lection = '".AddSlashes($lection)."'
290
                            WHERE \"IDarticle\" = '".AddSlashes($id)."'";
289
                            WHERE IDarticle = '".AddSlashes($id)."'";
291 290
  $spojeni->query($dotaz);
292 291
  if ($spojeni->connection->errno != 0) {
293 292
    print_hlasku("Slovo se nepodařilo upravit.");
......
303 302
  $spojeni = new DB_Sql();
304 303
  //$NOW = Date("YmdHis");
305 304

  
306
  $dotaz = "INSERT INTO article (\"language\",
307
                              \"source\",
308
                              \"lection\",
309
                              \"inserted_by\",
310
                              \"title\",
311
                              \"body\",
312
                              \"note\",
313
                              \"article_voice\")
305
  $dotaz = "INSERT INTO article (language,
306
                              source,
307
                              lection,
308
                              inserted_by,
309
                              title,
310
                              body,
311
                              note,
312
                              article_voice)
314 313
                    VALUES ('$language',
315 314
                            '$source',
316 315
                            '$lection',
......
320 319
                            '$note',
321 320
                            '0')";
322 321
  $spojeni->query($dotaz);
323
  if ($spojeni->connection->errno != 0) {
322

  
323
    if ($spojeni->connection->errno != 0) {
324 324
    return false;
325 325
  }
326 326
  return true;
old/html/multidic/app/webroot/administration/edit_article.php
1 1
<?php 
2 2
require_once("./administration/article.php");
3 3
$vypis_edit = true;
4
if (!Empty($action) && $action == "edit_article") {
4
if (!Empty(@$_REQUEST['action']) && @$_REQUEST['action'] == "edit_article") {
5 5
  
6 6

  
7
  if (Empty($lection)) {
7
  if (Empty(@$_REQUEST['lection'])) {
8 8
    print_hlasku("Lekci musíte vyplnit");
9 9
  }
10 10
  else {
11
    update_article($article_id, $title, $body, $note, $lection);
11
    update_article(@$_REQUEST['article_id'], @$_REQUEST['title'], @$_REQUEST['body'], @$_REQUEST['note'], @$_REQUEST['lection']);
12 12
    
13 13
    echo_zpet_do_clanku();
14 14
    $vypis_edit = false;
......
18 18
}
19 19
if($vypis_edit){
20 20
  
21
  $Record = get_article($article_id);
22
  $title         = $Record["title"];
23
  $body          = $Record["body"];
24
  $note          = $Record["note"];
25
  $lection       = $Record["lection"]; 
21
  $Record = get_article(@$_REQUEST['article_id']);
22
  @$_REQUEST['title']         = $Record["title"];
23
  @$_REQUEST['body']          = $Record["body"];
24
  @$_REQUEST['note']          = $Record["note"];
25
  @$_REQUEST['lection']       = $Record["lection"]; 
26 26

  
27 27
?>
28 28

  
......
53 53
      <table>
54 54
      <tr class="akt">
55 55
        <td>název</td>
56
        <td<?php  if ($language == 1 || $language == 2) echo " dir=\"rtl\"" ?>>
57
        <input type="text" <?php  if ($language == 1 || $language == 2) echo "class=\"arabic\"\n" ?>
56
        <td<?php  if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo " dir=\"rtl\"" ?>>
57
        <input type="text" <?php  if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo "class=\"arabic\"\n" ?>
58 58
               class= "arabic"
59 59
               name="title"  
60 60
               size="29"
61
               value="<?php echo $title?>" 
61
               value="<?php echo @$_REQUEST['title']?>" 
62 62
               onfocus="aktivujKlavesnici('edit_article_form.title')" /></td>
63 63
      </tr>
64 64
      <tr class="akt">
65 65
        <td>text</td>
66
        <td<?php  if ($language == 1 || $language == 2) echo " dir=\"rtl\"" ?>>
67
        <textarea <?php  if ($language == 1 || $language == 2) echo "class=\"arabic\"\n" ?>
66
        <td<?php  if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo " dir=\"rtl\"" ?>>
67
        <textarea <?php  if (@$_REQUEST['language'] == 1 || @$_REQUEST['language'] == 2) echo "class=\"arabic\"\n" ?>
68 68
        class= "arabic"
69 69
            name="body" 
70 70
            rows="7" 
71 71
            wrap="PHYSICAL" 
72 72
            cols="25"
73 73
            onfocus="aktivujKlavesnici('edit_article_form.body')"
74
        ><?php  echo $body ?></textarea>       
74
        ><?php  echo @$_REQUEST['body'] ?></textarea>       
75 75
               
76 76
               
77 77
               </td>
78 78
      </tr>
79 79
      <tr class="akt">
80 80
        <td>poznámka</td>
81
        <td><input type="text" name="note"  size="50" value="<?php  echo $note ?>" /></td>
81
        <td><input type="text" name="note"  size="50" value="<?php  echo @$_REQUEST['note'] ?>" /></td>
82 82
      </tr>
83 83
      <tr class="akt">
84 84
        <td>lekce*</td>
85
        <td><input type="text" name="lection"  size="50" value="<?php  echo $lection ?>" /></td>
85
        <td><input type="text" name="lection"  size="50" value="<?php  echo @$_REQUEST['lection'] ?>" /></td>
86 86
      </tr>
87 87
      <tr class="nadpis_sekce">
88 88
        <td>
89
          <input type="hidden" name="article_id" value="<?php echo $article_id?>">
90
          <input type="hidden" name="language" value="<?php echo $language?>">
91
          <input type="hidden" name="source" value="<?php echo $source?>">
89
          <input type="hidden" name="article_id" value="<?php echo @$_REQUEST['article_id']?>">
90
          <input type="hidden" name="language" value="<?php echo @$_REQUEST['language']?>">
91
          <input type="hidden" name="source" value="<?php echo @$_REQUEST['source']?>">
92 92
          <input type="hidden" name="action" value="edit_article">
93 93
        </td>
94 94
        <td><input type="submit" value="Uprav"></td>
old/html/multidic/app/webroot/administration/voice.php
23 23
  }
24 24
  require_once("./classes/db.php");
25 25
  $spojeni = new DB_Sql();
26
  $dotaz = "UPDATE article SET article_voice = 1 WHERE \"IDarticle\" = $id ";
26
  $dotaz = "UPDATE article SET article_voice = 1 WHERE IDarticle = $id ";
27 27
  $spojeni->query($dotaz);
28 28
  
29 29
  if ($spojeni->connection->errno != 0) return false;
old/html/multidic/app/webroot/functions/dictionary.php
1009 1009

  
1010 1010
function echo_zpet_do_slovniku()
1011 1011
{
1012
    global $language;
1013
    global $nonauthorized;
1014
    global $contrains_source;
1015
    global $contrains_lection;
1016
    global $contrains_user_id;
1017

  
1012
    $language = $_REQUEST['language'];
1013
    $contrains_source = $_REQUEST['contrains_source'];
1014
    $contrains_lection = $_REQUEST['contrains_lection'];
1015
    $contrains_user_id = $_SESSION['ses_IDuser'];
1018 1016
    //echo $nonauthorized;
1019 1017

  
1020
    if ($nonauthorized) $pomocna = "list_nonauthorized_word";
1018
    if ($_REQUEST['nonauthorized']) $pomocna = "list_nonauthorized_word";
1021 1019
    else $pomocna = "list_word";
1022 1020

  
1023 1021
    echo "<br />
......
1028 1026

  
1029 1027
function echo_zpet_do_clanku()
1030 1028
{
1031
    global $language;
1032
    global $contrains_source;
1033
    global $contrains_lection;
1034

  
1029
    $language = $_REQUEST['language'];
1030
    $contrains_source = $_REQUEST['contrains_source'];
1031
    $contrains_lection = $_REQUEST['contrains_lection'];
1035 1032
    echo "<br />
1036 1033
        <a href=\"?nav_id=list_article&language=$language&contrains_source=$contrains_source&contrains_lection=$contrains_lection\">
1037 1034
           Zpět na seznam článků

Také k dispozici: Unified diff