国内流行的内容管理系统(CMS)多端全媒体解决方案 https://www.dedebiz.com
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

185 lines
8.4KB

  1. <?php
  2. /**
  3. * 软件添加
  4. *
  5. * @version $Id: soft_add.php 2 14:16 2010-11-11 tianya $
  6. * @package DedeBIZ.User
  7. * @copyright Copyright (c) 2022, DedeBIZ.COM
  8. * @license https://www.dedebiz.com/license
  9. * @link https://www.dedebiz.com
  10. */
  11. require_once(dirname(__FILE__)."/config.php");
  12. //考虑安全原因不管是否开启游客投稿功能,都不允许用户投稿
  13. CheckRank(0, 0);
  14. if ($cfg_mb_lit == 'Y') {
  15. ShowMsg("由于系统开启了精简版会员空间,您访问的功能不可用", "-1");
  16. exit();
  17. }
  18. require_once(DEDEINC."/dedetag.class.php");
  19. require_once(DEDEINC."/userlogin.class.php");
  20. require_once(DEDEINC."/customfields.func.php");
  21. require_once(DEDEMEMBER."/inc/inc_catalog_options.php");
  22. require_once(DEDEMEMBER."/inc/inc_archives_functions.php");
  23. $channelid = isset($channelid) && is_numeric($channelid) ? $channelid : 3;
  24. $typeid = isset($typeid) && is_numeric($typeid) ? $typeid : 0;
  25. $menutype = 'content';
  26. /*-------------
  27. function _ShowForm(){ }
  28. --------------*/
  29. if (empty($dopost)) {
  30. $cInfos = $dsql->GetOne("SELECT * FROM `#@__channeltype` WHERE id='$channelid'; ");
  31. if (!is_array($cInfos)) {
  32. ShowMsg('模型不正确', '-1');
  33. exit();
  34. }
  35. //如果限制了会员级别或类型,则允许游客投稿选项无效
  36. if ($cInfos['sendrank'] > 0 || $cInfos['usertype'] != '') {
  37. CheckRank(0, 0);
  38. }
  39. //检查会员等级和类型限制
  40. if ($cInfos['sendrank'] > $cfg_ml->M_Rank) {
  41. $row = $dsql->GetOne("SELECT membername FROM `#@__arcrank` where `rank`='".$cInfos['sendrank']."' ");
  42. ShowMsg("对不起,需要[".$row['membername']."]才能在这个频道发布文档", "-1", "0", 5000);
  43. exit();
  44. }
  45. if ($cInfos['usertype'] != '' && $cInfos['usertype'] != $cfg_ml->M_MbType) {
  46. ShowMsg("对不起,需要[".$cInfos['usertype']."帐号]才能在这个频道发布文档", "-1", "0", 5000);
  47. exit();
  48. }
  49. include(DEDEMEMBER."/templets/soft_add.htm");
  50. exit();
  51. }
  52. /*------------------------------
  53. function _SaveArticle(){ }
  54. ------------------------------*/
  55. else if ($dopost == 'save') {
  56. $description = '';
  57. include(DEDEMEMBER.'/inc/archives_check.php');
  58. //生成文档ID
  59. $arcID = GetIndexKey($arcrank, $typeid, $sortrank, $channelid, $senddate, $mid);
  60. if (empty($arcID)) {
  61. ShowMsg("无法获得主键,因此无法进行后续操作", "-1");
  62. exit();
  63. }
  64. //分析处理附加表数据
  65. $inadd_f = '';
  66. $inadd_v = '';
  67. if (!empty($dede_addonfields)) {
  68. $addonfields = explode(';', $dede_addonfields);
  69. $inadd_f = '';
  70. $inadd_v = '';
  71. if (is_array($addonfields)) {
  72. foreach ($addonfields as $v) {
  73. if ($v == '') {
  74. continue;
  75. } else if ($v == 'templet') {
  76. ShowMsg("您保存的字段有误,请检查", "-1");
  77. exit();
  78. }
  79. $vs = explode(',', $v);
  80. if (!isset(${$vs[0]})) {
  81. ${$vs[0]} = '';
  82. } else if ($vs[1] == 'htmltext' || $vs[1] == 'textdata')
  83. //HTML文本特殊处理
  84. {
  85. ${$vs[0]} = AnalyseHtmlBody(${$vs[0]}, $description, $litpic, $keywords, $vs[1]);
  86. } else {
  87. if (!isset(${$vs[0]})) {
  88. ${$vs[0]} = '';
  89. }
  90. ${$vs[0]} = GetFieldValueA(${$vs[0]}, $vs[1], $arcID);
  91. }
  92. $inadd_f .= ','.$vs[0];
  93. $inadd_v .= " ,'".${$vs[0]}."' ";
  94. }
  95. }
  96. //这里对前台提交的附加数据进行一次校验
  97. $fontiterm = PrintAutoFieldsAdd(stripslashes($cInfos['fieldset']), 'autofield', FALSE);
  98. if ($fontiterm != $inadd_f) {
  99. ShowMsg("提交表单同系统配置不相符,请重新提交", "-1");
  100. exit();
  101. }
  102. }
  103. //处理图片文档的自定义属性
  104. if ($litpic != '') {
  105. $flag = 'p';
  106. }
  107. $body = HtmlReplace($body, -1);
  108. //保存到主表
  109. $inQuery = "INSERT INTO `#@__archives`(id,typeid,sortrank,flag,ismake,channel,arcrank,click,money,title,shorttitle,color,writer,source,litpic,pubdate,senddate,mid,description,keywords)
  110. VALUES ('$arcID','$typeid','$sortrank','$flag','$ismake','$channelid','$arcrank','0','$money','$title','$shorttitle','$color','$writer','$source','$litpic','$pubdate','$senddate','$mid','$description','$keywords'); ";
  111. if (!$dsql->ExecuteNoneQuery($inQuery)) {
  112. $gerr = $dsql->GetError();
  113. $dsql->ExecuteNoneQuery("DELETE FROM `#@__arctiny` WHERE id='$arcID' ");
  114. ShowMsg("把数据保存到数据库主表 `#@__archives` 时出错,请联系管理员", "javascript:;");
  115. exit();
  116. }
  117. //软件链接列表
  118. $softurl1 = stripslashes($softurl1);
  119. $softurl1 = str_replace(array("{dede:", "{/dede:", "}"), "#", $softurl1);
  120. $urls = '';
  121. if ($softurl1 != '') {
  122. if (preg_match("#}(.*?){/dede:link}{dede:#sim", $servermsg1) != 1) {
  123. $urls .= "{dede:link islocal='1' text='{$servermsg1}'} $softurl1 {/dede:link}\r\n";
  124. }
  125. }
  126. for ($i = 2; $i <= 12; $i++) {
  127. if (!empty(${'softurl'.$i})) {
  128. $servermsg = str_replace("'", "", stripslashes(${'servermsg'.$i}));
  129. $servermsg = str_replace(array("{dede:", "{/dede:", "}"), "#", $servermsg);
  130. $softurl = stripslashes(${'softurl'.$i});
  131. $softurl = str_replace(array("{dede:", "{/dede:", "}"), "#", $softurl);
  132. if ($servermsg == '') {
  133. $servermsg = '下载地址'.$i;
  134. }
  135. if ($softurl != '' && $softurl != 'http://') {
  136. $urls .= "{dede:link text='$servermsg'} $softurl {/dede:link}\r\n";
  137. }
  138. }
  139. }
  140. $urls = addslashes($urls);
  141. $softsize = $softsize.$unit;
  142. //保存到附加表
  143. $needmoney = @intval($needmoney);
  144. if ($needmoney > 100) $needmoney = 100;
  145. $cts = $dsql->GetOne("SELECT addtable FROM `#@__channeltype` WHERE id='$channelid' ");
  146. $addtable = trim($cts['addtable']);
  147. if (empty($addtable)) {
  148. $dsql->ExecuteNoneQuery("DELETE FROM `#@__archives` WHERE id='$arcID'");
  149. $dsql->ExecuteNoneQuery("DELETE FROM `#@__arctiny` WHERE id='$arcID'");
  150. ShowMsg("没找到当前模型[{$channelid}]的主表信息,无法完成操作", "javascript:;");
  151. exit();
  152. }
  153. $inQuery = "INSERT INTO `$addtable`(aid,typeid,filetype,language,softtype,accredit,os,softrank,officialUrl,officialDemo,softsize,softlinks,introduce,userip,templet,redirecturl,daccess,needmoney{$inadd_f})
  154. VALUES ('$arcID','$typeid','$filetype','$language','$softtype','$accredit','$os','$softrank','$officialUrl','$officialDemo','$softsize','$urls','$body','$userip','','','0','$needmoney'{$inadd_v});";
  155. if (!$dsql->ExecuteNoneQuery($inQuery)) {
  156. $gerr = $dsql->GetError();
  157. $dsql->ExecuteNoneQuery("DELETE FROM `#@__archives` WHERE id='$arcID'");
  158. $dsql->ExecuteNoneQuery("DELETE FROM `#@__arctiny` WHERE id='$arcID'");
  159. echo $inQuery;
  160. exit();
  161. ShowMsg("把数据保存到数据库附加表 `{$addtable}` 时出错,请把相关信息提交给DedeCMS官方".str_replace('"', '', $gerr), "javascript:;");
  162. exit();
  163. }
  164. //增加积分
  165. $cfg_sendarc_scores = intval($cfg_sendarc_scores);
  166. $dsql->ExecuteNoneQuery("UPDATE `#@__member` SET scores=scores+{$cfg_sendarc_scores} WHERE mid='".$cfg_ml->M_ID."' ; ");
  167. //更新统计
  168. countArchives($channelid);
  169. //生成HTML
  170. InsertTags($tags, $arcID);
  171. $artUrl = MakeArt($arcID, TRUE);
  172. if ($artUrl == '') {
  173. $artUrl = $cfg_phpurl."/view.php?aid=$arcID";
  174. }
  175. ClearMyAddon($arcID, $title);
  176. //返回成功信息
  177. $msg = "请选择您的后续操作:<a href='soft_add.php?cid=$typeid' class='btn btn-success btn-sm'>继续发布软件</a><a href='$artUrl' target='_blank' class='btn btn-success btn-sm'>查看软件</a><a href='soft_edit.php?channelid=$channelid&aid=$arcID' class='btn btn-success btn-sm'>修改软件</a><a href='content_list.php?channelid={$channelid}' class='btn btn-success btn-sm'>已发布软件管理</a>";
  178. $wintitle = "成功发布文章";
  179. $wecome_info = "软件管理::发布软件";
  180. $win = new OxWindow();
  181. $win->AddTitle("成功发布软件:");
  182. $win->AddMsgItem($msg);
  183. $winform = $win->GetWindow("hand", "&nbsp;", FALSE);
  184. $win->Display();
  185. }