国内流行的内容管理系统(CMS)多端全媒体解决方案 https://www.dedebiz.com
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

240 lines
8.6KB

  1. <?php
  2. /**
  3. * 软件添加
  4. *
  5. * @version $Id: soft_add.php 2 14:16 2010-11-11 tianya $
  6. * @package DedeCMS.Member
  7. * @copyright Copyright (c) 2020, DedeBIZ.COM
  8. * @license https://www.dedebiz.com/license
  9. * @link https://www.dedebiz.com
  10. */
  11. require_once(dirname(__FILE__)."/config.php");
  12. //考虑安全原因不管是否开启游客投稿功能,都不允许用户投稿
  13. CheckRank(0, 0);
  14. if($cfg_mb_lit=='Y')
  15. {
  16. ShowMsg("由于系统开启了精简版会员空间,你访问的功能不可用!","-1");
  17. exit();
  18. }
  19. require_once(DEDEINC."/dedetag.class.php");
  20. require_once(DEDEINC."/userlogin.class.php");
  21. require_once(DEDEINC."/customfields.func.php");
  22. require_once(DEDEMEMBER."/inc/inc_catalog_options.php");
  23. require_once(DEDEMEMBER."/inc/inc_archives_functions.php");
  24. $channelid = isset($channelid) && is_numeric($channelid) ? $channelid : 3;
  25. $typeid = isset($typeid) && is_numeric($typeid) ? $typeid : 0;
  26. $menutype = 'content';
  27. /*-------------
  28. function _ShowForm(){ }
  29. --------------*/
  30. if(empty($dopost))
  31. {
  32. $cInfos = $dsql->GetOne("SELECT * FROM `#@__channeltype` WHERE id='$channelid'; ");
  33. if(!is_array($cInfos))
  34. {
  35. ShowMsg('模型不正确', '-1');
  36. exit();
  37. }
  38. //如果限制了会员级别或类型,则允许游客投稿选项无效
  39. if($cInfos['sendrank']>0 || $cInfos['usertype']!='')
  40. {
  41. CheckRank(0, 0);
  42. }
  43. //检查会员等级和类型限制
  44. if($cInfos['sendrank'] > $cfg_ml->M_Rank)
  45. {
  46. $row = $dsql->GetOne("Select membername From `#@__arcrank` where rank='".$cInfos['sendrank']."' ");
  47. ShowMsg("对不起,需要[".$row['membername']."]才能在这个频道发布文档!","-1","0",5000);
  48. exit();
  49. }
  50. if($cInfos['usertype']!='' && $cInfos['usertype'] != $cfg_ml->M_MbType)
  51. {
  52. ShowMsg("对不起,需要[".$cInfos['usertype']."帐号]才能在这个频道发布文档!","-1","0",5000);
  53. exit();
  54. }
  55. include(DEDEMEMBER."/templets/soft_add.htm");
  56. exit();
  57. }
  58. /*------------------------------
  59. function _SaveArticle(){ }
  60. ------------------------------*/
  61. else if($dopost=='save')
  62. {
  63. $description = '';
  64. include(DEDEMEMBER.'/inc/archives_check.php');
  65. //生成文档ID
  66. $arcID = GetIndexKey($arcrank,$typeid,$sortrank,$channelid,$senddate,$mid);
  67. if(empty($arcID))
  68. {
  69. ShowMsg("无法获得主键,因此无法进行后续操作!","-1");
  70. exit();
  71. }
  72. //分析处理附加表数据
  73. $inadd_f = '';
  74. $inadd_v = '';
  75. if(!empty($dede_addonfields))
  76. {
  77. $addonfields = explode(';',$dede_addonfields);
  78. $inadd_f = '';
  79. $inadd_v = '';
  80. if(is_array($addonfields))
  81. {
  82. foreach($addonfields as $v)
  83. {
  84. if($v=='')
  85. {
  86. continue;
  87. }else if($v == 'templet')
  88. {
  89. ShowMsg("你保存的字段有误,请检查!","-1");
  90. exit();
  91. }
  92. $vs = explode(',',$v);
  93. if(!isset(${$vs[0]}))
  94. {
  95. ${$vs[0]} = '';
  96. }
  97. else if($vs[1]=='htmltext'||$vs[1]=='textdata')
  98. //HTML文本特殊处理
  99. {
  100. ${$vs[0]} = AnalyseHtmlBody(${$vs[0]},$description,$litpic,$keywords,$vs[1]);
  101. }
  102. else
  103. {
  104. if(!isset(${$vs[0]}))
  105. {
  106. ${$vs[0]} = '';
  107. }
  108. ${$vs[0]} = GetFieldValueA(${$vs[0]},$vs[1],$arcID);
  109. }
  110. $inadd_f .= ','.$vs[0];
  111. $inadd_v .= " ,'".${$vs[0]}."' ";
  112. }
  113. }
  114. // 这里对前台提交的附加数据进行一次校验
  115. $fontiterm = PrintAutoFieldsAdd($cInfos['fieldset'],'autofield', FALSE);
  116. if ($fontiterm != $inadd_f)
  117. {
  118. ShowMsg("提交表单同系统配置不相符,请重新提交!", "-1");
  119. exit();
  120. }
  121. }
  122. //处理图片文档的自定义属性
  123. if($litpic!='')
  124. {
  125. $flag = 'p';
  126. }
  127. $body = HtmlReplace($body,-1);
  128. //保存到主表
  129. $inQuery = "INSERT INTO `#@__archives`(id,typeid,sortrank,flag,ismake,channel,arcrank,click,money,title,shorttitle,
  130. color,writer,source,litpic,pubdate,senddate,mid,description,keywords)
  131. VALUES ('$arcID','$typeid','$sortrank','$flag','$ismake','$channelid','$arcrank','0','$money','$title','$shorttitle',
  132. '$color','$writer','$source','$litpic','$pubdate','$senddate','$mid','$description','$keywords'); ";
  133. if(!$dsql->ExecuteNoneQuery($inQuery))
  134. {
  135. $gerr = $dsql->GetError();
  136. $dsql->ExecuteNoneQuery("DELETE FROM `#@__arctiny` WHERE id='$arcID' ");
  137. ShowMsg("把数据保存到数据库主表 `#@__archives` 时出错,请联系管理员。","javascript:;");
  138. exit();
  139. }
  140. //软件链接列表
  141. $softurl1 = stripslashes($softurl1);
  142. $softurl1 = str_replace(array("{dede:","{/dede:","}"), "#", $softurl1);
  143. $urls = '';
  144. if($softurl1!='')
  145. {
  146. if (preg_match("#}(.*?){/dede:link}{dede:#sim", $servermsg1) != 1) { $urls .= "{dede:link islocal='1' text='{$servermsg1}'} $softurl1 {/dede:link}\r\n"; }
  147. }
  148. for($i=2; $i<=12; $i++)
  149. {
  150. if(!empty(${'softurl'.$i}))
  151. {
  152. $servermsg = str_replace("'","",stripslashes(${'servermsg'.$i}));
  153. $softurl = stripslashes(${'softurl'.$i});
  154. $softurl = str_replace(array("{dede:","{/dede:","}"), "#", $softurl);
  155. if($servermsg=='')
  156. {
  157. $servermsg = '下载地址'.$i;
  158. }
  159. if($softurl!='' && $softurl!='http://')
  160. {
  161. $urls .= "{dede:link text='$servermsg'} $softurl {/dede:link}\r\n";
  162. }
  163. }
  164. }
  165. $urls = addslashes($urls);
  166. $softsize = $softsize.$unit;
  167. //保存到附加表
  168. $needmoney = @intval($needmoney);
  169. if($needmoney > 100) $needmoney = 100;
  170. $cts = $dsql->GetOne("SELECT addtable FROM `#@__channeltype` WHERE id='$channelid' ");
  171. $addtable = trim($cts['addtable']);
  172. if(empty($addtable))
  173. {
  174. $dsql->ExecuteNoneQuery("DELETE FROM `#@__archives` WHERE id='$arcID'");
  175. $dsql->ExecuteNoneQuery("DELETE FROM `#@__arctiny` WHERE id='$arcID'");
  176. ShowMsg("没找到当前模型[{$channelid}]的主表信息,无法完成操作!。","javascript:;");
  177. exit();
  178. }
  179. $inQuery = "INSERT INTO `$addtable`(aid,typeid,filetype,language,softtype,accredit,
  180. os,softrank,officialUrl,officialDemo,softsize,softlinks,introduce,userip,templet,redirecturl,daccess,needmoney{$inadd_f})
  181. VALUES ('$arcID','$typeid','$filetype','$language','$softtype','$accredit',
  182. '$os','$softrank','$officialUrl','$officialDemo','$softsize','$urls','$body','$userip','','','0','$needmoney'{$inadd_v});";
  183. if(!$dsql->ExecuteNoneQuery($inQuery))
  184. {
  185. $gerr = $dsql->GetError();
  186. $dsql->ExecuteNoneQuery("DELETE FROM `#@__archives` WHERE id='$arcID'");
  187. $dsql->ExecuteNoneQuery("DELETE FROM `#@__arctiny` WHERE id='$arcID'");
  188. echo $inQuery;
  189. exit();
  190. ShowMsg("把数据保存到数据库附加表 `{$addtable}` 时出错,请把相关信息提交给DedeCMS官方。".str_replace('"','',$gerr),"javascript:;");
  191. exit();
  192. }
  193. //增加积分
  194. $cfg_sendarc_scores = intval($cfg_sendarc_scores);
  195. $dsql->ExecuteNoneQuery("UPDATE `#@__member` SET scores=scores+{$cfg_sendarc_scores} WHERE mid='".$cfg_ml->M_ID."' ; ");
  196. //更新统计
  197. countArchives($channelid);
  198. //生成HTML
  199. InsertTags($tags,$arcID);
  200. $artUrl = MakeArt($arcID, TRUE);
  201. if($artUrl=='')
  202. {
  203. $artUrl = $cfg_phpurl."/view.php?aid=$arcID";
  204. }
  205. ClearMyAddon($arcID, $title);
  206. //返回成功信息
  207. $msg = "
  208. 请选择你的后续操作:
  209. <a href='soft_add.php?cid=$typeid' class='btn btn-secondary btn-sm'>继续发布软件</a>
  210. &nbsp;&nbsp;
  211. <a href='$artUrl' target='_blank' class='btn btn-secondary btn-sm'>查看软件</a>
  212. &nbsp;&nbsp;
  213. <a href='soft_edit.php?channelid=$channelid&aid=$arcID' class='btn btn-secondary btn-sm'>更改软件</a>
  214. &nbsp;&nbsp;
  215. <a href='content_list.php?channelid={$channelid}' class='btn btn-secondary btn-sm'>已发布软件管理</a>
  216. ";
  217. $wintitle = "成功发布文章!";
  218. $wecome_info = "软件管理::发布软件";
  219. $win = new OxWindow();
  220. $win->AddTitle("成功发布软件:");
  221. $win->AddMsgItem($msg);
  222. $winform = $win->GetWindow("hand", "&nbsp;", FALSE);
  223. $win->Display();
  224. }