国内流行的内容管理系统(CMS)多端全媒体解决方案 https://www.dedebiz.com
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

208 lines
7.1KB

  1. <?php
  2. /**
  3. * 图集编辑
  4. *
  5. * @version $Id: album_edit.php 1 13:52 2010年7月9日Z tianya $
  6. * @package DedeCMS.Member
  7. * @copyright Copyright (c) 2007 - 2018, DesDev, Inc.
  8. * @copyright Copyright (c) 2020, DedeBIZ.COM
  9. * @license https://www.dedebiz.com/license/v6
  10. * @link https://www.dedebiz.com
  11. */
  12. require_once(dirname(__FILE__)."/config.php");
  13. CheckRank(0,0);
  14. if($cfg_mb_lit=='Y')
  15. {
  16. ShowMsg("由于系统开启了精简版会员空间,你访问的功能不可用!","-1");
  17. exit();
  18. }
  19. if($cfg_mb_album=='N')
  20. {
  21. ShowMsg("对不起,由于系统关闭了图集功能,你访问的功能不可用!","-1");
  22. exit();
  23. }
  24. require_once(DEDEINC."/dedetag.class.php");
  25. require_once(DEDEINC."/customfields.func.php");
  26. require_once(DEDEMEMBER."/inc/inc_catalog_options.php");
  27. require_once(DEDEMEMBER."/inc/inc_archives_functions.php");
  28. $channelid = isset($channelid) && is_numeric($channelid) ? $channelid : 2;
  29. $aid = isset($aid) && is_numeric($aid) ? $aid : 0;
  30. $menutype = 'content';
  31. if(empty($formhtml)) $formhtml = 0;
  32. /*-------------
  33. function _ShowForm(){ }
  34. --------------*/
  35. if(empty($dopost))
  36. {
  37. //读取归档信息
  38. $arcQuery = "SELECT arc.*,ch.addtable,ch.fieldset,ch.arcsta
  39. FROM `#@__archives` arc LEFT JOIN `#@__channeltype` ch ON ch.id=arc.channel
  40. WHERE arc.id='$aid' AND arc.mid='".$cfg_ml->M_ID."'; ";
  41. $row = $dsql->GetOne($arcQuery);
  42. if(!is_array($row))
  43. {
  44. ShowMsg("读取文档信息出错!","-1");
  45. exit();
  46. }
  47. else if($row['arcrank']>=0)
  48. {
  49. $dtime = time();
  50. $maxtime = $cfg_mb_editday * 24 *3600;
  51. if($dtime - $row['senddate'] > $maxtime)
  52. {
  53. ShowMsg("这篇文档已经锁定,你不能再修改它!","-1");
  54. exit();
  55. }
  56. }
  57. $addRow = $dsql->GetOne("SELECT * FROM `{$row['addtable']}` WHERE aid='$aid'; ");
  58. $dtp = new DedeTagParse();
  59. $dtp->LoadSource($addRow['imgurls']);
  60. $abinfo = $dtp->GetTagByName('pagestyle');
  61. $row=XSSClean($row);$addRow=XSSClean($addRow);
  62. include(DEDEMEMBER."/templets/album_edit.htm");
  63. exit();
  64. }
  65. /*------------------------------
  66. function _Save(){ }
  67. ------------------------------*/
  68. else if($dopost=='save')
  69. {
  70. $svali = GetCkVdValue();
  71. if(preg_match("/1/",$safe_gdopen)){
  72. if(strtolower($vdcode)!=$svali || $svali=='')
  73. {
  74. ResetVdValue();
  75. ShowMsg('验证码错误!', '-1');
  76. exit();
  77. }
  78. }
  79. $cInfos = $dsql->GetOne("Select * From `#@__channeltype` where id='$channelid'; ");
  80. $maxwidth = isset($maxwidth) && is_numeric($maxwidth) ? $maxwidth : 800;
  81. $pagepicnum = isset($pagepicnum) && is_numeric($pagepicnum) ? $pagepicnum : 12;
  82. $ddmaxwidth = isset($ddmaxwidth) && is_numeric($ddmaxwidth) ? $ddmaxwidth : 200;
  83. $prow = isset($prow) && is_numeric($prow) ? $prow : 3;
  84. $pcol = isset($pcol) && is_numeric($pcol) ? $pcol : 3;
  85. $pagestyle = in_array($pagestyle,array('1','2','3')) ? $pagestyle : 2;
  86. include(DEDEMEMBER.'/inc/archives_check_edit.php');
  87. $imgurls = "{dede:pagestyle maxwidth='$maxwidth' pagepicnum='$pagepicnum'
  88. ddmaxwidth='$ddmaxwidth' row='$prow' col='$pcol' value='$pagestyle'/}\r\n";
  89. $hasone = false;
  90. $ddisfirst=1;
  91. //只支持填写地址
  92. for($i=1;$i<=120;$i++)
  93. {
  94. if (!isset(${'imgfile'.$i})) {
  95. continue;
  96. }
  97. $f = ${'imgfile'.$i};
  98. $msg = isset(${'imgmsg'.$i})? ${'imgmsg'.$i} : "";
  99. if (!empty($f) && filter_var($f, FILTER_VALIDATE_URL)) {
  100. $u = str_replace(array("\"","'"), "`", $f);
  101. $info = str_replace(array("\"","'"), "`", $msg);
  102. $imgurls .= "{dede:img ddimg='' text='$info'} $u {/dede:img}\r\n";
  103. }
  104. }//循环结束
  105. $imgurls = addslashes($imgurls);
  106. //分析处理附加表数据
  107. $inadd_f = '';
  108. if(!empty($dede_addonfields))
  109. {
  110. $addonfields = explode(';',$dede_addonfields);
  111. if(is_array($addonfields))
  112. {
  113. foreach($addonfields as $v)
  114. {
  115. if($v=='')
  116. {
  117. continue;
  118. }
  119. $vs = explode(',',$v);
  120. if(!isset(${$vs[0]}))
  121. {
  122. ${$vs[0]} = '';
  123. }
  124. ${$vs[0]} = GetFieldValueA(${$vs[0]},$vs[1],$aid);
  125. $inadd_f .= ','.$vs[0]." ='".${$vs[0]}."' ";
  126. $inadd_m .= ','.$vs[0];
  127. }
  128. }
  129. // 这里对前台提交的附加数据进行一次校验
  130. $fontiterm = PrintAutoFieldsAdd($cInfos['fieldset'],'autofield', FALSE);
  131. if ($fontiterm != $inadd_m)
  132. {
  133. ShowMsg("提交表单同系统配置不相符,请重新提交!", "-1");
  134. exit();
  135. }
  136. }
  137. $description = HtmlReplace($description, -1);
  138. //更新数据库的SQL语句
  139. //更新数据库的SQL语句
  140. $upQuery = "UPDATE `#@__archives` SET
  141. ismake='$ismake',
  142. arcrank='$arcrank',
  143. typeid='$typeid',
  144. title='$title',
  145. description='$description',
  146. keywords='$keywords',
  147. mtype='$mtypesid',
  148. flag='$flag'
  149. WHERE id='$aid' AND mid='$mid'; ";
  150. if(!$dsql->ExecuteNoneQuery($upQuery))
  151. {
  152. ShowMsg("把数据保存到数据库主表时出错,请联系管理员!".$dsql->GetError(),"-1");
  153. exit();
  154. }
  155. $isrm = 0;
  156. if($addtable!='')
  157. {
  158. $query = "UPDATE `$addtable`
  159. set typeid='$typeid',
  160. pagestyle='$pagestyle',
  161. maxwidth = '$maxwidth',
  162. ddmaxwidth = '$ddmaxwidth',
  163. pagepicnum = '$pagepicnum',
  164. imgurls='$imgurls',
  165. row='$prow',
  166. col='$pcol',
  167. userip='$userip',
  168. isrm='$isrm'{$inadd_f}
  169. WHERE aid='$aid'; ";
  170. if(!$dsql->ExecuteNoneQuery($query))
  171. {
  172. ShowMsg("更新附加表 `$addtable` 时出错,请联系管理员!".$dsql->GetError(),"javascript:;");
  173. exit();
  174. }
  175. }
  176. UpIndexKey($aid, $arcrank, $typeid, $sortrank, $tags);
  177. $artUrl = MakeArt($aid, TRUE);
  178. if($artUrl=='') $artUrl = $cfg_phpurl."/view.php?aid=$aid";
  179. //---------------------------------
  180. //返回成功信息
  181. //----------------------------------
  182. $msg = "  请选择你的后续操作:
  183. <a href='album_add.php?cid=$typeid' class='btn btn-secondary btn-sm'>发布新图集</a>
  184. &nbsp;&nbsp;
  185. <a href='archives_do.php?channelid=$channelid&aid=".$aid."&dopost=edit' class='btn btn-secondary btn-sm'>查看更改</a>
  186. &nbsp;&nbsp;
  187. <a href='$artUrl' target='_blank' class='btn btn-secondary btn-sm'>查看图集</a>
  188. &nbsp;&nbsp;
  189. <a href='content_list.php?channelid=$channelid' class='btn btn-secondary btn-sm'>管理图集</a> ";
  190. $wintitle = "成功更改图集!";
  191. $wecome_info = "图集管理::更改图集";
  192. $win = new OxWindow();
  193. $win->AddTitle("成功更改图集:");
  194. $win->AddMsgItem($msg);
  195. $winform = $win->GetWindow("hand","&nbsp;",false);
  196. $win->Display();
  197. }