} else { $result = dbquery("SELECT\n\t\t\tts.submit_datestamp, ts.submit_criteria, tu.user_id, tu.user_name, tu.user_avatar, tu.user_status\n\t\t\tFROM " . DB_SUBMISSIONS . " ts\n\t\t\tLEFT JOIN " . DB_USERS . " tu ON ts.submit_user=tu.user_id\n\t\t\tWHERE submit_type='n' order by submit_datestamp desc"); if (dbrows($result) > 0) { $data = dbarray($result); $submit_criteria = unserialize($data['submit_criteria']); $callback_data = array("news_start" => $data['submit_datestamp'], "news_datestamp" => $data['submit_datestamp'], "news_keywords" => $submit_criteria['news_keywords'], "news_visibility" => 0, "news_image" => $submit_criteria['news_image'], "news_image_t1" => $submit_criteria['news_image_t1'], "news_image_t2" => $submit_criteria['news_image_t2'], "news_ialign" => $submit_criteria['news_ialign'], "news_end" => "", "news_draft" => 0, "news_sticky" => 0, "news_language" => $submit_criteria['news_language'], "news_subject" => $submit_criteria['news_subject'], "news_cat" => $submit_criteria['news_cat'], "news_news" => phpentities(stripslashes($submit_criteria['news_snippet'])), "news_extended" => phpentities(stripslashes($submit_criteria['news_body'])), "news_breaks" => fusion_get_settings("tinyce_enabled") ? TRUE : FALSE); add_to_title($locale['global_200'] . $locale['503'] . $locale['global_201'] . $callback_data['news_subject'] . "?"); if (isset($_POST['preview'])) { $news_news = ""; if ($_POST['news_news']) { $news_news = phpentities(stripslash($_POST['news_news'])); $news_news = str_replace("src='" . str_replace("../", "", IMAGES_N), "src='" . IMAGES_N, stripslash($_POST['news_news'])); } $news_extended = ""; if ($_POST['news_extended']) { $news_extended = phpentities(stripslash($_POST['news_extended'])); $news_extended = str_replace("src='" . str_replace("../", "", IMAGES_N), "src='" . IMAGES_N, stripslash($_POST['news_extended'])); } $callback_data = array("news_subject" => form_sanitizer($_POST['news_subject'], '', 'news_subject'), "news_cat" => isnum($_POST['news_cat']) ? $_POST['news_cat'] : 0, "news_language" => form_sanitizer($_POST['news_language'], '', 'news_language'), "news_news" => form_sanitizer($news_news, "", "news_news"), "news_extended" => form_sanitizer($news_extended, "", "news_extended"), "news_keywords" => form_sanitizer($_POST['news_keywords'], '', 'news_keywords'), "news_start" => isset($_POST['news_start']) && $_POST['news_start'] ? $_POST['news_start'] : '', "news_end" => isset($_POST['news_end']) && $_POST['news_end'] ? $_POST['news_end'] : '', "news_visibility" => isnum($_POST['news_visibility']) ? $_POST['news_visibility'] : "0", "news_draft" => isset($_POST['news_draft']) ? TRUE : FALSE, "news_sticky" => isset($_POST['news_sticky']) ? TRUE : FALSE, "news_datestamp" => $callback_data['news_datestamp'], "news_ialign" => isset($_POST['news_ialign']) ? $_POST['news_ialign'] : '', "news_image" => isset($_POST['news_image']) ? $_POST['news_image'] : '', "news_image_t1" => isset($_POST['news_image_t1']) ? $_POST['news_image_t1'] : "", "news_image_t2" => isset($_POST['news_image_t2']) ? $_POST['news_image_t2'] : ""); $callback_data['news_breaks'] = ""; if (isset($_POST['news_breaks'])) { $callback_data['news_breaks'] = TRUE; $callback_data['news_news'] = nl2br($callback_data['news_news']); if ($callback_data['news_extended']) { $callback_data['news_extended'] = nl2br($callback_data['news_extended']); } } if (defender::safe()) { echo openmodal('news_preview', $locale['news_0141']); echo "<h3>" . $callback_data['news_subject'] . "</h3>\n"; echo $callback_data['news_news'];
} else { $result = dbquery("SELECT\n\t\t\tts.submit_datestamp, ts.submit_criteria, tu.user_id, tu.user_name, tu.user_avatar, tu.user_status\n\t\t\tFROM " . DB_SUBMISSIONS . " ts\n\t\t\tLEFT JOIN " . DB_USERS . " tu ON ts.submit_user=tu.user_id\n\t\t\tWHERE submit_type='b' order by submit_datestamp desc"); if (dbrows($result) > 0) { $data = dbarray($result); $submit_criteria = unserialize($data['submit_criteria']); $callback_data = array("blog_start" => $data['submit_datestamp'], "blog_datestamp" => $data['submit_datestamp'], "blog_keywords" => $submit_criteria['blog_keywords'], "blog_visibility" => 0, "blog_image" => $submit_criteria['blog_image'], "blog_image_t1" => $submit_criteria['blog_image_t1'], "blog_image_t2" => $submit_criteria['blog_image_t2'], "blog_ialign" => $submit_criteria['blog_ialign'], "blog_end" => "", "blog_draft" => 0, "blog_sticky" => 0, "blog_language" => $submit_criteria['blog_language'], "blog_subject" => $submit_criteria['blog_subject'], "blog_cat" => $submit_criteria['blog_cat'], "blog_blog" => phpentities(stripslashes($submit_criteria['blog_blog'])), "blog_extended" => phpentities(stripslashes($submit_criteria['blog_body'])), "blog_breaks" => fusion_get_settings("tinyce_enabled") ? TRUE : FALSE); add_to_title($locale['global_200'] . $locale['503'] . $locale['global_201'] . $callback_data['blog_subject'] . "?"); if (isset($_POST['preview'])) { $blog_blog = ""; if ($_POST['blog_blog']) { $blog_blog = phpentities(stripslash($_POST['blog_blog'])); $blog_blog = str_replace("src='" . str_replace("../", "", IMAGES_B), "src='" . IMAGES_B, stripslash($_POST['blog_blog'])); } $blog_extended = ""; if ($_POST['blog_extended']) { $blog_extended = phpentities(stripslash($_POST['blog_extended'])); $blog_extended = str_replace("src='" . str_replace("../", "", IMAGES_B), "src='" . IMAGES_B, stripslash($_POST['blog_extended'])); } $callback_data = array("blog_subject" => form_sanitizer($_POST['blog_subject'], '', 'blog_subject'), "blog_cat" => isnum($_POST['blog_cat']) ? $_POST['blog_cat'] : 0, "blog_language" => form_sanitizer($_POST['blog_language'], '', 'blog_language'), "blog_blog" => form_sanitizer($blog_blog, "", "blog_blog"), "blog_extended" => form_sanitizer($blog_extended, "", "blog_extended"), "blog_keywords" => form_sanitizer($_POST['blog_keywords'], '', 'blog_keywords'), "blog_start" => isset($_POST['blog_start']) && $_POST['blog_start'] ? $_POST['blog_start'] : '', "blog_end" => isset($_POST['blog_end']) && $_POST['blog_end'] ? $_POST['blog_end'] : '', "blog_visibility" => isnum($_POST['blog_visibility']) ? $_POST['blog_visibility'] : "0", "blog_draft" => isset($_POST['blog_draft']) ? TRUE : FALSE, "blog_sticky" => isset($_POST['blog_sticky']) ? TRUE : FALSE, "blog_datestamp" => $callback_data['blog_datestamp'], "blog_ialign" => isset($_POST['blog_ialign']) ? $_POST['blog_ialign'] : '', "blog_image" => isset($_POST['blog_image']) ? $_POST['blog_image'] : '', "blog_image_t1" => isset($_POST['blog_image_t1']) ? $_POST['blog_image_t1'] : "", "blog_image_t2" => isset($_POST['blog_image_t2']) ? $_POST['blog_image_t2'] : ""); $callback_data['blog_breaks'] = ""; if (isset($_POST['blog_breaks'])) { $callback_data['blog_breaks'] = TRUE; $callback_data['blog_blog'] = nl2br($callback_data['blog_blog']); if ($callback_data['blog_extended']) { $callback_data['blog_extended'] = nl2br($callback_data['blog_extended']); } } if (defender::safe()) { echo openmodal('blog_preview', $locale['blog_0141']); echo "<h3>" . $callback_data['blog_subject'] . "</h3>\n"; echo $callback_data['blog_blog'];
echo "<br /><div style='text-align:center'>" . $locale['533'] . "<br /><br />\n"; echo "<a href='" . FUSION_SELF . $aidlink . "'>" . $locale['402'] . "</a><br /><br />\n"; echo "<a href='index.php" . $aidlink . "'>" . $locale['403'] . "</a></div><br />\n"; closetable(); } else { if ($settings['tinymce_enabled'] == 1) { echo "<script type='text/javascript'>advanced();</script>\n"; } $result = dbquery("SELECT ts.submit_criteria, tu.user_id, tu.user_name, tu.user_status\r\n\t\t\tFROM " . DB_SUBMISSIONS . " ts\r\n\t\t\tLEFT JOIN " . DB_USERS . " tu ON ts.submit_user=tu.user_id\r\n\t\t\tWHERE submit_id='" . $_GET['submit_id'] . "'"); if (dbrows($result)) { $data = dbarray($result); $submit_criteria = unserialize($data['submit_criteria']); $article_cat = $submit_criteria['article_cat']; $article_subject = $submit_criteria['article_subject']; $article_snippet = phpentities(stripslashes($submit_criteria['article_snippet'])); $article_body = phpentities(stripslashes($submit_criteria['article_body'])); $article_breaks = ""; $result2 = dbquery("SELECT article_cat_id, article_cat_name FROM " . DB_ARTICLE_CATS . " ORDER BY article_cat_name DESC"); $article_cat_opts = ""; $sel = ""; while ($data2 = dbarray($result2)) { if (isset($article_cat)) { $sel = $article_cat == $data2['article_cat_id'] ? " selected='selected'" : ""; } $article_cat_opts .= "<option value='" . $data2['article_cat_id'] . "'{$sel}>" . $data2['article_cat_name'] . "</option>\n"; } add_to_title($locale['global_200'] . $locale['543'] . $locale['global_201'] . $article_subject . "?"); if (isset($_POST['preview']) && (isset($_GET['submit_id']) && isnum($_GET['submit_id']))) { $article_cat = isnum($_POST['article_cat']) ? $_POST['article_cat'] : "0"; $article_subject = stripinput($_POST['article_subject']); $article_snippet = stripslash($_POST['article_snippet']);
function form_textarea($title = FALSE, $input_name, $input_id, $input_value = FALSE, $array = FALSE) { global $userdata; // for editor $title2 = isset($title) && !empty($title) ? stripinput($title) : ucfirst(strtolower(str_replace("_", " ", $input_name))); $input_name = isset($input_name) && !empty($input_name) ? stripinput($input_name) : ""; $input_id = isset($input_id) && !empty($input_id) ? stripinput($input_id) : ""; if (!is_array($array)) { $required = 0; $safemode = 0; $deactivate = ""; $width = "100%"; $height = "80px"; $editor = 0; $placeholder = ""; $inline = ''; $form_name = 'input_form'; $bbcode = 0; $error_text = ''; $class = ''; } else { $required = array_key_exists('required', $array) && $array['required'] == 1 ? 1 : 0; $safemode = array_key_exists('safemode', $array) && $array['safemode'] == 1 ? 1 : 0; $placeholder = array_key_exists('placeholder', $array) ? $array['placeholder'] : ""; $deactivate = array_key_exists('deactivate', $array) ? $array['deactivate'] : ""; $bbcode = array_key_exists('bbcode', $array) && $array['bbcode'] == 1 ? 1 : 0; $editor = array_key_exists('editor', $array) ? $array['editor'] : ""; $width = array_key_exists('width', $array) ? $array['width'] : "100%"; $height = array_key_exists('height', $array) ? $array['height'] : "80"; $inline = array_key_exists("inline", $array) ? 1 : 0; $form_name = array_key_exists('form_name', $array) ? $array['form_name'] : 'input_form'; $error_text = array_key_exists("error_text", $array) ? $array['error_text'] : ""; $class = array_key_exists("class", $array) && $array['class'] ? $array['class'] : ''; } $input_value = phpentities(stripslashes($input_value)); $input_value = str_replace("<br />", "", $input_value); if ($bbcode) { require_once INCLUDES . "bbcode_include.php"; } $html = ""; $html .= "<div id='{$input_id}-field' class='form-group m-b-0 " . $class . "'>\n"; $html .= $title ? "<label class='control-label " . ($inline ? "col-xs-12 col-sm-3 col-md-3 col-lg-3" : '') . "' for='{$input_id}'>{$title} " . ($required == 1 ? "<span class='required'>*</span>" : '') . "</label>\n" : ''; $html .= $inline ? "<div class='col-xs-12 col-sm-9 col-md-9 col-lg-9'>\n" : ""; $html .= $bbcode ? "" . display_bbcodes('90%', $input_name, $form_name) . "" : ''; $html .= "<textarea name='{$input_name}' style='width:100%; min-height:100px;' class='form-control textbox' placeholder='{$placeholder}' id='{$input_id}' " . ($deactivate == "1" && isnum($deactivate) ? "readonly" : "") . ">{$input_value}</textarea>\n"; $html .= "<div id='{$input_id}-help' class='display-inline-block'></div>"; $html .= $inline ? "</div>\n" : ""; $html .= "</div>\n"; $html .= "<input type='hidden' name='def[{$input_name}]' value='[type=textarea],[title={$title2}],[id={$input_id}],[required={$required}],[safemode={$safemode}]" . ($error_text ? ",[error_text={$error_text}]" : '') . "' readonly />"; // Editor Parse Configurations. if ($editor) { $result = dbquery("SELECT * FROM " . DB_EDITOR . " WHERE " . groupaccess('editor_access') . " AND editor_enable='1' ORDER BY editor_access DESC LIMIT 1"); if (dbrows($result) > 0) { $data = dbarray($result); if (!defined('text_editor_on')) { define('text_editor_on', TRUE); // load editor js add_to_head("<script src='" . DYNAMICS . "assets/editor/development/jquery.sceditor.bbcode.js'></script>\n"); // load editor theme $editor_theme = DYNAMICS . "assets/editor/development/themes/css/monocons.css"; if (file_exists(DYNAMICS . "assets/editor/development/themes/css/" . $data['editor_theme'] . "")) { $editor_theme = DYNAMICS . "assets/editor/development/themes/css/" . $data['editor_theme']; } add_to_head("<link rel='stylesheet' href='{$editor_theme}' type='text/css' media='all' />\n"); // load smileys; $editor_smiley = cache_editor_smiley(); // load editor bbcode settings; $editor_config = get_editor_buttons($data['editor_name']); // initialize the editor add_to_jquery("\n \$('#{$input_id}').sceditor({\n plugins: 'bbcode',\n id: '{$input_id}-editor',\n height : '300',\n width : '{$width}',\n //toolbar: '{$editor_config}',\n autoUpdate: true,\n style: '{$editor_theme}',\n {$editor_smiley}\n });\n "); } /* * width: '720', * height: '300' * resizeEnabled: false, */ } } // endif editor config // Api for Adding Custom BBCodes - Example /* add_to_jquery(" $.sceditor.plugins.bbcode.bbcode.set('spoiler', { tags: { 'div': { 'class': ['spoiler'] } }, format: '[spoiler]{0}[/spoiler]', html: '<div class=\"spoiler\">{0}</div>' }); "); */ return $html; }
if (isset($_GET['action']) && $_GET['action'] == "edit" && (isset($_GET['faq_cat_id']) && isnum($_GET['faq_cat_id'])) && $_GET['t'] == "faq") { $sel = $data2['faq_cat_id'] == $_GET['faq_cat_id'] ? " selected" : ""; } $cat_opts .= "<option value='" . $data2['faq_cat_id'] . "'{$sel}>" . $data2['faq_cat_name'] . "</option>\n"; } opentable($faq_title); echo "<form name='inputform' method='post' action='" . $faq_action . "'>\n"; echo "<table cellpadding='0' cellspacing='0' class='center'>\n<tr>\n"; echo "<td class='tbl'>" . $locale['520'] . "</td>\n"; echo "<td class='tbl'><select name='faq_cat' class='textbox' style='width:250px;'>\n" . $cat_opts . "</select></td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl'>" . $locale['521'] . "</td>\n"; echo "<td class='tbl'><input type='text' name='faq_question' value='" . $faq_question . "' class='textbox' style='width:330px' /></td>\n"; echo "</tr>\n<tr>\n"; echo "<td valign='top' class='tbl'>" . $locale['522'] . "</td>\n"; echo "<td class='tbl'><textarea name='faq_answer' cols='60' rows='5' class='textbox' style='width:330px;'>" . phpentities(stripslashes($faq_answer)) . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl'></td><td class='tbl'>\n"; echo display_html("inputform", "faq_answer") . "</td>\n"; echo "</tr>\n<tr>\n"; echo "<td align='center' colspan='2' class='tbl'><br />\n"; echo "<input type='submit' name='save_faq' value='" . $locale['523'] . "' class='button' /></td>\n"; echo "</tr>\n</table>\n</form>\n"; closetable(); } } opentable($locale['502']); $result = dbquery("SELECT faq_cat_id, faq_cat_name FROM " . DB_FAQ_CATS . " ORDER BY faq_cat_name"); if (dbrows($result) != 0) { echo "<table cellpadding='0' cellspacing='0' width='400' class='center'>\n<tr>\n"; echo "<td class='tbl2'>" . $locale['540'] . "</td>\n";
} echo '<table style="width: 100%;" class="tbl-border forum_thread_table">'; if ($blogarr = dbarray($bloglist)) { echo ' <tr> <td style="width: 25%;" class="tbl2 forum-caption">' . showdate('forumdate', $blogarr['bp_timestamp']) . '</td> <td style="width: 75%;" class="tbl2 forum-caption">' . $blogarr['bp_title'] . '</td> </tr> <tr> <td style="width: 25%;" class="tbl2 forum-caption"> ' . profile_link($blogarr['bp_author'], $blogarr['user_name'], $blogarr['user_status']) . '<br />'; if ($blogarr['user_avatar'] && file_exists(IMAGES . "avatars/" . $blogarr['user_avatar']) && $blogarr['user_status'] != 6 && $blogarr['user_status'] != 5) { echo "<img src='" . IMAGES . "avatars/" . $blogarr['user_avatar'] . "' alt='Avatar' /><br /><br />\n"; } echo 'Antal blogindlæg: ' . $blogarr['user_blog'] . '<br /> <a href="/blog/liste.php?list=' . $blogarr['user_id'] . '">Se blog</a> ' . (iADMIN || $blogarr['user_id'] == $userdata['user_id'] ? '<br /><a href="/blog/slet.php?id=' . $blogarr['bp_id'] . '" onclick="return confirm(\'Er du sikker på, du vil slette dette indlæg?\')">Slet indlæg</a>' : '') . ' <br /><a href="/report.php?action=new&bp_id=' . $blogarr['bp_id'] . '">Anmeld</a> </td> <td style="width: 75%;" class="tbl1">' . nl2br(parseubb(phpentities($blogarr['bp_content']))) . '</td> </tr> <tr> <td colSpan="2" style="width: 5px;"> </td> </tr> '; } else { echo 'Indlægget kunne ikke findes.'; } echo '</table>'; closetable(); require_once THEMES . "templates/footer.php";
$result = dbquery("SELECT * FROM " . DB_AL_CATALOG_ITEMS . " WHERE ctg_item_id='" . $_POST['item_id'] . "'"); if (dbrows($result)) { $data = dbarray($result); $title = $data['ctg_item_title']; $cost = $data['ctg_item_cost']; $short_desc = $data['ctg_item_short_desc']; $desc = $data['ctg_item_desc']; $cat_id = $data['ctg_item_cat']; $cover_image = $data['ctg_item_image']; $cat_id = $data['ctg_item_cat']; $item_id = $data['ctg_item_id']; $is_edit = true; $tabs = array(); for ($i = 1; $i <= 10; $i++) { if ($data['ctg_item_tab_' . $i . '_title'] && !empty($data['ctg_item_tab_' . $i . '_title'])) { $tabs[] = array('title' => $data['ctg_item_tab_' . $i . '_title'], 'desc' => phpentities(stripslashes($data['ctg_item_tab_' . $i . '_desc']))); } } $images_result = dbquery("SELECT ii.*,i.* FROM " . DB_AL_CATALOG_IMAGES_ITEMS . " ii LEFT JOIN " . DB_AL_CATALOG_IMAGES . " i ON i.ctg_image_id=ii.ctg_image_id WHERE ii.ctg_item_id='" . $data['ctg_item_id'] . "'"); $images = array(); if (dbrows($images_result)) { $images = make_assoc($images_result); } } else { redirect(FUSION_SELF . $aidlink . "&page=items"); } } else { $title = ''; $cost = ''; $short_desc = ''; $desc = '';
redirect(FUSION_SELF . $aidlink . "&page=2&error=" . $error); } else { redirect(FUSION_SELF . $aidlink . "&page=2&error=2"); } } opentable($locale['ads_title']); echo $navigation; echo "<form name='ads_form' method='post' action='" . FUSION_SELF . $aidlink . "&page=2'>\n"; echo "<table cellpadding='0' cellspacing='0' width='450' align='center'>\n"; echo "<tr>\n"; echo "<td class='tbl'>" . $locale['ads_name'] . "</td>"; echo "<td class='tbl'><input type='text' class='textbox' name='ads_in_name' value='" . $settings['ads_in_name'] . "' style='width:500px' /></td>\n"; echo "</tr>\n"; echo "<tr>\n"; echo "<td valign='top' class='tbl'>" . $locale['ads_code'] . "<br /><span class='small2'><em>" . $locale['ads_code_info'] . "</em></span></td>"; echo "<td class='tbl'><textarea rows='20' class='textbox' name='ads_in_code' style='width:500px'>" . phpentities(stripslashes($settings['ads_in_code'])) . "</textarea></td>\n"; echo "</tr>\n"; echo "<tr>\n"; echo "<tr>\n"; echo "<td class='tbl'>" . $locale['ads_show'] . "</td>"; echo "<td class='tbl'><input type='checkbox' name='ads_in_show' value='1' " . ($settings['ads_in_show'] ? "checked='checked' " : "") . "/></td>"; echo "</tr><tr>\n"; if (!check_admin_pass(isset($_POST['admin_password']) ? stripinput($_POST['admin_password']) : "")) { echo "<td class='tbl'>Admin Password:</td>\n"; echo "<td class='tbl'><input type='password' name='admin_password' value='" . (isset($_POST['admin_password']) ? stripinput($_POST['admin_password']) : "") . "' class='textbox' style='width:150px;' /></td>\n"; echo "</tr>\n<tr>\n"; } echo "<td colspan='2' align='center' class='tbl'><input type='submit' class='button' name='ads_save' value='" . $locale['ads_save'] . "' /></td></tr>\n"; echo "</table>\n"; echo "</form>\n"; closetable();
} else { $ticker_content .= "<br>"; } } else { if ($scrolling_ticker_boxover == 0) { if ($scrolling_category == 1) { $ticker_content .= "<b>" . $locale['ans107'] . ":</b> <a href='" . BASEDIR . "news_cats.php?cat_id=" . $data2['news_cat_id'] . "'><font color='{$scrolling_ticker_cat_color}'><b>" . $data2['news_cat_name'] . "</b></font></a>"; $ticker_content .= "<br><img style='vertical-align:middle;' alt='' src='" . BASEDIR . "advanced_news/images/scroll_news_icon.gif'> <a href='" . BASEDIR . "news.php?readmore=" . $data['news_id'] . "'>{$itemsubject}</a>"; } else { if ($scrolling_category == 0) { $ticker_content .= "<br><img style='vertical-align:middle;' alt='' src='" . BASEDIR . "advanced_news/images/scroll_news_icon.gif'> <a href='" . BASEDIR . "news.php?readmore=" . $data['news_id'] . "'>{$itemsubject}</a>"; } } if (checkrights("N")) { $ticker_content .= " <a href='javascript:void(0)' onclick=\"document.editnews.news_id.value=" . $data['news_id'] . "; document.editnews.submit(); return false;\"><span style='cursor:pointer; text-decoration: none;' title=\"header=[<img src='" . BASEDIR . "advanced_news/images/adv_editnews.gif' style='vertical-align:middle;'> " . $locale['admin100'] . " <font color='red'>" . $data['news_id'] . "</font>] body=[" . $locale['pop107'] . "] delay=[0] fade=[on]\"><img style='vertical-align:middle;' src='" . BASEDIR . "advanced_news/images/icon_editnews.gif' alt='' border='0'></span></a> <a href='javascript:void(0)' onclick=\"if (confirm('" . $locale['admin102'] . "')) location.href='" . BASEDIR . "news.php{$aidlink}&readmore=" . $data['news_id'] . "&op=del'; return false;\"><span style='cursor:pointer; text-decoration: none;' title=\"header=[<img src='" . BASEDIR . "advanced_news/images/adv_deletenews.gif' style='vertical-align:middle;'> " . $locale['admin101'] . " <font color='red'>" . $data['news_id'] . "</font>] body=[" . phpentities($locale['pop110']) . "] delay=[0] fade=[on]\"><img style='vertical-align:middle;' src='" . BASEDIR . "advanced_news/images/icon_deletenews.gif' alt='' border='0'></span></a> "; $ticker_content .= "<a href='" . BASEDIR . "administration/news.php" . $aidlink . "'><span style='cursor:pointer; text-decoration: none;' title=\"header=[<img src='" . BASEDIR . "advanced_news/images/adv_writenews.gif' style='vertical-align:middle;'> <font color='#1D679F'>" . $locale['admin103'] . "</font>] body=[" . phpentities($locale['pop111']) . "] delay=[0] fade=[on]\"><img style='vertical-align:middle;' src='" . BASEDIR . "advanced_news/images/icon_writenews.gif' alt='' border='0'></span></a><br>"; } else { $ticker_content .= "<br>"; } } } if ($scrolling_news_author + $scrolling_ticker_date + $scrolling_ticker_comments + $scrolling_ticker_reads != "0") { $ticker_content .= ""; if ($scrolling_news_author == "1") { $ticker_content .= $locale['040'] . $data[user_name]; if ($scrolling_ticker_date + $scrolling_ticker_comments + $scrolling_ticker_reads != "0") { $ticker_content .= "<br>"; } } if ($scrolling_ticker_date == "1") { $ticker_content .= showdate("shortdate", $data['news_datestamp']);
$data['license_text'] = ""; $data['license_name'] = ""; $action = FUSION_SELF; } echo ' <form action="' . $action . '" method="post"> <div style="text-align:center;"> <p> <label for="name">' . $locale['PDP002'] . ':</label> <input type="text" value="' . $data['license_name'] . '" size="40" maxlength="100" name="name" id="name" class="textbox" /> </p> <p> <textarea cols="60" rows="15" class="textbox" name="text">' . phpentities(stripslash($data['license_text'])) . '</textarea><br /> <span class="small2">' . $locale['pdp_html_allowed'] . '</span> <p> <input type="submit" value="' . $locale['PDP010'] . '" class="button" name="save" /> </div> <hr /> </form>'; } /* * show all */ $res = dbquery("SELECT CHAR_LENGTH(license_text) AS length,\n\tlicense_id, license_name\n\tFROM " . DB_PDP_LICENSES . "\n\tORDER BY license_name ASC"); if (dbrows($res)) { echo "<table align='center' cellspacing='1' class='tbl-border'>\n<thead>\n<tr>\n\t<th class='tbl2' width='16'></th>\n\t<th class='tbl2' width='150'>" . $locale['PDP002'] . " [<a href='" . FUSION_SELF . "?new=1'>" . $locale['pdp_new'] . "]</a>]</th>\n\t<th class='tbl2'>" . $locale['PDP801'] . "</th>\n\t<th class='tbl2' colspan='2'># " . $locale['pdp_downloads'] . "</th>\n\t<th class='tbl2' width='16'></th>\n</tr>\n</thead>\n<tbody>"; } else {
$submit_info['article_body'] = descript($_POST['article_body']); $submit_info['article_breaks'] = isset($_POST['line_breaks']) ? "y" : "n"; $result = dbquery("INSERT INTO " . DB_SUBMISSIONS . " (submit_type, submit_user, submit_datestamp, submit_criteria) VALUES ('a', '" . $userdata['user_id'] . "', '" . time() . "', '" . addslashes(serialize($submit_info)) . "')"); add_to_title($locale['global_200'] . $locale['500']); opentable($locale['500']); echo "<div style='text-align:center'><br />\n" . $locale['510'] . "<br /><br />\n"; echo "<a href='submit.php?stype=a'>" . $locale['511'] . "</a><br /><br />\n"; echo "<a href='index.php'>" . $locale['412'] . "</a><br /><br />\n</div>\n"; closetable(); } } else { if (isset($_POST['preview_article'])) { $article_cat = isnum($_POST['article_cat']) ? $_POST['article_cat'] : "0"; $article_subject = stripinput($_POST['article_subject']); $article_snippet = phpentities(descript(stripslash($_POST['article_snippet']))); $article_body = phpentities(descript(stripslash($_POST['article_body']))); $breaks = isset($_POST['line_breaks']) ? " checked='checked'" : ""; opentable($article_subject); echo isset($_POST['line_breaks']) ? nl2br($article_body) : $article_body; closetable(); tablebreak(); } if (!isset($_POST['preview_article'])) { $article_cat = "0"; $article_subject = ""; $article_snippet = ""; $article_body = ""; $breaks = " checked='checked'"; } $cat_list = ""; $sel = "";
} } /* * birthdays */ if (!$awec_settings['birthdays_are_events'] && $awec_settings['show_birthday_to_group'] >= 0 && checkgroup($awec_settings['show_birthday_to_group'])) { $res = dbquery("SELECT user_name, user_birthdate, user_id,\n user_avatar,\n\t\t(YEAR(CURDATE())-YEAR(user_birthdate)) AS years_old\n FROM " . DB_USERS . "\n WHERE MONTH(user_birthdate)='" . date('n') . "'\n AND DAYOFMONTH(user_birthdate)='" . date("j") . "'"); if (dbrows($res)) { $path = INFUSIONS . 'aw_ecal_panel'; echo ' <img src="' . $path . '/icons/birthday.gif" alt="' . $locale['EC712'] . '" style="vertical-align:bottom;"> <strong>' . $locale['EC205'] . ':</strong> <ul>'; while ($data = dbarray($res)) { if (empty($data['user_avatar'])) { $img = INFUSIONS . 'aw_ecal_panel/icons/noav.gif'; } else { $img = BASEDIR . 'images/avatars/' . $data['user_avatar']; } $header = sprintf($locale['awec_user_birthday']['title'], $data['user_name']); $body = '<img src="' . $img . '" alt="' . $data['user_name'] . '" />'; $body .= '<br />' . str_replace(array('%1', '%2'), array($data['user_name'], $data['years_old']), $locale['awec_user_birthday']['body']); echo ' <li><a href="' . BASEDIR . 'profile.php?lookup=' . $data['user_id'] . '" title="cssbody[tbl1] cssheader=[tbl2] header=[' . phpentities($header) . '] body=[' . phpentities($body) . ']">' . $data['user_name'] . '</a> (' . $data['years_old'] . ')</li>'; } echo ' </li>'; } } closeside();
if ($data['thread_poll']) { $thread_poll = "<span class='small' style='font-weight:bold'>[" . $locale['global_051'] . "]</span> "; } else { $thread_poll = ""; } $message = $data['post_message']; // try to fix an unknown bug: div's are not shown #$qcount = substr_count($message, "[quote]"); #for ($q=0;$q < $qcount;$q++) $message = preg_replace('#\[quote\](.*?)\[/quote\]#si', '', $message); // problem with this: there are too much possible bb-codes #$code_count = substr_count($message, "[code]"); #for ($q=0; $q < $code_count; $q++) $message = preg_replace("#\[code\](.*?)\[/code\]#sie", "", $message, 1); $message = parseubb(nl2br(trimlink($message, 300))); if ($data['post_smileys']) { $message = parsesmileys($message); } $message = phpentities(str_replace(array("[", "]"), array("[", "]"), $message)); #$message = str_replace(array("<div", "</div"), array("<span", "</span"), $message); // does not show the thing correct $div_count = substr_count($message, "<div"); for ($q = 0; $q < $div_count; $q++) { $message = preg_replace('#<div(.*?)>(.*?)</div>#si', '', $message, 1); } // this is the best solution I could find echo "</td>\n"; echo "<td width='100%' class='" . $row_color . "'>" . $thread_poll . "<a href='" . make_url(FORUM . "viewthread.php?thread_id=" . $data['thread_id'] . "&pid=" . $data['thread_lastpostid'], BASEDIR . "forum-thread-" . $data['thread_id'] . "-pid" . $data['thread_lastpostid'] . "-", $data['thread_subject'], ".html") . "#post_" . $data['thread_lastpostid'] . "' title='<strong>" . $data['thread_subject'] . "</strong><br/>" . $message . "' class='tooltip'>" . trimlink($data['thread_subject'], 30) . "</a>" . ($data['forum_markresolved'] && $data['thread_resolved'] ? $locale['global_067'] : "") . "<br />\n\r\n\t\t<span class='small2'>" . $locale['global_048'] . ": <a href='" . make_url(FORUM . "viewforum.php?forum_id=" . $data['forum_id'], BASEDIR . "forum-" . $data['forum_id'] . "-", $data['forum_name'], ".html") . "' title='" . $data['forum_name'] . "'>" . $data['forum_name'] . "</a></span></td>\n"; // Pimped: make_url echo "<td width='1%' class='" . $row_color . "' style='text-align:center;white-space:nowrap'>" . $data['thread_views'] . "</td>\n"; echo "<td width='1%' class='" . $row_color . "' style='text-align:center;white-space:nowrap'>" . ($data['thread_postcount'] - 1) . "</td>\n"; if (IF_MULTI_LANGUAGE_FORUM) { echo "<td width='1%' class='" . $row_color . "' style='text-align:center;white-space:nowrap'>" . get_image($data['forum_language'], $data['forum_language'], "", $data['forum_language'], "", true) . "</td>\n"; } // Pimped
opentable($locale['400']); echo "<div style='text-align:center'>\n<form name='selectform' method='post' action='" . FUSION_SELF . $aidlink . "&action=edit'>\n"; echo "<select name='news_id' class='textbox' style='width:250px'>\n" . $editlist . "</select>\n"; echo "<input type='submit' name='edit' value='" . $locale['420'] . "' class='button' />\n"; echo "<input type='submit' name='delete' value='" . $locale['421'] . "' onclick='return DeleteNews();' class='button' />\n"; echo "</form>\n</div>\n"; closetable(); } if (isset($_GET['action']) && $_GET['action'] == "edit" && (isset($_POST['news_id']) && isnum($_POST['news_id'])) || isset($_GET['news_id']) && isnum($_GET['news_id'])) { $result = dbquery("SELECT * FROM " . DB_NEWS . " WHERE news_id='" . (isset($_POST['news_id']) ? $_POST['news_id'] : $_GET['news_id']) . "'"); if (dbrows($result)) { $data = dbarray($result); $news_subject = $data['news_subject']; $news_cat = $data['news_cat']; $body = phpentities(stripslashes($data['news_news'])); $body2 = phpentities(stripslashes($data['news_extended'])); if ($data['news_start'] > 0) { $news_start = getdate($data['news_start']); } if ($data['news_end'] > 0) { $news_end = getdate($data['news_end']); } $news_visibility = $data['news_visibility']; $news_draft = $data['news_draft'] == "1" ? " checked='checked'" : ""; $news_sticky = $data['news_sticky'] == "1" ? " checked='checked'" : ""; $news_breaks = $data['news_breaks'] == "y" ? " checked='checked'" : ""; $news_comments = $data['news_allow_comments'] == "1" ? " checked='checked'" : ""; $news_ratings = $data['news_allow_ratings'] == "1" ? " checked='checked'" : ""; } else { redirect(FUSION_SELF . $aidlink); }
/* * GUI */ opentable($locale['PRP800']); prp_admin_menu(); if (isset($_GET['edit']) || isset($_GET['new'])) { if (isset($id)) { $query_id = dbquery("SELECT license_id, license_text," . " license_name" . " FROM " . DB_PRP_LICENSES . "" . " WHERE license_id='{$id}'"); $data = dbarray($query_id); $action = FUSION_SELF . "?id={$id}"; } else { $data['license_text'] = ""; $data['license_name'] = ""; $action = FUSION_SELF; } echo "<form action='{$action}' method='POST'>\n<div align='center'>\n" . $locale['PRP002'] . ": <input type='text' value='" . $data['license_name'] . "'" . " size='40' maxlength='255' name='name' class='textbox'>\n<p>\n<textarea cols='70' rows='15' class='textbox' name='text'>" . phpentities(stripslash($data['license_text'])) . "</textarea>\n<p>\n<input type='submit' value='" . $locale['PRP010'] . "' class='button' name='save'>\n</div>\n<hr>\n</form>\n"; } /* * show all */ $query_id = dbquery("SELECT CHAR_LENGTH(license_text) AS length," . " license_id, license_name" . " FROM " . DB_PRP_LICENSES . "" . " ORDER BY license_name ASC"); if (dbrows($query_id)) { echo "<table align='center' cellspacing='1' class='tbl-border'>\n<thead>\n<tr>\n\t<th class='tbl2' width='16'></th>\n\t<th class='tbl2' width='150'>" . $locale['PRP002'] . " [<a href='" . FUSION_SELF . "?new=1'>" . $locale['prp_new'] . "]</a></th>\n\t<th class='tbl2'>" . $locale['PRP801'] . "</th>\n\t<th class='tbl2' colspan='2'># " . $locale['prp_reviews'] . "</th>\n\t<th class='tbl2' width='16'></th>\n</tr>\n</thead>\n<tbody>"; } else { if (!isset($_GET['new'])) { fallback(FUSION_SELF . "?new=1"); } echo "<p>" . $locale['PRP802']; } $lcount = 0; while ($data = dbarray($query_id)) {
$original_data = dbarray(dbquery("select * from " . DB_POSTS . " where thread_id='" . $data['thread_id'] . "' order by post_id asc limit 1")); $timepassed = timePassed($original_data['post_datestamp']); echo "</td>\n\t\t<td width='40%' class='" . $row_color . "'>"; $threadPost = dbarray(dbquery("select * from " . DB_THREADS . " t\n\t\tleft join " . DB_POSTS . " p on p.thread_id=t.thread_id\n\t\twhere t.thread_id='" . $data['thread_id'] . "' order by p.post_id asc limit 1")); $post_res = dbquery("select * from " . DB_PREFIX . "fb_posts where post_id='" . $threadPost['post_id'] . "'"); if (dbrows($post_res)) { $post_data = dbarray($post_res); if ($post_data['post_icon'] && $post_data['post_icon'] !== "page_white.png" && $fb4['post_icons']) { echo "<div style='float:left;'><br /><img src='" . INFUSIONS . "fusionboard4/images/post_icons/" . $post_data['post_icon'] . "' alt='' style='vertical-align:middle;' /> <br /></div>"; } } echo "<a"; if ($fb4['latest_popup']) { $originalpost = dbarray(dbquery("select * from " . DB_POSTS . " where thread_id='" . $data['thread_id'] . "' order by post_id asc limit 1")); $post_message = $originalpost['post_smileys'] == 1 ? parsesmileys($originalpost['post_message']) : $originalpost['post_message']; $post_message = phpentities(nl2br(parseubb($post_message))); echo " title=\"header=[ " . str_replace("]", "]]", str_replace("[", "[[", trimlink($data['thread_subject'], 70))) . "] body=[" . str_replace("]", "]]", str_replace("[", "[[", trimlink($post_message, 150))) . "] delay=[0] fade=[on]\""; } echo " href='" . FORUM . "viewthread.php?thread_id=" . $data['thread_id'] . "' title='" . $data['thread_subject'] . "'\n\t\tstyle='text-decoration:underline; font-size:12px;{$threadbold}'>" . trimlink($data['thread_subject'], 40) . "</a> "; if ($fb4['latest_post']) { echo " <a"; if ($fb4['latest_popup']) { $originalpost = dbarray(dbquery("select * from " . DB_POSTS . " where post_id='" . $data['thread_lastpostid'] . "' order by post_id asc limit 1")); $post = trimlink(nl2br(stripinput(parseubb($originalpost['post_message']))), 200); echo " title='header=[" . $locale['fb615'] . ":] body=[" . $post . "] delay=[0] fade=[on]'"; } echo " href='" . FORUM . "viewthread.php?thread_id=" . $data['thread_id'] . "&pid=" . $data['thread_lastpostid'] . "#post_" . $data['thread_lastpostid'] . "'" . (!$fb4['latest_popup'] ? " title='" . $locale['fb615'] . "'" : "") . " class='small'>(<b>»</b>)</a>"; } echo "<br />\n<a href='" . BASEDIR . "profile.php?lookup=" . $data['original_id'] . "' style='font-size:11px;'>" . showLabel($data['original_id'], false, "panel") . "</a><br />\n\t\t<span style='font-size:10px;'>" . $timepassed . "</span>\n\t\t</td>\n"; echo "<td width='20%' class='" . $row_color . "' style='text-align:right;white-space:nowrap'>\n\t\t" . timePassed($data['thread_lastpost'], false) . "<br />\n\t\tby <a href='" . BASEDIR . "profile.php?lookup=" . $data['thread_lastuser'] . "'>" . showLabel($data['thread_lastuser'], false, "panel") . "</a>"; if (!$fb4['latest_post']) {
} if (!set_mainsetting('welome_panel_dis', isnum($_POST['welome_panel_dis']) ? $_POST['welome_panel_dis'] : "0")) { $error = 1; } set_admin_pass(isset($_POST['admin_password']) ? stripinput($_POST['admin_password']) : ""); log_admin_action("admin-1", "admin_wel_panel_edited"); redirect(FUSION_SELF . $aidlink . "&error=" . $error); } else { redirect(FUSION_SELF . $aidlink . "&error=pw"); } } opentable($locale['welc100']); echo "<form name='settingsform' method='post' action='" . FUSION_SELF . $aidlink . "'>\n"; echo "<table cellpadding='0' cellspacing='0' width='90%' class='center'>\n<tr>\n"; echo "<td valign='top' width='15%' class='tbl'>" . $locale['welc101'] . "<br /><span class='small2'>" . $locale['welc102'] . "<br />" . $locale['welc103'] . "</span></td>\n"; echo "<td width='50%' class='tbl'><textarea name='intro' cols='80' rows='20' class='textbox'>" . phpentities(stripslashes($settings['siteintro'])) . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl'></td><td class='tbl'>\n"; echo "<label><input type='checkbox' name='siteintro_collapse' value='yes'" . ($settings['siteintro_collapse'] ? " checked='checked'" : "") . " /> " . $locale['welpm113'] . "</label><br />\n"; echo "<label><input type='checkbox' name='siteintro_collapse_state' value='yes'" . ($settings['siteintro_collapse_state'] == "on" ? " checked='checked'" : "") . " /> " . $locale['welpm114'] . "</label></td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl'>" . $locale['welc104'] . "</td>\n"; echo "<td class='tbl'><select name='welome_panel_dis' class='textbox'>\n"; echo "<option value='0'" . ($settings['welome_panel_dis'] == "0" ? " selected='selected'" : "") . ">" . $locale['welc105'] . "</option>\n"; echo "<option value='1'" . ($settings['welome_panel_dis'] == "1" ? " selected='selected'" : "") . ">" . $locale['welc106'] . "</option>\n"; echo "<option value='2'" . ($settings['welome_panel_dis'] == "2" ? " selected='selected'" : "") . ">" . $locale['welc107'] . "</option>\n"; echo "</select></td>\n"; echo "</tr>\n"; if (!check_admin_pass(isset($_POST['admin_password']) ? stripinput($_POST['admin_password']) : "")) { echo "<tr><td class='tbl'>" . $locale['853'] . "</td>\n"; echo "<td class='tbl'><input type='password' name='admin_password' value='" . (isset($_POST['admin_password']) ? stripinput($_POST['admin_password']) : "") . "' class='textbox' style='width:150px;' /></td>\n";
set_admin_pass(isset($_POST['admin_password']) ? stripinput($_POST['admin_password']) : ""); } else { echo "<div id='close-message'><div class='admin-message'>" . $locale['global_182'] . "</div></div>\n"; $panel_content = phpentities($panel_content); } } if (isset($_GET['action']) && $_GET['action'] == "edit" && (isset($_GET['panel_id']) && isnum($_GET['panel_id']))) { $result = dbquery("SELECT panel_name, panel_filename, panel_content, panel_type, panel_side,\n\t\t\t\tpanel_access, panel_display, panel_url_list, panel_restriction\n\t\t\tFROM " . DB_PANELS . " WHERE panel_id='" . $_GET['panel_id'] . "'"); if (dbrows($result)) { $data = dbarray($result); $panel_name = $data['panel_name']; $panel_url_list = $data['panel_url_list']; $exclude_check = $data['panel_restriction'] == "1" ? " checked='checked'" : ""; $include_check = $data['panel_restriction'] == "0" ? " checked='checked'" : ""; $panel_filename = $data['panel_filename']; $panel_content = phpentities(stripslashes($data['panel_content'])); $panel_type = $data['panel_type']; $panel_side = $data['panel_side']; $panel_access = $data['panel_access']; $panelon = $data['panel_display'] == "1" ? " checked='checked'" : ""; $panelopts = $panel_side == "1" || $panel_side == "4" ? " style='display:none'" : " style='display:block'"; } else { redirect(FUSION_SELF . $aidlink); } } if (isset($_GET['panel_id']) && isnum($_GET['panel_id'])) { $action = FUSION_SELF . $aidlink . "&panel_id=" . $_GET['panel_id'] . "&panel_side=" . $panel_side; opentable($locale['450']); } else { if (!isset($_POST['preview'])) { $panel_name = "";
if (function_exists("gd_info")) { echo "<td width='50%' class='tbl'>" . $locale['554'] . "</td>\n"; echo "<td width='50%' class='tbl'><select name='validation_method' class='textbox'>\n"; echo "<option value='image'" . ($settings2['validation_method'] == "image" ? " selected='selected'" : "") . ">" . $locale['555'] . "</option>\n"; echo "<option value='text'" . ($settings2['validation_method'] == "text" ? " selected='selected'" : "") . ">" . $locale['556'] . "</option>\n"; echo "</select></td>\n"; } else { echo "<td class='tbl' colspan='2'><input type='hidden' name='validation_method' value='text' /></td>\n"; } echo "</tr>\n<tr>\n"; echo "<td width='50%' class='tbl'>" . $locale['558'] . "</td>\n"; echo "<td width='50%' class='tbl'><select name='enable_terms' class='textbox'>\n"; echo "<option value='1'" . ($settings2['enable_terms'] == "1" ? " selected='selected'" : "") . ">" . $locale['518'] . "</option>\n"; echo "<option value='0'" . ($settings2['enable_terms'] == "0" ? " selected='selected'" : "") . ">" . $locale['519'] . "</option>\n"; echo "</select></td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl' colspan='2'>" . $locale['559'] . "</td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl' colspan='2'><textarea name='license_agreement' cols='50' rows='10' class='textbox' style='width:320px'>" . phpentities(stripslashes($settings2['license_agreement'])) . "</textarea></td>\n"; echo "</tr>\n"; if (!$settings['tinymce_enabled']) { echo "<tr>\n<td class='tbl' colspan='2'>\n"; echo display_html("settingsform", "license_agreement", true, true, true); echo "</td>\n</tr>\n"; } echo "<tr>\n"; echo "<td align='center' colspan='2' class='tbl'><br />\n"; echo "<input type='submit' name='savesettings' value='" . $locale['750'] . "' class='button' /></td>\n"; echo "</tr>\n</table>\n</form>\n"; closetable(); require_once THEMES . "templates/footer.php";
if ($list !== 'blogs') { echo '<table style="width: 100%;" class="tbl-border forum_thread_table">'; while ($blogarr = dbarray($bloglist)) { echo ' <tr> <td style="width: 25%;" class="tbl2 forum-caption">' . showdate('forumdate', $blogarr['bp_timestamp']) . '</td> <td style="width: 75%;" class="tbl2 forum-caption">' . $blogarr['bp_title'] . '</td> </tr> <tr> <td style="width: 25%;" class="tbl2 forum-caption"> ' . profile_link($blogarr['bp_author'], $blogarr['user_name'], $blogarr['user_status']) . '<br />'; if ($blogarr['user_avatar'] && file_exists(IMAGES . "avatars/" . $blogarr['user_avatar']) && $blogarr['user_status'] != 6 && $blogarr['user_status'] != 5) { echo "<img src='" . IMAGES . "avatars/" . $blogarr['user_avatar'] . "' alt='Avatar' /><br /><br />\n"; } echo 'Antal blogindlæg: ' . $blogarr['user_blog'] . '<br /> <a href="/blog/liste.php?list=' . $blogarr['user_id'] . '">Se blog</a> ' . (iADMIN || $blogarr['user_id'] == $userdata['user_id'] ? '<br /><a href="/blog/slet.php?id=' . $blogarr['bp_id'] . '" onclick="return confirm(\'Er du sikker på, du vil slette dette indlæg?\')">Slet indlæg</a>' : '') . ' <br /><a href="/report.php?action=new&bp_id=' . $blogarr['bp_id'] . '">Anmeld</a> </td> <td style="width: 75%;" class="tbl1">' . nl2br(parseubb(preg_replace('/\\[(\\/){0,1}img\\]/', '[$1url]', phpentities($blogarr['bp_content'])))) . '</td> </tr> <tr> <td colSpan="2" style="width: 5px;"> </td> </tr> '; } echo '</table>'; } echo makepagenav($_GET['rowstart'], 20, $bloglist2, 3, FUSION_SELF . "?list=" . $list . "&") . "\n"; closetable(); require_once THEMES . "templates/footer.php";
echo "<table cellpadding='0' cellspacing='0' width='450' class='center'>\n<tr>\n"; echo "<td class='tbl'>" . $locale['851'] . "<br />\n"; echo "<textarea name='sitebanner1' cols='50' rows='5' class='textbox' style='width:450px'>" . phpentities($sitebanner1) . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl'>\n"; echo "<input type='button' value='<?php?>' class='button' style='width:60px;' onclick=\"addText('sitebanner1', '<?php\\n', '\\n?>', 'settingsform');\" />\n"; echo display_html("settingsform", "sitebanner1", true) . "</td>\n"; echo "</tr>\n<tr>\n"; if (isset($_POST['preview_banners']) && $sitebanner1) { if (isset($_COOKIE[COOKIE_PREFIX . 'admin']) && md5($_COOKIE[COOKIE_PREFIX . 'admin']) == $userdata['user_admin_password'] || md5(md5($admin_password)) == $userdata['user_admin_password']) { eval("?><td class='tbl'>" . $sitebanner1 . "</td><?php "); echo "</tr>\n<tr>\n"; } } echo "<td class='tbl'>" . $locale['852'] . "<br />\n"; echo "<textarea name='sitebanner2' cols='50' rows='5' class='textbox' style='width:450px'>" . phpentities($sitebanner2) . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td class='tbl'>\n"; echo "<input type='button' value='<?php?>' class='button' style='width:60px;' onclick=\"addText('sitebanner2', '<?php\\n', '\\n?>', 'settingsform');\" />\n"; echo display_html("settingsform", "sitebanner2", true) . "</td>\n"; echo "</tr>\n<tr>\n"; if (isset($_POST['preview_banners']) && $sitebanner2) { if (isset($_COOKIE[COOKIE_PREFIX . 'admin']) && md5($_COOKIE[COOKIE_PREFIX . 'admin']) == $userdata['user_admin_password'] || md5(md5($admin_password)) == $userdata['user_admin_password']) { eval("?><td class='tbl'>" . $sitebanner2 . "</td><?php "); echo "</tr>\n<tr>\n"; } } if ((!isset($_COOKIE[COOKIE_PREFIX . 'admin']) || md5($_COOKIE[COOKIE_PREFIX . 'admin']) != $userdata['user_admin_password']) && (!isset($admin_password) || md5(md5($admin_password)) != $userdata['user_admin_password'])) { echo "<td class='tbl'>" . $locale['853'] . " <input type='password' name='admin_password' value='" . $admin_password . "' class='textbox' style='width:150px;' /></td>\n"; echo "</tr>\n<tr>\n"; }
echo "<td width='50%' class='tbl'><input type='text' name='siteemail' value='" . $settings2['siteemail'] . "' maxlength='128' class='textbox' style='width:230px;' /></td>\n"; echo "</tr>\n<tr>\n"; echo "<td width='50%' class='tbl'>" . $locale['406'] . "</td>\n"; echo "<td width='50%' class='tbl'><input type='text' name='username' value='" . $settings2['siteusername'] . "' maxlength='32' class='textbox' style='width:230px;' /></td>\n"; echo "</tr>\n<tr>\n"; echo "<td valign='top' width='50%' class='tbl'>" . $locale['407'] . "<br /><span class='small2'>" . $locale['408'] . "</span></td>\n"; echo "<td width='50%' class='tbl'><textarea name='intro' cols='50' rows='6' class='textbox' style='width:230px;'>" . phpentities(stripslashes($settings2['siteintro'])) . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td valign='top' width='50%' class='tbl'>" . $locale['409'] . "</td>\n"; echo "<td width='50%' class='tbl'><textarea name='description' cols='50' rows='6' class='textbox' style='width:230px;'>" . $settings2['description'] . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td valign='top' width='50%' class='tbl'>" . $locale['410'] . "<br /><span class='small2'>" . $locale['411'] . "</span></td>\n"; echo "<td width='50%' class='tbl'><textarea name='keywords' cols='50' rows='6' class='textbox' style='width:230px;'>" . $settings2['keywords'] . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td valign='top' width='50%' class='tbl'>" . $locale['412'] . "</td>\n"; echo "<td width='50%' class='tbl'><textarea name='footer' cols='50' rows='6' class='textbox' style='width:230px;'>" . phpentities(stripslashes($settings2['footer'])) . "</textarea></td>\n"; echo "</tr>\n<tr>\n"; echo "<td valign='top' class='tbl'>" . $locale['413'] . "</td>\n"; echo "<td width='50%' class='tbl'><input type='text' name='opening_page' value='" . $settings2['opening_page'] . "' maxlength='100' class='textbox' style='width:200px;' /></td>\n"; echo "</tr>\n<tr>\n"; echo "<td width='50%' class='tbl'>" . $locale['414'] . "</td>\n"; echo "<td width='50%' class='tbl'><select name='news_style' class='textbox'>\n"; echo "<option value='0'" . ($settings2['news_style'] == 0 ? " selected='selected'" : "") . ">" . $locale['415'] . "</option>\n"; echo "<option value='1'" . ($settings2['news_style'] == 1 ? " selected='selected'" : "") . ">" . $locale['416'] . "</option>\n"; echo "</select></td>\n"; echo "</tr>\n<tr>\n"; echo "<td width='50%' class='tbl'>" . $locale['417'] . "</td>\n"; echo "<td width='50%' class='tbl'><select name='localeset' class='textbox'>\n"; echo makefileopts($locale_files, $settings2['locale']) . "\n"; echo "</select></td>\n"; echo "</tr>\n<tr>\n";
if ($row3 = dbarray($query3)) { $report_linky = '<a href="/blog/vis.php?bp_id=' . $row3['bp_id'] . '">Link</a>'; } } elseif ($row1['report_type'] == 'message_id') { $report_linky = 'Næ'; } echo '<tr><td style="border: 1px solid black; margin: 1px; padding: 1px;">' . $row1['report_type'] . '</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">' . showdate('forumdate', $row1['report_timestamp']) . '</td><td style="border: 1px solid black; margin: 1px; padding: 1px;"><a href="/profile.php?lookup=' . $row1['report_uid'] . '">' . $row1['report_uid'] . '</a></td><td style="border: 1px solid black; margin: 1px; padding: 1px;">' . parseubb($row1['report_content']) . '</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">' . $report_linky . '</td><td style="border: 1px solid black; margin: 1px; padding: 1px;"><form method="post" action="/report.php?action=zap"><input type="hidden" name="report_id" value="' . $row1['report_id'] . '"><input type="submit" value="Zap" /></form></td></tr>'; } echo '</table>'; echo makepagenav($_GET['start1'], 20, dbrows(dbquery('SELECT report_zap FROM ' . DB_PREFIX . 'reports WHERE report_zap < 1')), 3, '/reports.php?start2=' . $start2 . '&', 'start1'); closetable(); opentable('Zappede'); $query1 = dbquery('SELECT * FROM ' . DB_PREFIX . 'reports WHERE report_zap > 0' . (!iSUPERADMIN ? ' AND report_type != "message_id"' : '') . ' ORDER BY report_id DESC LIMIT ' . $start2 . ', 20'); echo '<table style="width: 99%;"><tr><td style="border: 1px solid black; margin: 1px; padding: 1px;">Type</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">Tid</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">Snitch</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">Grund</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">Zapper</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">Zapped</td><td style="border: 1px solid black; margin: 1px; padding: 1px;">Link</td></tr>'; while ($row1 = dbarray($query1)) { $row1['report_content'] = preg_replace('/\\[(\\/){0,1}img\\]/', '[$1url]', phpentities($row1['report_content'])); $report_linky = 'Væk'; if ($row1['report_type'] == 'post_id') { $query3 = dbquery('SELECT post_id, thread_id FROM ' . DB_POSTS . ' WHERE post_id = ' . $row1['report_subject']); if ($row3 = dbarray($query3)) { $report_linky = '<a href="/forum/viewthread.php?thread_id=' . $row3['thread_id'] . '&post_id=' . $row3['post_id'] . '#post_' . $row3['post_id'] . '">Link</a>'; } } elseif ($row1['report_type'] == 'comment_id') { $query3 = dbquery('SELECT comment_id, comment_item_id, comment_type FROM ' . DB_COMMENTS . ' WHERE comment_id = ' . $row1['report_subject']); if ($row3 = dbarray($query3)) { if ($row3['comment_type'] == 'N') { $report_linky = '<a href="/news.php?readmore=' . $row3['comment_item_id'] . '#c' . $row3['comment_id'] . '">Link</a>'; } elseif ($row3['comment_type'] == 'A') { $report_linky = '<a href="/articles.php?article_id=' . $row3['comment_item_id'] . '#c' . $row3['comment_id'] . '">Link</a>'; } }
closetable(); } if (isset($_GET['action']) && $_GET['action'] == "edit" && (isset($_POST['article_id']) && isnum($_POST['article_id'])) || isset($_GET['article_id']) && isnum($_GET['article_id'])) { $id = ""; if (isset($_POST['article_id']) && isnum($_POST['article_id'])) { $id = $_POST['article_id']; } elseif (isset($_GET['article_id']) && isnum($_GET['article_id'])) { $id = $_GET['article_id']; } $result = dbquery("SELECT article_cat, article_subject, article_snippet, article_article, article_draft, article_breaks, article_allow_comments, article_allow_ratings FROM " . DB_ARTICLES . " WHERE article_id='" . $id . "'"); if (dbrows($result)) { $data = dbarray($result); $article_cat = $data['article_cat']; $subject = $data['article_subject']; $body = phpentities(stripslashes($data['article_snippet'])); $body2 = phpentities(stripslashes($data['article_article'])); $draft = $data['article_draft'] ? " checked='checked'" : ""; $breaks = $data['article_breaks'] == "y" ? " checked='checked'" : ""; $comments = $data['article_allow_comments'] ? " checked='checked'" : ""; $ratings = $data['article_allow_ratings'] ? " checked='checked'" : ""; } else { redirect(FUSION_SELF . $aidlink); } } if (isset($_POST['article_id']) && isnum($_POST['article_id']) || isset($_GET['article_id']) && isnum($_GET['article_id'])) { opentable($locale['401']); } else { if (!isset($_POST['preview'])) { $article_cat = ''; $subject = ""; $body = "";
$year1 = 60 * 60 * 24 * 30 * 12; $year2 = 60 * 60 * 24 * 30 * 24; if (isset($_POST['preview'])) { $sel_w1 = $_POST['msg_lavi'] == $week1 ? " selected" : ""; $sel_w2 = $_POST['msg_lavi'] == $week2 ? " selected" : ""; $sel_w3 = $_POST['msg_lavi'] == $week3 ? " selected" : ""; $sel_m1 = $_POST['msg_lavi'] == $monat1 ? " selected" : ""; $sel_m2 = $_POST['msg_lavi'] == $monat2 ? " selected" : ""; $sel_m3 = $_POST['msg_lavi'] == $monat3 ? " selected" : ""; $sel_m4 = $_POST['msg_lavi'] == $monat4 ? " selected" : ""; $sel_m6 = $_POST['msg_lavi'] == $monat6 ? " selected" : ""; $sel_m8 = $_POST['msg_lavi'] == $monat8 ? " selected" : ""; $sel_y1 = $_POST['msg_lavi'] == $year1 ? " selected" : ""; $sel_y2 = $_POST['msg_lavi'] == $year2 ? " selected" : ""; $subject = phpentities(stripslash($_POST['subject'])); $content = phpentities(stripslash($_POST['content'])); $plain = $_POST['format'] == "plain" ? " checked" : ""; $html = $_POST['format'] == "html" ? " checked" : ""; if ($_POST['format'] == "plain") { $contentpreview = nl2br(stripslash($_POST['content'])); } else { $contentpreview = stripslash($_POST['content']); } opentable($subject); echo "{$contentpreview}\n"; closetable(); tablebreak(); } else { $sel_w1 = ""; $sel_w2 = ""; $sel_w3 = "";