Esempio n. 1
0
<?php

$_GET['id'] = isset($_GET['id']) ? intval($_GET['id']) : false;
//ดึงข้อมูลกระทู้
$db->connectdb(DB_NAME, DB_USERNAME, DB_PASSWORD);
$VIEWBOARD = $db->fetch($db->select_query("SELECT * FROM " . TB_WEBBOARD . " WHERE id = '" . $_GET['id'] . "' "));
$db->closedb();
//กรณีไม่มีรายการกระทู้
NotTrueAlert($VIEWBOARD['id'], "3", "ไม่มีรายการกระทู้ที่ท่านต้องการเข้าชม");
$PostComplete = false;
//Post Action
if (isset($_GET['action']) && $_GET['action'] == "comment") {
    //Check data
    if (!$_POST['topic'] or !$_POST['detail'] or !$_POST['post_name'] or !$_GET['id']) {
        echo "<script language='javascript'>";
        echo "alert('ท่านกรอกข้อมูลไม่ครบถ้วน กรุณาตรวจสอบ')";
        echo "</script>";
        echo "<script language='javascript'>javascript:history.go(-1)</script>";
        exit;
    }
    if (USE_CAPCHA) {
        if ($_SESSION['security_code'] != $_POST['security_code'] or empty($_POST['security_code'])) {
            echo "<script language='javascript'>";
            echo "alert('!!!! กรุณากรอกโค๊ดให้ถูกต้อง !!!!')";
            echo "</script>";
            echo "<script language='javascript'>javascript:history.go(-1)</script>";
            exit;
        }
    }
    //เช็คแบนโฆษณา
    // checkban($_POST[topic]);
Esempio n. 2
0
$VIEWBOARDMENT = $db->fetch($db->select_query("SELECT * FROM " . TB_WEBBOARD_COMMENT . " WHERE topic_id = '" . $_GET['id'] . "' "));
$db->closedb();
$db->connectdb(DB_NAME, DB_USERNAME, DB_PASSWORD);
$boardcategory = $db->fetch($db->select_query("SELECT * FROM " . TB_WEBBOARD_CAT . " WHERE id = '" . $VIEWBOARD['category'] . "' "));
$db->closedb();
if ($_SESSION['login_true']) {
    CheckWebboard($login_true, $_SESSION['pwd_login'], $VIEWBOARD['category']);
} else {
    if ($_SESSION['admin_user']) {
        CheckWebboard($admin_user, $admin_pwd, $VIEWBOARD['category']);
    } else {
        CheckWebboard('', '', $VIEWBOARD['category']);
    }
}
//�ó��������¡�á�з��
NotTrueAlert($VIEWBOARD['id'], "3", "" . _WEBBOARD_READ_NO_TOPIC . "");
//�ʴ��š�з��
$db->connectdb(DB_NAME, DB_USERNAME, DB_PASSWORD);
$limit = 9;
$SUMPAGE = $db->num_rows(TB_WEBBOARD_COMMENT, "id", "topic_id = '" . $_GET['id'] . "'");
if (empty($page)) {
    $page = 1;
}
$rt = $SUMPAGE % $limit;
$totalpage = $rt != 1 ? floor($SUMPAGE / $limit) + 1 : floor($SUMPAGE / $limit);
$goto = ($page - 1) * $limit;
$validate = false;
if (!empty($login_true) || !empty($admin_user)) {
    $validate = true;
}
if ($action == "comment" && $validate === true) {