function writeData() { $user = new flexibleAccess(); $userID = $user->userID; $link = $user->dbConn; $username = $user->get_property('username'); $tweet = $_POST['tweet']; $pic = $_FILES['picture']["tmp_name"]; $b = file_get_contents($pic); $ext = getimagesize($pic); $date = date("Y-m-d H:i:s"); $type = $ext["mime"]; $img_binary = mysqli_real_escape_string($link, $b); $user->query("insert into tweets(userID, username,mention,date,picture,ext) values(" . $userID . "," . $username . ",'{$tweet}','{$date}','{$img_binary}','{$type}')"); }
<li id="contribution"> <a href="submit.php">投稿ページ</a> </li> <?php require_once 'access.class.php'; $user = new flexibleAccess(); if (!$user->is_loaded()) { echo '<p>ログインするかユーザ登録をしてください</p>'; echo '<li id="user_statue"><a href="loginpage.php">login</a></li></ul></div>'; } else { //User is loaded echo '<li id="user_statue"><a href="loginpage.php?logout=1">logout</a></li>'; echo '<li id="user_statue2">' . $user->get_property('username') . '</li></ul></div>'; echo '<div id="tweet"><ul id="tweets">'; $userID = $user->get_property('userID'); $readtweet = $user->query("select * from tweets"); while ($data = mysqli_fetch_array($readtweet)) { $img = base64_encode($data[5]); echo '<li id="parent"><p id="username"> ' . $data[2] . ' </p> <p id="date"> ' . $data[3] . '</p><p id="mention"> ' . $data[4] . '</p>'; if (!empty($data[6])) { echo '<div id="picture"><img src="data:/' . $data[6] . ';base64,' . $img . '" /></div>'; } $result = $user->query("SELECT * FROM " . $userID . "_fav_list WHERE tweetID = '{$data['0']}'"); $count = mysqli_num_rows($result); if (!$count) { echo ' <div id="Fav' . $data[0] . '" class="off_fav" onClick="plusFav(' . $data[0] . ')">
<?php include 'config/config.php'; require_once $_SERVER['DOCUMENT_ROOT'] . '/lib/access.class.php'; $user = new flexibleAccess('', $settings); if (USE_ACCESS_KEYS == TRUE) { if (!in_array($_GET['akey'], $access_keys) || empty($access_keys) || !$user->is_loaded()) { die('Access Denied!'); } $_GET['akey'] = strip_tags(preg_replace("/[^a-zA-Z0-9\\._-]/", '', $_GET['akey'])); if (!in_array($_GET['akey'], $access_keys) || !$user->is_loaded()) { die('Access Denied!'); } } if ($user->get_property('upload_img') != 1) { die('თქვენ არ გაქვთ წვდომა ფოტოებთან. დამატებითი ინფორმაციისთვის მიმართეთ ვებ-გვერდის ადმინისტრაციას.'); } $_SESSION['RF']["verify"] = "RESPONSIVEfilemanager"; if (isset($_POST['submit'])) { include 'upload.php'; } else { include 'include/utils.php'; if (isset($_GET['fldr']) && !empty($_GET['fldr']) && strpos($_GET['fldr'], '../') === FALSE && strpos($_GET['fldr'], './') === FALSE) { $subdir = urldecode(trim(strip_tags($_GET['fldr']), "/") . "/"); } else { $subdir = ''; } if ($subdir == "") { if (!empty($_COOKIE['last_position']) && strpos($_COOKIE['last_position'], '.') === FALSE) { $subdir = trim($_COOKIE['last_position']); }
require_once '../sys/functions.cms.php'; if (count($_GET) > 0 or count($_POST) > 0) { require_once '../sys/get.control.php'; } require_once '../lib/access.class.php'; require_once '../lib/mail.class.php'; require_once '../lib/dbsql.class.php'; require_once '../lib/simple_html_dom.php'; require_once '../lib/dbug.class.php'; require_once '../lib/markhtml.php'; require_once '../lib/osrLogs.php'; $user = new flexibleAccess('', $settings); $DB = new DB_Engine('mysql', $settings['dbHost'], $settings['dbUser'], $settings['dbPass'], $settings['dbName']); $DB->prefix = $settings['dbPrefix']; $DB->show_err = true; if ($user->get_property('status') == 1) { header('Location:/?logout=1'); } $sql = "SELECT `#__setting`.* FROM `#__setting`"; $tmp_registry = $DB->getAll($sql); foreach ($tmp_registry as $tmp) { $registry[$tmp['name']] = $tmp['value']; } $LOG = new osrLogs($registry, $DB); if (!isset($_COOKIE['showOrHide'])) { setcookie('showOrHide', 0); } if ($_GET['logout'] == 1) { $user->logout('http://' . $_SERVER['HTTP_HOST'] . $_SERVER['PHP_SELF']); } if (!$user->is_loaded()) {
<head> <link rel="stylesheet" type="text/css" href="SNS.css" media="all"> </head> <body> <?php require_once 'access.class.php'; $user = new flexibleAccess(); if (!$user->is_loaded()) { echo '<p id="asaa"><a href="loginpage.php">login</a></p>'; } else { echo '<div id="contents"><form action="writedata.php" enctype="multipart/form-data" method="post"> <div>tweet:<input type="text" name="tweet"><input type="file" name="picture"></div><input type="submit" value="投稿"></form></div>'; echo '<p id="asaa"><a href="loginpage.php?logout=1">logout</a></p>'; echo '<h1 id="asa">' . $user->get_property('username') . 'としてログイン中</h1>'; } ?> </body>