mirror of
https://github.com/kleeja-official/kleeja.git
synced 2025-12-14 20:19:43 +01:00
1349 lines
36 KiB
PHP
Executable File
1349 lines
36 KiB
PHP
Executable File
<?php
|
|
/**
|
|
*
|
|
* @package Kleeja
|
|
* @copyright (c) 2007 Kleeja.net
|
|
* @license ./docs/license.txt
|
|
*
|
|
*/
|
|
|
|
|
|
//no for directly open
|
|
if (! defined('IN_COMMON'))
|
|
{
|
|
exit();
|
|
}
|
|
|
|
|
|
|
|
|
|
/**
|
|
* Detect a bot activity an record it
|
|
*/
|
|
function kleeja_detecting_bots()
|
|
{
|
|
global $SQL, $dbprefix, $config;
|
|
|
|
// get information ..
|
|
$agent = $SQL->escape($_SERVER['HTTP_USER_AGENT'] ?? '');
|
|
$time = time();
|
|
|
|
//for stats
|
|
if (strpos($agent, 'Google') !== false)
|
|
{
|
|
$update_query = [
|
|
'UPDATE' => "{$dbprefix}stats",
|
|
'SET' => "last_google=$time, google_num=google_num+1"
|
|
];
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_update_google_lst_num', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
$SQL->build($update_query);
|
|
}
|
|
elseif (strpos($agent, 'Bing') !== false)
|
|
{
|
|
$update_query = [
|
|
'UPDATE' => "{$dbprefix}stats",
|
|
'SET' => "last_bing=$time, bing_num=bing_num+1"
|
|
];
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_update_bing_lst_num', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
$SQL->build($update_query);
|
|
}
|
|
|
|
//put another bots as a hook if you want !
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('anotherbots_onlline_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
//clean online table
|
|
if ((time() - $config['last_online_time_update']) >= 3600)
|
|
{
|
|
//what to add here ?
|
|
//update last_online_time_update
|
|
update_config('last_online_time_update', time());
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('KleejaOnline_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
}
|
|
|
|
|
|
/**
|
|
* Ban system
|
|
*/
|
|
function get_ban()
|
|
{
|
|
global $banss, $lang, $SQL, $usrcp;
|
|
|
|
//visitor ip now
|
|
$ip = get_ip();
|
|
$username = $usrcp->name();
|
|
|
|
//now .. loop for banned ips
|
|
if (is_array($banss) && (! empty($ip) || ! empty($username)))
|
|
{
|
|
foreach ($banss as $banned_item)
|
|
{
|
|
$banned_item = trim($banned_item);
|
|
|
|
if (empty($banned_item))
|
|
{
|
|
continue;
|
|
}
|
|
|
|
|
|
$is_banned = false;
|
|
|
|
//first .. replace all * with something good .
|
|
|
|
if (! empty($ip) && strpos($banned_item, '.') !== false)
|
|
{
|
|
$replace_it = str_replace('*', '([0-9]{1,3})', $banned_item);
|
|
$replace_it = str_replace('.', '\.', $replace_it);
|
|
|
|
$is_banned = $ip == $banned_item || @preg_match('/' . preg_quote($replace_it, '/') . '/i', $ip);
|
|
}
|
|
elseif (! empty($username) && $banned_item == $username)
|
|
{
|
|
$is_banned = true;
|
|
}
|
|
|
|
if ($is_banned)
|
|
{
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('banned_get_ban_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
//
|
|
// if the request is an image
|
|
//
|
|
if (
|
|
(defined('IN_DOWNLOAD') && (ig('img') || ig('thmb') || ig('thmbf') || ig('imgf')))
|
|
|| g('go', 'str', '') == 'queue'
|
|
) {
|
|
@$SQL->close();
|
|
$fullname = 'images/banned_user.jpg';
|
|
$filesize = filesize($fullname);
|
|
header("Content-length: $filesize");
|
|
header('Content-type: image/jpg');
|
|
readfile($fullname);
|
|
|
|
exit;
|
|
}
|
|
else
|
|
{
|
|
kleeja_info($lang['U_R_BANNED'], $lang['U_R_BANNED'], true);
|
|
}
|
|
}
|
|
}
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('get_ban_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
}
|
|
|
|
|
|
/**
|
|
* Check if the given plugin installed ?
|
|
* @param $plugin_name
|
|
* @return bool
|
|
*/
|
|
function kleeja_plugin_exists($plugin_name)
|
|
{
|
|
global $SQL, $dbprefix;
|
|
|
|
$query = [
|
|
'SELECT' => 'p.plg_id',
|
|
'FROM' => "{$dbprefix}plugins p",
|
|
'WHERE' => "p.plg_name = '" . $SQL->escape($plugin_name) . "'",
|
|
];
|
|
|
|
$result = $SQL->build($query);
|
|
$num = $SQL->num_rows($result);
|
|
|
|
if ($num)
|
|
{
|
|
$d = $SQL->fetch($result);
|
|
$SQL->freeresult();
|
|
return $d['plg_id'];
|
|
}
|
|
|
|
return false;
|
|
}
|
|
|
|
/**
|
|
* Return current page url
|
|
*/
|
|
function kleeja_get_page()
|
|
{
|
|
if (isset($_SERVER['REQUEST_URI']))
|
|
{
|
|
$location = $_SERVER['REQUEST_URI'];
|
|
}
|
|
elseif (isset($_ENV['REQUEST_URI']))
|
|
{
|
|
$location = $_ENV['REQUEST_URI'];
|
|
}
|
|
else
|
|
{
|
|
if (isset($_SERVER['PATH_INFO']))
|
|
{
|
|
$location = $_SERVER['PATH_INFO'];
|
|
}
|
|
elseif (isset($_ENV['PATH_INFO']))
|
|
{
|
|
$location = $_SERVER['PATH_INFO'];
|
|
}
|
|
elseif (isset($_ENV['PHP_SELF']))
|
|
{
|
|
$location = $_ENV['PHP_SELF'];
|
|
}
|
|
else
|
|
{
|
|
$location = $_SERVER['PHP_SELF'];
|
|
}
|
|
|
|
if (isset($_SERVER['QUERY_STRING']))
|
|
{
|
|
$location .= '?' . $_SERVER['QUERY_STRING'];
|
|
}
|
|
elseif (isset($_ENV['QUERY_STRING']))
|
|
{
|
|
$location = '?' . $_ENV['QUERY_STRING'];
|
|
}
|
|
}
|
|
|
|
$return = str_replace(['&'], ['&'], htmlspecialchars($location));
|
|
return $return;
|
|
}
|
|
|
|
/**
|
|
* Fix email string to be UTF8
|
|
* @param $text
|
|
* @return string
|
|
*/
|
|
function _sm_mk_utf8($text)
|
|
{
|
|
return '=?UTF-8?B?' . base64_encode($text) . '?=';
|
|
}
|
|
|
|
/**
|
|
* Send an email message
|
|
* @param string $to
|
|
* @param string $body
|
|
* @param string $subject
|
|
* @param string $fromAddress
|
|
* @param string $fromName
|
|
* @param string $bcc
|
|
* @return bool
|
|
*/
|
|
function send_mail($to, $body, $subject, $fromAddress, $fromName, $bcc = '')
|
|
{
|
|
$eol = "\r\n";
|
|
$headers = '';
|
|
$headers .= 'From: ' . _sm_mk_utf8(trim(preg_replace('#[\n\r:]+#s', '', $fromName))) . ' <' . trim(preg_replace('#[\n\r:]+#s', '', $fromAddress)) . '>' . $eol;
|
|
$headers .= 'MIME-Version: 1.0' . $eol;
|
|
$headers .= 'Content-transfer-encoding: 8bit' . $eol; // 7bit
|
|
$headers .= 'Content-Type: text/plain; charset=utf-8' . $eol; // format=flowed
|
|
$headers .= 'X-Mailer: Kleeja Mailer' . $eol;
|
|
$headers .= 'Reply-To: ' . _sm_mk_utf8(trim(preg_replace('#[\n\r:]+#s', '', $fromName))) . ' <' . trim(preg_replace('#[\n\r:]+#s', '', $fromAddress)) . '>' . $eol;
|
|
|
|
if (! empty($bcc))
|
|
{
|
|
$headers .= 'Bcc: ' . trim(preg_replace('#[\n\r:]+#s', '', $bcc)) . $eol;
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('kleeja_send_mail', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$body = str_replace(["\n", "\0"], ["\r\n", ''], $body);
|
|
|
|
// Change the line breaks used in the headers according to OS
|
|
if (strtoupper(substr(PHP_OS, 0, 3)) != 'WIN' && version_compare(PHP_VERSION, '8.0.0', '<'))
|
|
{
|
|
$headers = str_replace("\r\n", "\n", $headers);
|
|
}
|
|
|
|
$mail_sent = @mail(trim(preg_replace('#[\n\r]+#s', '', $to)), _sm_mk_utf8(trim(preg_replace('#[\n\r]+#s', '', $subject))), $body, $headers);
|
|
|
|
return $mail_sent;
|
|
}
|
|
|
|
/**
|
|
* Delete cache
|
|
* @param string $name
|
|
* @param bool $all if true, all cache in cache folder will be deleted
|
|
* @return bool
|
|
*/
|
|
function delete_cache($name, $all=false)
|
|
{
|
|
//Those files are exceptions and not for deletion
|
|
$exceptions = ['.htaccess', 'index.html', 'php.ini', 'web.config'];
|
|
|
|
//ignore kleeja_log in dev stage.
|
|
if (defined('DEV_STAGE'))
|
|
{
|
|
array_push($exceptions, 'kleeja_log.log');
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('delete_cache_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
//handle array of cached files
|
|
if (is_array($name))
|
|
{
|
|
foreach ($name as $n)
|
|
{
|
|
delete_cache($n, false);
|
|
}
|
|
return true;
|
|
}
|
|
|
|
$path_to_cache = PATH . 'cache';
|
|
|
|
if ($all)
|
|
{
|
|
$del = true;
|
|
|
|
if ($dh = @opendir($path_to_cache))
|
|
{
|
|
while (($file = @readdir($dh)) !== false)
|
|
{
|
|
if ($file != '.' && $file != '..' && ! in_array($file, $exceptions))
|
|
{
|
|
kleeja_unlink($path_to_cache . '/' . $file, true);
|
|
}
|
|
}
|
|
@closedir($dh);
|
|
}
|
|
}
|
|
else
|
|
{
|
|
if (strpos($name, 'tpl_') !== false && strpos($name, '.html') !== false)
|
|
{
|
|
$name = str_replace('.html', '', $name);
|
|
}
|
|
|
|
$del = true;
|
|
$name = str_replace('.php', '', $name) . '.php';
|
|
|
|
if (file_exists($path_to_cache . '/' . $name))
|
|
{
|
|
$del = kleeja_unlink($path_to_cache . '/' . $name, true);
|
|
}
|
|
}
|
|
|
|
return $del;
|
|
}
|
|
|
|
/**
|
|
* Try delete files or at least change its name.
|
|
* for those who have dirty hosting
|
|
* @param string $filePath
|
|
* @param bool $cache_file
|
|
* @return bool
|
|
*/
|
|
function kleeja_unlink($filePath, $cache_file = false)
|
|
{
|
|
$return = false;
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('kleeja_unlink_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
|
|
if ($return)
|
|
{
|
|
return true;
|
|
}
|
|
|
|
//99.9% who use this
|
|
if (function_exists('unlink'))
|
|
{
|
|
if (is_dir($filePath))
|
|
{
|
|
$it = new RecursiveDirectoryIterator($filePath, RecursiveDirectoryIterator::SKIP_DOTS);
|
|
$files = new RecursiveIteratorIterator($it, RecursiveIteratorIterator::CHILD_FIRST);
|
|
|
|
foreach ($files as $file)
|
|
{
|
|
if ($file->isDir())
|
|
{
|
|
rmdir($file->getPathname());
|
|
}
|
|
else
|
|
{
|
|
unlink($file->getPathname());
|
|
}
|
|
}
|
|
return rmdir($filePath);
|
|
}
|
|
else
|
|
{
|
|
return unlink($filePath);
|
|
}
|
|
}
|
|
//just rename cache file if there is new thing
|
|
elseif (function_exists('rename') && $cache_file)
|
|
{
|
|
$new_name = substr($filePath, 0, strrpos($filePath, '/') + 1) . 'old_' . md5($filePath . time()) . '.php';
|
|
return rename($filePath, $new_name);
|
|
}
|
|
|
|
return false;
|
|
}
|
|
|
|
/**
|
|
* Get mime header
|
|
* @param string $ext file extension
|
|
* @return string mime
|
|
*/
|
|
function get_mime_for_header($ext)
|
|
{
|
|
$mime_types = include __DIR__ . '/mime_types.php';
|
|
|
|
//return mime
|
|
$ext = strtolower($ext);
|
|
|
|
if (in_array($ext, array_keys($mime_types)))
|
|
{
|
|
$return = $mime_types[$ext];
|
|
}
|
|
else
|
|
{
|
|
$return = 'application/force-download';
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('get_mime_for_header_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
return $return;
|
|
}
|
|
|
|
|
|
/**
|
|
* Include language file
|
|
* @param string $name language filename, 'acp, common..'
|
|
* @param string $folder
|
|
* @return bool
|
|
*/
|
|
function get_lang($name, $folder = '')
|
|
{
|
|
global $config, $lang;
|
|
|
|
if (is_null($lang) || ! is_array($lang))
|
|
{
|
|
$lang = [];
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('get_lang_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$name = str_replace('..', '', $name);
|
|
|
|
if ($folder != '')
|
|
{
|
|
$folder = str_replace(['..', '/'], '', $folder);
|
|
$name = $folder . '/' . $name;
|
|
}
|
|
|
|
$path = PATH . 'lang/' . $config['language'] . '/' . str_replace('.php', '', $name) . '.php';
|
|
|
|
$lang_to_add = @include_once $path;
|
|
|
|
if ($lang_to_add === false)
|
|
{
|
|
//fallback to English
|
|
$path_en = PATH . 'lang/en/' . str_replace('.php', '', $name) . '.php';
|
|
$lang_to_add = @include_once $path_en;
|
|
|
|
if ($lang_to_add === false)
|
|
{
|
|
big_error('There is no language file in the current path', 'lang/' . $config['language'] . '/' . str_replace('.php', '', $name) . '.php not found');
|
|
}
|
|
}
|
|
|
|
if (is_array($lang_to_add))
|
|
{
|
|
$lang = array_merge($lang, $lang_to_add);
|
|
}
|
|
|
|
|
|
return true;
|
|
}
|
|
|
|
|
|
/*
|
|
* Get fresh config value
|
|
* some time cache doesn't not work as well, so some important
|
|
* events need fresh version of config values ...
|
|
*/
|
|
function get_config($name)
|
|
{
|
|
global $dbprefix, $SQL, $d_groups, $userinfo;
|
|
|
|
$table = "{$dbprefix}config c";
|
|
|
|
//what if this config is a group-configs related ?
|
|
$group_id_sql = '';
|
|
|
|
if (array_key_exists($name, $d_groups[$userinfo['group_id']]['configs']))
|
|
{
|
|
$table = "{$dbprefix}groups_data c";
|
|
$group_id_sql = ' AND c.group_id=' . $userinfo['group_id'];
|
|
}
|
|
|
|
$query = [
|
|
'SELECT' => 'c.value',
|
|
'FROM' => $table,
|
|
'WHERE' => "c.name = '" . $SQL->escape($name) . "'" . $group_id_sql
|
|
];
|
|
|
|
$result = $SQL->build($query);
|
|
$v = $SQL->fetch($result);
|
|
$return = isset($v['value']) ? $v['value'] : null;
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('get_config_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
return $return;
|
|
}
|
|
|
|
/*
|
|
* Add new config option
|
|
* type: where does your config belone, 0 = system, genetal = has no specifc cat., other = other items.
|
|
* html: the input or radio to let the user type or choose from them, see the database:configs to understand.
|
|
* dynamic: every refresh of the page, the config data will be brought from db, not from the cache !
|
|
* plg_id: if this config belong to plugin .. see devKit.
|
|
*/
|
|
function add_config($name, $value, $order = '0', $html = '', $type = '0', $plg_id = '0', $dynamic = false)
|
|
{
|
|
global $dbprefix, $SQL, $config, $d_groups;
|
|
|
|
if (get_config($name))
|
|
{
|
|
return true;
|
|
}
|
|
|
|
if ($html != '' && $type == '0')
|
|
{
|
|
$type = 'other';
|
|
}
|
|
|
|
if ($type == 'groups')
|
|
{
|
|
//add this option to all groups
|
|
$group_ids = array_keys($d_groups);
|
|
|
|
foreach ($group_ids as $g_id)
|
|
{
|
|
$insert_query = [
|
|
'INSERT' => '`name`, `value`, `group_id`',
|
|
'INTO' => "{$dbprefix}groups_data",
|
|
'VALUES' => "'" . $SQL->escape($name) . "','" . $SQL->escape($value) . "', " . $g_id,
|
|
];
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('insert_sql_add_config_func_groups_data', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($insert_query);
|
|
}
|
|
}
|
|
|
|
$insert_query = [
|
|
'INSERT' => '`name` ,`value` ,`option` ,`display_order`, `type`, `plg_id`, `dynamic`',
|
|
'INTO' => "{$dbprefix}config",
|
|
'VALUES' => "'" . $SQL->escape($name) . "','" . $SQL->escape($value) . "', '" . $SQL->real_escape($html) . "','" . intval($order) . "','" . $SQL->escape($type) . "','" . intval($plg_id) . "','" . ($dynamic ? '1' : '0') . "'",
|
|
];
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('insert_sql_add_config_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($insert_query);
|
|
|
|
if ($SQL->affected())
|
|
{
|
|
delete_cache('data_config');
|
|
$config[$name] = $value;
|
|
return true;
|
|
}
|
|
|
|
return false;
|
|
}
|
|
|
|
/**
|
|
* add an array of new configs
|
|
* @param $configs
|
|
* @return bool
|
|
*/
|
|
function add_config_r($configs)
|
|
{
|
|
if (! is_array($configs))
|
|
{
|
|
return false;
|
|
}
|
|
|
|
//array(name=>array(value=>,order=>,html=>),...);
|
|
foreach ($configs as $n=>$m)
|
|
{
|
|
add_config(
|
|
$n,
|
|
empty($m['value']) ? '' : $m['value'],
|
|
empty($m['order']) ? 0 : $m['order'],
|
|
empty($m['html']) ? '' : $m['html'],
|
|
empty($m['type']) ? 'other' : $m['type'],
|
|
empty($m['plg_id']) ? 0 : $m['plg_id'],
|
|
empty($m['dynamic']) ? false : $m['dynamic']
|
|
);
|
|
}
|
|
|
|
return true;
|
|
}
|
|
|
|
function update_config($name, $value, $escape = true, $group = false)
|
|
{
|
|
global $SQL, $dbprefix, $d_groups, $userinfo, $config;
|
|
|
|
$value = $escape ? $SQL->escape($value) : $value;
|
|
$table = "{$dbprefix}config";
|
|
|
|
//what if this config is a group-configs related ?
|
|
$group_id_sql = '';
|
|
|
|
if (array_key_exists($name, $d_groups[$userinfo['group_id']]['configs']) && $group != false)
|
|
{
|
|
$table = "{$dbprefix}groups_data";
|
|
|
|
if ($group == -1)
|
|
{
|
|
$group_id_sql = ' AND group_id=' . $userinfo['group_id'];
|
|
}
|
|
elseif ($group)
|
|
{
|
|
$group_id_sql = ' AND group_id=' . intval($group);
|
|
}
|
|
}
|
|
|
|
$update_query = [
|
|
'UPDATE' => $table,
|
|
'SET' => "value='" . ($escape ? $SQL->escape($value) : $value) . "'",
|
|
'WHERE' => 'name = "' . $SQL->escape($name) . '"' . $group_id_sql
|
|
];
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('update_sql_update_config_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($update_query);
|
|
|
|
if ($SQL->affected())
|
|
{
|
|
if ($table == "{$dbprefix}groups_data")
|
|
{
|
|
$d_groups[$userinfo['group_id']]['configs'][$name] = $value;
|
|
delete_cache('data_groups');
|
|
return true;
|
|
}
|
|
|
|
$config[$name] = $value;
|
|
delete_cache('data_config');
|
|
return true;
|
|
}
|
|
|
|
return false;
|
|
}
|
|
|
|
// Delete config
|
|
function delete_config($name)
|
|
{
|
|
if (is_array($name))
|
|
{
|
|
foreach ($name as $n)
|
|
{
|
|
delete_config($n);
|
|
}
|
|
|
|
return;
|
|
}
|
|
|
|
global $dbprefix, $SQL, $d_groups, $userinfo;
|
|
|
|
//
|
|
// 'IN' doesnt work here with delete, i dont know why ?
|
|
//
|
|
$delete_query = [
|
|
'DELETE' => "{$dbprefix}config",
|
|
'WHERE' => "name = '" . $SQL->escape($name) . "'"
|
|
];
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('del_sql_delete_config_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($delete_query);
|
|
|
|
if (array_key_exists($name, $d_groups[$userinfo['group_id']]['configs']))
|
|
{
|
|
$delete_query = [
|
|
'DELETE' => "{$dbprefix}groups_data",
|
|
'WHERE' => "name = '" . $SQL->escape($name) . "'"
|
|
];
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('del_sql_delete_config_func2', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($delete_query);
|
|
}
|
|
|
|
if ($SQL->affected())
|
|
{
|
|
return true;
|
|
}
|
|
|
|
return false;
|
|
}
|
|
|
|
//
|
|
//update words to lang
|
|
//
|
|
function update_olang($name, $lang = 'en', $value = '')
|
|
{
|
|
global $SQL, $dbprefix, $olang;
|
|
|
|
|
|
$update_query = [
|
|
'UPDATE' => "{$dbprefix}lang",
|
|
'SET' => "trans='" . $SQL->escape($value) . "'",
|
|
'WHERE' => 'word = "' . $SQL->escape($name) . '", lang_id = "' . $SQL->escape($lang) . '"'
|
|
];
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('update_sql_update_olang_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($update_query);
|
|
|
|
if ($SQL->affected())
|
|
{
|
|
delete_cache('data_lang' . $lang);
|
|
$olang[$name] = htmlspecialchars($value);
|
|
return true;
|
|
}
|
|
|
|
return false;
|
|
}
|
|
|
|
//
|
|
//add words to lang
|
|
//
|
|
function add_olang($words = [], $lang = 'en', $plg_id = '0')
|
|
{
|
|
global $dbprefix, $SQL;
|
|
|
|
foreach ($words as $w=> $t)
|
|
{
|
|
$insert_query = [
|
|
'INSERT' => 'word ,trans ,lang_id, plg_id',
|
|
'INTO' => "{$dbprefix}lang",
|
|
'VALUES' => "'" . $SQL->escape($w) . "','" . $SQL->real_escape($t) . "', '" . $SQL->escape($lang) . "','" . intval($plg_id) . "'",
|
|
];
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('insert_sql_add_olang_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
$SQL->build($insert_query);
|
|
}
|
|
|
|
delete_cache('data_lang' . $lang);
|
|
}
|
|
|
|
//
|
|
//delete words from lang
|
|
//
|
|
/**
|
|
* @param string|array $words language terms to use a in $olang[word] or olang.word
|
|
* @param string $lang langauge of given word
|
|
* @param string $plg_id plugin id associated with these words, optional
|
|
* @return bool
|
|
*/
|
|
function delete_olang($words = '', $lang = 'en', $plg_id = 0)
|
|
{
|
|
global $dbprefix, $SQL;
|
|
|
|
if (is_array($words))
|
|
{
|
|
foreach ($words as $w)
|
|
{
|
|
delete_olang($w, $lang, $plg_id);
|
|
}
|
|
|
|
return true;
|
|
}
|
|
|
|
$delete_query = [
|
|
'DELETE' => "{$dbprefix}lang",
|
|
'WHERE' => empty($words) ? '' : "word = '" . $SQL->escape($words) . "'"
|
|
];
|
|
|
|
|
|
if (! empty($lang))
|
|
{
|
|
if (is_array($lang))
|
|
{
|
|
foreach ($lang as $index=>$current_lang)
|
|
{
|
|
$lang[$index] = $SQL->escape($lang[$index]);
|
|
}
|
|
$lang_sql = "(lang_id = '" . implode("' OR lang_id = '", $lang) . "')";
|
|
}
|
|
else
|
|
{
|
|
$lang_sql = "lang_id = '" . $SQL->escape($lang) . "'";
|
|
}
|
|
|
|
$delete_query['WHERE'] .= (empty($delete_query['WHERE']) ? '' : ' AND ') . $lang_sql;
|
|
}
|
|
|
|
if (! empty($plg_id))
|
|
{
|
|
$delete_query['WHERE'] .= (empty($delete_query['WHERE']) ? '' : ' AND ') . 'plg_id = ' . intval($plg_id);
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('del_sql_delete_olang_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
if (empty($delete_query['WHERE']))
|
|
{
|
|
return false;
|
|
}
|
|
|
|
$SQL->build($delete_query);
|
|
|
|
return $SQL->affected();
|
|
}
|
|
|
|
|
|
/**
|
|
* Administrator sometime needs some files and delete other ..
|
|
* we do that for him .. because he has no time .. :)
|
|
* last_down - $config[del_f_day]
|
|
* @param int $from
|
|
*/
|
|
function klj_clean_old_files($from = 0)
|
|
{
|
|
global $config, $SQL, $stat_last_f_del, $dbprefix;
|
|
|
|
$return = false;
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('klj_clean_old_files_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
if ((int) $config['del_f_day'] <= 0 || $return)
|
|
{
|
|
return;
|
|
}
|
|
|
|
if (! $stat_last_f_del || empty($stat_last_f_del))
|
|
{
|
|
$stat_last_f_del = time();
|
|
}
|
|
|
|
if ((time() - $stat_last_f_del) >= 86400)
|
|
{
|
|
$totaldays = (time() - ($config['del_f_day']*86400));
|
|
$not_today = time() - 86400;
|
|
|
|
//This feature will work only if id_form is not empty or direct !
|
|
$query = [
|
|
'SELECT' => 'f.id, f.last_down, f.name, f.type, f.folder, f.time, f.size, f.id_form',
|
|
'FROM' => "{$dbprefix}files f",
|
|
'WHERE' => "f.last_down < $totaldays AND f.time < $not_today AND f.id > $from AND f.id_form <> '' AND f.id_form <> 'direct'",
|
|
'ORDER BY' => 'f.id ASC',
|
|
'LIMIT' => '20',
|
|
];
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_select_klj_clean_old_files_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$result = $SQL->build($query);
|
|
|
|
$num_of_files_to_delete = $SQL->num_rows($result);
|
|
|
|
if ($num_of_files_to_delete == 0)
|
|
{
|
|
//update $stat_last_f_del !!
|
|
$update_query = [
|
|
'UPDATE' => "{$dbprefix}stats",
|
|
'SET' => "last_f_del ='" . time() . "'",
|
|
];
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_update_lstf_del_date_kcof', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($update_query);
|
|
//delete stats cache
|
|
delete_cache('data_stats');
|
|
update_config('klj_clean_files_from', '0');
|
|
$SQL->freeresult($result);
|
|
return;
|
|
}
|
|
|
|
$last_id_from = $files_num = $imgs_num = $real_num = $sizes = 0;
|
|
$ids = [];
|
|
$ex_ids = [];
|
|
//$ex_types = explode(',', $config['livexts']);
|
|
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('beforewhile_klj_clean_old_files_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
|
|
//phpfalcon plugin
|
|
$exlive_types = explode(',', $config['imagefolderexts']);
|
|
|
|
//delete files
|
|
while ($row=$SQL->fetch_array($result))
|
|
{
|
|
$continue = true;
|
|
$real_num++;
|
|
$last_id_from = $row['id'];
|
|
$is_image = in_array(strtolower(trim($row['type'])), ['gif', 'jpg', 'jpeg', 'bmp', 'png']) ? true : false;
|
|
|
|
/*
|
|
//exceptions
|
|
if(in_array($row['type'], $ex_types) || $config['id_form'] == 'direct')
|
|
{
|
|
$ex_ids[] = $row['id'];
|
|
continue;
|
|
}
|
|
*/
|
|
|
|
//exceptions
|
|
//if($config['id_form'] == 'direct')
|
|
//{
|
|
//$ex_ids[] = $row['id'];
|
|
//move on
|
|
//continue;
|
|
//}
|
|
|
|
//your exepctions
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('while_klj_clean_old_files_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
|
|
|
|
if ($continue)
|
|
{
|
|
//delete from folder ..
|
|
if (file_exists($row['folder'] . '/' . $row['name']))
|
|
{
|
|
@kleeja_unlink($row['folder'] . '/' . $row['name']);
|
|
}
|
|
|
|
//delete thumb
|
|
if (file_exists($row['folder'] . '/thumbs/' . $row['name']))
|
|
{
|
|
@kleeja_unlink($row['folder'] . '/thumbs/' . $row['name']);
|
|
}
|
|
|
|
$ids[] = $row['id'];
|
|
|
|
if ($is_image)
|
|
{
|
|
$imgs_num++;
|
|
}
|
|
else
|
|
{
|
|
$files_num++;
|
|
}
|
|
$sizes += $row['size'];
|
|
}
|
|
}//END WHILE
|
|
|
|
$SQL->freeresult($result);
|
|
|
|
if (sizeof($ex_ids))
|
|
{
|
|
$update_query = [
|
|
'UPDATE' => "{$dbprefix}files",
|
|
'SET' => "last_down = '" . (time() + 2*86400) . "'",
|
|
'WHERE' => 'id IN (' . implode(',', $ex_ids) . ')'
|
|
];
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_update_lstdown_old_files', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
$SQL->build($update_query);
|
|
}
|
|
|
|
if (sizeof($ids))
|
|
{
|
|
$query_del = [
|
|
'DELETE' => "{$dbprefix}files",
|
|
'WHERE' => 'id IN (' . implode(',', $ids) . ')'
|
|
];
|
|
|
|
//update number of stats
|
|
$update_query = [
|
|
'UPDATE' => "{$dbprefix}stats",
|
|
'SET' => "sizes=sizes-$sizes,files=files-$files_num, imgs=imgs-$imgs_num",
|
|
];
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_del_delf_old_files', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($query_del);
|
|
$SQL->build($update_query);
|
|
}
|
|
|
|
update_config('klj_clean_files_from', $last_id_from);
|
|
} //stat_del
|
|
}
|
|
|
|
/**
|
|
* klj_clean_old
|
|
* @param string $table database table
|
|
* @param string|integer $for can be 'all, or a number of days like 30'
|
|
*/
|
|
function klj_clean_old($table, $for = 'all')
|
|
{
|
|
global $SQL, $config, $dbprefix;
|
|
|
|
$days = time() - (3600 * 24 * intval($for));
|
|
|
|
$query = [
|
|
'SELECT' => 'f.id, f.time',
|
|
'FROM' => "`{$dbprefix}" . $table . '` f',
|
|
'ORDER BY' => 'f.id ASC',
|
|
'LIMIT' => '30',
|
|
];
|
|
|
|
if ($for != 'all')
|
|
{
|
|
$query['WHERE'] = "f.time < $days";
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_select_klj_clean_old_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$result = $SQL->build($query);
|
|
$num_to_delete = $SQL->num_rows($result);
|
|
|
|
if ($num_to_delete == 0)
|
|
{
|
|
$t = $table == 'call' ? 'calls' : $table;
|
|
update_config('queue', preg_match('/:del_' . $for . $t . ':/i', '', $config['queue']));
|
|
$SQL->freeresult($result);
|
|
return;
|
|
}
|
|
|
|
$ids = [];
|
|
while ($row=$SQL->fetch_array($result))
|
|
{
|
|
$ids[] = $row['id'];
|
|
}
|
|
|
|
$SQL->freeresult($result);
|
|
|
|
$query_del = [
|
|
'DELETE' => '`' . $dbprefix . $table . '`',
|
|
'WHERE' => 'id IN (' . implode(',', $ids) . ')'
|
|
];
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('qr_del_delf_old_table', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
|
|
$SQL->build($query_del);
|
|
}
|
|
|
|
/**
|
|
* get_ip() for the user
|
|
*/
|
|
function get_ip()
|
|
{
|
|
$ip = '';
|
|
|
|
if (! empty($_SERVER['HTTP_CF_CONNECTING_IP']))
|
|
{
|
|
$ip = $_SERVER['HTTP_CF_CONNECTING_IP'];
|
|
}
|
|
elseif (! empty($_SERVER['REMOTE_ADDR']))
|
|
{
|
|
$ip = $_SERVER['REMOTE_ADDR'];
|
|
}
|
|
|
|
//if IP chain
|
|
if (strpos($ip, ',') !== false)
|
|
{
|
|
$ip = explode(',', $ip);
|
|
$ip = trim($ip[0]);
|
|
}
|
|
|
|
//is it IPv6?
|
|
$ip_v6 = preg_match('/^[0-9a-f]{1,4}:([0-9a-f]{0,4}:){1,6}[0-9a-f]{1,4}$/', $ip);
|
|
|
|
if ($ip_v6)
|
|
{
|
|
//does it IPv4 hide in a IPv6 style
|
|
if (stripos($ip, '::ffff:') === 0)
|
|
{
|
|
$ip = substr($ip, 7);
|
|
}
|
|
}
|
|
|
|
|
|
$return = preg_replace('/[^0-9a-z.:]/i', '', $ip);
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('kleeja_get_ip_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
return $return;
|
|
}
|
|
|
|
|
|
/**
|
|
* Check and verify captcha field after submit
|
|
* @return bool
|
|
*/
|
|
function kleeja_check_captcha()
|
|
{
|
|
global $config;
|
|
|
|
if ((int) $config['enable_captcha'] == 0 && ! defined('IN_REAL_INDEX') && ! defined('IN_ADMIN'))
|
|
{
|
|
return true;
|
|
}
|
|
|
|
|
|
$return = false;
|
|
|
|
if (! empty($_SESSION['klj_sec_code']) && ip('kleeja_code_answer'))
|
|
{
|
|
if ($_SESSION['klj_sec_code'] == trim(p('kleeja_code_answer')))
|
|
{
|
|
unset($_SESSION['klj_sec_code']);
|
|
$return = true;
|
|
}
|
|
}
|
|
|
|
is_array($plugin_run_result = Plugins::getInstance()->run('kleeja_check_captcha_func', get_defined_vars())) ? extract($plugin_run_result) : null; //run hook
|
|
return $return;
|
|
}
|
|
|
|
|
|
/**
|
|
* For logging and testing, enabled only for DEV_STAGE!
|
|
* @param string $text a string to log
|
|
*/
|
|
function kleeja_log($text)
|
|
{
|
|
if (! defined('DEV_STAGE'))
|
|
{
|
|
return;
|
|
}
|
|
|
|
file_put_contents(
|
|
__DIR__ . '/../cache/kleeja_log.log',
|
|
date_format(date_create(), 'Y-m-d h:i:s.ua') . ' | INFO | ' . $text . PHP_EOL,
|
|
FILE_APPEND | LOCK_EX
|
|
);
|
|
}
|
|
|
|
|
|
/**
|
|
* Return the first and last seek of range to be flushed.
|
|
* @param string $range
|
|
* @param $fileSize
|
|
* @return array
|
|
*/
|
|
function kleeja_set_range($range, $fileSize)
|
|
{
|
|
$dash = strpos($range, '-');
|
|
$first = trim(substr($range, 0, $dash));
|
|
$last = trim(substr($range, $dash+1));
|
|
|
|
if (! $first)
|
|
{
|
|
$suffix = $last;
|
|
$last = $fileSize - 1;
|
|
$first = $fileSize - $suffix;
|
|
|
|
if ($first < 0)
|
|
{
|
|
$first = 0;
|
|
}
|
|
}
|
|
else
|
|
{
|
|
if (! $last || $last > $fileSize - 1)
|
|
{
|
|
$last = $fileSize - 1;
|
|
}
|
|
}
|
|
|
|
if ($first > $last)
|
|
{
|
|
//unsatisfiable range
|
|
header('Status: 416 Requested range not satisfiable');
|
|
header("Content-Range: */$fileSize");
|
|
|
|
exit;
|
|
}
|
|
|
|
return [$first, $last];
|
|
}
|
|
|
|
/**
|
|
* Outputs up to $bytes from the file $file to standard output,
|
|
* $buffer_size bytes at a time.
|
|
* @param resource $file
|
|
* @param integer $bytes
|
|
* @param integer $buffer_size
|
|
*/
|
|
function kleeja_buffered_range($file, $bytes, $buffer_size = 1024)
|
|
{
|
|
$bytes_left = $bytes;
|
|
while ($bytes_left > 0 && ! feof($file))
|
|
{
|
|
if ($bytes_left > $buffer_size)
|
|
{
|
|
$bytes_to_read = $buffer_size;
|
|
}
|
|
else
|
|
{
|
|
$bytes_to_read = $bytes_left;
|
|
}
|
|
|
|
$bytes_left -= $bytes_to_read;
|
|
$contents = fread($file, $bytes_to_read);
|
|
echo $contents;
|
|
@flush();
|
|
@ob_flush();
|
|
}
|
|
}
|
|
|
|
/**
|
|
* user_can, used for checking the acl for the current user
|
|
* @param string $acl_name
|
|
* @param int $group_id
|
|
* @return bool
|
|
*/
|
|
function user_can($acl_name, $group_id = 0)
|
|
{
|
|
global $d_groups, $userinfo;
|
|
|
|
if ($group_id == 0)
|
|
{
|
|
$group_id = $userinfo['group_id'];
|
|
}
|
|
|
|
return (bool) $d_groups[$group_id]['acls'][$acl_name];
|
|
}
|
|
|
|
|
|
function ig($name)
|
|
{
|
|
return isset($_GET[$name]);
|
|
}
|
|
|
|
function ip($name)
|
|
{
|
|
return isset($_POST[$name]);
|
|
}
|
|
|
|
function g($name, $type = 'str', $default = '')
|
|
{
|
|
if (isset($_GET[$name]))
|
|
{
|
|
return $type == 'str' ? htmlspecialchars($_GET[$name], ENT_QUOTES) : intval($_GET[$name]);
|
|
}
|
|
|
|
return $type == 'str' ? htmlspecialchars($default, ENT_QUOTES) : intval($default);
|
|
}
|
|
|
|
function p($name, $type = 'str', $default = '')
|
|
{
|
|
if (isset($_POST[$name]))
|
|
{
|
|
return $type == 'str'
|
|
? str_replace(["\r\n", "\r", "\0"], ["\n", "\n", ''], htmlspecialchars(trim($_POST[$name]), ENT_QUOTES))
|
|
: intval($_POST[$name]);
|
|
}
|
|
|
|
|
|
return $type == 'str' ? htmlspecialchars($default) : intval($default);
|
|
}
|
|
|
|
/**
|
|
* add rewrite rules to the serve.php file
|
|
* @param array|string $rules
|
|
* @param string $unique_id useful for the deletion later
|
|
* @return bool
|
|
*/
|
|
function add_to_serve_rules($rules, $unique_id = '')
|
|
{
|
|
if (! file_exists(PATH . 'plugins_rules.php'))
|
|
{
|
|
if (! is_writable(PATH))
|
|
{
|
|
chmod(PATH, K_DIR_CHMOD);
|
|
}
|
|
|
|
file_put_contents(PATH . 'plugins_rules.php', '<?php return [' . PHP_EOL . '];');
|
|
}
|
|
|
|
$current_serve_content = file_get_contents(PATH . 'plugins_rules.php');
|
|
|
|
$rules = is_array($rules) ? implode(PHP_EOL, $rules) : $rules;
|
|
|
|
if (! empty($unique_id))
|
|
{
|
|
$rules = '#start_' . $unique_id . PHP_EOL . $rules . PHP_EOL . '#end_' . $unique_id;
|
|
}
|
|
|
|
$current_serve_content = preg_replace(
|
|
'/return\s{0,4}\[/',
|
|
'return [' . PHP_EOL . $rules,
|
|
$current_serve_content
|
|
);
|
|
|
|
|
|
if (! is_writable(PATH . 'plugins_rules.php'))
|
|
{
|
|
chmod(PATH . 'plugins_rules.php', K_FILE_CHMOD);
|
|
}
|
|
|
|
file_put_contents(PATH . 'plugins_rules.php', $current_serve_content);
|
|
|
|
return true;
|
|
}
|
|
|
|
|
|
/**
|
|
* remove rewrite rules by previously set unique id
|
|
* @param string $unique_id
|
|
* @return bool
|
|
*/
|
|
function remove_from_serve_rules($unique_id)
|
|
{
|
|
$file = PATH . 'plugins_rules.php';
|
|
|
|
$current_serve_content = file_get_contents($file);
|
|
|
|
$new_serve_content = preg_replace(
|
|
'/^#start_' . preg_quote($unique_id) . '.*' . '#end_' . preg_quote($unique_id) . '$/sm',
|
|
'',
|
|
$current_serve_content
|
|
);
|
|
|
|
if ($new_serve_content === $current_serve_content)
|
|
{
|
|
return false;
|
|
}
|
|
|
|
if (! is_writable(PATH . 'plugins_rules.php'))
|
|
{
|
|
chmod(PATH . 'plugins_rules.php', K_FILE_CHMOD);
|
|
}
|
|
|
|
file_put_contents($file, $new_serve_content);
|
|
|
|
return true;
|
|
}
|
|
|
|
/**
|
|
* parse rewrite rule. currently added separately for plugins
|
|
* @param string $regex
|
|
* @param array $args
|
|
* @param bool $is_unicode
|
|
* @return bool
|
|
*/
|
|
function parse_serve_rule($regex, $args, $is_unicode = false)
|
|
{
|
|
$request_uri = urldecode(
|
|
trim(strtok($_SERVER['REQUEST_URI'], '?'), '/')
|
|
);
|
|
|
|
|
|
if (preg_match("/{$regex}/" . ($is_unicode ? 'u' : ''), $request_uri, $matches))
|
|
{
|
|
if (! empty($args))
|
|
{
|
|
parse_str($args, $parsed_args);
|
|
|
|
foreach ($parsed_args as $arg_key => $arg_value)
|
|
{
|
|
if (preg_match('/^\$/', $arg_value))
|
|
{
|
|
$match_number = ltrim($arg_value, '$');
|
|
|
|
if (isset($matches[$match_number]))
|
|
{
|
|
$_GET[$arg_key] = $matches[$match_number];
|
|
}
|
|
}
|
|
else
|
|
{
|
|
$_GET[$arg_key] = $arg_value;
|
|
}
|
|
}
|
|
}
|
|
|
|
return true;
|
|
}
|
|
|
|
return false;
|
|
}
|