app.py 122 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749175017511752175317541755175617571758175917601761176217631764176517661767176817691770177117721773177417751776177717781779178017811782178317841785178617871788178917901791179217931794179517961797179817991800180118021803180418051806180718081809181018111812181318141815181618171818181918201821182218231824182518261827182818291830183118321833183418351836183718381839184018411842184318441845184618471848184918501851185218531854185518561857185818591860186118621863186418651866186718681869187018711872187318741875187618771878187918801881188218831884188518861887188818891890189118921893189418951896189718981899190019011902190319041905190619071908190919101911191219131914191519161917191819191920192119221923192419251926192719281929193019311932193319341935193619371938193919401941194219431944194519461947194819491950195119521953195419551956195719581959196019611962196319641965196619671968196919701971197219731974197519761977197819791980198119821983198419851986198719881989199019911992199319941995199619971998199920002001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242025202620272028202920302031203220332034203520362037203820392040204120422043204420452046204720482049205020512052205320542055205620572058205920602061206220632064206520662067206820692070207120722073207420752076207720782079208020812082208320842085208620872088208920902091209220932094209520962097209820992100210121022103210421052106210721082109211021112112211321142115211621172118211921202121212221232124212521262127212821292130213121322133213421352136213721382139214021412142214321442145214621472148214921502151215221532154215521562157215821592160216121622163216421652166216721682169217021712172217321742175217621772178217921802181218221832184218521862187218821892190219121922193219421952196219721982199220022012202220322042205220622072208220922102211221222132214221522162217221822192220222122222223222422252226222722282229223022312232223322342235223622372238223922402241224222432244224522462247224822492250225122522253225422552256225722582259226022612262226322642265226622672268226922702271227222732274227522762277227822792280228122822283228422852286228722882289
  1. from flask import Flask, request, session, render_template, send_file
  2. from werkzeug import secure_filename
  3. app = Flask(__name__)
  4. from urllib import parse
  5. import json
  6. import pymysql
  7. import time
  8. import re
  9. import bcrypt
  10. import os
  11. import difflib
  12. json_data = open('set.json').read()
  13. data = json.loads(json_data)
  14. print('오픈나무 시작 포트 : ' + data['port'])
  15. import logging
  16. log = logging.getLogger('werkzeug')
  17. log.setLevel(logging.ERROR)
  18. app.config['MAX_CONTENT_LENGTH'] = int(data['upload']) * 1024 * 1024
  19. conn = pymysql.connect(host = data['host'], user = data['user'], password = data['pw'], db = data['db'], charset = 'utf8mb4')
  20. curs = conn.cursor(pymysql.cursors.DictCursor)
  21. app.secret_key = data['key']
  22. ALLOWED_EXTENSIONS = set(['png', 'jpg', 'jpeg', 'gif'])
  23. def show_diff(seqm):
  24. output= []
  25. for opcode, a0, a1, b0, b1 in seqm.get_opcodes():
  26. if opcode == 'equal':
  27. output.append(seqm.a[a0:a1])
  28. elif opcode == 'insert':
  29. output.append("<span style='background:#CFC;'>" + seqm.b[b0:b1] + "</span>")
  30. elif opcode == 'delete':
  31. output.append("<span style='background:#FDD;'>" + seqm.a[a0:a1] + "</span>")
  32. return ''.join(output)
  33. def allowed_file(filename):
  34. return '.' in filename and \
  35. filename.rsplit('.', 1)[1] in ALLOWED_EXTENSIONS
  36. def admincheck():
  37. if(session.get('Now') == True):
  38. ip = getip(request)
  39. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  40. rows = curs.fetchall()
  41. if(rows):
  42. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  43. return 1
  44. def namumark(title, data):
  45. data = re.sub('<', '&lt;', data)
  46. data = re.sub('>', '&gt;', data)
  47. data = re.sub('"', '&quot;', data)
  48. while True:
  49. p = re.compile("{{{((?:(?!{)(?!}).)*)}}}", re.DOTALL)
  50. m = p.search(data)
  51. if(m):
  52. results = m.groups()
  53. q = re.compile("^\+([1-5])\s(.*)$", re.DOTALL)
  54. n = q.search(results[0])
  55. w = re.compile("^\-([1-5])\s(.*)$", re.DOTALL)
  56. a = w.search(results[0])
  57. e = re.compile("^(#[0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  58. b = e.search(results[0])
  59. r = re.compile("^(#[0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  60. c = r.search(results[0])
  61. t = re.compile("^#(\w+)\s(.*)$", re.DOTALL)
  62. d = t.search(results[0])
  63. qqq = re.compile("^@([0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  64. qqe = qqq.search(results[0])
  65. qqw = re.compile("^@([0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  66. qqa = qqw.search(results[0])
  67. qwe = re.compile("^@(\w+)\s(.*)$", re.DOTALL)
  68. qsd = qwe.search(results[0])
  69. y = re.compile("^#!wiki\sstyle=&quot;((?:(?!&quot;|\n).)*)&quot;\n?\s\n(.*)$", re.DOTALL)
  70. l = y.search(results[0])
  71. if(n):
  72. result = n.groups()
  73. data = p.sub('<span class="font-size-' + result[0] + '">' + result[1] + '</span>', data, 1)
  74. elif(a):
  75. result = a.groups()
  76. data = p.sub('<span class="font-size-small-' + result[0] + '">' + result[1] + '</span>', data, 1)
  77. elif(b):
  78. result = b.groups()
  79. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  80. elif(c):
  81. result = c.groups()
  82. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  83. elif(d):
  84. result = d.groups()
  85. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  86. elif(qqe):
  87. result = qqe.groups()
  88. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  89. elif(qqa):
  90. result = qqa.groups()
  91. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  92. elif(qsd):
  93. result = qsd.groups()
  94. data = p.sub('<span style="background:' + result[0] + '">' + result[1] + '</span>', data, 1)
  95. elif(l):
  96. result = l.groups()
  97. data = p.sub('<div style="' + result[0] + '">' + result[1] + '</div>', data, 1)
  98. else:
  99. data = p.sub('<code>' + results[0] + '</code>', data, 1)
  100. else:
  101. break
  102. while True:
  103. a = re.compile("<code>(((?!<\/code>).)*)<\/code>", re.DOTALL)
  104. m = a.search(data)
  105. if(m):
  106. g = m.groups()
  107. j = re.sub("<\/span>", "}}}", g[0])
  108. j = re.sub("<\/div>", "}}}", j)
  109. j = re.sub('<span class="font\-size\-(?P<in>[1-6])">', "{{{+\g<in> ", j)
  110. j = re.sub('<span class="font\-size\-small\-(?P<in>[1-6])">', "{{{-\g<in> ", j)
  111. j = re.sub('<span style="color:(?:#)?(?P<in>[^"]*)">', "{{{#\g<in> ", j)
  112. j = re.sub('<span style="background:(?:#)?(?P<in>[^"]*)">', "{{{@\g<in> ", j)
  113. j = re.sub('<div style="(?P<in>[^"]*)">', "{{{#!wiki style=&quot;\g<in>&quot;\n", j)
  114. j = re.sub("(?P<in>.)", "<span>\g<in></span>", j)
  115. data = a.sub(j, data, 1)
  116. else:
  117. break
  118. data = re.sub("\[anchor\((?P<in>[^\[\]]*)\)\]", '<span id="\g<in>"></span>', data)
  119. data = re.sub('\[date\(now\)\]', getnow(), data)
  120. while True:
  121. m = re.search("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", data)
  122. if(m):
  123. results = m.groups()
  124. if(results[0] == title):
  125. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "<b>" + results[0] + "</b>", data, 1)
  126. else:
  127. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  128. rows = curs.fetchall()
  129. if(rows):
  130. enddata = rows[0]['data']
  131. enddata = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "", enddata)
  132. enddata = re.sub('<', '&lt;', enddata)
  133. enddata = re.sub('>', '&gt;', enddata)
  134. enddata = re.sub('"', '&quot;', enddata)
  135. if(results[1]):
  136. a = results[1]
  137. while True:
  138. g = re.search("([^= ,]*)\=([^,]*)", a)
  139. if(g):
  140. result = g.groups()
  141. enddata = re.sub("@" + result[0] + "@", result[1], enddata)
  142. a = re.sub("([^= ,]*)\=([^,]*)", "", a, 1)
  143. else:
  144. break
  145. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", enddata, data, 1)
  146. else:
  147. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "[[" + results[0] + "]]", data, 1)
  148. else:
  149. break
  150. while True:
  151. m = re.search('^#(?:redirect|넘겨주기)\s([^\n]*)', data)
  152. if(m):
  153. results = m.groups()
  154. data = re.sub('^#(?:redirect|넘겨주기)\s([^\n]*)', '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(results[0]).replace('/','%2F') + '/redirect/' + parse.quote(title).replace('/','%2F') + '" />', data, 1)
  155. else:
  156. break
  157. data = '\n' + data + '\n'
  158. while True:
  159. m = re.search("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", data)
  160. if(m):
  161. result = m.groups()
  162. blockquote = result[0]
  163. blockquote = re.sub("\n&gt;\s?", "\n", blockquote)
  164. data = re.sub("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", "\n<blockquote>" + blockquote + "</blockquote>", data, 1)
  165. else:
  166. break
  167. h0c = 0;
  168. h1c = 0;
  169. h2c = 0;
  170. h3c = 0;
  171. h4c = 0;
  172. h5c = 0;
  173. last = 0;
  174. rtoc = '<div id="toc"><span id="toc-name">목차</span><br><br>'
  175. while True:
  176. m = re.search('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', data)
  177. if(m):
  178. result = m.groups()
  179. wiki = len(result[0])
  180. if(last < wiki):
  181. last = wiki
  182. else:
  183. last = wiki;
  184. if(wiki == 1):
  185. h1c = 0
  186. h2c = 0
  187. h3c = 0
  188. h4c = 0
  189. h5c = 0
  190. elif(wiki == 2):
  191. h2c = 0
  192. h3c = 0
  193. h4c = 0
  194. h5c = 0
  195. elif(wiki == 3):
  196. h3c = 0
  197. h4c = 0
  198. h5c = 0
  199. elif(wiki == 4):
  200. h4c = 0
  201. h5c = 0
  202. elif(wiki == 5):
  203. h5c = 0
  204. if(wiki == 1):
  205. h0c = h0c + 1
  206. elif(wiki == 2):
  207. h1c = h1c + 1
  208. elif(wiki == 3):
  209. h2c = h2c + 1
  210. elif(wiki == 4):
  211. h3c = h3c + 1
  212. elif(wiki == 5):
  213. h4c = h4c + 1
  214. else:
  215. h5c = h5c + 1
  216. toc = str(h0c) + '.' + str(h1c) + '.' + str(h2c) + '.' + str(h3c) + '.' + str(h4c) + '.' + str(h5c) + '.'
  217. toc = re.sub("(?P<in>[0-9]0(?:[0]*)?)\.", '\g<in>#.', toc)
  218. toc = re.sub("0\.", '', toc)
  219. toc = re.sub("#\.", '.', toc)
  220. toc = re.sub("\.$", '', toc)
  221. rtoc = rtoc + '<a href="#s-' + toc + '">' + toc + '</a>. ' + result[1] + '<br>'
  222. data = re.sub('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', '<h' + str(wiki) + '><a href="#toc" id="s-' + toc + '">' + toc + '.</a> ' + result[1] + '</h' + str(wiki) + '>', data, 1);
  223. else:
  224. rtoc = rtoc + '</div>'
  225. break
  226. data = re.sub("\[목차\]", rtoc, data)
  227. data = re.sub("\[\[분류:(((?!\]\]).)*)\]\]", '', data)
  228. data = re.sub("'''(?P<in>.+?)'''(?!')", '<b>\g<in></b>', data)
  229. data = re.sub("''(?P<in>.+?)''(?!')", '<i>\g<in></i>', data)
  230. data = re.sub('~~(?P<in>.+?)~~(?!~)', '<s>\g<in></s>', data)
  231. data = re.sub('--(?P<in>.+?)--(?!-)', '<s>\g<in></s>', data)
  232. data = re.sub('__(?P<in>.+?)__(?!_)', '<u>\g<in></u>', data)
  233. data = re.sub('\^\^(?P<in>.+?)\^\^(?!\^)', '<sup>\g<in></sup>', data)
  234. data = re.sub(',,(?P<in>.+?),,(?!,)', '<sub>\g<in></sub>', data)
  235. data = re.sub('{{\|(?P<in>(?:(?:(?:(?!\|}}).)*)(?:\n?))+)\|}}', '<table><tbody><tr><td>\g<in></td></tr></tbody></table>', data)
  236. data = re.sub('\[ruby\((?P<in>[^\|]*)\|(?P<out>[^\)]*)\)\]', '<ruby>\g<in><rp>(</rp><rt>\g<out></rt><rp>)</rp></ruby>', data)
  237. data = re.sub("##\s?(?P<in>[^\n]*)\n", "<div style='display:none;'>\g<in></div>", data);
  238. while True:
  239. m = re.search("\[\[파일:((?:(?!\]\]|\|).)*)(?:\|((?:(?!\]\]).)*))?\]\]", data)
  240. if(m):
  241. c = m.groups()
  242. if(c[1]):
  243. n = re.search("width=([^ \n&]*)", c[1])
  244. e = re.search("height=([^ \n&]*)", c[1])
  245. if(n):
  246. a = n.groups()
  247. width = a[0]
  248. else:
  249. width = ''
  250. if(e):
  251. b = e.groups()
  252. height = b[0]
  253. else:
  254. height = ''
  255. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  256. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", '<img src="/image/' + img + '" width="' + width + '" height="' + height + '">', data, 1)
  257. else:
  258. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  259. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", "<img src='/image/" + img + "'>", data, 1)
  260. else:
  261. break
  262. data = re.sub("\[br\]",'<br>', data);
  263. while True:
  264. m = re.search("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", data)
  265. if(m):
  266. result = m.groups()
  267. if(result[1]):
  268. if(result[2]):
  269. width = result[1]
  270. height = result[2]
  271. else:
  272. width = result[1]
  273. height = '315'
  274. elif(result[2]):
  275. if(result[3]):
  276. height = result[2]
  277. width = result[3]
  278. else:
  279. height = result[2]
  280. width = '560'
  281. else:
  282. width = '560'
  283. height = '315'
  284. data = re.sub("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", '<iframe width="' + width + '" height="' + height + '" src="https://www.youtube.com/embed/' + result[0] + '" frameborder="0" allowfullscreen></iframe>', data, 1)
  285. else:
  286. break
  287. while True:
  288. m = re.search("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px)?))?(?:(?:&)width=((?:[0-9]*)(?:px)?))?)?", data)
  289. if(m):
  290. result = m.groups()
  291. if(result[1]):
  292. if(result[2]):
  293. width = result[1]
  294. height = result[2]
  295. else:
  296. width = result[1]
  297. height = ''
  298. elif(result[2]):
  299. if(result[3]):
  300. height = result[2]
  301. width = result[3]
  302. else:
  303. height = result[2]
  304. width = ''
  305. else:
  306. width = ''
  307. height = ''
  308. c = result[0]
  309. c = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c)
  310. data = re.sub("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px)?))?(?:(?:&)width=((?:[0-9]*)(?:px)?))?)?", "<img width='" + width + "' height='" + height + "' src='" + c + "'>", data, 1)
  311. else:
  312. break
  313. while True:
  314. m = re.search("\[\[(((?!\]\]).)*)\]\]", data)
  315. if(m):
  316. result = m.groups()
  317. a = re.search("(((?!\|).)*)\|(.*)", result[0])
  318. if(a):
  319. results = a.groups()
  320. b = re.search("^http(?:s)?:\/\/", results[0])
  321. if(b):
  322. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", results[0])
  323. if(c):
  324. img = results[0]
  325. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  326. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + results[2] + '</a>', data, 1)
  327. else:
  328. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + results[0] + '">' + results[2] + '</a>', data, 1)
  329. else:
  330. if(results[0] == title):
  331. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + results[2] + '</b>', data, 1)
  332. else:
  333. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  334. rows = curs.fetchall()
  335. if(rows):
  336. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[2] + '</a>', data, 1)
  337. else:
  338. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" class="not_thing" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[2] + '</a>', data, 1)
  339. else:
  340. b = re.search("^http(?:s)?:\/\/", result[0])
  341. if(b):
  342. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", result[0])
  343. if(c):
  344. img = result[0]
  345. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  346. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + result[0] + '</a>', data, 1)
  347. else:
  348. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + result[0] + '">' + result[0] + '</a>', data, 1)
  349. else:
  350. if(result[0] == title):
  351. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + result[0] + '</b>', data, 1)
  352. else:
  353. curs.execute("select * from data where title = '" + pymysql.escape_string(result[0]) + "'")
  354. rows = curs.fetchall()
  355. if(rows):
  356. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  357. else:
  358. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="not_thing" href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  359. else:
  360. break
  361. while True:
  362. m = re.search("((?:(?:\s\*\s[^\n]*)\n?)+)", data)
  363. if(m):
  364. result = m.groups()
  365. end = str(result[0])
  366. end = re.sub("\s\*\s(?P<in>[^\n]*)", "<li>\g<in></li>", end)
  367. end = re.sub("\n", '', end)
  368. data = re.sub("((?:(?:\s\*\s[^\n]*)\n?)+)", '<ul id="list">' + end + '</ul>', data, 1)
  369. else:
  370. break
  371. data = re.sub('\[date\]', getnow(), data)
  372. data = re.sub("#(?P<in>jpg|png|gif|jpeg)#", ".\g<in>", data)
  373. data = re.sub("-{4,11}", "<hr>", data)
  374. while True:
  375. b = re.search("\r\n( +)", data)
  376. if(b):
  377. result = b.groups()
  378. tp = len(result[0])
  379. up = ''
  380. i = 0
  381. while True:
  382. up = up + '<span id="in"></span>'
  383. i = i + 1
  384. if(i == tp):
  385. break
  386. data = re.sub("\r\n( +)", '<br>' + up, data, 1)
  387. else:
  388. break
  389. a = 1
  390. tou = "<hr id='footnote'><div class='wiki-macro-footnote'><br>"
  391. while True:
  392. b = re.search("\[\*([^\s]*)\s(((?!\]).)*)\]", data)
  393. if(b):
  394. results = b.groups()
  395. if(results[0]):
  396. c = results[1]
  397. c = re.sub("<(?:[^>]*)>", '', c)
  398. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + results[0] + "]</a> " + results[1] + "</span><br>"
  399. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", "<sup><a class=\"footnotes\" title=\"" + c + "\" id=\"rfn-" + str(a) + "\" href=\"#fn-" + str(a) + "\">[" + results[0] + "]</a></sup>", data, 1)
  400. else:
  401. c = results[1]
  402. c = re.sub("<(?:[^>]*)>", '', c)
  403. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + str(a) + "]</a> " + results[1] + "</span><br>"
  404. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", '<sup><a class="footnotes" title="' + c + '" id="rfn-' + str(a) + '" href="#fn-' + str(a) + '">[' + str(a) + ']</a></sup>', data, 1)
  405. a = a + 1
  406. else:
  407. tou = tou + '</div>'
  408. if(tou == "<hr id='footnote'><div class='wiki-macro-footnote'><br></div>"):
  409. tou = ""
  410. break
  411. data = re.sub("\[각주\](?:(?:(?:<br>+)*(?:\s+)*(?:\r+)*(?:\n+))+)?$", "", data)
  412. data = re.sub("\[각주\]", "<br>" + tou, data)
  413. data = data + tou;
  414. while True:
  415. m = re.search("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", data)
  416. if(m):
  417. results = m.groups()
  418. table = results[0]
  419. while True:
  420. a = re.search("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  421. if(a):
  422. row = ''
  423. cel = ''
  424. celstyle = ''
  425. rowstyle = ''
  426. alltable = ''
  427. result = a.groups()
  428. if(result[1]):
  429. q = re.search("&lt;table\s?width=((?:(?!&gt;).)*)&gt;", result[1])
  430. w = re.search("&lt;table\s?height=((?:(?!&gt;).)*)&gt;", result[1])
  431. e = re.search("&lt;table\s?align=((?:(?!&gt;).)*)&gt;", result[1])
  432. alltable = 'style="'
  433. celstyle = 'style="'
  434. rowstyle = 'style="'
  435. if(q):
  436. resultss = q.groups()
  437. alltable = alltable + 'width:' + resultss[0] + ';'
  438. if(w):
  439. resultss = w.groups()
  440. alltable = alltable + 'height:' + resultss[0] + ';'
  441. if(e):
  442. resultss = e.groups()
  443. if(resultss[0] == 'right'):
  444. alltable = alltable + 'margin-left:auto;'
  445. elif(resultss[0] == 'center'):
  446. alltable = alltable + 'margin:auto;'
  447. else:
  448. alltable = alltable + 'margin-right:auto;'
  449. ee = re.search("&lt;table\s?textalign=((?:(?!&gt;).)*)&gt;", result[1])
  450. if(ee):
  451. resultss = ee.groups()
  452. if(resultss[0] == 'right'):
  453. alltable = alltable + 'text-align:right;'
  454. elif(resultss[0] == 'center'):
  455. alltable = alltable + 'text-align:center;'
  456. else:
  457. alltable = alltable + 'text-align:left;'
  458. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  459. if(r):
  460. resultss = r.groups()
  461. cel = 'colspan="' + resultss[0] + '"'
  462. else:
  463. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  464. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  465. if(t):
  466. resultss = t.groups()
  467. row = 'rowspan="' + resultss[0] + '"'
  468. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  469. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  470. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  471. if(ba):
  472. resultss = ba.groups()
  473. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  474. elif(bb):
  475. resultss = bb.groups()
  476. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  477. elif(bc):
  478. resultss = bc.groups()
  479. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  480. z = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  481. x = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  482. c = re.search("&lt;table\s?bordercolor=(\w+)&gt;", result[1])
  483. if(z):
  484. resultss = z.groups()
  485. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  486. elif(x):
  487. resultss = x.groups()
  488. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  489. elif(c):
  490. resultss = c.groups()
  491. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  492. aq = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  493. aw = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  494. ae = re.search("&lt;table\s?bgcolor=(\w+)&gt;", result[1])
  495. if(aq):
  496. resultss = aq.groups()
  497. alltable = alltable + 'background:' + resultss[0] + ';'
  498. elif(aw):
  499. resultss = aw.groups()
  500. alltable = alltable + 'background:' + resultss[0] + ';'
  501. elif(ae):
  502. resultss = ae.groups()
  503. alltable = alltable + 'background:' + resultss[0] + ';'
  504. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  505. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  506. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  507. if(j):
  508. resultss = j.groups()
  509. celstyle = celstyle + 'background:' + resultss[0] + ';'
  510. elif(k):
  511. resultss = k.groups()
  512. celstyle = celstyle + 'background:' + resultss[0] + ';'
  513. elif(l):
  514. resultss = l.groups()
  515. celstyle = celstyle + 'background:' + resultss[0] + ';'
  516. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  517. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  518. ac = re.search("&lt;(\w+)&gt;", result[1])
  519. if(aa):
  520. resultss = aa.groups()
  521. celstyle = celstyle + 'background:' + resultss[0] + ';'
  522. elif(ab):
  523. resultss = ab.groups()
  524. celstyle = celstyle + 'background:' + resultss[0] + ';'
  525. elif(ac):
  526. resultss = ac.groups()
  527. celstyle = celstyle + 'background:' + resultss[0] + ';'
  528. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  529. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  530. if(qa):
  531. resultss = qa.groups()
  532. celstyle = celstyle + 'width:' + resultss[0] + ';'
  533. if(qb):
  534. resultss = qb.groups()
  535. celstyle = celstyle + 'height:' + resultss[0] + ';'
  536. i = re.search("&lt;\)&gt;", result[1])
  537. o = re.search("&lt;:&gt;", result[1])
  538. p = re.search("&lt;\(&gt;", result[1])
  539. if(i):
  540. celstyle = celstyle + 'text-align:right;'
  541. elif(o):
  542. celstyle = celstyle + 'text-align:center;'
  543. elif(p):
  544. celstyle = celstyle + 'text-align:left;'
  545. alltable = alltable + '"'
  546. celstyle = celstyle + '"'
  547. rowstyle = rowstyle + '"'
  548. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table " + alltable + "><tbody><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  549. else:
  550. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  551. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table><tbody><tr><td " + cel + ">", table, 1)
  552. else:
  553. break
  554. table = re.sub("\|\|$", "</td></tr></tbody></table>", table)
  555. while True:
  556. b = re.search("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  557. if(b):
  558. row = ''
  559. cel = ''
  560. celstyle = ''
  561. rowstyle = ''
  562. result = b.groups()
  563. if(result[1]):
  564. celstyle = 'style="'
  565. rowstyle = 'style="'
  566. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  567. if(r):
  568. resultss = r.groups()
  569. cel = 'colspan="' + resultss[0] + '"'
  570. else:
  571. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  572. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  573. if(t):
  574. resultss = t.groups()
  575. row = 'rowspan="' + resultss[0] + '"'
  576. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  577. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  578. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  579. if(ba):
  580. resultss = ba.groups()
  581. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  582. elif(bb):
  583. resultss = bb.groups()
  584. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  585. elif(bc):
  586. resultss = bc.groups()
  587. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  588. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  589. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  590. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  591. if(j):
  592. resultss = j.groups()
  593. celstyle = celstyle + 'background:' + resultss[0] + ';'
  594. elif(k):
  595. resultss = k.groups()
  596. celstyle = celstyle + 'background:' + resultss[0] + ';'
  597. elif(l):
  598. resultss = l.groups()
  599. celstyle = celstyle + 'background:' + resultss[0] + ';'
  600. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  601. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  602. ac = re.search("&lt;(\w+)&gt;", result[1])
  603. if(aa):
  604. resultss = aa.groups()
  605. celstyle = celstyle + 'background:' + resultss[0] + ';'
  606. elif(ab):
  607. resultss = ab.groups()
  608. celstyle = celstyle + 'background:' + resultss[0] + ';'
  609. elif(ac):
  610. resultss = ac.groups()
  611. celstyle = celstyle + 'background:' + resultss[0] + ';'
  612. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  613. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  614. if(qa):
  615. resultss = qa.groups()
  616. celstyle = celstyle + 'width:' + resultss[0] + ';'
  617. if(qb):
  618. resultss = qb.groups()
  619. celstyle = celstyle + 'height:' + resultss[0] + ';'
  620. i = re.search("&lt;\)&gt;", result[1])
  621. o = re.search("&lt;:&gt;", result[1])
  622. p = re.search("&lt;\(&gt;", result[1])
  623. if(i):
  624. celstyle = celstyle + 'text-align:right;'
  625. elif(o):
  626. celstyle = celstyle + 'text-align:center;'
  627. elif(p):
  628. celstyle = celstyle + 'text-align:left;'
  629. celstyle = celstyle + '"'
  630. rowstyle = rowstyle + '"'
  631. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  632. else:
  633. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  634. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr><td " + cel + ">", table, 1)
  635. else:
  636. break
  637. while True:
  638. c = re.search("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  639. if(c):
  640. row = ''
  641. cel = ''
  642. celstyle = ''
  643. result = c.groups()
  644. if(result[1]):
  645. celstyle = 'style="'
  646. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  647. if(r):
  648. resultss = r.groups()
  649. cel = 'colspan="' + resultss[0] + '"';
  650. else:
  651. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  652. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  653. if(t):
  654. resultss = t.groups()
  655. row = 'rowspan="' + resultss[0] + '"';
  656. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  657. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  658. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  659. if(j):
  660. resultss = j.groups()
  661. celstyle = celstyle + 'background:' + resultss[0] + ';'
  662. elif(k):
  663. resultss = k.groups()
  664. celstyle = celstyle + 'background:' + resultss[0] + ';'
  665. elif(l):
  666. resultss = l.groups()
  667. celstyle = celstyle + 'background:' + resultss[0] + ';'
  668. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  669. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  670. ac = re.search("&lt;(\w+)&gt;", result[1])
  671. if(aa):
  672. resultss = aa.groups()
  673. celstyle = celstyle + 'background:' + resultss[0] + ';'
  674. elif(ab):
  675. resultss = ab.groups()
  676. celstyle = celstyle + 'background:' + resultss[0] + ';'
  677. elif(ac):
  678. resultss = ac.groups()
  679. celstyle = celstyle + 'background:' + resultss[0] + ';'
  680. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  681. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  682. if(qa):
  683. resultss = qa.groups()
  684. celstyle = celstyle + 'width:' + resultss[0] + ';'
  685. if(qb):
  686. resultss = qb.groups()
  687. celstyle = celstyle + 'height:' + resultss[0] + ';'
  688. i = re.search("&lt;\)&gt;", result[1])
  689. o = re.search("&lt;:&gt;", result[1])
  690. p = re.search("&lt;\(&gt;", result[1])
  691. if(i):
  692. celstyle = celstyle + 'text-align:right;'
  693. elif(o):
  694. celstyle = celstyle + 'text-align:center;'
  695. elif(p):
  696. celstyle = celstyle + 'text-align:left;'
  697. celstyle = celstyle + '"'
  698. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  699. else:
  700. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  701. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + ">", table, 1)
  702. else:
  703. break
  704. data = re.sub("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", table, data, 1)
  705. else:
  706. break
  707. data = re.sub('\n', '<br>', data)
  708. data = re.sub('^<br>', '', data)
  709. return str(data)
  710. def getip(request):
  711. if(session.get('Now') == True):
  712. ip = format(session['DREAMER'])
  713. else:
  714. if(request.headers.getlist("X-Forwarded-For")):
  715. ip = request.headers.getlist("X-Forwarded-For")[0]
  716. else:
  717. ip = request.remote_addr
  718. return ip
  719. def getcan(ip, name):
  720. m = re.search("^사용자:(.*)", name)
  721. if(m):
  722. g = m.groups()
  723. if(ip == g[0]):
  724. if(re.search("\.", g[0])):
  725. return 1
  726. else:
  727. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  728. rows = curs.fetchall()
  729. if(rows):
  730. return 1
  731. else:
  732. return 0
  733. else:
  734. return 1
  735. else:
  736. b = re.search("^([0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)", ip)
  737. if(b):
  738. results = b.groups()
  739. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  740. rowss = curs.fetchall()
  741. if(rowss):
  742. return 1
  743. else:
  744. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  745. rows = curs.fetchall()
  746. if(rows):
  747. return 1
  748. else:
  749. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  750. row = curs.fetchall()
  751. if(row):
  752. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  753. rows = curs.fetchall()
  754. if(row[0]['acl'] == 'user'):
  755. if(rows):
  756. return 0
  757. else:
  758. return 1
  759. elif(row[0]['acl'] == 'admin'):
  760. if(rows):
  761. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  762. return 0
  763. else:
  764. return 1
  765. else:
  766. return 1
  767. else:
  768. return 0
  769. else:
  770. return 0
  771. else:
  772. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  773. rows = curs.fetchall()
  774. if(rows):
  775. return 1
  776. else:
  777. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  778. row = curs.fetchall()
  779. if(row):
  780. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  781. rows = curs.fetchall()
  782. if(row[0]['acl'] == 'user'):
  783. if(rows):
  784. return 0
  785. else:
  786. return 1
  787. elif(row[0]['acl'] == 'admin'):
  788. if(rows):
  789. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  790. return 0
  791. else:
  792. return 1
  793. else:
  794. return 1
  795. else:
  796. return 0
  797. else:
  798. return 0
  799. def getban(ip):
  800. b = re.search("^([0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)", ip)
  801. if(b):
  802. results = b.groups()
  803. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  804. rowss = curs.fetchall()
  805. if(rowss):
  806. return 1
  807. else:
  808. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  809. rows = curs.fetchall()
  810. if(rows):
  811. return 1
  812. else:
  813. return 0
  814. else:
  815. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  816. rows = curs.fetchall()
  817. if(rows):
  818. return 1
  819. else:
  820. return 0
  821. def getdiscuss(ip, name, sub):
  822. b = re.search("^([0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)", ip)
  823. if(b):
  824. results = b.groups()
  825. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  826. rowss = curs.fetchall()
  827. if(rowss):
  828. return 1
  829. else:
  830. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  831. rows = curs.fetchall()
  832. if(rows):
  833. return 1
  834. else:
  835. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  836. rows = curs.fetchall()
  837. if(rows):
  838. return 1
  839. else:
  840. return 0
  841. else:
  842. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  843. rows = curs.fetchall()
  844. if(rows):
  845. return 1
  846. else:
  847. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  848. rows = curs.fetchall()
  849. if(rows):
  850. return 1
  851. else:
  852. return 0
  853. def getnow():
  854. now = time.localtime()
  855. s = "%04d-%02d-%02d %02d:%02d:%02d" % (now.tm_year, now.tm_mon, now.tm_mday, now.tm_hour, now.tm_min, now.tm_sec)
  856. return s
  857. def discuss(title, sub, date):
  858. curs.execute("select * from rd where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  859. rows = curs.fetchall()
  860. if(rows):
  861. curs.execute("update rd set date = '" + pymysql.escape_string(date) + "' where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  862. else:
  863. curs.execute("insert into rd (title, sub, date) value ('" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(date) + "')")
  864. conn.commit()
  865. def block(block, end, today, blocker, why):
  866. curs.execute("insert into rb (block, end, today, blocker, why) value ('" + pymysql.escape_string(block) + "', '" + pymysql.escape_string(end) + "', '" + today + "', '" + pymysql.escape_string(blocker) + "', '" + pymysql.escape_string(why) + "')")
  867. conn.commit()
  868. def history(title, data, date, ip, send, leng):
  869. curs.execute("select * from history where title = '" + pymysql.escape_string(title) + "' order by id+0 desc limit 1")
  870. rows = curs.fetchall()
  871. if(rows):
  872. number = int(rows[0]['id']) + 1
  873. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('" + str(number) + "', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send) + "', '" + leng + "')")
  874. conn.commit()
  875. else:
  876. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('1', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send + ' (새 문서)') + "', '" + leng + "')")
  877. conn.commit()
  878. def getleng(existing, change):
  879. if(existing < change):
  880. leng = change - existing
  881. leng = '+' + str(leng)
  882. elif(change < existing):
  883. leng = existing - change
  884. leng = '-' + str(leng)
  885. else:
  886. leng = '0'
  887. return leng;
  888. @app.route('/upload', methods=['GET', 'POST'])
  889. def upload():
  890. if(request.method == 'POST'):
  891. ip = getip(request)
  892. ban = getban(ip)
  893. if(ban == 1):
  894. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  895. else:
  896. file = request.files['file']
  897. if(file and allowed_file(file.filename)):
  898. filename = secure_filename(file.filename)
  899. if(os.path.exists(os.path.join('image', filename))):
  900. return render_template('index.html', logo = data['name'], title = '업로드', data = '동일한 이름의 파일이 있습니다.')
  901. else:
  902. file.save(os.path.join('image', filename))
  903. return render_template('index.html', logo = data['name'], title = '업로드', data = '완료 되었습니다.')
  904. else:
  905. return render_template('index.html', logo = data['name'], title = '업로드', data = 'jpg gif jpeg png만 가능 합니다.')
  906. else:
  907. ip = getip(request)
  908. ban = getban(ip)
  909. if(ban == 1):
  910. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  911. else:
  912. return render_template('index.html', logo = data['name'], title = '업로드', tn = 21, number = data['upload'])
  913. @app.route('/image/<path:name>')
  914. def image(name = None):
  915. filename = secure_filename(name)
  916. return send_file(os.path.join('image', filename), mimetype='image')
  917. @app.route('/')
  918. @app.route('/w/')
  919. def redirect():
  920. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  921. @app.route('/recentchanges')
  922. def recentchanges():
  923. i = 0
  924. div = '<div>'
  925. curs.execute("select * from history order by date desc limit 50")
  926. rows = curs.fetchall()
  927. if(rows):
  928. admin = admincheck()
  929. while True:
  930. try:
  931. a = rows[i]
  932. except:
  933. div = div + '</div>'
  934. break
  935. if(rows[i]['send']):
  936. send = rows[i]['send']
  937. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  938. else:
  939. send = '<br>'
  940. title = rows[i]['title']
  941. title = re.sub('<', '&lt;', title)
  942. title = re.sub('>', '&gt;', title)
  943. m = re.search("\+", rows[i]['leng'])
  944. n = re.search("\-", rows[i]['leng'])
  945. if(m):
  946. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  947. elif(n):
  948. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  949. else:
  950. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  951. if(admin == 1):
  952. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  953. row = curs.fetchall()
  954. if(row):
  955. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  956. ban = ''
  957. else:
  958. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  959. row = curs.fetchall()
  960. if(row):
  961. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  962. else:
  963. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  964. else:
  965. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  966. row = curs.fetchall()
  967. if(row):
  968. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  969. else:
  970. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  971. else:
  972. ban = ''
  973. if(re.search('\.', rows[i]['ip'])):
  974. ip = rows[i]['ip']
  975. else:
  976. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  977. row = curs.fetchall()
  978. if(row):
  979. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  980. else:
  981. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  982. if((int(rows[i]['id']) - 1) == 0):
  983. revert = ''
  984. else:
  985. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  986. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  987. i = i + 1
  988. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '최근 변경내역')
  989. else:
  990. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '최근 변경내역')
  991. @app.route('/record/<path:name>/n/<int:number>')
  992. def record(name = None, number = None):
  993. v = number * 50
  994. i = v - 50
  995. div = '<div>'
  996. curs.execute("select * from history where ip = '" + name + "' order by date desc")
  997. rows = curs.fetchall()
  998. if(rows):
  999. admin = admincheck()
  1000. while True:
  1001. try:
  1002. a = rows[i]
  1003. except:
  1004. div = div + '</div>'
  1005. if(number == 1):
  1006. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1007. else:
  1008. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1009. break
  1010. if(rows[i]['send']):
  1011. send = rows[i]['send']
  1012. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1013. else:
  1014. send = '<br>'
  1015. title = rows[i]['title']
  1016. title = re.sub('<', '&lt;', title)
  1017. title = re.sub('>', '&gt;', title)
  1018. m = re.search("\+", rows[i]['leng'])
  1019. n = re.search("\-", rows[i]['leng'])
  1020. if(m):
  1021. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1022. elif(n):
  1023. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1024. else:
  1025. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1026. if(admin == 1):
  1027. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1028. row = curs.fetchall()
  1029. if(row):
  1030. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1031. ip = rows[i]['ip']
  1032. else:
  1033. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1034. row = curs.fetchall()
  1035. if(row):
  1036. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1037. else:
  1038. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1039. else:
  1040. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1041. row = curs.fetchall()
  1042. if(row):
  1043. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1044. else:
  1045. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1046. else:
  1047. ip = rows[i]['ip']
  1048. if((int(rows[i]['id']) - 1) == 0):
  1049. revert = ''
  1050. else:
  1051. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  1052. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> r' + rows[i]['id'] + ' <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1053. if(i == v):
  1054. div = div + '</div>'
  1055. if(number == 1):
  1056. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1057. else:
  1058. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1059. break
  1060. else:
  1061. i = i + 1
  1062. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '유저 기록')
  1063. else:
  1064. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '유저 기록')
  1065. @app.route('/recentdiscuss')
  1066. def recentdiscuss():
  1067. i = 0
  1068. div = '<div>'
  1069. curs.execute("select * from rd order by date desc limit 50")
  1070. rows = curs.fetchall()
  1071. if(rows):
  1072. while True:
  1073. try:
  1074. a = rows[i]
  1075. except:
  1076. div = div + '</div>'
  1077. break
  1078. title = rows[i]['title']
  1079. title = re.sub('<', '&lt;', title)
  1080. title = re.sub('>', '&gt;', title)
  1081. sub = rows[i]['sub']
  1082. sub = re.sub('<', '&lt;', sub)
  1083. sub = re.sub('>', '&gt;', sub)
  1084. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:50%;"><a href="/topic/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + title + '</a> (' + sub + ')</td><td style="text-align: center;width:50%;">' + rows[i]['date'] + '</td></tr></tbody></table>'
  1085. i = i + 1
  1086. return render_template('index.html', logo = data['name'], rows = div, tn = 12, title = '최근 토론내역')
  1087. else:
  1088. return render_template('index.html', logo = data['name'], rows = '', tn = 12, title = '최근 토론내역')
  1089. @app.route('/recentblock')
  1090. def recentblock():
  1091. i = 0
  1092. div = '<div>'
  1093. curs.execute("select * from rb order by today desc limit 50")
  1094. rows = curs.fetchall()
  1095. if(rows):
  1096. while True:
  1097. try:
  1098. a = rows[i]
  1099. except:
  1100. div = div + '</div>'
  1101. break
  1102. why = rows[i]['why']
  1103. why = re.sub('<', '&lt;', why)
  1104. why = re.sub('>', '&gt;', why)
  1105. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:20%;">' + rows[i]['block'] + '</a></td><td style="text-align: center;width:20%;">' + rows[i]['blocker'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['end'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['why'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['today'] + '</td></tr></tbody></table>'
  1106. i = i + 1
  1107. return render_template('index.html', logo = data['name'], rows = div, tn = 20, title = '최근 차단내역')
  1108. else:
  1109. return render_template('index.html', logo = data['name'], rows = '', tn = 20, title = '최근 차단내역')
  1110. @app.route('/history/<path:name>/n/<int:number>', methods=['POST', 'GET'])
  1111. def gethistory(name = None, number = None):
  1112. if(request.method == 'POST'):
  1113. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '/r/' + request.form["a"] + '/diff/' + request.form["b"] + '" />'
  1114. else:
  1115. select = ''
  1116. v = number * 50
  1117. i = v - 50
  1118. div = '<div>'
  1119. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' order by id+0 desc")
  1120. rows = curs.fetchall()
  1121. if(rows):
  1122. admin = admincheck()
  1123. while True:
  1124. try:
  1125. a = rows[i]
  1126. except:
  1127. div = div + '</div>'
  1128. if(number != 1):
  1129. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1130. break
  1131. select = '<option value="' + str(i + 1) + '">' + str(i + 1) + '</option>' + select
  1132. if(rows[i]['send']):
  1133. send = rows[i]['send']
  1134. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1135. else:
  1136. send = '<br>'
  1137. m = re.search("\+", rows[i]['leng'])
  1138. n = re.search("\-", rows[i]['leng'])
  1139. if(m):
  1140. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1141. elif(n):
  1142. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1143. else:
  1144. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1145. if(admin == 1):
  1146. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1147. row = curs.fetchall()
  1148. if(row):
  1149. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1150. ban = ''
  1151. else:
  1152. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1153. row = curs.fetchall()
  1154. if(row):
  1155. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1156. else:
  1157. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1158. else:
  1159. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1160. row = curs.fetchall()
  1161. if(row):
  1162. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1163. else:
  1164. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1165. else:
  1166. ban = ''
  1167. if(re.search("\.", rows[i]["ip"])):
  1168. ip = rows[i]["ip"]
  1169. else:
  1170. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1171. row = curs.fetchall()
  1172. if(row):
  1173. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1174. else:
  1175. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1176. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">r' + rows[i]['id'] + '</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(w)</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/raw/' + rows[i]['id'] + '">(Raw)</a> <a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(되돌리기)</a> (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1177. if(i == v):
  1178. div = div + '</div>'
  1179. if(number == 1):
  1180. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1181. else:
  1182. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1183. break
  1184. else:
  1185. i = i + 1
  1186. return render_template('index.html', logo = data['name'], rows = div, tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1187. else:
  1188. return render_template('index.html', logo = data['name'], rows = '', tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1189. @app.route('/search', methods=['POST', 'GET'])
  1190. def search():
  1191. if(request.method == 'POST'):
  1192. curs.execute("select * from data where title = '" + pymysql.escape_string(request.form["search"]) + "'")
  1193. rows = curs.fetchall()
  1194. if(rows):
  1195. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1196. else:
  1197. curs.execute("select * from data where title like '%" + pymysql.escape_string(request.form["search"]) + "%'")
  1198. rows = curs.fetchall()
  1199. div = ''
  1200. if(rows):
  1201. i = 0
  1202. div = div + '<li>문서가 없습니다. <a href="/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '">바로가기</a></li><br>'
  1203. while True:
  1204. try:
  1205. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  1206. except:
  1207. break
  1208. i = i + 1
  1209. else:
  1210. return div + '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1211. return render_template('index.html', logo = data['name'], data = div, title = '검색')
  1212. else:
  1213. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1214. @app.route('/w/<path:name>')
  1215. def w(name = None):
  1216. acl = ''
  1217. m = re.search("^(.*)\/(.*)$", name)
  1218. if(m):
  1219. g = m.groups()
  1220. uppage = g[0]
  1221. style = ""
  1222. else:
  1223. uppage = ""
  1224. style = "display:none;"
  1225. m = re.search("^사용자:(.*)", name)
  1226. if(m):
  1227. g = m.groups()
  1228. curs.execute("select * from user where id = '" + pymysql.escape_string(g[0]) + "'")
  1229. rows = curs.fetchall()
  1230. if(rows):
  1231. if(rows[0]['acl'] == 'owner'):
  1232. acl = '(소유자)'
  1233. elif(rows[0]['acl'] == 'admin'):
  1234. acl = '(관리자)'
  1235. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1236. rows = curs.fetchall()
  1237. if(rows):
  1238. if(rows[0]['acl'] == 'admin'):
  1239. acl = '(관리자)'
  1240. elif(rows[0]['acl'] == 'user'):
  1241. acl = '(유저)'
  1242. else:
  1243. if(not acl):
  1244. acl = ''
  1245. enddata = namumark(name, rows[0]['data'])
  1246. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1247. if(m):
  1248. result = m.groups()
  1249. left = result[0]
  1250. else:
  1251. left = ''
  1252. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, acl = acl, left = left, uppage = uppage, style = style)
  1253. else:
  1254. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl)
  1255. @app.route('/w/<path:name>/redirect/<redirect>')
  1256. def redirectw(name = None, redirect = None):
  1257. m = re.search("^(.*)\/(.*)$", name)
  1258. if(m):
  1259. g = m.groups()
  1260. uppage = g[0]
  1261. style = ""
  1262. else:
  1263. uppage = ""
  1264. style = "display:none;"
  1265. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1266. rows = curs.fetchall()
  1267. if(rows):
  1268. if(rows[0]['acl'] == 'admin'):
  1269. acl = '(관리자)'
  1270. elif(rows[0]['acl'] == 'user'):
  1271. acl = '(유저)'
  1272. else:
  1273. acl = ''
  1274. newdata = rows[0]['data']
  1275. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  1276. enddata = namumark(name, newdata)
  1277. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1278. if(m):
  1279. result = m.groups()
  1280. left = result[0]
  1281. else:
  1282. left = ''
  1283. test = redirect
  1284. redirect = re.sub('<', '&lt;', redirect)
  1285. redirect = re.sub('>', '&gt;', redirect)
  1286. redirect = re.sub('"', '&quot;', redirect)
  1287. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, redirect = '<a href="/w/' + parse.quote(test).replace('/','%2F') + '/redirect/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.', left = left, acl = acl, uppage = uppage, style = style)
  1288. else:
  1289. test = redirect
  1290. redirect = re.sub('<', '&lt;', redirect)
  1291. redirect = re.sub('>', '&gt;', redirect)
  1292. redirect = re.sub('"', '&quot;', redirect)
  1293. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, redirect = '<a href="/edit/' + parse.quote(test).replace('/','%2F') + '/redirect/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.', uppage = uppage, style = style)
  1294. @app.route('/w/<path:name>/r/<number>')
  1295. def rew(name = None, number = None):
  1296. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + number + "'")
  1297. rows = curs.fetchall()
  1298. if(rows):
  1299. enddata = namumark(name, rows[0]['data'])
  1300. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1301. if(m):
  1302. result = m.groups()
  1303. left = result[0]
  1304. else:
  1305. left = ''
  1306. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 6, left = left)
  1307. else:
  1308. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 6)
  1309. @app.route('/w/<path:name>/raw/<number>')
  1310. def reraw(name = None, number = None):
  1311. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + number + "'")
  1312. rows = curs.fetchall()
  1313. if(rows):
  1314. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1315. enddata = re.sub('>', '&gt;', enddata)
  1316. enddata = re.sub('"', '&quot;', enddata)
  1317. enddata = re.sub("\n", '<br>', enddata)
  1318. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'])
  1319. else:
  1320. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'])
  1321. @app.route('/raw/<path:name>')
  1322. def raw(name = None):
  1323. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1324. rows = curs.fetchall()
  1325. if(rows):
  1326. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1327. enddata = re.sub('>', '&gt;', enddata)
  1328. enddata = re.sub('"', '&quot;', enddata)
  1329. enddata = re.sub("\n", '<br>', enddata)
  1330. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 7)
  1331. else:
  1332. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 7)
  1333. @app.route('/revert/<path:name>/r/<number>', methods=['POST', 'GET'])
  1334. def revert(name = None, number = None):
  1335. if(request.method == 'POST'):
  1336. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + number + "'")
  1337. rows = curs.fetchall()
  1338. if(rows):
  1339. ip = getip(request)
  1340. can = getcan(ip, name)
  1341. if(can == 1):
  1342. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1343. else:
  1344. today = getnow()
  1345. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1346. row = curs.fetchall()
  1347. if(row):
  1348. leng = getleng(len(row[0]['data']), len(rows[0]['data']))
  1349. curs.execute("update data set data = '" + pymysql.escape_string(rows[0]['data']) + "' where title = '" + pymysql.escape_string(name) + "'")
  1350. conn.commit()
  1351. else:
  1352. leng = '+' + str(len(rows[0]['data']))
  1353. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(rows[0]['data']) + "', '')")
  1354. conn.commit()
  1355. history(name, rows[0]['data'], today, ip, '문서를 ' + number + '판으로 되돌렸습니다.', leng)
  1356. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1357. else:
  1358. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1359. else:
  1360. ip = getip(request)
  1361. can = getcan(ip, name)
  1362. if(can == 1):
  1363. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1364. else:
  1365. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + number + "'")
  1366. rows = curs.fetchall()
  1367. if(rows):
  1368. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), r = parse.quote(number).replace('/','%2F'), tn = 13, plus = '정말 되돌리시겠습니까?')
  1369. else:
  1370. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1371. @app.route('/edit/<path:name>', methods=['POST', 'GET'])
  1372. def edit(name = None):
  1373. if(request.method == 'POST'):
  1374. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1375. rows = curs.fetchall()
  1376. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["send"])
  1377. if(m):
  1378. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '편집 내용 기록에는 한글과 영어와 숫자, 공백만 허용 됩니다.')
  1379. else:
  1380. today = getnow()
  1381. content = re.sub("\[date\(now\)\]", today, request.form["content"])
  1382. if(rows):
  1383. if(rows[0]['data'] == content):
  1384. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '내용이 원래 문서와 동일 합니다.')
  1385. else:
  1386. ip = getip(request)
  1387. can = getcan(ip, name)
  1388. if(can == 1):
  1389. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1390. else:
  1391. leng = getleng(len(rows[0]['data']), len(content))
  1392. history(name, content, today, ip, request.form["send"], leng)
  1393. curs.execute("update data set data = '" + pymysql.escape_string(content) + "' where title = '" + pymysql.escape_string(name) + "'")
  1394. conn.commit()
  1395. else:
  1396. ip = getip(request)
  1397. can = getcan(ip, name)
  1398. if(can == 1):
  1399. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1400. else:
  1401. leng = '+' + str(len(content))
  1402. history(name, content, today, ip, request.form["send"], leng)
  1403. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(content) + "', '')")
  1404. conn.commit()
  1405. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1406. else:
  1407. ip = getip(request)
  1408. can = getcan(ip, name)
  1409. if(can == 1):
  1410. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1411. else:
  1412. if(re.search('\.', ip)):
  1413. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  1414. else:
  1415. notice = ''
  1416. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1417. rows = curs.fetchall()
  1418. if(rows):
  1419. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = rows[0]['data'], tn = 2, notice = notice)
  1420. else:
  1421. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '', tn = 2, notice = notice)
  1422. @app.route('/preview/<path:name>', methods=['POST'])
  1423. def preview(name = None):
  1424. ip = getip(request)
  1425. can = getcan(ip, name)
  1426. if(can == 1):
  1427. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1428. else:
  1429. if(re.search('\.', ip)):
  1430. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  1431. else:
  1432. notice = ''
  1433. newdata = request.form["content"]
  1434. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  1435. enddata = namumark(name, newdata)
  1436. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1437. if(m):
  1438. result = m.groups()
  1439. left = result[0]
  1440. else:
  1441. left = ''
  1442. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = request.form["content"], tn = 2, preview = 1, enddata = enddata, left = left, notice = notice)
  1443. @app.route('/delete/<path:name>', methods=['POST', 'GET'])
  1444. def delete(name = None):
  1445. if(request.method == 'POST'):
  1446. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1447. rows = curs.fetchall()
  1448. if(rows):
  1449. ip = getip(request)
  1450. can = getcan(ip, name)
  1451. if(can == 1):
  1452. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1453. else:
  1454. today = getnow()
  1455. leng = '-' + str(len(rows[0]['data']))
  1456. history(name, '', today, ip, '문서를 삭제 했습니다.', leng)
  1457. curs.execute("delete from data where title = '" + pymysql.escape_string(name) + "'")
  1458. conn.commit()
  1459. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1460. else:
  1461. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1462. else:
  1463. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1464. rows = curs.fetchall()
  1465. if(rows):
  1466. ip = getip(request)
  1467. can = getcan(ip, name)
  1468. if(can == 1):
  1469. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1470. else:
  1471. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 8, plus = '정말 삭제 하시겠습니까?')
  1472. else:
  1473. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1474. @app.route('/move/<path:name>', methods=['POST', 'GET'])
  1475. def move(name = None):
  1476. if(request.method == 'POST'):
  1477. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1478. rows = curs.fetchall()
  1479. if(rows):
  1480. ip = getip(request)
  1481. can = getcan(ip, name)
  1482. if(can == 1):
  1483. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1484. else:
  1485. today = getnow()
  1486. leng = '0'
  1487. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  1488. row = curs.fetchall()
  1489. if(row):
  1490. return render_template('index.html', title = '이동 오류', logo = data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.')
  1491. else:
  1492. history(name, rows[0]['data'], today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  1493. curs.execute("update data set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  1494. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  1495. conn.commit()
  1496. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  1497. else:
  1498. ip = getip(request)
  1499. can = getcan(ip, name)
  1500. if(can == 1):
  1501. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1502. else:
  1503. today = getnow()
  1504. leng = '0'
  1505. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  1506. row = curs.fetchall()
  1507. if(row):
  1508. return render_template('index.html', title = '이동 오류', logo = data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.')
  1509. else:
  1510. history(name, '', today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  1511. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  1512. conn.commit()
  1513. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  1514. else:
  1515. ip = getip(request)
  1516. can = getcan(ip, name)
  1517. if(can == 1):
  1518. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1519. else:
  1520. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 9, plus = '정말 이동 하시겠습니까?')
  1521. @app.route('/setup')
  1522. def setup():
  1523. curs.execute("create table if not exists data(title text not null, data longtext not null, acl text not null)")
  1524. curs.execute("create table if not exists history(id text not null, title text not null, data longtext not null, date text not null, ip text not null, send text not null, leng text not null)")
  1525. curs.execute("create table if not exists rd(title text not null, sub text not null, date text not null)")
  1526. curs.execute("create table if not exists user(id text not null, pw text not null, acl text not null)")
  1527. curs.execute("create table if not exists ban(block text not null, end text not null, why text not null, band text not null)")
  1528. curs.execute("create table if not exists topic(id text not null, title text not null, sub text not null, data longtext not null, date text not null, ip text not null, block text not null)")
  1529. curs.execute("create table if not exists stop(title text not null, sub text not null, close text not null)")
  1530. curs.execute("create table if not exists rb(block text not null, end text not null, today text not null, blocker text not null, why text not null)")
  1531. curs.execute("create table if not exists login(user text not null, ip text not null, today text not null)")
  1532. return render_template('index.html', title = '설치 완료', logo = data['name'], data = '문제 없었음')
  1533. @app.route('/other')
  1534. def other():
  1535. return render_template('index.html', title = '기타 메뉴', logo = data['name'], data = '<li><a href="/titleindex">모든 문서</a><li><a href="/grammar">문법 설명</a></li><li><a href="/version">버전</a></li><li><a href="/recentblock">최근 차단내역</a></li><li><a href="/upload">업로드</a></li>')
  1536. @app.route('/titleindex')
  1537. def titleindex():
  1538. i = 0
  1539. div = '<div>'
  1540. curs.execute("select * from data")
  1541. rows = curs.fetchall()
  1542. if(rows):
  1543. while True:
  1544. try:
  1545. a = rows[i]
  1546. except:
  1547. div = div + '</div>'
  1548. break
  1549. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  1550. i = i + 1
  1551. return render_template('index.html', logo = data['name'], rows = div + '<br><span>이 위키에는 총 ' + str(i + 1) + '개의 문서가 있습니다.</span>', tn = 4, title = '모든 문서')
  1552. else:
  1553. return render_template('index.html', logo = data['name'], rows = '', tn = 4, title = '모든 문서')
  1554. @app.route('/topic/<path:name>', methods=['POST', 'GET'])
  1555. def topic(name = None):
  1556. if(request.method == 'POST'):
  1557. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  1558. else:
  1559. div = '<div>'
  1560. i = 0
  1561. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' order by sub asc")
  1562. rows = curs.fetchall()
  1563. while True:
  1564. try:
  1565. a = rows[i]
  1566. except:
  1567. div = div + '</div>'
  1568. break
  1569. j = i + 1
  1570. indata = namumark(name, rows[i]['data'])
  1571. if(rows[i]['block'] == 'O'):
  1572. indata = '블라인드 되었습니다.'
  1573. block = 'style="background: gainsboro;"'
  1574. else:
  1575. block = ''
  1576. if(i == 0):
  1577. sub = rows[i]['sub']
  1578. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  1579. row = curs.fetchall()
  1580. if(not row):
  1581. div = div + '<h2><a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str((i + 1)) + '. ' + rows[i]['sub'] + '</a></h2>'
  1582. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + rows[i]['ip'] + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1583. else:
  1584. if(not sub == rows[i]['sub']):
  1585. sub = rows[i]['sub']
  1586. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  1587. row = curs.fetchall()
  1588. if(not row):
  1589. div = div + '<h2><a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str((i + 1)) + '. ' + rows[i]['sub'] + '</a></h2>'
  1590. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + rows[i]['ip'] + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1591. i = i + 1
  1592. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10, list = 1)
  1593. @app.route('/topic/<path:name>/close')
  1594. def topicstoplist(name = None):
  1595. if(request.method == 'POST'):
  1596. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  1597. else:
  1598. div = '<div>'
  1599. i = 0
  1600. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and close = 'O' order by sub asc")
  1601. rows = curs.fetchall()
  1602. while True:
  1603. try:
  1604. a = rows[i]
  1605. except:
  1606. div = div + '</div>'
  1607. break
  1608. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and id = '1'")
  1609. row = curs.fetchall()
  1610. if(row):
  1611. j = i + 1
  1612. indata = namumark(name, row[0]['data'])
  1613. if(row[0]['block'] == 'O'):
  1614. indata = '블라인드 되었습니다.'
  1615. block = 'style="background: gainsboro;"'
  1616. else:
  1617. block = ''
  1618. div = div + '<h2><a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str((i + 1)) + '. ' + rows[i]['sub'] + '</a></h2>'
  1619. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + row[0]['ip'] + ' <span style="float:right;">' + row[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1620. i = i + 1
  1621. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10)
  1622. @app.route('/topic/<path:name>/sub/<path:sub>', methods=['POST', 'GET'])
  1623. def sub(name = None, sub = None):
  1624. if(request.method == 'POST'):
  1625. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  1626. rows = curs.fetchall()
  1627. if(rows):
  1628. number = int(rows[0]['id']) + 1
  1629. else:
  1630. number = 1
  1631. ip = getip(request)
  1632. ban = getdiscuss(ip, name, sub)
  1633. if(ban == 1):
  1634. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1635. else:
  1636. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1637. rows = curs.fetchall()
  1638. if(rows):
  1639. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  1640. ip = ip + ' - Admin'
  1641. today = getnow()
  1642. discuss(name, sub, today)
  1643. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + str(number) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(request.form["content"]) + "', '" + today + "', '" + ip + "', '')")
  1644. conn.commit()
  1645. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '" />'
  1646. else:
  1647. ip = getip(request)
  1648. ban = getdiscuss(ip, name, sub)
  1649. admin = admincheck()
  1650. if(admin == 1):
  1651. div = '<div>' + '<a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/close">(토론 닫기 및 열기)</a>' + ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/stop">(토론 정지 및 재개)</a><br><br>'
  1652. else:
  1653. div = '<div>'
  1654. i = 0
  1655. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 asc")
  1656. rows = curs.fetchall()
  1657. while True:
  1658. try:
  1659. a = rows[i]
  1660. except:
  1661. div = div + '</div>'
  1662. break
  1663. if(i == 0):
  1664. start = rows[i]['ip']
  1665. indata = namumark(name, rows[i]['data'])
  1666. if(rows[i]['block'] == 'O'):
  1667. indata = '블라인드 되었습니다.'
  1668. block = 'style="background: gainsboro;"'
  1669. else:
  1670. block = ''
  1671. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart)$", rows[i]['ip'])
  1672. if(m):
  1673. ban = ""
  1674. else:
  1675. if(admin == 1):
  1676. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1677. row = curs.fetchall()
  1678. if(rows[i]['block'] == 'O'):
  1679. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(해제)</a>'
  1680. else:
  1681. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(블라인드)</a>'
  1682. n = re.search("\- (?:Admin)$", rows[i]['ip'])
  1683. if(n):
  1684. ban = isblock
  1685. else:
  1686. if(row):
  1687. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>' + isblock
  1688. else:
  1689. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>' + isblock
  1690. else:
  1691. ban = ""
  1692. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart|Admin)$", rows[i]['ip'])
  1693. if(m):
  1694. g = m.groups()
  1695. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(g[0]) + "'")
  1696. row = curs.fetchall()
  1697. if(row):
  1698. ip = '<a href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  1699. else:
  1700. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  1701. elif(re.search("\.", rows[i]["ip"])):
  1702. ip = rows[i]["ip"]
  1703. else:
  1704. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1705. row = curs.fetchall()
  1706. if(row):
  1707. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1708. else:
  1709. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1710. if(rows[i]['ip'] == start):
  1711. j = i + 1
  1712. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1713. else:
  1714. j = i + 1
  1715. div = div + '<table id="toron"><tbody><tr><td id="toroncolor"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1716. i = i + 1
  1717. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), suburl = parse.quote(sub).replace('/','%2F'), sub = sub, logo = data['name'], rows = div, tn = 11, ban = ban)
  1718. @app.route('/topic/<path:name>/sub/<path:sub>/b/<number>')
  1719. def blind(name = None, sub = None, number = None):
  1720. if(session.get('Now') == True):
  1721. ip = getip(request)
  1722. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1723. rows = curs.fetchall()
  1724. if(rows):
  1725. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  1726. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  1727. row = curs.fetchall()
  1728. if(row):
  1729. if(row[0]['block'] == 'O'):
  1730. curs.execute("update topic set block = '' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  1731. else:
  1732. curs.execute("update topic set block = 'O' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  1733. conn.commit()
  1734. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  1735. else:
  1736. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  1737. else:
  1738. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1739. else:
  1740. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '계정이 없습니다.')
  1741. else:
  1742. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.')
  1743. @app.route('/topic/<path:name>/sub/<path:sub>/stop')
  1744. def topicstop(name = None, sub = None):
  1745. if(session.get('Now') == True):
  1746. ip = getip(request)
  1747. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1748. rows = curs.fetchall()
  1749. if(rows):
  1750. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  1751. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  1752. row = curs.fetchall()
  1753. if(row):
  1754. today = getnow()
  1755. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  1756. rows = curs.fetchall()
  1757. if(rows):
  1758. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Restart', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Restart', '')")
  1759. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  1760. else:
  1761. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Stop', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Stop', '')")
  1762. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '')")
  1763. conn.commit()
  1764. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  1765. else:
  1766. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  1767. else:
  1768. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1769. else:
  1770. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '계정이 없습니다.')
  1771. else:
  1772. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.')
  1773. @app.route('/topic/<path:name>/sub/<path:sub>/close')
  1774. def topicclose(name = None, sub = None):
  1775. if(session.get('Now') == True):
  1776. ip = getip(request)
  1777. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1778. rows = curs.fetchall()
  1779. if(rows):
  1780. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  1781. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  1782. row = curs.fetchall()
  1783. if(row):
  1784. today = getnow()
  1785. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  1786. rows = curs.fetchall()
  1787. if(rows):
  1788. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Reopen', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Reopen', '')")
  1789. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  1790. else:
  1791. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Close', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Close', '')")
  1792. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'O')")
  1793. conn.commit()
  1794. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  1795. else:
  1796. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  1797. else:
  1798. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1799. else:
  1800. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '계정이 없습니다.')
  1801. else:
  1802. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.')
  1803. @app.route('/login', methods=['POST', 'GET'])
  1804. def login():
  1805. if(request.method == 'POST'):
  1806. ip = getip(request)
  1807. ban = getban(ip)
  1808. if(ban == 1):
  1809. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1810. else:
  1811. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  1812. rows = curs.fetchall()
  1813. if(rows):
  1814. if(session.get('Now') == True):
  1815. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '이미 로그인 되어 있습니다.')
  1816. elif(bcrypt.checkpw(bytes(request.form["pw"], 'utf-8'), bytes(rows[0]['pw'], 'utf-8'))):
  1817. session['Now'] = True
  1818. session['DREAMER'] = request.form["id"]
  1819. curs.execute("insert into login (user, ip, today) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(getnow()) + "')")
  1820. conn.commit()
  1821. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1822. else:
  1823. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '비밀번호가 다릅니다.')
  1824. else:
  1825. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '없는 계정 입니다.')
  1826. else:
  1827. ip = getip(request)
  1828. ban = getban(ip)
  1829. if(ban == 1):
  1830. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1831. else:
  1832. if(session.get('Now') == True):
  1833. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '이미 로그인 되어 있습니다.')
  1834. else:
  1835. return render_template('index.html', title = '로그인', enter = '로그인', logo = data['name'], tn = 15)
  1836. @app.route('/check/<path:name>')
  1837. def check(name = None, sub = None, number = None):
  1838. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  1839. rows = curs.fetchall()
  1840. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  1841. return render_template('index.html', title = '차단 오류', logo = data['name'], data = '관리자는 검사 할 수 없습니다.')
  1842. else:
  1843. if(admincheck() == 1):
  1844. m = re.search('(?:[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)', name)
  1845. if(m):
  1846. curs.execute("select * from login where ip = '" + pymysql.escape_string(name) + "' order by today desc")
  1847. row = curs.fetchall()
  1848. if(row):
  1849. i = 0
  1850. c = ''
  1851. while True:
  1852. try:
  1853. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  1854. except:
  1855. break
  1856. i = i + 1
  1857. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  1858. else:
  1859. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  1860. else:
  1861. curs.execute("select * from login where user = '" + pymysql.escape_string(name) + "' order by today desc")
  1862. row = curs.fetchall()
  1863. if(row):
  1864. i = 0
  1865. c = ''
  1866. while True:
  1867. try:
  1868. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  1869. except:
  1870. break
  1871. i = i + 1
  1872. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  1873. else:
  1874. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  1875. else:
  1876. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1877. @app.route('/register', methods=['POST', 'GET'])
  1878. def register():
  1879. if(request.method == 'POST'):
  1880. ip = getip(request)
  1881. ban = getban(ip)
  1882. if(ban == 1):
  1883. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1884. else:
  1885. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["id"])
  1886. if(m):
  1887. return render_template('index.html', title = '회원가입 오류', logo = data['name'], data = '아이디에는 한글과 알파벳 공백만 허용 됩니다.')
  1888. else:
  1889. if(len(request.form["id"]) > 20):
  1890. return render_template('index.html', title = '회원가입 오류', logo = data['name'], data = '아이디는 20글자보다 짧아야 합니다.')
  1891. else:
  1892. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  1893. rows = curs.fetchall()
  1894. if(rows):
  1895. return render_template('index.html', title = '회원가입 오류', logo = data['name'], data = '동일한 아이디의 유저가 있습니다.')
  1896. else:
  1897. hashed = bcrypt.hashpw(bytes(request.form["pw"], 'utf-8'), bcrypt.gensalt())
  1898. if(request.form["id"] == data['owner']):
  1899. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'owner')")
  1900. else:
  1901. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'user')")
  1902. conn.commit()
  1903. return '<meta http-equiv="refresh" content="0;url=/login" />'
  1904. else:
  1905. ip = getip(request)
  1906. ban = getban(ip)
  1907. if(ban == 1):
  1908. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1909. else:
  1910. return render_template('index.html', title = '회원가입', enter = '회원가입', logo = data['name'], tn = 15)
  1911. @app.route('/logout')
  1912. def logout():
  1913. session['Now'] = False
  1914. session.pop('DREAMER', None)
  1915. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1916. @app.route('/ban/<path:name>', methods=['POST', 'GET'])
  1917. def ban(name = None):
  1918. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  1919. rows = curs.fetchall()
  1920. if(rows and rows[0]['acl'] == 'owner' or rows and rows[0]['acl'] == 'admin'):
  1921. return render_template('index.html', title = '차단 오류', logo = data['name'], data = '관리자는 차단 할 수 없습니다.')
  1922. else:
  1923. if(request.method == 'POST'):
  1924. if(admincheck() == 1):
  1925. ip = getip(request)
  1926. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  1927. row = curs.fetchall()
  1928. if(row):
  1929. block(name, '해제', getnow(), ip, '')
  1930. curs.execute("delete from ban where block = '" + pymysql.escape_string(name) + "'")
  1931. else:
  1932. b = re.search("^([0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)$", name)
  1933. if(b):
  1934. block(name, request.form["end"], getnow(), ip, request.form["why"])
  1935. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', 'O')")
  1936. else:
  1937. block(name, request.form["end"], getnow(), ip, request.form["why"])
  1938. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', '')")
  1939. conn.commit()
  1940. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1941. else:
  1942. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1943. else:
  1944. if(admincheck() == 1):
  1945. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  1946. row = curs.fetchall()
  1947. if(row):
  1948. now = '차단 해제'
  1949. else:
  1950. b = re.search("^([0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)$", name)
  1951. if(b):
  1952. now = '대역 차단'
  1953. else:
  1954. now = '차단'
  1955. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 16, now = now, today = getnow())
  1956. else:
  1957. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1958. @app.route('/acl/<path:name>', methods=['POST', 'GET'])
  1959. def acl(name = None):
  1960. if(request.method == 'POST'):
  1961. if(admincheck() == 1):
  1962. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1963. row = curs.fetchall()
  1964. if(row):
  1965. if(request.form["select"] == 'admin'):
  1966. curs.execute("update data set acl = 'admin' where title = '" + pymysql.escape_string(name) + "'")
  1967. elif(request.form["select"] == 'user'):
  1968. curs.execute("update data set acl = 'user' where title = '" + pymysql.escape_string(name) + "'")
  1969. else:
  1970. curs.execute("update data set acl = '' where title = '" + pymysql.escape_string(name) + "'")
  1971. conn.commit()
  1972. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1973. else:
  1974. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1975. else:
  1976. if(admincheck() == 1):
  1977. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1978. row = curs.fetchall()
  1979. if(row):
  1980. if(row[0]['acl'] == 'admin'):
  1981. now = '관리자만'
  1982. elif(row[0]['acl'] == 'user'):
  1983. now = '유저 이상'
  1984. else:
  1985. now = '일반'
  1986. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 19, now = '현재 ACL 상태는 ' + now)
  1987. else:
  1988. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1989. else:
  1990. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  1991. @app.route('/admin/<path:name>', methods=['POST', 'GET'])
  1992. def admin(name = None):
  1993. if(request.method == 'POST'):
  1994. if(session.get('Now') == True):
  1995. ip = getip(request)
  1996. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1997. rows = curs.fetchall()
  1998. if(rows):
  1999. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2000. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2001. row = curs.fetchall()
  2002. if(row):
  2003. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2004. curs.execute("update user set acl = 'user' where id = '" + pymysql.escape_string(name) + "'")
  2005. else:
  2006. curs.execute("update user set acl = '" + pymysql.escape_string(request.form["select"]) + "' where id = '" + pymysql.escape_string(name) + "'")
  2007. conn.commit()
  2008. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2009. else:
  2010. return render_template('index.html', title = '사용자 오류', logo = data['name'], data = '계정이 없습니다.')
  2011. else:
  2012. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  2013. else:
  2014. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '계정이 없습니다.')
  2015. else:
  2016. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.')
  2017. else:
  2018. if(session.get('Now') == True):
  2019. ip = getip(request)
  2020. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2021. rows = curs.fetchall()
  2022. if(rows):
  2023. if(rows[0]['acl'] == 'owner'):
  2024. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2025. row = curs.fetchall()
  2026. if(row):
  2027. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2028. now = '권한 해제'
  2029. else:
  2030. now = '권한 부여'
  2031. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 18, now = now)
  2032. else:
  2033. return render_template('index.html', title = '사용자 오류', logo = data['name'], data = '계정이 없습니다.')
  2034. else:
  2035. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.')
  2036. else:
  2037. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '계정이 없습니다.')
  2038. else:
  2039. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.')
  2040. @app.route('/grammar')
  2041. def grammar():
  2042. return render_template('index.html', title = '문법 설명', logo = data['name'], tn = 17)
  2043. @app.route('/ban')
  2044. def aban():
  2045. ip = getip(request)
  2046. if(getban(ip) == 1):
  2047. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  2048. rows = curs.fetchall()
  2049. if(rows):
  2050. if(rows[0]['end']):
  2051. end = rows[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2052. now = getnow()
  2053. now = re.sub(':', '', now)
  2054. now = re.sub('\-', '', now)
  2055. now = re.sub(' ', '', now)
  2056. now = int(now)
  2057. day = rows[0]['end']
  2058. day = re.sub('\-', '', day)
  2059. if(now >= int(day + '000000')):
  2060. curs.execute("delete from ban where block = '" + pymysql.escape_string(ip) + "'")
  2061. conn.commit()
  2062. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2063. else:
  2064. end = '영구 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2065. else:
  2066. b = re.search("^([0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)", ip)
  2067. if(b):
  2068. results = b.groups()
  2069. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2070. row = curs.fetchall()
  2071. if(row):
  2072. if(row[0]['end']):
  2073. end = row[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2074. now = getnow()
  2075. now = re.sub(':', '', now)
  2076. now = re.sub('\-', '', now)
  2077. now = re.sub(' ', '', now)
  2078. now = int(now)
  2079. day = row[0]['end']
  2080. day = re.sub('\-', '', day)
  2081. if(now >= int(day + '000000')):
  2082. curs.execute("delete from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2083. conn.commit()
  2084. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2085. else:
  2086. end = '영구 차단 상태 입니다. / 사유 : ' + row[0]['why']
  2087. else:
  2088. end = '권한이 맞지 않는 상태 입니다.'
  2089. return render_template('index.html', title = '권한 오류', logo = data['name'], data = end)
  2090. @app.route('/w/<path:name>/r/<a>/diff/<b>')
  2091. def diff(name = None, a = None, b = None):
  2092. curs.execute("select * from history where id = '" + pymysql.escape_string(a) + "' and title = '" + pymysql.escape_string(name) + "'")
  2093. rows = curs.fetchall()
  2094. if(rows):
  2095. curs.execute("select * from history where id = '" + pymysql.escape_string(b) + "' and title = '" + pymysql.escape_string(name) + "'")
  2096. row = curs.fetchall()
  2097. if(row):
  2098. indata = re.sub('<', '&lt;', rows[0]['data'])
  2099. indata = re.sub('>', '&gt;', indata)
  2100. indata = re.sub('"', '&quot;', indata)
  2101. indata = re.sub('\n', '<br>', indata)
  2102. enddata = re.sub('<', '&lt;', row[0]['data'])
  2103. enddata = re.sub('>', '&gt;', enddata)
  2104. enddata = re.sub('"', '&quot;', enddata)
  2105. enddata = re.sub('\n', '<br>', enddata)
  2106. sm = difflib.SequenceMatcher(None, indata, enddata)
  2107. c = show_diff(sm)
  2108. return render_template('index.html', title = 'Diff', logo = data['name'], data = c)
  2109. else:
  2110. return render_template('index.html', title = 'Diff 오류', logo = data['name'], data = '<a href="/w/' + name + '">이 리비전이나 문서가 없습니다.</a>')
  2111. else:
  2112. return render_template('index.html', title = 'Diff 오류', logo = data['name'], data = '<a href="/w/' + name + '">이 리비전이나 문서가 없습니다.</a>')
  2113. @app.route('/version')
  2114. def version():
  2115. return render_template('index.html', title = '버전', logo = data['name'], tn = 14)
  2116. @app.route('/user')
  2117. def user():
  2118. ip = getip(request)
  2119. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2120. rows = curs.fetchall()
  2121. if(getban(ip) == 0):
  2122. if(rows):
  2123. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  2124. if(rows[0]['acl'] == 'admin'):
  2125. acl = '관리자'
  2126. else:
  2127. acl = '소유자'
  2128. else:
  2129. acl = '유저'
  2130. else:
  2131. acl = '일반'
  2132. else:
  2133. acl = '차단'
  2134. return render_template('index.html', title = '유저 메뉴', logo = data['name'], data = ip + '<br><br><span>권한 상태 : ' + acl + '<br><br><li><a href="/login">로그인</a></li><li><a href="/logout">로그아웃</a></li><li><a href="/register">회원가입</a></li>')
  2135. @app.route('/random')
  2136. def random():
  2137. curs.execute("select * from data order by rand() limit 1")
  2138. rows = curs.fetchall()
  2139. if(rows):
  2140. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(rows[0]['title']).replace('/','%2F') + '" />'
  2141. else:
  2142. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2143. @app.errorhandler(404)
  2144. def uncaughtError(error):
  2145. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2146. if __name__ == '__main__':
  2147. app.run(host = '0.0.0.0', port = int(data['port']), threaded = True)