app.py 132 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749175017511752175317541755175617571758175917601761176217631764176517661767176817691770177117721773177417751776177717781779178017811782178317841785178617871788178917901791179217931794179517961797179817991800180118021803180418051806180718081809181018111812181318141815181618171818181918201821182218231824182518261827182818291830183118321833183418351836183718381839184018411842184318441845184618471848184918501851185218531854185518561857185818591860186118621863186418651866186718681869187018711872187318741875187618771878187918801881188218831884188518861887188818891890189118921893189418951896189718981899190019011902190319041905190619071908190919101911191219131914191519161917191819191920192119221923192419251926192719281929193019311932193319341935193619371938193919401941194219431944194519461947194819491950195119521953195419551956195719581959196019611962196319641965196619671968196919701971197219731974197519761977197819791980198119821983198419851986198719881989199019911992199319941995199619971998199920002001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242025202620272028202920302031203220332034203520362037203820392040204120422043204420452046204720482049205020512052205320542055205620572058205920602061206220632064206520662067206820692070207120722073207420752076207720782079208020812082208320842085208620872088208920902091209220932094209520962097209820992100210121022103210421052106210721082109211021112112211321142115211621172118211921202121212221232124212521262127212821292130213121322133213421352136213721382139214021412142214321442145214621472148214921502151215221532154215521562157215821592160216121622163216421652166216721682169217021712172217321742175217621772178217921802181218221832184218521862187218821892190219121922193219421952196219721982199220022012202220322042205220622072208220922102211221222132214221522162217221822192220222122222223222422252226222722282229223022312232223322342235223622372238223922402241224222432244224522462247224822492250225122522253225422552256225722582259226022612262226322642265226622672268226922702271227222732274227522762277227822792280228122822283228422852286228722882289229022912292229322942295229622972298229923002301230223032304230523062307230823092310231123122313231423152316231723182319232023212322232323242325232623272328232923302331233223332334233523362337233823392340234123422343234423452346234723482349235023512352235323542355235623572358235923602361236223632364236523662367236823692370237123722373237423752376237723782379238023812382238323842385238623872388238923902391239223932394239523962397239823992400240124022403240424052406240724082409241024112412241324142415241624172418241924202421242224232424242524262427242824292430243124322433243424352436243724382439244024412442244324442445244624472448244924502451245224532454245524562457245824592460246124622463246424652466246724682469247024712472247324742475247624772478247924802481248224832484248524862487248824892490249124922493249424952496249724982499250025012502250325042505250625072508250925102511251225132514251525162517251825192520252125222523252425252526252725282529253025312532253325342535253625372538253925402541254225432544254525462547254825492550255125522553255425552556255725582559256025612562256325642565256625672568256925702571257225732574257525762577257825792580258125822583258425852586258725882589259025912592259325942595259625972598259926002601260226032604260526062607260826092610261126122613261426152616261726182619262026212622262326242625262626272628262926302631263226332634263526362637263826392640264126422643264426452646264726482649265026512652265326542655265626572658265926602661266226632664266526662667266826692670267126722673267426752676267726782679268026812682268326842685268626872688268926902691269226932694269526962697269826992700270127022703270427052706270727082709271027112712271327142715271627172718271927202721272227232724272527262727272827292730273127322733273427352736273727382739274027412742274327442745274627472748274927502751275227532754275527562757275827592760276127622763276427652766276727682769277027712772277327742775277627772778277927802781278227832784278527862787
  1. from bottle import route, run, template, error, request, static_file, app, BaseRequest
  2. from bottle.ext import beaker
  3. import bcrypt
  4. import os
  5. import difflib
  6. import hashlib
  7. import json
  8. import pymysql
  9. json_data = open('set.json').read()
  10. set_data = json.loads(json_data)
  11. session_opts = {
  12. 'session.type': 'file',
  13. 'session.data_dir': './app_session/',
  14. 'session.auto': True
  15. }
  16. app = beaker.middleware.SessionMiddleware(app(), session_opts)
  17. BaseRequest.MEMFILE_MAX = 1024 * 1024
  18. def redirect(data):
  19. return('<meta http-equiv="refresh" content="0;url=' + data + '" />')
  20. from func import *
  21. from mark import *
  22. db_pas = pymysql.escape_string
  23. r_ver = '2.1.2'
  24. @route('/setup', method=['GET', 'POST'])
  25. def setup():
  26. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4')
  27. curs = conn.cursor(pymysql.cursors.DictCursor)
  28. if(request.method == 'POST'):
  29. if(not request.forms.owner == set_data['pw']):
  30. conn.close()
  31. return(redirect('/error/3'))
  32. else:
  33. try:
  34. curs.execute("use " + set_data['db'])
  35. except:
  36. curs.execute("create database " + set_data['db'])
  37. curs.execute("use " + set_data['db'])
  38. curs.execute("alter database " + set_data['db'] + " character set = utf8mb4 collate = utf8mb4_unicode_ci")
  39. try:
  40. curs.execute("create table data(title text, data longtext, acl text)")
  41. except:
  42. pass
  43. try:
  44. curs.execute("create table history(id text, title text, data longtext, date text, ip text, send text, leng text)")
  45. except:
  46. pass
  47. try:
  48. curs.execute("create table rd(title text, sub text, date text)")
  49. except:
  50. pass
  51. try:
  52. curs.execute("create table user(id text, pw text, acl text)")
  53. except:
  54. pass
  55. try:
  56. curs.execute("create table ban(block text, end text, why text, band text)")
  57. except:
  58. pass
  59. try:
  60. curs.execute("create table topic(id text, title text, sub text, data longtext, date text, ip text, block text, top text)")
  61. except:
  62. pass
  63. try:
  64. curs.execute("create table stop(title text, sub text, close text)")
  65. except:
  66. pass
  67. try:
  68. curs.execute("create table rb(block text, end text, today text, blocker text, why text)")
  69. except:
  70. pass
  71. try:
  72. curs.execute("create table login(user text, ip text, today text)")
  73. except:
  74. pass
  75. try:
  76. curs.execute("create table back(title text, link text, type text)")
  77. except:
  78. pass
  79. try:
  80. curs.execute("create table cat(title text, cat text)")
  81. except:
  82. pass
  83. try:
  84. curs.execute("create table hidhi(title text, re text)")
  85. except:
  86. pass
  87. try:
  88. curs.execute("create table agreedis(title text, sub text)")
  89. except:
  90. pass
  91. try:
  92. curs.execute("create table custom(user text, css longtext)")
  93. except:
  94. pass
  95. try:
  96. curs.execute("create table other(name text, data text)")
  97. except:
  98. pass
  99. try:
  100. curs.execute("create table alist(name text, acl text)")
  101. except:
  102. pass
  103. conn.close()
  104. return(redirect('/'))
  105. else:
  106. conn.close()
  107. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '<form method="POST"><input name="owner" type="password"> <button class="btn btn-primary" type="submit">저장</button></form>', title = '오픈나무 설치'))
  108. @route('/upload', method=['GET', 'POST'])
  109. def upload():
  110. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  111. curs = conn.cursor(pymysql.cursors.DictCursor)
  112. MEMFILE_MAX = int(set_data['upload']) * 1024 * 1024
  113. ip = ip_check()
  114. ban = ban_check(ip)
  115. if(request.method == 'POST'):
  116. if(ban == 1):
  117. conn.close()
  118. return(redirect('/ban'))
  119. else:
  120. file = request.files.file
  121. if(file):
  122. comp = re.compile("^(.+)(\.(?:jpg|gif|png|jpeg))$", re.I)
  123. exist = comp.search(file.filename)
  124. if(exist):
  125. if((int(set_data['upload']) * 1024 * 1024) < request.content_length):
  126. conn.close()
  127. return(redirect('/error/17'))
  128. else:
  129. file_info = exist.groups()
  130. file_data = file_info[0] + file_info[1]
  131. file_name = sha224(file_info[0]) + file_info[1]
  132. if(os.path.exists(os.path.join('image', file_name))):
  133. conn.close()
  134. return(redirect('/error/16'))
  135. else:
  136. file.save(os.path.join('image', file_name))
  137. curs.execute("select title from data where title = '" + db_pas('파일:' + file_data) + "'")
  138. exist_db = curs.fetchall()
  139. if(not exist_db):
  140. curs.execute("insert into data (title, data, acl) value ('" + db_pas('파일:' + file_data) + "', '" + db_pas('[[파일:' + file_data + ']][br][br]{{{[[파일:' + file_data + ']]}}}') + "', '')")
  141. conn.commit()
  142. history_plus('파일:' + file_data, '[[파일:' + file_data + ']][br][br]{{{[[파일:' + file_data + ']]}}}', get_time(), ip, '파일:' + file_data + ' 업로드', '0')
  143. conn.close()
  144. return(redirect('/w/' + url_pas('파일:' + file_data)))
  145. else:
  146. conn.close()
  147. return(redirect('/error/14'))
  148. else:
  149. conn.close()
  150. return(redirect('/error/14'))
  151. else:
  152. if(ban == 1):
  153. conn.close()
  154. return(redirect('/ban'))
  155. else:
  156. conn.close()
  157. return(template('upload', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], title = '업로드', number = set_data['upload']))
  158. @route('/image/<name:path>')
  159. def static(name = None):
  160. if(os.path.exists(os.path.join('image', name))):
  161. return(static_file(name, root = 'image'))
  162. else:
  163. return(redirect('/'))
  164. @route('/acllist')
  165. def acl_list():
  166. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  167. curs = conn.cursor(pymysql.cursors.DictCursor)
  168. div = '<div>'
  169. i = 0
  170. curs.execute("select title, acl from data where acl = 'admin' or acl = 'user' order by acl desc")
  171. list_data = curs.fetchall()
  172. if(list_data):
  173. for data in list_data:
  174. if(data['acl'] == 'admin'):
  175. acl = '관리자'
  176. else:
  177. acl = '로그인'
  178. div += '<li>' + str(i + 1) + '. <a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (' + acl + ')</li>'
  179. i += 1
  180. else:
  181. div += '</div>'
  182. else:
  183. div = ''
  184. conn.close()
  185. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = 'ACL 문서 목록'))
  186. @route('/listacl')
  187. def list_acl():
  188. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  189. curs = conn.cursor(pymysql.cursors.DictCursor)
  190. div = '<div>'
  191. i = 0
  192. curs.execute("select * from alist order by name desc")
  193. list_data = curs.fetchall()
  194. if(list_data):
  195. for data in list_data:
  196. if(data['acl'] == 'ban'):
  197. acl = '차단'
  198. elif(data['acl'] == 'mdel'):
  199. acl = '많은 문서 삭제'
  200. elif(data['acl'] == 'toron'):
  201. acl = '토론 관리'
  202. elif(data['acl'] == 'check'):
  203. acl = '사용자 검사'
  204. elif(data['acl'] == 'acl'):
  205. acl = '문서 ACL'
  206. elif(data['acl'] == 'hidel'):
  207. acl = '역사 숨김'
  208. elif(data['acl'] == 'owner'):
  209. acl = '소유자'
  210. div += '<li>' + str(i + 1) + '. <a href="/adminplus/' + url_pas(data['name']) + '">' + data['name'] + '</a> (' + acl + ')</li>'
  211. i += 1
  212. else:
  213. div += '<br><a href="/manager/8">(새로 생성)</a></div>'
  214. else:
  215. div = '<a href="/manager/8">(새로 생성)</a></div>'
  216. conn.close()
  217. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = 'ACL 목록'))
  218. @route('/adminplus/<name:path>', method=['POST', 'GET'])
  219. def admin_plus(name = None):
  220. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  221. curs = conn.cursor(pymysql.cursors.DictCursor)
  222. if(admin_check(None) == 1):
  223. if(request.method == 'POST'):
  224. curs.execute("delete from alist where name = '" + db_pas(name) + "'")
  225. if(request.forms.ban):
  226. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'ban')")
  227. if(request.forms.mdel):
  228. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'mdel')")
  229. if(request.forms.toron):
  230. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'toron')")
  231. if(request.forms.check):
  232. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'check')")
  233. if(request.forms.acl):
  234. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'acl')")
  235. if(request.forms.hidel):
  236. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'hidel')")
  237. if(request.forms.owner):
  238. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'owner')")
  239. conn.commit()
  240. conn.close()
  241. return(redirect('/adminplus/admin'))
  242. else:
  243. curs.execute('select acl from alist where name = "' + db_pas(name) + '"')
  244. test = curs.fetchall()
  245. list = ''
  246. exist_list = ['', '', '', '', '', '', '', '', '']
  247. for go in test:
  248. if(go['acl'] == 'ban'):
  249. exist_list[0] = 'checked="checked"'
  250. elif(go['acl'] == 'mdel'):
  251. exist_list[1] = 'checked="checked"'
  252. elif(go['acl'] == 'toron'):
  253. exist_list[2] = 'checked="checked"'
  254. elif(go['acl'] == 'check'):
  255. exist_list[3] = 'checked="checked"'
  256. elif(go['acl'] == 'acl'):
  257. exist_list[4] = 'checked="checked"'
  258. elif(go['acl'] == 'hidel'):
  259. exist_list[5] = 'checked="checked"'
  260. elif(go['acl'] == 'owner'):
  261. exist_list[7] = 'checked="checked"'
  262. list += '<li><input type="checkbox" name="ban" ' + exist_list[0] + '> 차단</li>'
  263. list += '<li><input type="checkbox" name="mdel" ' + exist_list[1] + '> 많은 문서 삭제</li>'
  264. list += '<li><input type="checkbox" name="toron" ' + exist_list[2] + '> 토론 관리</li>'
  265. list += '<li><input type="checkbox" name="check" ' + exist_list[3] + '> 사용자 검사</li>'
  266. list += '<li><input type="checkbox" name="acl" ' + exist_list[4] + '> 문서 ACL</li>'
  267. list += '<li><input type="checkbox" name="hidel" ' + exist_list[5] + '> 역사 숨김</li>'
  268. list += '<li><input type="checkbox" name="owner" ' + exist_list[7] + '> 소유자</li>'
  269. conn.close()
  270. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '관리 그룹 추가', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/adminplus/' + url_pas(name) + '">' + list + '<div class="form-actions"><button class="btn btn-primary" type="submit">저장</button></div></form>'))
  271. else:
  272. conn.close()
  273. return(redirect('/error/3'))
  274. @route('/adminlist')
  275. def admin_list():
  276. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  277. curs = conn.cursor(pymysql.cursors.DictCursor)
  278. i = 1
  279. div = '<div>'
  280. curs.execute("select * from user where acl = 'admin' or acl = 'owner'")
  281. user_data = curs.fetchall()
  282. if(user_data):
  283. for data in user_data:
  284. name = ip_pas(data['id'], 2)
  285. name += ' (' + data['acl'] + ')'
  286. div += '<li>' + str(i) + '. ' + name + '</li>'
  287. i += 1
  288. else:
  289. div += '</div>'
  290. conn.close()
  291. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '관리자 목록'))
  292. else:
  293. conn.close()
  294. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], title = '관리자 목록'))
  295. @route('/recentchanges')
  296. def recentchanges():
  297. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  298. curs = conn.cursor(pymysql.cursors.DictCursor)
  299. ydmin = admin_check(1)
  300. zdmin = admin_check(6)
  301. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">문서명</td><td style="text-align: center;width:33.33%;">기여자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  302. curs.execute("select id, title, date, ip, send, leng from history order by date desc limit 50")
  303. rows = curs.fetchall()
  304. if(rows):
  305. for data in rows:
  306. if(data['send']):
  307. if(re.search("^(?: *)$", data['send'])):
  308. send = '<br>'
  309. else:
  310. send = data['send']
  311. else:
  312. send = '<br>'
  313. title = data['title']
  314. title = re.sub('<', '&lt;', title)
  315. title = re.sub('>', '&gt;', title)
  316. title = re.sub('"', '&quot;', title)
  317. m = re.search("\+", data['leng'])
  318. n = re.search("\-", data['leng'])
  319. if(m):
  320. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  321. elif(n):
  322. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  323. else:
  324. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  325. if(ydmin == 1):
  326. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  327. row = curs.fetchall()
  328. if(row):
  329. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  330. else:
  331. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  332. else:
  333. ban = ''
  334. ip = ip_pas(data['ip'], None)
  335. if((int(data['id']) - 1) == 0):
  336. revert = ''
  337. else:
  338. revert = '<a href="/w/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '/diff/' + data['id'] + '">(비교)</a> <a href="/revert/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '">(되돌리기)</a>'
  339. style = ''
  340. if(zdmin == 1):
  341. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  342. row = curs.fetchall()
  343. if(row):
  344. ip += ' (숨김)'
  345. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(공개)'
  346. else:
  347. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(숨김)'
  348. else:
  349. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  350. row = curs.fetchall()
  351. if(row):
  352. ip = '숨김'
  353. hidden = ''
  354. send = '숨김'
  355. ban = ''
  356. style = 'display:none;'
  357. else:
  358. hidden = ''
  359. div += '<tr style="' + style + '"><td style="text-align: center;width:33.33%;"><a href="/w/' + url_pas(data['title']) + '">' + title + '</a> (<a href="/history/' + url_pas(data['title']) + '">' + data['id'] + '판</a>) ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + hidden + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr>'
  360. else:
  361. div += '</tbody></table></div>'
  362. else:
  363. div = 'None'
  364. conn.close()
  365. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '최근 변경내역'))
  366. @route('/history/<name:path>/r/<num:int>/hidden')
  367. def history_hidden(name = None, num = None):
  368. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  369. curs = conn.cursor(pymysql.cursors.DictCursor)
  370. if(admin_check(6) == 1):
  371. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  372. exist = curs.fetchall()
  373. if(exist):
  374. curs.execute("delete from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  375. else:
  376. curs.execute("insert into hidhi (title, re) value ('" + db_pas(name) + "', '" + db_pas(str(num)) + "')")
  377. conn.commit()
  378. conn.close()
  379. return(redirect('/history/' + url_pas(name)))
  380. @route('/record/<name:path>')
  381. @route('/record/<name:path>/n/<num:int>')
  382. def user_record(name = None, num = 1):
  383. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  384. curs = conn.cursor(pymysql.cursors.DictCursor)
  385. if(num * 50 <= 0):
  386. v = 50
  387. else:
  388. v = num * 50
  389. i = v - 50
  390. ydmin = admin_check(1)
  391. zdmin = admin_check(6)
  392. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">문서명</td><td style="text-align: center;width:33.33%;">기여자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  393. curs.execute("select * from history where ip = '" + db_pas(name) + "' order by date desc limit " + str(i) + ", " + str(v))
  394. rows = curs.fetchall()
  395. if(rows):
  396. for data in rows:
  397. if(data['send']):
  398. send = data['send']
  399. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  400. else:
  401. send = '<br>'
  402. title = data['title']
  403. title = re.sub('<', '&lt;', title)
  404. title = re.sub('>', '&gt;', title)
  405. title = re.sub('"', '&quot;', title)
  406. m = re.search("\+", data['leng'])
  407. n = re.search("\-", data['leng'])
  408. if(m):
  409. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  410. elif(n):
  411. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  412. else:
  413. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  414. if(ydmin == 1):
  415. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  416. row = curs.fetchall()
  417. if(row):
  418. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  419. else:
  420. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  421. else:
  422. ban = ''
  423. ip = ip_pas(data['ip'], None)
  424. if((int(data['id']) - 1) == 0):
  425. revert = ''
  426. else:
  427. revert = '<a href="/revert/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '">(되돌리기)</a>'
  428. style = ''
  429. if(zdmin == 1):
  430. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  431. row = curs.fetchall()
  432. if(row):
  433. ip += ' (숨김)'
  434. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(공개)'
  435. else:
  436. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(숨김)'
  437. else:
  438. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  439. row = curs.fetchall()
  440. if(row):
  441. ip = '숨김'
  442. hidden = ''
  443. send = '숨김'
  444. ban = ''
  445. style = 'display:none;'
  446. else:
  447. hidden = ''
  448. div += '<tr style="' + style + '"><td style="text-align: center;width:33.33%;"><a href="/w/' + url_pas(data['title']) + '">' + title + '</a> (<a href="/history/' + url_pas(data['title']) + '">' + data['id'] + '판</a>) <a href="/w/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '/diff/' + data['id'] + '">(비교)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + hidden + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr>'
  449. else:
  450. div += '</tbody></table></div>'
  451. else:
  452. div = 'None<br>'
  453. div += '<br><a href="/record/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/record/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  454. curs.execute("select end, why from ban where block = '" + db_pas(name) + "'")
  455. ban_it = curs.fetchall()
  456. if(ban_it):
  457. div = namumark('', '{{{#!wiki style="border:2px solid red;padding:10px;"\r\n{{{+2 {{{#red 이 사용자는 차단 당했습니다.}}}}}}\r\n\r\n차단 해제 일 : ' + ban_it[0]['end'] + '[br]사유 : ' + ban_it[0]['why'] + '}}}') + '<br>' + div
  458. conn.close()
  459. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 기록'))
  460. @route('/userlog')
  461. @route('/userlog/n/<num:int>')
  462. def user_log(num = 1):
  463. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  464. curs = conn.cursor(pymysql.cursors.DictCursor)
  465. if(num * 50 <= 0):
  466. i = 50
  467. else:
  468. i = num * 50
  469. j = i - 50
  470. list_data = ''
  471. ydmin = admin_check(1)
  472. curs.execute("select * from user limit " + str(j) + ", " + str(i))
  473. user_list = curs.fetchall()
  474. if(user_list):
  475. for data in user_list:
  476. if(ydmin == 1):
  477. curs.execute("select * from ban where block = '" + db_pas(data['id']) + "'")
  478. ban_exist = curs.fetchall()
  479. if(ban_exist):
  480. ban_button = ' <a href="/ban/' + url_pas(data['id']) + '">(해제)</a>'
  481. else:
  482. ban_button = ' <a href="/ban/' + url_pas(data['id']) + '">(차단)</a>'
  483. else:
  484. ban_button = ''
  485. ip = ip_pas(data['id'], None)
  486. list_data += '<li>' + str(j + 1) + '. ' + ip + ban_button + '</li>'
  487. j += 1
  488. list_data += '<br><a href="/userlog/n/' + str(num - 1) + '">(이전)</a> <a href="/userlog/n/' + str(num + 1) + '">(이후)</a>'
  489. conn.close()
  490. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = list_data, title = '사용자 가입 기록'))
  491. else:
  492. conn.close()
  493. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '', title = '사용자 가입 기록'))
  494. @route('/backreset')
  495. def xref_reset():
  496. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  497. curs = conn.cursor(pymysql.cursors.DictCursor)
  498. if(admin_check(None) == 1):
  499. i = 0
  500. curs.execute("delete from back")
  501. conn.commit()
  502. curs.execute("select title, data from data")
  503. all = curs.fetchall()
  504. if(all):
  505. for data in all:
  506. namumark(data['title'], data['data'])
  507. conn.close()
  508. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '에러 없음', title = '완료'))
  509. else:
  510. conn.close()
  511. return(redirect('/error/3'))
  512. @route('/xref/<name:path>')
  513. @route('/xref/<name:path>/n/<num:int>')
  514. def xref(name = None, num = 1):
  515. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  516. curs = conn.cursor(pymysql.cursors.DictCursor)
  517. if(num * 50 <= 0):
  518. v = 50
  519. else:
  520. v = num * 50
  521. i = v - 50
  522. div = ''
  523. restart = 0
  524. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = ''")
  525. conn.commit()
  526. curs.execute("select * from back where title = '" + db_pas(name) + "' order by link asc")
  527. rows = curs.fetchall()
  528. if(rows):
  529. for data in rows:
  530. if(data['type'] == 'include' or data['type'] == 'file'):
  531. curs.execute("select * from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "' and type = ''")
  532. test = curs.fetchall()
  533. if(test):
  534. restart = 1
  535. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "' and type = ''")
  536. conn.commit()
  537. if(not re.search('^사용자:', data['link'])):
  538. curs.execute("select * from data where title = '" + db_pas(data['link']) + "'")
  539. row = curs.fetchall()
  540. if(row):
  541. test = row[0]['data']
  542. test = re.sub("(?P<in>\[include\((?P<out>(?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\])", "\g<in>\n\n[[\g<out>]]\n\n", test)
  543. test = re.sub("\[\[파일:(?P<in>(?:(?!\]\]|\|).)*)(?:\|((?:(?!\]\]).)*))?\]\]", "\n\n[[:파일:\g<in>]]\n\n", test)
  544. test = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', '[[\g<in>]]', test)
  545. test = namumark('', test)
  546. if(re.search("<a(?:(?:(?!href=).)*)?href=\"\/w\/" + url_pas(name) + "(?:\#[^\"]*)?\"(?:(?:(?!>).)*)?>([^<]*)<\/a>", test)):
  547. div += '<li><a href="/w/' + url_pas(data['link']) + '">' + data['link'] + '</a>'
  548. if(data['type']):
  549. div += ' (' + data['type'] + ')</li>'
  550. else:
  551. div += '</li>'
  552. else:
  553. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "'")
  554. conn.commit()
  555. i += 1
  556. v += 1
  557. else:
  558. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "'")
  559. conn.commit()
  560. i += 1
  561. v += 1
  562. else:
  563. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "'")
  564. conn.commit()
  565. i += 1
  566. v += 1
  567. if(restart == 1):
  568. conn.close()
  569. return(redirect('/xref/' + url_pas(name) + '/n/' + str(num)))
  570. else:
  571. div += '<br><a href="/xref/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/xref/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  572. conn.close()
  573. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, page = url_pas(name), sub = '역링크'))
  574. else:
  575. conn.close()
  576. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = 'None', title = name, page = url_pas(name), sub = '역링크'))
  577. @route('/recentdiscuss')
  578. def recentdiscuss():
  579. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  580. curs = conn.cursor(pymysql.cursors.DictCursor)
  581. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:50%;">토론명</td><td style="text-align: center;width:50%;">시간</td></tr>'
  582. curs.execute("select * from rd order by date desc limit 50")
  583. rows = curs.fetchall()
  584. if(rows):
  585. for data in rows:
  586. title = data['title']
  587. title = re.sub('<', '&lt;', title)
  588. title = re.sub('>', '&gt;', title)
  589. title = re.sub('"', '&quot;', title)
  590. sub = data['sub']
  591. sub = re.sub('<', '&lt;', sub)
  592. sub = re.sub('>', '&gt;', sub)
  593. sub = re.sub('"', '&quot;', sub)
  594. div += '<tr><td style="text-align: center;width:50%;"><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '">' + title + '</a> (' + sub + ')</td><td style="text-align: center;width:50%;">' + data['date'] + '</td></tr>'
  595. else:
  596. div += '</tbody></table></div>'
  597. else:
  598. div = 'None'
  599. conn.close()
  600. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '최근 토론내역'))
  601. @route('/blocklog')
  602. @route('/blocklog/n/<number:int>')
  603. def blocklog(num = 1):
  604. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  605. curs = conn.cursor(pymysql.cursors.DictCursor)
  606. if(num * 50 <= 0):
  607. v = 50
  608. else:
  609. v = num * 50
  610. i = v - 50
  611. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:20%;">차단자</td><td style="text-align: center;width:20%;">관리자</td><td style="text-align: center;width:20%;">기간</td><td style="text-align: center;width:20%;">이유</td><td style="text-align: center;width:20%;">시간</td></tr>'
  612. curs.execute("select * from rb order by today desc")
  613. rows = curs.fetchall()
  614. if(rows):
  615. for data in rows:
  616. why = data['why']
  617. why = re.sub('<', '&lt;', why)
  618. why = re.sub('>', '&gt;', why)
  619. why = re.sub('"', '&quot;', why)
  620. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", data['block'])
  621. if(b):
  622. ip = data['block'] + ' (대역)'
  623. else:
  624. ip = data['block']
  625. div += '<tr><td style="text-align: center;width:20%;">' + ip + '</a></td><td style="text-align: center;width:20%;">' + data['blocker'] + '</td><td style="text-align: center;width:20%;">' + data['end'] + '</td><td style="text-align: center;width:20%;">' + data['why'] + '</td><td style="text-align: center;width:20%;">' + data['today'] + '</td></tr>'
  626. else:
  627. div += '</tbody></table></div>'
  628. else:
  629. div = 'None'
  630. conn.close()
  631. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 차단 기록'))
  632. @route('/history/<name:path>', method=['POST', 'GET'])
  633. @route('/history/<name:path>/n/<num:int>', method=['POST', 'GET'])
  634. def history_view(name = None, num = 1):
  635. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  636. curs = conn.cursor(pymysql.cursors.DictCursor)
  637. if(request.method == 'POST'):
  638. conn.close()
  639. return(redirect('/w/' + url_pas(name) + '/r/' + request.forms.b + '/diff/' + request.forms.a))
  640. else:
  641. select = ''
  642. num1 = 0
  643. num2 = 0
  644. curs.execute("select id from history where title = '" + db_pas(name) + "' order by id + 0 desc limit 1")
  645. end_num = curs.fetchall()
  646. if(end_num):
  647. num1 = int(end_num[0]['id']) - num * 50
  648. if(num1 > 0):
  649. num2 = num1 + 51
  650. else:
  651. if(num1 + 51 > 0):
  652. num2 = num1 + 51
  653. admin1 = admin_check(1)
  654. admin2 = admin_check(6)
  655. div = '<div><table style="text-align:center; width:100%;"><tbody><tr><td style="width:33.33%;">판</td><td style="width:33.33%;">기여자</td><td style="width:33.33%;">시간</td></tr>'
  656. curs.execute("select send, leng, ip, date, title, id from history where title = '" + db_pas(name) + "' and id + 0 < '" + str(num2) + "' and id + 0 > '" + str(num1) + "' order by id + 0 desc")
  657. all_data = curs.fetchall()
  658. if(all_data):
  659. for data in all_data:
  660. select += '<option value="' + data['id'] + '">' + data['id'] + '</option>'
  661. if(data['send']):
  662. send = data['send']
  663. else:
  664. send = '<br>'
  665. if(re.search("^\+", data['leng'])):
  666. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  667. elif(re.search("^\-", data['leng'])):
  668. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  669. else:
  670. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  671. ip = ip_pas(data['ip'], None)
  672. curs.execute("select block from ban where block = '" + db_pas(data['ip']) + "'")
  673. ban_it = curs.fetchall()
  674. if(ban_it):
  675. if(admin1 == 1):
  676. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  677. else:
  678. ban = ' (X)'
  679. else:
  680. if(admin1 == 1):
  681. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  682. else:
  683. ban = ''
  684. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(data['id']) + "'")
  685. hid_it = curs.fetchall()
  686. if(hid_it):
  687. if(admin2):
  688. hidden = ' <a href="/history/' + url_pas(name) + '/r/' + url_pas(data['id']) + '/hidden">(공개)'
  689. hid = 0
  690. else:
  691. hid = 1
  692. else:
  693. if(admin2):
  694. hidden = ' <a href="/history/' + url_pas(name) + '/r/' + url_pas(data['id']) + '/hidden">(숨김)'
  695. hid = 0
  696. else:
  697. hidden = ''
  698. hid = 0
  699. if(hid == 1):
  700. div += '<tr><td colspan="3">숨김</td></tr>'
  701. else:
  702. div += '<tr><td>' + data['id'] + '판</a> <a href="/w/' + url_pas(data['title']) + '/r/' + url_pas(data['id']) + '">(보기)</a> <a href="/w/' + url_pas(data['title']) + '/raw/' + url_pas(data['id']) + '">(원본)</a> <a href="/revert/' + url_pas(data['title']) + '/r/' + url_pas(data['id']) + '">(되돌리기)</a> (' + leng + ')</td><td>' + ip + ban + hidden + '</td><td>' + data['date'] + '</td></tr><tr><td colspan="3">' + send + '</td></tr>'
  703. else:
  704. div += '</tbody></table></div>'
  705. else:
  706. div = 'None<br>'
  707. div += '<br><a href="/history/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/history/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  708. conn.close()
  709. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, page = url_pas(name), select = select, sub = '역사'))
  710. @route('/search', method=['POST'])
  711. def search():
  712. return(redirect('/search/' + url_pas(request.forms.search)))
  713. @route('/goto', method=['POST'])
  714. def goto():
  715. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  716. curs = conn.cursor(pymysql.cursors.DictCursor)
  717. curs.execute("select title from data where title = '" + db_pas(request.forms.search) + "'")
  718. data = curs.fetchall()
  719. conn.close()
  720. if(data):
  721. return(redirect('/w/' + url_pas(request.forms.search)))
  722. else:
  723. return(redirect('/search/' + url_pas(request.forms.search)))
  724. @route('/search/<name:path>')
  725. @route('/search/<name:path>/n/<num:int>')
  726. def deep_search(name = None, num = 1):
  727. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  728. curs = conn.cursor(pymysql.cursors.DictCursor)
  729. if(num * 50 <= 0):
  730. v = num * 50
  731. else:
  732. v = 50
  733. i = v - 50
  734. div = ''
  735. div_plus = ''
  736. end = ''
  737. curs.execute("select title from data where title like '%" + db_pas(name) + "%'")
  738. title_list = curs.fetchall()
  739. curs.execute("select title from data where data like '%" + db_pas(name) + "%'")
  740. data_list = curs.fetchall()
  741. curs.execute("select title from data where title = '" + db_pas(name) + "'")
  742. exist = curs.fetchall()
  743. if(exist):
  744. div = '<li>문서로 <a href="/w/' + url_pas(name) + '">바로가기</a></li><br>'
  745. else:
  746. div = '<li>문서가 없습니다. <a class="not_thing" href="/w/' + url_pas(name) + '">바로가기</a></li><br>'
  747. if(title_list):
  748. no = 0
  749. if(data_list):
  750. all_list = title_list + data_list
  751. else:
  752. all_list = title_list
  753. else:
  754. if(data_list):
  755. no = 1
  756. all_list = data_list
  757. else:
  758. all_list = ''
  759. if(not all_list == ''):
  760. for data in all_list:
  761. re_title = re.compile(name, re.I)
  762. if(re.search(re_title, data['title'])):
  763. if(no == 0):
  764. div += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (문서명)</li>'
  765. else:
  766. div_plus += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (내용)</li>'
  767. else:
  768. no = 1
  769. div_plus += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (내용)</li>'
  770. else:
  771. div += '<li>검색 결과 없음</li>'
  772. div += div_plus + end
  773. div += '<br><a href="/search/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/search/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  774. conn.close()
  775. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, sub = '검색'))
  776. @route('/w/<name:path>/r/<num:int>')
  777. def old_view(name = None, num = None):
  778. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  779. curs = conn.cursor(pymysql.cursors.DictCursor)
  780. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  781. row = curs.fetchall()
  782. if(row):
  783. if(admin_check(6) == 1):
  784. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  785. rows = curs.fetchall()
  786. if(rows):
  787. conn.close()
  788. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = namumark(name, rows[0]['data']), sub = '옛 문서'))
  789. else:
  790. conn.close()
  791. return(redirect('/history/' + url_pas(name)))
  792. else:
  793. conn.close()
  794. return(redirect('/error/3'))
  795. else:
  796. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  797. rows = curs.fetchall()
  798. if(rows):
  799. conn.close()
  800. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = namumark(name, rows[0]['data']), sub = '옛 문서'))
  801. else:
  802. conn.close()
  803. return(redirect('/history/' + url_pas(name)))
  804. @route('/w/<name:path>/raw/<num:int>')
  805. def old_raw(name = None, num = None):
  806. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  807. curs = conn.cursor(pymysql.cursors.DictCursor)
  808. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  809. row = curs.fetchall()
  810. if(row):
  811. if(admin_check(6) == 1):
  812. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  813. rows = curs.fetchall()
  814. if(rows):
  815. enddata = re.sub('<', '&lt;', rows[0]['data'])
  816. enddata = re.sub('>', '&gt;', enddata)
  817. enddata = re.sub('"', '&quot;', enddata)
  818. enddata = '<pre>' + enddata + '</pre>'
  819. conn.close()
  820. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '옛 원본'))
  821. else:
  822. conn.close()
  823. return(redirect('/history/' + url_pas(name)))
  824. else:
  825. conn.close()
  826. return(redirect('/error/3'))
  827. else:
  828. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  829. rows = curs.fetchall()
  830. if(rows):
  831. enddata = re.sub('<', '&lt;', rows[0]['data'])
  832. enddata = re.sub('>', '&gt;', enddata)
  833. enddata = re.sub('"', '&quot;', enddata)
  834. enddata = '<pre>' + enddata + '</pre>'
  835. conn.close()
  836. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '옛 원본'))
  837. else:
  838. conn.close()
  839. return(redirect('/history/' + url_pas(name)))
  840. @route('/raw/<name:path>')
  841. def raw_view(name = None):
  842. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  843. curs = conn.cursor(pymysql.cursors.DictCursor)
  844. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  845. rows = curs.fetchall()
  846. if(rows):
  847. enddata = re.sub('<', '&lt;', rows[0]['data'])
  848. enddata = re.sub('>', '&gt;', enddata)
  849. enddata = re.sub('"', '&quot;', enddata)
  850. enddata = '<pre>' + enddata + '</pre>'
  851. conn.close()
  852. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '원본'))
  853. else:
  854. conn.close()
  855. return(redirect('/w/' + url_pas(name)))
  856. @route('/revert/<name:path>/r/<num:int>', method=['POST', 'GET'])
  857. def revert(name = None, num = None):
  858. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  859. curs = conn.cursor(pymysql.cursors.DictCursor)
  860. ip = ip_check()
  861. can = acl_check(ip, name)
  862. today = get_time()
  863. if(request.method == 'POST'):
  864. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  865. row = curs.fetchall()
  866. if(row):
  867. if(admin_check(6) == 1):
  868. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  869. rows = curs.fetchall()
  870. if(rows):
  871. if(can == 1):
  872. conn.close()
  873. return(redirect('/ban'))
  874. else:
  875. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  876. row = curs.fetchall()
  877. if(row):
  878. leng = leng_check(len(row[0]['data']), len(rows[0]['data']))
  879. curs.execute("update data set data = '" + db_pas(rows[0]['data']) + "' where title = '" + db_pas(name) + "'")
  880. conn.commit()
  881. else:
  882. leng = '+' + str(len(rows[0]['data']))
  883. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(rows[0]['data']) + "', '')")
  884. conn.commit()
  885. history_plus(name, rows[0]['data'], today, ip, '문서를 ' + str(num) + '판으로 되돌렸습니다.', leng)
  886. conn.close()
  887. return(redirect('/w/' + url_pas(name)))
  888. else:
  889. conn.close()
  890. return(redirect('/w/' + url_pas(name)))
  891. else:
  892. conn.close()
  893. return(redirect('/error/3'))
  894. else:
  895. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  896. rows = curs.fetchall()
  897. if(rows):
  898. if(can == 1):
  899. conn.close()
  900. return(redirect('/ban'))
  901. else:
  902. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  903. row = curs.fetchall()
  904. if(row):
  905. leng = leng_check(len(row[0]['data']), len(rows[0]['data']))
  906. curs.execute("update data set data = '" + db_pas(rows[0]['data']) + "' where title = '" + db_pas(name) + "'")
  907. conn.commit()
  908. else:
  909. leng = '+' + str(len(rows[0]['data']))
  910. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(rows[0]['data']) + "', '')")
  911. conn.commit()
  912. history_plus(name, rows[0]['data'], today, ip, '문서를 ' + str(num) + '판으로 되돌렸습니다.', leng)
  913. conn.close()
  914. return(redirect('/w/' + url_pas(name)))
  915. else:
  916. conn.close()
  917. return(redirect('/w/' + url_pas(name)) )
  918. else:
  919. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  920. row = curs.fetchall()
  921. if(row):
  922. if(admin_check(6) == 1):
  923. if(can == 1):
  924. conn.close()
  925. return(redirect('/ban'))
  926. else:
  927. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  928. rows = curs.fetchall()
  929. if(rows):
  930. conn.close()
  931. return(template('revert', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), r = url_pas(str(num)), plus = '정말 되돌리시겠습니까?', sub = '되돌리기'))
  932. else:
  933. conn.close()
  934. return(redirect('/w/' + url_pas(name)))
  935. else:
  936. conn.close()
  937. return(redirect('/error/3'))
  938. else:
  939. if(can == 1):
  940. conn.close()
  941. return(redirect('/ban'))
  942. else:
  943. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  944. rows = curs.fetchall()
  945. if(rows):
  946. conn.close()
  947. return(template('revert', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), r = url_pas(str(num)), plus = '정말 되돌리시겠습니까?', sub = '되돌리기'))
  948. else:
  949. conn.close()
  950. return(redirect('/w/' + url_pas(name)))
  951. @route('/mdel', method=['POST', 'GET'])
  952. def many_del():
  953. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  954. curs = conn.cursor(pymysql.cursors.DictCursor)
  955. today = get_time()
  956. ip = ip_check()
  957. if(admin_check(2) == 1):
  958. if(request.method == 'POST'):
  959. data = request.forms.content + '\r\n'
  960. while(True):
  961. m = re.search('(.*)\r\n', data)
  962. if(m):
  963. g = m.groups()
  964. curs.execute("select data from data where title = '" + db_pas(g[0]) + "'")
  965. rows = curs.fetchall()
  966. if(rows):
  967. leng = '-' + str(len(rows[0]['data']))
  968. curs.execute("delete from data where title = '" + db_pas(g[0]) + "'")
  969. history_plus(g[0], '', today, ip, request.forms.send + ' (대량 삭제)', leng)
  970. data = re.sub('(.*)\r\n', '', data, 1)
  971. else:
  972. break
  973. conn.commit()
  974. conn.close()
  975. return(redirect('/'))
  976. else:
  977. conn.close()
  978. return(template('mdel', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '많은 문서 삭제', logo = set_data['name']))
  979. else:
  980. conn.close()
  981. return(redirect('/error/3'))
  982. @route('/edit/<name:path>/section/<num:int>', method=['POST', 'GET'])
  983. def section_edit(name = None, num = None):
  984. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  985. curs = conn.cursor(pymysql.cursors.DictCursor)
  986. ip = ip_check()
  987. can = acl_check(ip, name)
  988. if(request.method == 'POST'):
  989. if(len(request.forms.send) > 500):
  990. conn.close()
  991. return(redirect('/error/15'))
  992. else:
  993. today = get_time()
  994. content = savemark(request.forms.content)
  995. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  996. rows = curs.fetchall()
  997. if(rows):
  998. if(request.forms.otent == content):
  999. conn.close()
  1000. return(redirect('/error/18'))
  1001. else:
  1002. if(can == 1):
  1003. conn.close()
  1004. return(redirect('/ban'))
  1005. else:
  1006. leng = leng_check(len(request.forms.otent), len(content))
  1007. content = rows[0]['data'].replace(request.forms.otent, content)
  1008. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1009. curs.execute("update data set data = '" + db_pas(content) + "' where title = '" + db_pas(name) + "'")
  1010. conn.commit()
  1011. include_check(name, content)
  1012. conn.close()
  1013. return(redirect('/w/' + url_pas(name)))
  1014. else:
  1015. conn.close()
  1016. return(redirect('/w/' + url_pas(name)))
  1017. else:
  1018. if(can == 1):
  1019. conn.close()
  1020. return(redirect('/ban'))
  1021. else:
  1022. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1023. rows = curs.fetchall()
  1024. if(rows):
  1025. i = 0
  1026. j = 0
  1027. gdata = rows[0]['data'] + '\r\n'
  1028. while(True):
  1029. m = re.search("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", gdata)
  1030. if(m):
  1031. if(i == num - 1):
  1032. g = m.groups()
  1033. gdata = re.sub("\r\n$", "", g[0])
  1034. break
  1035. else:
  1036. gdata = re.sub("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", "", gdata, 1)
  1037. i += 1
  1038. else:
  1039. j = 1
  1040. break
  1041. if(j == 0):
  1042. gdata = re.sub("\r\n$", "", gdata)
  1043. conn.close()
  1044. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = gdata, section = 1, number = num, sub = '편집'))
  1045. else:
  1046. conn.close()
  1047. return(redirect('/w/' + url_pas(name)))
  1048. else:
  1049. conn.close()
  1050. return(redirect('/w/' + url_pas(name)))
  1051. @route('/edit/<name:path>', method=['POST', 'GET'])
  1052. def edit(name = None):
  1053. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1054. curs = conn.cursor(pymysql.cursors.DictCursor)
  1055. ip = ip_check()
  1056. can = acl_check(ip, name)
  1057. if(request.method == 'POST'):
  1058. if(len(request.forms.send) > 500):
  1059. conn.close()
  1060. return(redirect('/error/15'))
  1061. else:
  1062. today = get_time()
  1063. content = savemark(request.forms.content)
  1064. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1065. rows = curs.fetchall()
  1066. if(rows):
  1067. if(rows[0]['data'] == content):
  1068. conn.close()
  1069. return(redirect('/error/18'))
  1070. else:
  1071. if(can == 1):
  1072. conn.close()
  1073. return(redirect('/ban'))
  1074. else:
  1075. leng = leng_check(len(rows[0]['data']), len(content))
  1076. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1077. curs.execute("update data set data = '" + db_pas(content) + "' where title = '" + db_pas(name) + "'")
  1078. conn.commit()
  1079. else:
  1080. if(can == 1):
  1081. conn.close()
  1082. return(redirect('/ban'))
  1083. else:
  1084. leng = '+' + str(len(content))
  1085. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1086. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(content) + "', '')")
  1087. conn.commit()
  1088. include_check(name, content)
  1089. conn.close()
  1090. return(redirect('/w/' + url_pas(name)))
  1091. else:
  1092. if(can == 1):
  1093. conn.close()
  1094. return(redirect('/ban'))
  1095. else:
  1096. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1097. rows = curs.fetchall()
  1098. if(rows):
  1099. conn.close()
  1100. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = rows[0]['data'], sub = '편집'))
  1101. else:
  1102. conn.close()
  1103. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = '', sub = '편집'))
  1104. @route('/preview/<name:path>/section/<num:int>', method=['POST'])
  1105. def section_preview(name = None, num = None):
  1106. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1107. curs = conn.cursor(pymysql.cursors.DictCursor)
  1108. ip = ip_check()
  1109. can = acl_check(ip, name)
  1110. if(can == 1):
  1111. conn.close()
  1112. return(redirect('/ban'))
  1113. else:
  1114. newdata = request.forms.content
  1115. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * [[\g<in>]] 문서로 넘겨주기', newdata)
  1116. enddata = namumark(name, newdata)
  1117. conn.close()
  1118. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = request.forms.content, preview = 1, enddata = enddata, section = 1, number = num, odata = request.forms.otent, sub = '미리보기'))
  1119. @route('/preview/<name:path>', method=['POST'])
  1120. def preview(name = None):
  1121. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1122. curs = conn.cursor(pymysql.cursors.DictCursor)
  1123. ip = ip_check()
  1124. can = acl_check(ip, name)
  1125. if(can == 1):
  1126. conn.close()
  1127. return(redirect('/ban'))
  1128. else:
  1129. newdata = request.forms.content
  1130. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * [[\g<in>]] 문서로 넘겨주기', newdata)
  1131. enddata = namumark(name, newdata)
  1132. conn.close()
  1133. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = request.forms.content, preview = 1, enddata = enddata, sub = '미리보기'))
  1134. @route('/delete/<name:path>', method=['POST', 'GET'])
  1135. def delete(name = None):
  1136. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1137. curs = conn.cursor(pymysql.cursors.DictCursor)
  1138. ip = ip_check()
  1139. can = acl_check(ip, name)
  1140. if(request.method == 'POST'):
  1141. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1142. rows = curs.fetchall()
  1143. if(rows):
  1144. if(can == 1):
  1145. conn.close()
  1146. return(redirect('/ban'))
  1147. else:
  1148. today = get_time()
  1149. leng = '-' + str(len(rows[0]['data']))
  1150. history_plus(name, '', today, ip, request.forms.send + ' (삭제)', leng)
  1151. curs.execute("delete from data where title = '" + db_pas(name) + "'")
  1152. conn.commit()
  1153. conn.close()
  1154. return(redirect('/w/' + url_pas(name)))
  1155. else:
  1156. conn.close()
  1157. return(redirect('/w/' + url_pas(name)))
  1158. else:
  1159. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1160. rows = curs.fetchall()
  1161. if(rows):
  1162. if(can == 1):
  1163. conn.close()
  1164. return(redirect('/ban'))
  1165. else:
  1166. conn.close()
  1167. return(template('del', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), plus = '정말 삭제 하시겠습니까?', sub = '삭제'))
  1168. else:
  1169. conn.close()
  1170. return(redirect('/w/' + url_pas(name)))
  1171. @route('/move/<name:path>', method=['POST', 'GET'])
  1172. def move(name = None):
  1173. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1174. curs = conn.cursor(pymysql.cursors.DictCursor)
  1175. ip = ip_check()
  1176. can = acl_check(ip, name)
  1177. today = get_time()
  1178. if(request.method == 'POST'):
  1179. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1180. rows = curs.fetchall()
  1181. if(can == 1):
  1182. conn.close()
  1183. return(redirect('/ban'))
  1184. else:
  1185. leng = '0'
  1186. curs.execute("select * from history where title = '" + db_pas(request.forms.title) + "'")
  1187. row = curs.fetchall()
  1188. if(row):
  1189. conn.close()
  1190. return(redirect('/error/19'))
  1191. else:
  1192. history_plus(name, rows[0]['data'], today, ip, request.forms.send + ' (<a href="/w/' + url_pas(name) + '">' + name + '</a> - <a href="/w/' + url_pas(request.forms.title) + '">' + request.forms.title + '</a> 이동)', leng)
  1193. if(rows):
  1194. curs.execute("update data set title = '" + db_pas(request.forms.title) + "' where title = '" + db_pas(name) + "'")
  1195. curs.execute("update history set title = '" + db_pas(request.forms.title) + "' where title = '" + db_pas(name) + "'")
  1196. conn.commit()
  1197. conn.close()
  1198. return(redirect('/w/' + url_pas(request.forms.title)))
  1199. else:
  1200. if(can == 1):
  1201. conn.close()
  1202. return(redirect('/ban'))
  1203. else:
  1204. conn.close()
  1205. return(template('move', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), plus = '정말 이동 하시겠습니까?', sub = '이동'))
  1206. @route('/other')
  1207. def other():
  1208. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1209. curs = conn.cursor(pymysql.cursors.DictCursor)
  1210. conn.close()
  1211. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기타 메뉴', logo = set_data['name'], data = '<h2 style="margin-top: 0px;">기록</h2><li><a href="/blocklog">사용자 차단 기록</a></li><li><a href="/userlog">사용자 가입 기록</a></li><li><a href="/manager/6">사용자 기록</a></li><li><a href="/manager/7">사용자 토론 기록</a></li><h2>기타</h2><li><a href="/titleindex">모든 문서</a></li><li><a href="/acllist">ACL 문서 목록</a></li><li><a href="/upload">업로드</a></li><li><a href="/adminlist">관리자 목록</a></li><li><a href="/manager/1">관리자 메뉴</a></li><br>이 오픈나무의 버전은 <a href="https://github.com/2DU/openNAMU/blob/normal/version.md">v' + r_ver + '</a> 입니다.'))
  1212. @route('/manager/<num:int>', method=['POST', 'GET'])
  1213. def manager(num = None):
  1214. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1215. curs = conn.cursor(pymysql.cursors.DictCursor)
  1216. if(num == 1):
  1217. conn.close()
  1218. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '관리자 메뉴', logo = set_data['name'], data = '<h2 style="margin-top: 0px;">목록</h2><li><a href="/manager/2">문서 ACL</a></li><li><a href="/manager/3">사용자 체크</a></li><li><a href="/manager/4">사용자 차단</a></li><li><a href="/manager/5">관리자 권한 주기</a></li><li><a href="/mdel">많은 문서 삭제</a></li><h2>소유자</h2><li><a href="/backreset">모든 역링크 재 생성</a></li><li><a href="/manager/8">새로운 관리 그룹 생성</a></li><h2>기타</h2><li>이 메뉴에 없는 기능은 해당 문서의 역사나 토론에서 바로 사용 가능함</li>'))
  1219. elif(num == 2):
  1220. if(request.method == 'POST'):
  1221. conn.close()
  1222. return(redirect('/acl/' + url_pas(request.forms.name)))
  1223. else:
  1224. conn.close()
  1225. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = 'ACL 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/2"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>'))
  1226. elif(num == 3):
  1227. if(request.method == 'POST'):
  1228. conn.close()
  1229. return(redirect('/check/' + url_pas(request.forms.name)))
  1230. else:
  1231. conn.close()
  1232. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '체크 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/3"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>'))
  1233. elif(num == 4):
  1234. if(request.method == 'POST'):
  1235. conn.close()
  1236. return(redirect('/ban/' + url_pas(request.forms.name)))
  1237. else:
  1238. conn.close()
  1239. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '차단 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/4"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button><br><br><span>아이피 앞 두자리 (XXX.XXX) 입력하면 대역 차단</span></form>'))
  1240. elif(num == 5):
  1241. if(request.method == 'POST'):
  1242. conn.close()
  1243. return(redirect('/admin/' + url_pas(request.forms.name)))
  1244. else:
  1245. conn.close()
  1246. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/5"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1247. elif(num == 6):
  1248. if(request.method == 'POST'):
  1249. conn.close()
  1250. return(redirect('/record/' + url_pas(request.forms.name)))
  1251. else:
  1252. conn.close()
  1253. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기록 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/6"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1254. elif(num == 7):
  1255. if(request.method == 'POST'):
  1256. conn.close()
  1257. return(redirect('/user/' + url_pas(request.forms.name) + '/topic'))
  1258. else:
  1259. conn.close()
  1260. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '토론 기록 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/7"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1261. elif(num == 8):
  1262. if(request.method == 'POST'):
  1263. conn.close()
  1264. return(redirect('/adminplus/' + url_pas(request.forms.name)))
  1265. else:
  1266. conn.close()
  1267. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '그룹 생성 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/8"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1268. else:
  1269. conn.close()
  1270. return(redirect('/'))
  1271. @route('/titleindex')
  1272. def title_index():
  1273. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1274. curs = conn.cursor(pymysql.cursors.DictCursor)
  1275. i = [0, 0, 0, 0, 0, 0]
  1276. data = '<div>'
  1277. curs.execute("select title from data order by title asc")
  1278. title_list = curs.fetchall()
  1279. if(title_list):
  1280. for list_data in title_list:
  1281. data += '<li>' + str(i[0] + 1) + '. <a href="/w/' + url_pas(list_data['title']) + '">' + list_data['title'] + '</a></li>'
  1282. if(re.search('^분류:', list_data['title'])):
  1283. i[1] += 1
  1284. elif(re.search('^사용자:', list_data['title'])):
  1285. i[2] += 1
  1286. elif(re.search('^틀:', list_data['title'])):
  1287. i[3] += 1
  1288. elif(re.search('^파일:', list_data['title'])):
  1289. i[4] += 1
  1290. else:
  1291. i[5] += 1
  1292. i[0] += 1
  1293. else:
  1294. data += '</div>'
  1295. data += '<br><li>이 위키에는 총 ' + str(i[0]) + '개의 문서가 있습니다.</li><br><li>틀 문서는 총 ' + str(i[3]) + '개의 문서가 있습니다.</li><li>분류 문서는 총 ' + str(i[1]) + '개의 문서가 있습니다.</li><li>사용자 문서는 총 ' + str(i[2]) + '개의 문서가 있습니다.</li><li>파일 문서는 총 ' + str(i[4]) + '개의 문서가 있습니다.</li><li>나머지 문서는 총 ' + str(i[5]) + '개의 문서가 있습니다.</li>'
  1296. else:
  1297. data = 'None'
  1298. conn.close()
  1299. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = data, title = '모든 문서'))
  1300. @route('/topic/<name:path>/sub/<sub:path>/b/<num:int>')
  1301. def topic_block(name = None, sub = None, num = None):
  1302. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1303. curs = conn.cursor(pymysql.cursors.DictCursor)
  1304. if(admin_check(3) == 1):
  1305. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1306. block = curs.fetchall()
  1307. if(block):
  1308. if(block[0]['block'] == 'O'):
  1309. curs.execute("update topic set block = '' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1310. else:
  1311. curs.execute("update topic set block = 'O' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1312. conn.commit()
  1313. rd_plus(name, sub, get_time())
  1314. conn.close()
  1315. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1316. else:
  1317. conn.close()
  1318. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1319. else:
  1320. conn.close()
  1321. return(redirect('/error/3'))
  1322. @route('/topic/<name:path>/sub/<sub:path>/notice/<num:int>')
  1323. def topic_top(name = None, sub = None, num = None):
  1324. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1325. curs = conn.cursor(pymysql.cursors.DictCursor)
  1326. if(admin_check(3) == 1):
  1327. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1328. topic_data = curs.fetchall()
  1329. if(topic_data):
  1330. curs.execute("select * from topic where id = '" + str(num) + "' and title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1331. top_data = curs.fetchall()
  1332. if(top_data):
  1333. if(top_data[0]['top'] == 'O'):
  1334. curs.execute("update topic set top = '' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1335. else:
  1336. curs.execute("update topic set top = 'O' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1337. conn.commit()
  1338. rd_plus(name, sub, get_time())
  1339. conn.close()
  1340. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1341. else:
  1342. conn.close()
  1343. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1344. else:
  1345. conn.close()
  1346. return(redirect('/error/3'))
  1347. @route('/topic/<name:path>/sub/<sub:path>/stop')
  1348. def topic_stop(name = None, sub = None):
  1349. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1350. curs = conn.cursor(pymysql.cursors.DictCursor)
  1351. if(admin_check(3) == 1):
  1352. ip = ip_check()
  1353. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1354. topic_check = curs.fetchall()
  1355. if(topic_check):
  1356. time = get_time()
  1357. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1358. stop = curs.fetchall()
  1359. if(stop):
  1360. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 재 시작', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1361. curs.execute("delete from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1362. else:
  1363. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 정지', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1364. curs.execute("insert into stop (title, sub, close) value ('" + db_pas(name) + "', '" + db_pas(sub) + "', '')")
  1365. conn.commit()
  1366. rd_plus(name, sub, time)
  1367. conn.close()
  1368. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1369. else:
  1370. conn.close()
  1371. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1372. else:
  1373. conn.close()
  1374. return(redirect('/error/3'))
  1375. @route('/topic/<name:path>/sub/<sub:path>/close')
  1376. def topic_close(name = None, sub = None):
  1377. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1378. curs = conn.cursor(pymysql.cursors.DictCursor)
  1379. if(admin_check(3) == 1):
  1380. ip = ip_check()
  1381. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1382. topic_check = curs.fetchall()
  1383. if(topic_check):
  1384. time = get_time()
  1385. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1386. close = curs.fetchall()
  1387. if(close):
  1388. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 다시 열기', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1389. curs.execute("delete from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1390. else:
  1391. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 닫음', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1392. curs.execute("insert into stop (title, sub, close) value ('" + db_pas(name) + "', '" + db_pas(sub) + "', 'O')")
  1393. conn.commit()
  1394. rd_plus(name, sub, time)
  1395. conn.close()
  1396. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1397. else:
  1398. conn.close()
  1399. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1400. else:
  1401. conn.close()
  1402. return(redirect('/error/3'))
  1403. @route('/topic/<name:path>/sub/<sub:path>/agree')
  1404. def topic_agree(name = None, sub = None):
  1405. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1406. curs = conn.cursor(pymysql.cursors.DictCursor)
  1407. if(admin_check(3) == 1):
  1408. ip = ip_check()
  1409. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1410. topic_check = curs.fetchall()
  1411. if(topic_check):
  1412. time = get_time()
  1413. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1414. agree = curs.fetchall()
  1415. if(agree):
  1416. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '합의 결렬', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1417. curs.execute("delete from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1418. else:
  1419. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '합의 완료', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1420. curs.execute("insert into agreedis (title, sub) value ('" + db_pas(name) + "', '" + db_pas(sub) + "')")
  1421. conn.commit()
  1422. rd_plus(name, sub, time)
  1423. conn.close()
  1424. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1425. else:
  1426. conn.close()
  1427. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1428. else:
  1429. conn.close()
  1430. return(redirect('/error/3'))
  1431. @route('/topic/<name:path>/sub/<sub:path>', method=['POST', 'GET'])
  1432. def topic(name = None, sub = None):
  1433. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1434. curs = conn.cursor(pymysql.cursors.DictCursor)
  1435. ip = ip_check()
  1436. ban = topic_check(ip, name, sub)
  1437. admin = admin_check(3)
  1438. if(request.method == 'POST'):
  1439. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1440. rows = curs.fetchall()
  1441. if(rows):
  1442. num = int(rows[0]['id']) + 1
  1443. else:
  1444. num = 1
  1445. if(ban == 1 and not admin == 1):
  1446. conn.close()
  1447. return(redirect('/ban'))
  1448. else:
  1449. today = get_time()
  1450. rd_plus(name, sub, today)
  1451. aa = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", "[br]", request.forms.content)
  1452. aa = savemark(aa)
  1453. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + str(num) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '" + db_pas(aa) + "', '" + today + "', '" + ip + "', '', '')")
  1454. conn.commit()
  1455. conn.close()
  1456. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1457. else:
  1458. style = ''
  1459. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1460. close = curs.fetchall()
  1461. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1462. stop = curs.fetchall()
  1463. if(admin == 1):
  1464. div = '<div>'
  1465. if(close):
  1466. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/close">(토론 열기)</a> '
  1467. else:
  1468. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/close">(토론 닫기)</a> '
  1469. if(stop):
  1470. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/stop">(토론 재개)</a> '
  1471. else:
  1472. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/stop">(토론 정지)</a> '
  1473. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1474. agree = curs.fetchall()
  1475. if(agree):
  1476. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/agree">(합의 취소)</a>'
  1477. else:
  1478. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/agree">(합의 완료)</a>'
  1479. div += '<br><br>'
  1480. else:
  1481. div = '<div>'
  1482. if(stop or close):
  1483. if(not admin == 1):
  1484. style = 'display:none;'
  1485. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 asc")
  1486. toda = curs.fetchall()
  1487. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and top = 'O' order by id + 0 asc")
  1488. top = curs.fetchall()
  1489. if(top):
  1490. for dain in top:
  1491. top_data = namumark('', dain['data'])
  1492. top_data = re.sub("(?P<in>#(?:[0-9]*))", '<a href="\g<in>">\g<in></a>', top_data)
  1493. ip = ip_pas(dain['ip'], 1)
  1494. div += '<table id="toron"><tbody><tr><td id="toroncolorred"><a href="#' + dain['id'] + '">#' + dain['id'] + '</a> ' + ip + ' <span style="float:right;">' + dain['date'] + '</span></td></tr><tr><td>' + top_data + '</td></tr></tbody></table><br>'
  1495. i = 0
  1496. for dain in toda:
  1497. if(i == 0):
  1498. start = dain['ip']
  1499. indata = namumark('', dain['data'])
  1500. indata = re.sub("(?P<in>#(?:[0-9]*))", '<a href="\g<in>">\g<in></a>', indata)
  1501. if(dain['block'] == 'O'):
  1502. indata = '블라인드 되었습니다.'
  1503. block = 'id="block"'
  1504. else:
  1505. block = ''
  1506. if(admin == 1):
  1507. if(dain['block'] == 'O'):
  1508. isblock = ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/b/' + str(i + 1) + '">(해제)</a>'
  1509. else:
  1510. isblock = ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/b/' + str(i + 1) + '">(블라인드)</a>'
  1511. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + db_pas(str(i + 1)) + "' and top = 'O'")
  1512. row = curs.fetchall()
  1513. if(row):
  1514. isblock = isblock + ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/notice/' + str(i + 1) + '">(해제)</a>'
  1515. else:
  1516. isblock = isblock + ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/notice/' + str(i + 1) + '">(공지)</a>'
  1517. curs.execute("select end from ban where block = '" + db_pas(dain['ip']) + "'")
  1518. ban_it = curs.fetchall()
  1519. if(ban_it):
  1520. ban = ' <a href="/ban/' + url_pas(dain['ip']) + '">(해제)</a>' + isblock
  1521. else:
  1522. ban = ' <a href="/ban/' + url_pas(dain['ip']) + '">(차단)</a>' + isblock
  1523. else:
  1524. curs.execute("select end from ban where block = '" + db_pas(dain['ip']) + "'")
  1525. ban_it = curs.fetchall()
  1526. if(ban_it):
  1527. ban = ' (X)'
  1528. else:
  1529. ban = ''
  1530. chad = ''
  1531. curs.execute('select acl from user where id = "' + db_pas(dain['ip']) + '"')
  1532. adch = curs.fetchall()
  1533. if(adch):
  1534. if(not adch[0]['acl'] == 'user'):
  1535. chad = ' (관리자)'
  1536. ip = ip_pas(dain['ip'], 1)
  1537. if(dain['top'] == '1'):
  1538. color = 'blue'
  1539. elif(dain['ip'] == start):
  1540. color = 'green'
  1541. else:
  1542. color = ''
  1543. div += '<table id="toron"><tbody><tr><td id="toroncolor' + color + '"><a href="javascript:void(0);" id="' + str(i + 1) + '">#' + str(i + 1) + '</a> ' + ip + chad + ban + ' <span style="float:right;">' + dain['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1544. i += 1
  1545. conn.close()
  1546. return(template('vstopic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), suburl = url_pas(sub), toron = sub, logo = set_data['name'], rows = div, ban = ban, style = style, sub = '토론'))
  1547. @route('/topic/<name:path>/close')
  1548. def close_topic_list(name = None):
  1549. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1550. curs = conn.cursor(pymysql.cursors.DictCursor)
  1551. div = '<div>'
  1552. i = 0
  1553. curs.execute("select * from stop where title = '" + db_pas(name) + "' and close = 'O' order by sub asc")
  1554. rows = curs.fetchall()
  1555. for data in rows:
  1556. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1'")
  1557. row = curs.fetchall()
  1558. if(row):
  1559. indata = namumark(name, row[0]['data'])
  1560. if(row[0]['block'] == 'O'):
  1561. indata = '블라인드 되었습니다.'
  1562. block = 'id="block"'
  1563. else:
  1564. block = ''
  1565. ip = ip_pas(row[0]['ip'], 1)
  1566. div += '<h2><a href="/topic/' + url_pas(name) + '/sub/' + url_pas(data['sub']) + '">' + str((i + 1)) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + row[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1567. i += 1
  1568. else:
  1569. div += '</div>'
  1570. conn.close()
  1571. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, sub = '닫힘'))
  1572. @route('/topic/<name:path>/agree')
  1573. def agree_topic_list(name = None):
  1574. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1575. curs = conn.cursor(pymysql.cursors.DictCursor)
  1576. div = '<div>'
  1577. i = 0
  1578. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' order by sub asc")
  1579. agree_list = curs.fetchall()
  1580. for data in agree_list:
  1581. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1'")
  1582. topic_data = curs.fetchall()
  1583. if(topic_data):
  1584. indata = namumark(name, topic_data[0]['data'])
  1585. if(topic_data[0]['block'] == 'O'):
  1586. indata = '블라인드 되었습니다.'
  1587. block = 'id="block"'
  1588. else:
  1589. block = ''
  1590. ip = ip_pas(topic_data[0]['ip'], 1)
  1591. div += '<h2><a href="/topic/' + url_pas(name) + '/sub/' + url_pas(data['sub']) + '">' + str(i + 1) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + topic_data[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1592. i += 1
  1593. else:
  1594. div += '</div>'
  1595. conn.close()
  1596. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, sub = '합의'))
  1597. @route('/topic/<name:path>', method=['POST', 'GET'])
  1598. def topic_list(name = None):
  1599. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1600. curs = conn.cursor(pymysql.cursors.DictCursor)
  1601. if(request.method == 'POST'):
  1602. conn.close()
  1603. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(request.forms.topic)))
  1604. else:
  1605. div = '<div>'
  1606. j = 1
  1607. curs.execute("select * from rd where title = '" + db_pas(name) + "' order by date asc")
  1608. rows = curs.fetchall()
  1609. for data in rows:
  1610. curs.execute("select * from topic where title = '" + db_pas(data['title']) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1' order by sub asc")
  1611. aa = curs.fetchall()
  1612. indata = namumark(name, aa[0]['data'])
  1613. if(aa[0]['block'] == 'O'):
  1614. indata = '블라인드 되었습니다.'
  1615. block = 'id="block"'
  1616. else:
  1617. block = ''
  1618. ip = ip_pas(aa[0]['ip'], 1)
  1619. curs.execute("select * from stop where title = '" + db_pas(data['title']) + "' and sub = '" + db_pas(data['sub']) + "' and close = 'O'")
  1620. row = curs.fetchall()
  1621. if(not row):
  1622. div += '<h2><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '">' + str(j) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + aa[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1623. j += 1
  1624. else:
  1625. div += '</div>'
  1626. conn.close()
  1627. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, list = 1, sub = '토론 목록'))
  1628. @route('/login', method=['POST', 'GET'])
  1629. def login():
  1630. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1631. curs = conn.cursor(pymysql.cursors.DictCursor)
  1632. session = request.environ.get('beaker.session')
  1633. ip = ip_check()
  1634. ban = ban_check(ip)
  1635. if(request.method == 'POST'):
  1636. if(ban == 1):
  1637. conn.close()
  1638. return(redirect('/ban'))
  1639. else:
  1640. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1641. user = curs.fetchall()
  1642. if(user):
  1643. if(session.get('Now') == True):
  1644. conn.close()
  1645. return(redirect('/error/11'))
  1646. elif(bcrypt.checkpw(bytes(request.forms.pw, 'utf-8'), bytes(user[0]['pw'], 'utf-8'))):
  1647. session['Now'] = True
  1648. session['DREAMER'] = request.forms.id
  1649. curs.execute("select * from custom where user = '" + db_pas(request.forms.id) + "'")
  1650. css_data = curs.fetchall()
  1651. if(css_data):
  1652. session['Daydream'] = css_data[0]['css']
  1653. else:
  1654. session['Daydream'] = ''
  1655. curs.execute("insert into login (user, ip, today) value ('" + db_pas(request.forms.id) + "', '" + db_pas(ip) + "', '" + db_pas(get_time()) + "')")
  1656. conn.commit()
  1657. conn.close()
  1658. return(redirect('/user'))
  1659. else:
  1660. conn.close()
  1661. return(redirect('/error/13'))
  1662. else:
  1663. conn.close()
  1664. return(redirect('/error/12'))
  1665. else:
  1666. if(ban == 1):
  1667. conn.close()
  1668. return(redirect('/ban'))
  1669. else:
  1670. if(session.get('Now') == True):
  1671. conn.close()
  1672. return(redirect('/error/11'))
  1673. else:
  1674. conn.close()
  1675. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인', enter = '로그인', logo = set_data['name']))
  1676. @route('/change', method=['POST', 'GET'])
  1677. def change_password():
  1678. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1679. curs = conn.cursor(pymysql.cursors.DictCursor)
  1680. ip = ip_check()
  1681. ban = ban_check(ip)
  1682. if(request.method == 'POST'):
  1683. if(request.forms.pw2 == request.forms.pw3):
  1684. if(ban == 1):
  1685. conn.close()
  1686. return(redirect('/ban'))
  1687. else:
  1688. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1689. user = curs.fetchall()
  1690. if(user):
  1691. if(not re.search('(\.|:)', ip)):
  1692. conn.close()
  1693. return(redirect('/logout'))
  1694. elif(bcrypt.checkpw(bytes(request.forms.pw, 'utf-8'), bytes(user[0]['pw'], 'utf-8'))):
  1695. hashed = bcrypt.hashpw(bytes(request.forms.pw2, 'utf-8'), bcrypt.gensalt())
  1696. curs.execute("update user set pw = '" + db_pas(hashed.decode()) + "' where id = '" + db_pas(request.forms.id) + "'")
  1697. conn.commit()
  1698. conn.close()
  1699. return(redirect('/login'))
  1700. else:
  1701. conn.close()
  1702. return(redirect('/error/10'))
  1703. else:
  1704. conn.close()
  1705. return(redirect('/error/9'))
  1706. else:
  1707. conn.close()
  1708. return(redirect('/error/20'))
  1709. else:
  1710. if(ban == 1):
  1711. conn.close()
  1712. return(redirect('/ban'))
  1713. else:
  1714. if(not re.search('(\.|:)', ip)):
  1715. conn.close()
  1716. return(redirect('/logout'))
  1717. else:
  1718. conn.close()
  1719. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '비밀번호 변경', enter = '변경', logo = set_data['name']))
  1720. @route('/check/<name:path>')
  1721. def user_check(name = None):
  1722. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1723. curs = conn.cursor(pymysql.cursors.DictCursor)
  1724. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1725. user = curs.fetchall()
  1726. if(user and not user[0]['acl'] == 'user'):
  1727. conn.close()
  1728. return(redirect('/error/4'))
  1729. else:
  1730. if(admin_check(4) == 1):
  1731. m = re.search('^(?:[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}?)$', name)
  1732. if(m):
  1733. curs.execute("select * from login where ip = '" + db_pas(name) + "' order by today desc")
  1734. row = curs.fetchall()
  1735. if(row):
  1736. c = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">이름</td><td style="text-align: center;width:33.33%;">아이피</td><td style="text-align: center;width:33.33%;">언제</td></tr>'
  1737. for data in row:
  1738. c += '<tr><td style="text-align: center;width:33.33%;">' + data['user'] + '</td><td style="text-align: center;width:33.33%;">' + data['ip'] + '</td><td style="text-align: center;width:33.33%;">' + data['today'] + '</td></tr>'
  1739. else:
  1740. c += '</tbody></table></div>'
  1741. else:
  1742. c = 'None'
  1743. conn.close()
  1744. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '다중 검사', logo = set_data['name'], data = c))
  1745. else:
  1746. curs.execute("select * from login where user = '" + db_pas(name) + "' order by today desc")
  1747. row = curs.fetchall()
  1748. if(row):
  1749. c = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">이름</td><td style="text-align: center;width:33.33%;">아이피</td><td style="text-align: center;width:33.33%;">언제</td></tr>'
  1750. for data in row:
  1751. c += '<tr><td style="text-align: center;width:33.33%;">' + data['user'] + '</td><td style="text-align: center;width:33.33%;">' + data['ip'] + '</td><td style="text-align: center;width:33.33%;">' + data['today'] + '</td></tr>'
  1752. else:
  1753. c += '</tbody></table></div>'
  1754. else:
  1755. c = 'None'
  1756. conn.close()
  1757. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '다중 검사', logo = set_data['name'], data = c))
  1758. else:
  1759. conn.close()
  1760. return(redirect('/error/3'))
  1761. @route('/register', method=['POST', 'GET'])
  1762. def register():
  1763. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1764. curs = conn.cursor(pymysql.cursors.DictCursor)
  1765. ip = ip_check()
  1766. ban = ban_check(ip)
  1767. if(request.method == 'POST'):
  1768. if(request.forms.pw == request.forms.pw2):
  1769. if(ban == 1):
  1770. conn.close()
  1771. return(redirect('/ban'))
  1772. else:
  1773. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.forms.id)
  1774. if(m):
  1775. conn.close()
  1776. return(redirect('/error/8'))
  1777. else:
  1778. if(len(request.forms.id) > 20):
  1779. conn.close()
  1780. return(redirect('/error/7'))
  1781. else:
  1782. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1783. rows = curs.fetchall()
  1784. if(rows):
  1785. conn.close()
  1786. return(redirect('/error/6'))
  1787. else:
  1788. hashed = bcrypt.hashpw(bytes(request.forms.pw, 'utf-8'), bcrypt.gensalt())
  1789. curs.execute("select id from user limit 1")
  1790. user_ex = curs.fetchall()
  1791. if(not user_ex):
  1792. curs.execute("insert into user (id, pw, acl) value ('" + db_pas(request.forms.id) + "', '" + db_pas(hashed.decode()) + "', 'owner')")
  1793. else:
  1794. curs.execute("insert into user (id, pw, acl) value ('" + db_pas(request.forms.id) + "', '" + db_pas(hashed.decode()) + "', 'user')")
  1795. conn.commit()
  1796. conn.close()
  1797. return(redirect('/login'))
  1798. else:
  1799. conn.close()
  1800. return(redirect('/error/20'))
  1801. else:
  1802. if(ban == 1):
  1803. conn.close()
  1804. return(redirect('/ban'))
  1805. else:
  1806. conn.close()
  1807. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '회원가입', enter = '회원가입', logo = set_data['name']))
  1808. @route('/logout')
  1809. def logout():
  1810. session = request.environ.get('beaker.session')
  1811. session['Now'] = False
  1812. session.pop('DREAMER', None)
  1813. return(redirect('/user'))
  1814. @route('/ban/<name:path>', method=['POST', 'GET'])
  1815. def user_ban(name = None):
  1816. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1817. curs = conn.cursor(pymysql.cursors.DictCursor)
  1818. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1819. user = curs.fetchall()
  1820. if(user and not user[0]['acl'] == 'user'):
  1821. conn.close()
  1822. return(redirect('/error/4'))
  1823. else:
  1824. if(request.method == 'POST'):
  1825. if(admin_check(1) == 1):
  1826. ip = ip_check()
  1827. if(not re.search("[0-9]{4}-[0-9]{2}-[0-9]{2}", request.forms.end)):
  1828. end = ''
  1829. else:
  1830. end = request.forms.end
  1831. curs.execute("select * from ban where block = '" + db_pas(name) + "'")
  1832. row = curs.fetchall()
  1833. if(row):
  1834. rb_plus(name, '해제', get_time(), ip, '')
  1835. curs.execute("delete from ban where block = '" + db_pas(name) + "'")
  1836. else:
  1837. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", name)
  1838. if(b):
  1839. rb_plus(name, end, get_time(), ip, request.forms.why)
  1840. curs.execute("insert into ban (block, end, why, band) value ('" + db_pas(name) + "', '" + db_pas(end) + "', '" + db_pas(request.forms.why) + "', 'O')")
  1841. else:
  1842. rb_plus(name, end, get_time(), ip, request.forms.why)
  1843. curs.execute("insert into ban (block, end, why, band) value ('" + db_pas(name) + "', '" + db_pas(end) + "', '" + db_pas(request.forms.why) + "', '')")
  1844. conn.commit()
  1845. conn.close()
  1846. return(redirect('/ban/' + url_pas(name)))
  1847. else:
  1848. conn.close()
  1849. return(redirect('/error/3'))
  1850. else:
  1851. if(admin_check(1) == 1):
  1852. curs.execute("select * from ban where block = '" + db_pas(name) + "'")
  1853. row = curs.fetchall()
  1854. if(row):
  1855. now = '차단 해제'
  1856. else:
  1857. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", name)
  1858. if(b):
  1859. now = '대역 차단'
  1860. else:
  1861. now = '차단'
  1862. conn.close()
  1863. return(template('ban', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], now = now, today = get_time(), sub = '차단'))
  1864. else:
  1865. conn.close()
  1866. return(redirect('/error/3'))
  1867. @route('/acl/<name:path>', method=['POST', 'GET'])
  1868. def acl(name = None):
  1869. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1870. curs = conn.cursor(pymysql.cursors.DictCursor)
  1871. if(request.method == 'POST'):
  1872. if(admin_check(5) == 1):
  1873. curs.execute("select acl from data where title = '" + db_pas(name) + "'")
  1874. row = curs.fetchall()
  1875. if(row):
  1876. if(request.forms.select == 'admin'):
  1877. curs.execute("update data set acl = 'admin' where title = '" + db_pas(name) + "'")
  1878. elif(request.forms.select == 'user'):
  1879. curs.execute("update data set acl = 'user' where title = '" + db_pas(name) + "'")
  1880. else:
  1881. curs.execute("update data set acl = '' where title = '" + db_pas(name) + "'")
  1882. conn.commit()
  1883. conn.close()
  1884. return(redirect('/w/' + url_pas(name)) )
  1885. else:
  1886. conn.close()
  1887. return(redirect('/error/3'))
  1888. else:
  1889. if(admin_check(5) == 1):
  1890. curs.execute("select acl from data where title = '" + db_pas(name) + "'")
  1891. row = curs.fetchall()
  1892. if(row):
  1893. if(row[0]['acl'] == 'admin'):
  1894. now = '관리자만'
  1895. elif(row[0]['acl'] == 'user'):
  1896. now = '로그인 이상'
  1897. else:
  1898. now = '일반'
  1899. conn.close()
  1900. return(template('acl', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], now = '현재 ACL 상태는 ' + now, sub = 'ACL'))
  1901. else:
  1902. conn.close()
  1903. return(redirect('/w/' + url_pas(name)) )
  1904. else:
  1905. conn.close()
  1906. return(redirect('/error/3'))
  1907. @route('/admin/<name:path>', method=['POST', 'GET'])
  1908. def user_admin(name = None):
  1909. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1910. curs = conn.cursor(pymysql.cursors.DictCursor)
  1911. if(request.method == 'POST'):
  1912. if(admin_check(None) == 1):
  1913. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1914. user = curs.fetchall()
  1915. if(user):
  1916. if(not user[0]['acl'] == 'user'):
  1917. curs.execute("update user set acl = 'user' where id = '" + db_pas(name) + "'")
  1918. else:
  1919. curs.execute("update user set acl = '" + db_pas(request.forms.select) + "' where id = '" + db_pas(name) + "'")
  1920. conn.commit()
  1921. conn.close()
  1922. return(redirect('/'))
  1923. else:
  1924. conn.close()
  1925. return(redirect('/error/5'))
  1926. else:
  1927. conn.close()
  1928. return(redirect('/error/3'))
  1929. else:
  1930. if(admin_check(None) == 1):
  1931. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1932. user = curs.fetchall()
  1933. if(user):
  1934. if(not user[0]['acl'] == 'user'):
  1935. now = '권한 해제'
  1936. else:
  1937. now = '권한 부여'
  1938. div = ''
  1939. curs.execute('select name from alist order by name asc')
  1940. get_alist = curs.fetchall()
  1941. if(get_alist):
  1942. i = 0
  1943. name_rem = ''
  1944. for data in get_alist:
  1945. if(not name_rem == data['name']):
  1946. name_rem = data['name']
  1947. div += '<option value="' + data['name'] + '" selected="selected">' + data['name'] + '</option>'
  1948. conn.close()
  1949. return(template('admin', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), datalist = div, logo = set_data['name'], now = now, sub = '권한 부여'))
  1950. else:
  1951. conn.close()
  1952. return(redirect('/error/5'))
  1953. else:
  1954. conn.close()
  1955. return(redirect('/error/3'))
  1956. @route('/ban')
  1957. def are_you_ban():
  1958. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1959. curs = conn.cursor(pymysql.cursors.DictCursor)
  1960. ip = ip_check()
  1961. if(ban_check(ip) == 1):
  1962. curs.execute("select * from ban where block = '" + db_pas(ip) + "'")
  1963. rows = curs.fetchall()
  1964. if(rows):
  1965. if(rows[0]['end']):
  1966. end = rows[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  1967. now = re.sub(':', '', get_time())
  1968. now = re.sub('\-', '', now)
  1969. now = int(re.sub(' ', '', now))
  1970. day = re.sub('\-', '', rows[0]['end'])
  1971. if(now >= int(day + '000000')):
  1972. curs.execute("delete from ban where block = '" + db_pas(ip) + "'")
  1973. conn.commit()
  1974. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  1975. else:
  1976. end = '영구 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  1977. else:
  1978. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1979. if(b):
  1980. results = b.groups()
  1981. curs.execute("select * from ban where block = '" + db_pas(results[0]) + "' and band = 'O'")
  1982. row = curs.fetchall()
  1983. if(row):
  1984. if(row[0]['end']):
  1985. end = row[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  1986. now = re.sub(':', '', get_time())
  1987. now = re.sub('\-', '', now)
  1988. now = int(re.sub(' ', '', now))
  1989. day = re.sub('\-', '', row[0]['end'])
  1990. if(now >= int(day + '000000')):
  1991. curs.execute("delete from ban where block = '" + db_pas(results[0]) + "' and band = 'O'")
  1992. conn.commit()
  1993. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  1994. else:
  1995. end = '영구 차단 상태 입니다. / 사유 : ' + row[0]['why']
  1996. else:
  1997. end = '권한이 맞지 않는 상태 입니다.'
  1998. conn.close()
  1999. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = end))
  2000. @route('/w/<name:path>/r/<a:int>/diff/<b:int>')
  2001. def diff_data(name = None, a = None, b = None):
  2002. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2003. curs = conn.cursor(pymysql.cursors.DictCursor)
  2004. curs.execute("select * from history where id = '" + db_pas(str(a)) + "' and title = '" + db_pas(name) + "'")
  2005. a_raw_data = curs.fetchall()
  2006. if(a_raw_data):
  2007. curs.execute("select * from history where id = '" + db_pas(str(b)) + "' and title = '" + db_pas(name) + "'")
  2008. b_raw_data = curs.fetchall()
  2009. if(b_raw_data):
  2010. a_data = re.sub('<', '&lt;', a_raw_data[0]['data'])
  2011. a_data = re.sub('>', '&gt;', a_data)
  2012. a_data = re.sub('"', '&quot;', a_data)
  2013. b_data = re.sub('<', '&lt;', b_raw_data[0]['data'])
  2014. b_data = re.sub('>', '&gt;', b_data)
  2015. b_data = re.sub('"', '&quot;', b_data)
  2016. diff_data = difflib.SequenceMatcher(None, a_data, b_data)
  2017. result = diff(diff_data)
  2018. result = '<pre>' + result + '</pre>'
  2019. conn.close()
  2020. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], data = result, sub = '비교', page = url_pas(name)))
  2021. else:
  2022. conn.close()
  2023. return(redirect('/history/' + url_pas(name)))
  2024. else:
  2025. conn.close()
  2026. return(redirect('/history/' + url_pas(name)))
  2027. @route('/down/<name:path>')
  2028. def down(name = None):
  2029. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2030. curs = conn.cursor(pymysql.cursors.DictCursor)
  2031. curs.execute("select title from data where title like '%" + db_pas(name) + "/%'")
  2032. under = curs.fetchall()
  2033. div = ''
  2034. i = 0
  2035. for data in under:
  2036. div += '<li>' + str(i + 1) + '. <a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a></li>'
  2037. i += 1
  2038. conn.close()
  2039. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], data = div, sub = '하위 문서', page = url_pas(name)))
  2040. @route('/w/<name:path>')
  2041. @route('/w/<name:path>/from/<redirect:path>')
  2042. def read_view(name = None, redirect = None):
  2043. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2044. curs = conn.cursor(pymysql.cursors.DictCursor)
  2045. data_none = False
  2046. sub = None
  2047. acl = ''
  2048. div = ''
  2049. i = 0
  2050. curs.execute("select sub from rd where title = '" + db_pas(name) + "' order by date asc")
  2051. rows = curs.fetchall()
  2052. while(True):
  2053. try:
  2054. curs.execute("select title from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(rows[i]['sub']) + "' and close = 'O'")
  2055. row = curs.fetchall()
  2056. if(not row):
  2057. topic = "open"
  2058. break
  2059. i += 1
  2060. except:
  2061. topic = ""
  2062. break
  2063. curs.execute("select title from data where title like '%" + db_pas(name) + "/%'")
  2064. under = curs.fetchall()
  2065. if(under):
  2066. down = True
  2067. else:
  2068. down = False
  2069. m = re.search("^(.*)\/(.*)$", name)
  2070. if(m):
  2071. uppage = m.groups()[0]
  2072. else:
  2073. uppage = False
  2074. if(admin_check(5) == 1):
  2075. admin_memu = 'ACL'
  2076. else:
  2077. admin_memu = ''
  2078. if(re.search("^분류:", name)):
  2079. curs.execute("select * from cat where title = '" + db_pas(name) + "' order by cat asc")
  2080. rows = curs.fetchall()
  2081. if(rows):
  2082. div = '<h2>분류</h2>'
  2083. i = 0
  2084. for data in rows:
  2085. curs.execute("select * from data where title = '" + db_pas(data['cat']) + "'")
  2086. row = curs.fetchall()
  2087. if(row):
  2088. aa = row[0]['data']
  2089. aa = namumark('', aa)
  2090. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  2091. if(bb):
  2092. cc = bb.groups()
  2093. mm = re.search("^분류:(.*)", name)
  2094. if(mm):
  2095. ee = mm.groups()
  2096. if(re.search("<a (class=\"not_thing\")? href=\"\/w\/" + url_pas(name) + "\">" + ee[0] + "<\/a>", cc[0])):
  2097. div += '<li><a href="/w/' + url_pas(data['cat']) + '">' + data['cat'] + '</a></li>'
  2098. i += 1
  2099. else:
  2100. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2101. conn.commit()
  2102. i += 1
  2103. else:
  2104. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2105. conn.commit()
  2106. i += 1
  2107. else:
  2108. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2109. conn.commit()
  2110. i += 1
  2111. else:
  2112. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2113. conn.commit()
  2114. i += 1
  2115. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  2116. rows = curs.fetchall()
  2117. if(rows):
  2118. if(rows[0]['acl'] == 'admin'):
  2119. acl = '(관리자)'
  2120. elif(rows[0]['acl'] == 'user'):
  2121. acl = '(로그인)'
  2122. elsedata = rows[0]['data']
  2123. else:
  2124. data_none = True
  2125. elsedata = 'None'
  2126. m = re.search("^사용자:([^/]*)", name)
  2127. if(m):
  2128. g = m.groups()
  2129. curs.execute("select acl from user where id = '" + db_pas(g[0]) + "'")
  2130. test = curs.fetchall()
  2131. if(test):
  2132. if(not test[0]['acl'] == 'user'):
  2133. acl = '(관리자)'
  2134. curs.execute("select block from ban where block = '" + db_pas(g[0]) + "'")
  2135. user = curs.fetchall()
  2136. if(user):
  2137. sub = '차단'
  2138. if(redirect):
  2139. elsedata = re.sub("^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)", " * [[\g<in>]] 문서로 넘겨주기", elsedata)
  2140. enddata = namumark(name, elsedata)
  2141. conn.close()
  2142. return(template('read', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata + div, uppage = uppage, acl = acl, topic = topic, redirect = redirect, admin = admin_memu, data_none = data_none, sub = sub, down = down))
  2143. @route('/user/<name:path>/topic')
  2144. @route('/user/<name:path>/topic/<num:int>')
  2145. def user_topic_list(name = None, num = 1):
  2146. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2147. curs = conn.cursor(pymysql.cursors.DictCursor)
  2148. if(num * 50 <= 0):
  2149. v = 50
  2150. else:
  2151. v = num * 50
  2152. i = v - 50
  2153. ydmin = admin_check(1)
  2154. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">토론명</td><td style="text-align: center;width:33.33%;">작성자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  2155. curs.execute("select title, id, sub, ip, date from topic where ip = '" + db_pas(name) + "' order by date desc limit " + str(i) + ", " + str(v))
  2156. rows = curs.fetchall()
  2157. if(rows):
  2158. for data in rows:
  2159. title = re.sub('<', '&lt;', data['title'])
  2160. title = re.sub('>', '&gt;', title)
  2161. title = re.sub('"', '&quot;', title)
  2162. sub = re.sub('<', '&lt;', data['sub'])
  2163. sub = re.sub('>', '&gt;', sub)
  2164. sub = re.sub('"', '&quot;', sub)
  2165. if(ydmin == 1):
  2166. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  2167. row = curs.fetchall()
  2168. if(row):
  2169. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  2170. else:
  2171. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  2172. else:
  2173. ban = ''
  2174. ip = ip_pas(data['ip'], 1)
  2175. div += '<tr><td style="text-align: center;width:33.33%;"><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '#' + data['id'] + '">' + title + '</a> (' + sub + ') (#' + data['id'] + ') </td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr>'
  2176. else:
  2177. div += '</tbody></table></div>'
  2178. else:
  2179. div = 'None<br>'
  2180. div += '<br><a href="/user/' + url_pas(name) + '/topic/' + str(num - 1) + '">(이전)</a> <a href="/user/' + url_pas(name) + '/topic/' + str(num + 1) + '">(이후)</a>'
  2181. curs.execute("select end, why from ban where block = '" + db_pas(name) + "'")
  2182. ban_it = curs.fetchall()
  2183. if(ban_it):
  2184. sub = '차단'
  2185. else:
  2186. sub = None
  2187. conn.close()
  2188. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 토론 기록', sub = sub))
  2189. @route('/user')
  2190. def user_info():
  2191. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2192. curs = conn.cursor(pymysql.cursors.DictCursor)
  2193. ip = ip_check()
  2194. raw_ip = ip
  2195. curs.execute("select * from user where id = '" + db_pas(ip) + "'")
  2196. rows = curs.fetchall()
  2197. if(ban_check(ip) == 0):
  2198. if(rows):
  2199. if(not rows[0]['acl'] == 'user'):
  2200. acl = rows[0]['acl']
  2201. else:
  2202. acl = '로그인'
  2203. else:
  2204. acl = '일반'
  2205. else:
  2206. acl = '차단'
  2207. ip = ip_pas(ip, 2)
  2208. conn.close()
  2209. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '사용자 메뉴', logo = set_data['name'], data = ip + '<br><br><span>권한 상태 : ' + acl + '<h2>로그인 관련</h2><li><a href="/login">로그인</a></li><li><a href="/logout">로그아웃</a></li><li><a href="/register">회원가입</a></li><h2>기타</h2><li><a href="/change">비밀번호 변경</a></li><li><a href="/count">기여 횟수</a></li><li><a href="/record/' + raw_ip + '">기여 목록</a></li><li><a href="/custom">커스텀 CSS</a></li>'))
  2210. @route('/custom', method=['GET', 'POST'])
  2211. def custom_css():
  2212. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2213. curs = conn.cursor(pymysql.cursors.DictCursor)
  2214. session = request.environ.get('beaker.session')
  2215. ip = ip_check()
  2216. if(request.method == 'POST'):
  2217. if(not re.search('(\.|:)', ip)):
  2218. curs.execute("select * from custom where user = '" + db_pas(ip) + "'")
  2219. css_data = curs.fetchall()
  2220. if(css_data):
  2221. curs.execute("update custom set css = '" + db_pas(request.forms.content) + "' where user = '" + db_pas(ip) + "'")
  2222. else:
  2223. curs.execute("insert into custom (user, css) value ('" + db_pas(ip) + "', '" + db_pas(request.forms.content) + "')")
  2224. conn.commit()
  2225. session['Daydream'] = request.forms.content
  2226. conn.close()
  2227. return(redirect('/user'))
  2228. else:
  2229. if(not re.search('(\.|:)', ip)):
  2230. start = ''
  2231. curs.execute("select * from custom where user = '" + db_pas(ip) + "'")
  2232. css_data = curs.fetchall()
  2233. if(css_data):
  2234. data = css_data[0]['css']
  2235. else:
  2236. data = ''
  2237. else:
  2238. start = '<span>비 로그인의 경우에는 로그인하면 날아갑니다.</span><br><br>'
  2239. try:
  2240. data = session['Daydream']
  2241. except:
  2242. data = ''
  2243. conn.close()
  2244. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '커스텀 CSS', logo = set_data['name'], data = start + '<form id="usrform" name="f1" method="POST" action="/custom"><textarea rows="30" cols="100" name="content" form="usrform">' + data + '</textarea><div class="form-actions"><button class="btn btn-primary" type="submit">저장</button></div></form>'))
  2245. @route('/count')
  2246. def count_edit():
  2247. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2248. curs = conn.cursor(pymysql.cursors.DictCursor)
  2249. curs.execute("select count(title) from history where ip = '" + ip_check() + "'")
  2250. count = curs.fetchall()
  2251. if(count):
  2252. conn.close()
  2253. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기여 횟수', logo = set_data['name'], data = "기여 횟수 : " + str(count[0]["count(title)"])))
  2254. else:
  2255. conn.close()
  2256. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기여 횟수', logo = set_data['name'], data = "기여 횟수 : 0"))
  2257. @route('/random')
  2258. def random():
  2259. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2260. curs = conn.cursor(pymysql.cursors.DictCursor)
  2261. curs.execute("select title from data order by rand() limit 1")
  2262. rows = curs.fetchall()
  2263. if(rows):
  2264. conn.close()
  2265. return(redirect('/w/' + url_pas(rows[0]['title'])))
  2266. else:
  2267. conn.close()
  2268. return(redirect('/'))
  2269. @route('/views/<name:path>')
  2270. def views(name = None):
  2271. if(re.search('\/', name)):
  2272. m = re.search('^(.*)\/(.*)$', name)
  2273. if(m):
  2274. n = m.groups()
  2275. plus = '/' + n[0]
  2276. rename = n[1]
  2277. else:
  2278. plus = ''
  2279. rename = name
  2280. else:
  2281. plus = ''
  2282. rename = name
  2283. return(static_file(rename, root = './views' + plus))
  2284. @route('/error/<num:int>')
  2285. def error_test(num = None):
  2286. if(num == 1):
  2287. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '비 로그인 상태 입니다.'))
  2288. elif(num == 2):
  2289. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '이 계정이 없습니다.'))
  2290. elif(num == 3):
  2291. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '권한이 모자랍니다.'))
  2292. elif(num == 4):
  2293. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '관리자는 차단, 검사 할 수 없습니다.'))
  2294. elif(num == 5):
  2295. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '사용자 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2296. elif(num == 6):
  2297. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '동일한 아이디의 사용자가 있습니다.'))
  2298. elif(num == 7):
  2299. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '아이디는 20글자보다 짧아야 합니다.'))
  2300. elif(num == 8):
  2301. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '아이디에는 한글과 알파벳과 공백만 허용 됩니다.'))
  2302. elif(num == 9):
  2303. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '변경 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2304. elif(num == 10):
  2305. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '변경 오류', logo = set_data['name'], data = '비밀번호가 다릅니다.'))
  2306. elif(num == 11):
  2307. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '이미 로그인 되어 있습니다.'))
  2308. elif(num == 12):
  2309. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2310. elif(num == 13):
  2311. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '비밀번호가 다릅니다.'))
  2312. elif(num == 14):
  2313. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = 'jpg, gif, jpeg, png(대 소문자 상관 없음)만 가능 합니다.'))
  2314. elif(num == 15):
  2315. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '편집 오류', logo = set_data['name'], data = '편집 기록은 500자를 넘을 수 없습니다.'))
  2316. elif(num == 16):
  2317. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = '동일한 이름의 파일이 있습니다.'))
  2318. elif(num == 17):
  2319. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = '파일 용량은 ' + set_data['upload'] + 'MB를 넘길 수 없습니다.'))
  2320. elif(num == 18):
  2321. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '편집 오류', logo = set_data['name'], data = '내용이 원래 문서와 동일 합니다.'))
  2322. elif(num == 19):
  2323. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '이동 오류', logo = set_data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.'))
  2324. elif(num == 20):
  2325. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '비밀번호 오류', logo = set_data['name'], data = '재 확인이랑 비밀번호가 다릅니다.'))
  2326. else:
  2327. return(redirect('/'))
  2328. @error(404)
  2329. def error_404(error):
  2330. return(redirect('/w/' + url_pas(set_data['frontpage'])))
  2331. run(app = app, server='tornado', host = '0.0.0.0', port = int(set_data['port']))