app.py 134 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517151815191520152115221523152415251526152715281529153015311532153315341535153615371538153915401541154215431544154515461547154815491550155115521553155415551556155715581559156015611562156315641565156615671568156915701571157215731574157515761577157815791580158115821583158415851586158715881589159015911592159315941595159615971598159916001601160216031604160516061607160816091610161116121613161416151616161716181619162016211622162316241625162616271628162916301631163216331634163516361637163816391640164116421643164416451646164716481649165016511652165316541655165616571658165916601661166216631664166516661667166816691670167116721673167416751676167716781679168016811682168316841685168616871688168916901691169216931694169516961697169816991700170117021703170417051706170717081709171017111712171317141715171617171718171917201721172217231724172517261727172817291730173117321733173417351736173717381739174017411742174317441745174617471748174917501751175217531754175517561757175817591760176117621763176417651766176717681769177017711772177317741775177617771778177917801781178217831784178517861787178817891790179117921793179417951796179717981799180018011802180318041805180618071808180918101811181218131814181518161817181818191820182118221823182418251826182718281829183018311832183318341835183618371838183918401841184218431844184518461847184818491850185118521853185418551856185718581859186018611862186318641865186618671868186918701871187218731874187518761877187818791880188118821883188418851886188718881889189018911892189318941895189618971898189919001901190219031904190519061907190819091910191119121913191419151916191719181919192019211922192319241925192619271928192919301931193219331934193519361937193819391940194119421943194419451946194719481949195019511952195319541955195619571958195919601961196219631964196519661967196819691970197119721973197419751976197719781979198019811982198319841985198619871988198919901991199219931994199519961997199819992000200120022003200420052006200720082009201020112012201320142015201620172018201920202021202220232024202520262027202820292030203120322033203420352036203720382039204020412042204320442045204620472048204920502051205220532054205520562057205820592060206120622063206420652066206720682069207020712072207320742075207620772078207920802081208220832084208520862087208820892090209120922093209420952096209720982099210021012102210321042105210621072108210921102111211221132114211521162117211821192120212121222123212421252126212721282129213021312132213321342135213621372138213921402141214221432144214521462147214821492150215121522153215421552156215721582159216021612162216321642165216621672168216921702171217221732174217521762177217821792180218121822183218421852186218721882189219021912192219321942195219621972198219922002201220222032204220522062207220822092210221122122213221422152216221722182219222022212222222322242225222622272228222922302231223222332234223522362237223822392240224122422243224422452246224722482249225022512252225322542255225622572258225922602261226222632264226522662267226822692270227122722273227422752276227722782279228022812282228322842285228622872288228922902291229222932294229522962297229822992300230123022303230423052306230723082309231023112312231323142315231623172318231923202321232223232324232523262327232823292330233123322333233423352336233723382339234023412342234323442345234623472348234923502351235223532354235523562357235823592360236123622363236423652366236723682369237023712372237323742375237623772378237923802381238223832384238523862387238823892390239123922393239423952396239723982399240024012402240324042405240624072408240924102411241224132414241524162417241824192420242124222423242424252426242724282429243024312432243324342435243624372438243924402441244224432444244524462447244824492450245124522453245424552456245724582459246024612462246324642465246624672468246924702471247224732474247524762477247824792480248124822483248424852486248724882489249024912492249324942495249624972498249925002501250225032504250525062507250825092510251125122513251425152516251725182519252025212522252325242525252625272528252925302531253225332534253525362537253825392540254125422543254425452546254725482549255025512552255325542555255625572558255925602561256225632564256525662567256825692570257125722573257425752576257725782579258025812582258325842585258625872588258925902591259225932594259525962597259825992600260126022603260426052606260726082609261026112612261326142615261626172618261926202621262226232624262526262627262826292630263126322633263426352636263726382639264026412642264326442645264626472648264926502651265226532654265526562657265826592660266126622663266426652666266726682669267026712672267326742675267626772678267926802681268226832684268526862687268826892690269126922693269426952696269726982699270027012702270327042705270627072708270927102711271227132714271527162717271827192720272127222723272427252726272727282729273027312732273327342735273627372738273927402741274227432744274527462747274827492750275127522753275427552756275727582759276027612762276327642765276627672768276927702771277227732774277527762777277827792780278127822783278427852786278727882789279027912792279327942795279627972798279928002801280228032804280528062807280828092810281128122813281428152816281728182819282028212822282328242825
  1. from bottle import route, run, template, error, request, static_file, app, BaseRequest
  2. from bottle.ext import beaker
  3. import bcrypt
  4. import os
  5. import difflib
  6. import hashlib
  7. import json
  8. import pymysql
  9. json_data = open('set.json').read()
  10. set_data = json.loads(json_data)
  11. session_opts = {
  12. 'session.type': 'file',
  13. 'session.data_dir': './app_session/',
  14. 'session.auto': True
  15. }
  16. app = beaker.middleware.SessionMiddleware(app(), session_opts)
  17. BaseRequest.MEMFILE_MAX = 1024 * 1024
  18. def redirect(data):
  19. return('<meta http-equiv="refresh" content="0;url=' + data + '" />')
  20. from func import *
  21. from mark import *
  22. db_pas = pymysql.escape_string
  23. r_ver = '2.1.2'
  24. @route('/setup', method=['GET', 'POST'])
  25. def setup():
  26. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4')
  27. curs = conn.cursor(pymysql.cursors.DictCursor)
  28. if(request.method == 'POST'):
  29. if(not request.forms.owner == set_data['pw']):
  30. conn.close()
  31. return(redirect('/error/3'))
  32. else:
  33. try:
  34. curs.execute("use " + set_data['db'])
  35. except:
  36. curs.execute("create database " + set_data['db'])
  37. curs.execute("use " + set_data['db'])
  38. curs.execute("alter database " + set_data['db'] + " character set = utf8mb4 collate = utf8mb4_unicode_ci")
  39. try:
  40. curs.execute("create table data(title text, data longtext, acl text)")
  41. except:
  42. pass
  43. try:
  44. curs.execute("create table history(id text, title text, data longtext, date text, ip text, send text, leng text)")
  45. except:
  46. pass
  47. try:
  48. curs.execute("create table rd(title text, sub text, date text)")
  49. except:
  50. pass
  51. try:
  52. curs.execute("create table user(id text, pw text, acl text)")
  53. except:
  54. pass
  55. try:
  56. curs.execute("create table ban(block text, end text, why text, band text)")
  57. except:
  58. pass
  59. try:
  60. curs.execute("create table topic(id text, title text, sub text, data longtext, date text, ip text, block text, top text)")
  61. except:
  62. pass
  63. try:
  64. curs.execute("create table stop(title text, sub text, close text)")
  65. except:
  66. pass
  67. try:
  68. curs.execute("create table rb(block text, end text, today text, blocker text, why text)")
  69. except:
  70. pass
  71. try:
  72. curs.execute("create table login(user text, ip text, today text)")
  73. except:
  74. pass
  75. try:
  76. curs.execute("create table back(title text, link text, type text)")
  77. except:
  78. pass
  79. try:
  80. curs.execute("create table cat(title text, cat text)")
  81. except:
  82. pass
  83. try:
  84. curs.execute("create table hidhi(title text, re text)")
  85. except:
  86. pass
  87. try:
  88. curs.execute("create table agreedis(title text, sub text)")
  89. except:
  90. pass
  91. try:
  92. curs.execute("create table custom(user text, css longtext)")
  93. except:
  94. pass
  95. try:
  96. curs.execute("create table other(name text, data text)")
  97. except:
  98. pass
  99. try:
  100. curs.execute("create table alist(name text, acl text)")
  101. except:
  102. pass
  103. curs.execute('select data from other where name = "version"')
  104. version = curs.fetchall()
  105. if(version):
  106. t_ver = re.sub('\.', '', version[0]['data'])
  107. t_ver = re.sub('[a-z]$', '', t_ver)
  108. r_t_ver = re.sub('\.', '', r_ver)
  109. r_t_ver = re.sub('[a-z]$', '', r_t_ver)
  110. if(int(t_ver) <= int(r_t_ver)):
  111. curs.execute("update other set data = '" + db_pas(r_ver) + "' where name = 'version'")
  112. else:
  113. curs.execute("insert into other (name, data) value ('version', '" + db_pas(r_ver) + "')")
  114. t_ver = 0
  115. curs.execute('select name from alist limit 1')
  116. getalist = curs.fetchall()
  117. if(getalist and int(t_ver) < 204):
  118. curs.execute("delete from alist where name = 'owner'")
  119. curs.execute("delete from alist where name = 'admin'")
  120. if(int(t_ver) < 202 or not getalist):
  121. curs.execute("insert into alist (name, acl) value ('owner', 'owner')")
  122. curs.execute("insert into alist (name, acl) value ('admin', 'ban')")
  123. curs.execute("insert into alist (name, acl) value ('admin', 'mdel')")
  124. curs.execute("insert into alist (name, acl) value ('admin', 'toron')")
  125. curs.execute("insert into alist (name, acl) value ('admin', 'check')")
  126. curs.execute("insert into alist (name, acl) value ('admin', 'acl')")
  127. if(int(t_ver) < 203):
  128. curs.execute('select title from topic limit 1')
  129. top_yes = curs.fetchall()
  130. if(top_yes):
  131. curs.execute('rename table topic to old_topic')
  132. curs.execute('rename table distop to old_distop')
  133. curs.execute('create table topic(id text, title text, sub text, data longtext, date text, ip text, block text, top text)')
  134. curs.execute('select * from old_topic')
  135. topic_old = curs.fetchall()
  136. if(topic_old):
  137. i = 0
  138. for move_topic in topic_old:
  139. curs.execute("select id from distop where id = '" + db_pas(move_topic['id']) + "' and title = '" + db_pas(move_topic['title']) + "' and sub = '" + db_pas(move_topic['sub']) + "'")
  140. distop = curs.fetchall()
  141. if(distop):
  142. top = 'O'
  143. else:
  144. top = ''
  145. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(move_topic['id']) + "', '" + db_pas(move_topic['title']) + "', '" + db_pas(move_topic['sub']) + "', '" + db_pas(move_topic['data']) + "', '" + db_pas(move_topic['date']) + "', '" + db_pas(move_topic['ip']) + "', '" + db_pas(move_topic['block']) + "', '" + db_pas(top) + "')")
  146. conn.commit()
  147. conn.close()
  148. return(redirect('/'))
  149. else:
  150. conn.close()
  151. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '<form method="POST"><input name="owner" type="password"> <button class="btn btn-primary" type="submit">저장</button></form>', title = '오픈나무 설치'))
  152. @route('/upload', method=['GET', 'POST'])
  153. def upload():
  154. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  155. curs = conn.cursor(pymysql.cursors.DictCursor)
  156. MEMFILE_MAX = int(set_data['upload']) * 1024 * 1024
  157. ip = ip_check()
  158. ban = ban_check(ip)
  159. if(request.method == 'POST'):
  160. if(ban == 1):
  161. conn.close()
  162. return(redirect('/ban'))
  163. else:
  164. file = request.files.file
  165. if(file):
  166. comp = re.compile("^(.+)(\.(?:jpg|gif|png|jpeg))$", re.I)
  167. exist = comp.search(file.filename)
  168. if(exist):
  169. if((int(set_data['upload']) * 1024 * 1024) < request.content_length):
  170. conn.close()
  171. return(redirect('/error/17'))
  172. else:
  173. file_info = exist.groups()
  174. file_data = file_info[0] + file_info[1]
  175. file_name = sha224(file_info[0]) + file_info[1]
  176. if(os.path.exists(os.path.join('image', file_name))):
  177. conn.close()
  178. return(redirect('/error/16'))
  179. else:
  180. file.save(os.path.join('image', file_name))
  181. curs.execute("select title from data where title = '" + db_pas('파일:' + file_data) + "'")
  182. exist_db = curs.fetchall()
  183. if(not exist_db):
  184. curs.execute("insert into data (title, data, acl) value ('" + db_pas('파일:' + file_data) + "', '" + db_pas('[[파일:' + file_data + ']][br][br]{{{[[파일:' + file_data + ']]}}}') + "', '')")
  185. conn.commit()
  186. history_plus('파일:' + file_data, '[[파일:' + file_data + ']][br][br]{{{[[파일:' + file_data + ']]}}}', get_time(), ip, '파일:' + file_data + ' 업로드', '0')
  187. conn.close()
  188. return(redirect('/w/' + url_pas('파일:' + file_data)))
  189. else:
  190. conn.close()
  191. return(redirect('/error/14'))
  192. else:
  193. conn.close()
  194. return(redirect('/error/14'))
  195. else:
  196. if(ban == 1):
  197. conn.close()
  198. return(redirect('/ban'))
  199. else:
  200. conn.close()
  201. return(template('upload', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], title = '업로드', number = set_data['upload']))
  202. @route('/image/<name:path>')
  203. def static(name = None):
  204. if(os.path.exists(os.path.join('image', name))):
  205. return(static_file(name, root = 'image'))
  206. else:
  207. return(redirect('/'))
  208. @route('/acllist')
  209. def acl_list():
  210. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  211. curs = conn.cursor(pymysql.cursors.DictCursor)
  212. div = '<div>'
  213. i = 0
  214. curs.execute("select title, acl from data where acl = 'admin' or acl = 'user' order by acl desc")
  215. list_data = curs.fetchall()
  216. if(list_data):
  217. for data in list_data:
  218. if(data['acl'] == 'admin'):
  219. acl = '관리자'
  220. else:
  221. acl = '로그인'
  222. div += '<li>' + str(i + 1) + '. <a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (' + acl + ')</li>'
  223. i += 1
  224. else:
  225. div += '</div>'
  226. else:
  227. div = ''
  228. conn.close()
  229. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = 'ACL 문서 목록'))
  230. @route('/listacl')
  231. def list_acl():
  232. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  233. curs = conn.cursor(pymysql.cursors.DictCursor)
  234. div = '<div>'
  235. i = 0
  236. curs.execute("select * from alist order by name desc")
  237. list_data = curs.fetchall()
  238. if(list_data):
  239. for data in list_data:
  240. if(data['acl'] == 'ban'):
  241. acl = '차단'
  242. elif(data['acl'] == 'mdel'):
  243. acl = '많은 문서 삭제'
  244. elif(data['acl'] == 'toron'):
  245. acl = '토론 관리'
  246. elif(data['acl'] == 'check'):
  247. acl = '사용자 검사'
  248. elif(data['acl'] == 'acl'):
  249. acl = '문서 ACL'
  250. elif(data['acl'] == 'hidel'):
  251. acl = '역사 숨김'
  252. elif(data['acl'] == 'owner'):
  253. acl = '소유자'
  254. div += '<li>' + str(i + 1) + '. <a href="/adminplus/' + url_pas(data['name']) + '">' + data['name'] + '</a> (' + acl + ')</li>'
  255. i += 1
  256. else:
  257. div += '<br><a href="/manager/8">(새로 생성)</a></div>'
  258. else:
  259. div = '<a href="/manager/8">(새로 생성)</a></div>'
  260. conn.close()
  261. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = 'ACL 목록'))
  262. @route('/adminplus/<name:path>', method=['POST', 'GET'])
  263. def admin_plus(name = None):
  264. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  265. curs = conn.cursor(pymysql.cursors.DictCursor)
  266. if(admin_check(None) == 1):
  267. if(request.method == 'POST'):
  268. curs.execute("delete from alist where name = '" + db_pas(name) + "'")
  269. if(request.forms.ban):
  270. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'ban')")
  271. if(request.forms.mdel):
  272. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'mdel')")
  273. if(request.forms.toron):
  274. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'toron')")
  275. if(request.forms.check):
  276. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'check')")
  277. if(request.forms.acl):
  278. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'acl')")
  279. if(request.forms.hidel):
  280. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'hidel')")
  281. if(request.forms.owner):
  282. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'owner')")
  283. conn.commit()
  284. conn.close()
  285. return(redirect('/adminplus/admin'))
  286. else:
  287. curs.execute('select acl from alist where name = "' + db_pas(name) + '"')
  288. test = curs.fetchall()
  289. list = ''
  290. exist_list = ['', '', '', '', '', '', '', '', '']
  291. for go in test:
  292. if(go['acl'] == 'ban'):
  293. exist_list[0] = 'checked="checked"'
  294. elif(go['acl'] == 'mdel'):
  295. exist_list[1] = 'checked="checked"'
  296. elif(go['acl'] == 'toron'):
  297. exist_list[2] = 'checked="checked"'
  298. elif(go['acl'] == 'check'):
  299. exist_list[3] = 'checked="checked"'
  300. elif(go['acl'] == 'acl'):
  301. exist_list[4] = 'checked="checked"'
  302. elif(go['acl'] == 'hidel'):
  303. exist_list[5] = 'checked="checked"'
  304. elif(go['acl'] == 'owner'):
  305. exist_list[7] = 'checked="checked"'
  306. list += '<li><input type="checkbox" name="ban" ' + exist_list[0] + '> 차단</li>'
  307. list += '<li><input type="checkbox" name="mdel" ' + exist_list[1] + '> 많은 문서 삭제</li>'
  308. list += '<li><input type="checkbox" name="toron" ' + exist_list[2] + '> 토론 관리</li>'
  309. list += '<li><input type="checkbox" name="check" ' + exist_list[3] + '> 사용자 검사</li>'
  310. list += '<li><input type="checkbox" name="acl" ' + exist_list[4] + '> 문서 ACL</li>'
  311. list += '<li><input type="checkbox" name="hidel" ' + exist_list[5] + '> 역사 숨김</li>'
  312. list += '<li><input type="checkbox" name="owner" ' + exist_list[7] + '> 소유자</li>'
  313. conn.close()
  314. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '관리 그룹 추가', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/adminplus/' + url_pas(name) + '">' + list + '<div class="form-actions"><button class="btn btn-primary" type="submit">저장</button></div></form>'))
  315. else:
  316. conn.close()
  317. return(redirect('/error/3'))
  318. @route('/adminlist')
  319. def admin_list():
  320. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  321. curs = conn.cursor(pymysql.cursors.DictCursor)
  322. i = 1
  323. div = '<div>'
  324. curs.execute("select * from user where acl = 'admin' or acl = 'owner'")
  325. user_data = curs.fetchall()
  326. if(user_data):
  327. for data in user_data:
  328. name = ip_pas(data['id'], 2)
  329. name += ' (' + data['acl'] + ')'
  330. div += '<li>' + str(i) + '. ' + name + '</li>'
  331. i += 1
  332. else:
  333. div += '</div>'
  334. conn.close()
  335. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '관리자 목록'))
  336. else:
  337. conn.close()
  338. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], title = '관리자 목록'))
  339. @route('/recentchanges')
  340. def recentchanges():
  341. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  342. curs = conn.cursor(pymysql.cursors.DictCursor)
  343. ydmin = admin_check(1)
  344. zdmin = admin_check(6)
  345. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">문서명</td><td style="text-align: center;width:33.33%;">기여자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  346. curs.execute("select id, title, date, ip, send, leng from history order by date desc limit 50")
  347. rows = curs.fetchall()
  348. if(rows):
  349. for data in rows:
  350. if(data['send']):
  351. if(re.search("^(?: *)$", data['send'])):
  352. send = '<br>'
  353. else:
  354. send = data['send']
  355. else:
  356. send = '<br>'
  357. title = data['title']
  358. title = re.sub('<', '&lt;', title)
  359. title = re.sub('>', '&gt;', title)
  360. title = re.sub('"', '&quot;', title)
  361. m = re.search("\+", data['leng'])
  362. n = re.search("\-", data['leng'])
  363. if(m):
  364. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  365. elif(n):
  366. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  367. else:
  368. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  369. if(ydmin == 1):
  370. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  371. row = curs.fetchall()
  372. if(row):
  373. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  374. else:
  375. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  376. else:
  377. ban = ''
  378. ip = ip_pas(data['ip'], None)
  379. if((int(data['id']) - 1) == 0):
  380. revert = ''
  381. else:
  382. revert = '<a href="/w/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '/diff/' + data['id'] + '">(비교)</a> <a href="/revert/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '">(되돌리기)</a>'
  383. style = ''
  384. if(zdmin == 1):
  385. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  386. row = curs.fetchall()
  387. if(row):
  388. ip += ' (숨김)'
  389. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(공개)'
  390. else:
  391. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(숨김)'
  392. else:
  393. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  394. row = curs.fetchall()
  395. if(row):
  396. ip = '숨김'
  397. hidden = ''
  398. send = '숨김'
  399. ban = ''
  400. style = 'display:none;'
  401. else:
  402. hidden = ''
  403. div += '<tr style="' + style + '"><td style="text-align: center;width:33.33%;"><a href="/w/' + url_pas(data['title']) + '">' + title + '</a> (' + data['id'] + '판) ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + hidden + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr>'
  404. else:
  405. div += '</tbody></table></div>'
  406. else:
  407. div = 'None'
  408. conn.close()
  409. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '최근 변경내역'))
  410. @route('/history/<name:path>/r/<num:int>/hidden')
  411. def history_hidden(name = None, num = None):
  412. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  413. curs = conn.cursor(pymysql.cursors.DictCursor)
  414. if(admin_check(6) == 1):
  415. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  416. exist = curs.fetchall()
  417. if(exist):
  418. curs.execute("delete from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  419. else:
  420. curs.execute("insert into hidhi (title, re) value ('" + db_pas(name) + "', '" + db_pas(str(num)) + "')")
  421. conn.commit()
  422. conn.close()
  423. return(redirect('/history/' + url_pas(name)))
  424. @route('/record/<name:path>')
  425. @route('/record/<name:path>/n/<num:int>')
  426. def user_record(name = None, num = 1):
  427. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  428. curs = conn.cursor(pymysql.cursors.DictCursor)
  429. if(num * 50 <= 0):
  430. v = 50
  431. else:
  432. v = num * 50
  433. i = v - 50
  434. ydmin = admin_check(1)
  435. zdmin = admin_check(6)
  436. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">문서명</td><td style="text-align: center;width:33.33%;">기여자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  437. curs.execute("select * from history where ip = '" + db_pas(name) + "' order by date desc limit " + str(i) + ", " + str(v))
  438. rows = curs.fetchall()
  439. if(rows):
  440. for data in rows:
  441. if(data['send']):
  442. send = data['send']
  443. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  444. else:
  445. send = '<br>'
  446. title = data['title']
  447. title = re.sub('<', '&lt;', title)
  448. title = re.sub('>', '&gt;', title)
  449. title = re.sub('"', '&quot;', title)
  450. m = re.search("\+", data['leng'])
  451. n = re.search("\-", data['leng'])
  452. if(m):
  453. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  454. elif(n):
  455. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  456. else:
  457. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  458. if(ydmin == 1):
  459. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  460. row = curs.fetchall()
  461. if(row):
  462. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  463. else:
  464. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  465. else:
  466. ban = ''
  467. ip = ip_pas(data['ip'], None)
  468. if((int(data['id']) - 1) == 0):
  469. revert = ''
  470. else:
  471. revert = '<a href="/revert/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '">(되돌리기)</a>'
  472. style = ''
  473. if(zdmin == 1):
  474. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  475. row = curs.fetchall()
  476. if(row):
  477. ip += ' (숨김)'
  478. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(공개)'
  479. else:
  480. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(숨김)'
  481. else:
  482. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  483. row = curs.fetchall()
  484. if(row):
  485. ip = '숨김'
  486. hidden = ''
  487. send = '숨김'
  488. ban = ''
  489. style = 'display:none;'
  490. else:
  491. hidden = ''
  492. div += '<tr style="' + style + '"><td style="text-align: center;width:33.33%;"><a href="/w/' + url_pas(data['title']) + '">' + title + '</a> (' + data['id'] + '판) <a href="/w/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '/diff/' + data['id'] + '">(비교)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + hidden + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr>'
  493. else:
  494. div += '</tbody></table></div>'
  495. else:
  496. div = 'None<br>'
  497. div += '<br><a href="/record/' + url_pas(name) + '/n/' + str(int(num) - 1) + '">(이전)</a> <a href="/record/' + url_pas(name) + '/n/' + str(int(num) + 1) + '">(이후)</a>'
  498. curs.execute("select end, why from ban where block = '" + db_pas(name) + "'")
  499. ban_it = curs.fetchall()
  500. if(ban_it):
  501. div = namumark('', '{{{#!wiki style="border:2px solid red;padding:10px;"\r\n{{{+2 {{{#red 이 사용자는 차단 당했습니다.}}}}}}\r\n\r\n차단 해제 일 : ' + ban_it[0]['end'] + '[br]사유 : ' + ban_it[0]['why'] + '}}}') + '<br>' + div
  502. conn.close()
  503. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 기록'))
  504. @route('/userlog')
  505. @route('/userlog/n/<num:int>')
  506. def user_log(num = 1):
  507. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  508. curs = conn.cursor(pymysql.cursors.DictCursor)
  509. if(num * 50 <= 0):
  510. i = 50
  511. else:
  512. i = num * 50
  513. j = i - 50
  514. list_data = ''
  515. ydmin = admin_check(1)
  516. curs.execute("select * from user limit " + str(j) + ", " + str(i))
  517. user_list = curs.fetchall()
  518. if(user_list):
  519. for data in user_list:
  520. if(ydmin == 1):
  521. curs.execute("select * from ban where block = '" + db_pas(data['id']) + "'")
  522. ban_exist = curs.fetchall()
  523. if(ban_exist):
  524. ban_button = ' <a href="/ban/' + url_pas(data['id']) + '">(해제)</a>'
  525. else:
  526. ban_button = ' <a href="/ban/' + url_pas(data['id']) + '">(차단)</a>'
  527. else:
  528. ban_button = ''
  529. ip = ip_pas(data['id'], None)
  530. list_data += '<li>' + str(j + 1) + '. ' + ip + ban_button + '</li>'
  531. j += 1
  532. conn.close()
  533. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = list_data, title = '사용자 가입 기록'))
  534. else:
  535. conn.close()
  536. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '', title = '사용자 가입 기록'))
  537. @route('/backreset')
  538. def backlink_reset():
  539. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  540. curs = conn.cursor(pymysql.cursors.DictCursor)
  541. if(admin_check(None) == 1):
  542. i = 0
  543. curs.execute("delete from back")
  544. conn.commit()
  545. curs.execute("select * from data")
  546. all = curs.fetchall()
  547. if(all):
  548. for data in all:
  549. namumark(data['title'], data['data'])
  550. conn.close()
  551. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '에러 없음', title = '완료'))
  552. else:
  553. conn.close()
  554. return(redirect('/error/3'))
  555. @route('/xref/<name:path>')
  556. @route('/xref/<name:path>/n/<num:int>')
  557. def backlink(name = None, num = 1):
  558. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  559. curs = conn.cursor(pymysql.cursors.DictCursor)
  560. if(num * 50 <= 0):
  561. v = 50
  562. else:
  563. v = num * 50
  564. i = v - 50
  565. div = ''
  566. restart = 0
  567. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = ''")
  568. conn.commit()
  569. curs.execute("select * from back where title = '" + db_pas(name) + "' order by link asc")
  570. rows = curs.fetchall()
  571. if(rows):
  572. for data in rows:
  573. if(data['type'] == 'include' or data['type'] == 'file'):
  574. curs.execute("select * from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "' and type = ''")
  575. test = curs.fetchall()
  576. if(test):
  577. restart = 1
  578. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "' and type = ''")
  579. conn.commit()
  580. if(not re.search('^사용자:', data['link'])):
  581. curs.execute("select * from data where title = '" + db_pas(data['link']) + "'")
  582. row = curs.fetchall()
  583. if(row):
  584. data = row[0]['data']
  585. data = re.sub("(?P<in>\[include\((?P<out>(?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\])", "\g<in>\n\n[[\g<out>]]\n\n", data)
  586. data = re.sub("\[\[파일:(?P<in>(?:(?!\]\]|\|).)*)(?:\|((?:(?!\]\]).)*))?\]\]", "\n\n[[:파일:\g<in>]]\n\n", data)
  587. data = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', '[[\g<in>]]', data)
  588. data = namumark('', data)
  589. if(re.search("<a(?:(?:(?!href=).)*)?href=\"\/w\/" + url_pas(name) + "(?:\#[^\"]*)?\"(?:(?:(?!>).)*)?>([^<]*)<\/a>", data)):
  590. div += '<li><a href="/w/' + url_pas(data['link']) + '">' + data['link'] + '</a>'
  591. if(data['type']):
  592. div += ' (' + data['type'] + ')</li>'
  593. else:
  594. div += '</li>'
  595. else:
  596. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "'")
  597. conn.commit()
  598. i += 1
  599. v += 1
  600. else:
  601. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "'")
  602. conn.commit()
  603. i += 1
  604. v += 1
  605. else:
  606. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = '" + db_pas(data['link']) + "'")
  607. conn.commit()
  608. i += 1
  609. v += 1
  610. if(restart == 1):
  611. conn.close()
  612. return(redirect('/xref/' + url_pas(name) + '/n/' + str(num)))
  613. else:
  614. conn.close()
  615. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, page = url_pas(name), sub = '역링크'))
  616. else:
  617. conn.close()
  618. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = 'None', title = name, page = url_pas(name), sub = '역링크'))
  619. @route('/recentdiscuss')
  620. def recent_discuss():
  621. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  622. curs = conn.cursor(pymysql.cursors.DictCursor)
  623. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:50%;">토론명</td><td style="text-align: center;width:50%;">시간</td></tr>'
  624. curs.execute("select * from rd order by date desc limit 50")
  625. rows = curs.fetchall()
  626. if(rows):
  627. for data in rows:
  628. title = data['title']
  629. title = re.sub('<', '&lt;', title)
  630. title = re.sub('>', '&gt;', title)
  631. title = re.sub('"', '&quot;', title)
  632. sub = data['sub']
  633. sub = re.sub('<', '&lt;', sub)
  634. sub = re.sub('>', '&gt;', sub)
  635. sub = re.sub('"', '&quot;', sub)
  636. div += '<tr><td style="text-align: center;width:50%;"><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '">' + title + '</a> (' + sub + ')</td><td style="text-align: center;width:50%;">' + data['date'] + '</td></tr>'
  637. else:
  638. div += '</tbody></table></div>'
  639. else:
  640. div = 'None'
  641. conn.close()
  642. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '최근 토론내역'))
  643. @route('/blocklog')
  644. @route('/blocklog/n/<number:int>')
  645. def blocklog(num = 1):
  646. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  647. curs = conn.cursor(pymysql.cursors.DictCursor)
  648. if(num * 50 <= 0):
  649. v = 50
  650. else:
  651. v = num * 50
  652. i = v - 50
  653. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:20%;">차단자</td><td style="text-align: center;width:20%;">관리자</td><td style="text-align: center;width:20%;">기간</td><td style="text-align: center;width:20%;">이유</td><td style="text-align: center;width:20%;">시간</td></tr>'
  654. curs.execute("select * from rb order by today desc")
  655. rows = curs.fetchall()
  656. if(rows):
  657. for data in rows:
  658. why = data['why']
  659. why = re.sub('<', '&lt;', why)
  660. why = re.sub('>', '&gt;', why)
  661. why = re.sub('"', '&quot;', why)
  662. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", data['block'])
  663. if(b):
  664. ip = data['block'] + ' (대역)'
  665. else:
  666. ip = data['block']
  667. div += '<tr><td style="text-align: center;width:20%;">' + ip + '</a></td><td style="text-align: center;width:20%;">' + data['blocker'] + '</td><td style="text-align: center;width:20%;">' + data['end'] + '</td><td style="text-align: center;width:20%;">' + data['why'] + '</td><td style="text-align: center;width:20%;">' + data['today'] + '</td></tr>'
  668. else:
  669. div += '</tbody></table></div>'
  670. else:
  671. div = 'None'
  672. conn.close()
  673. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 차단 기록'))
  674. @route('/history/<name:path>', method=['POST', 'GET'])
  675. @route('/history/<name:path>/n/<num:int>', method=['POST', 'GET'])
  676. def history_view(name = None, num = 1):
  677. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  678. curs = conn.cursor(pymysql.cursors.DictCursor)
  679. if(request.method == 'POST'):
  680. conn.close()
  681. return(redirect('/w/' + url_pas(name) + '/r/' + request.forms.b + '/diff/' + request.forms.a))
  682. else:
  683. select = ''
  684. num1 = 0
  685. num2 = 0
  686. curs.execute("select id from history where title = '" + db_pas(name) + "' order by id + 0 desc limit 1")
  687. end_num = curs.fetchall()
  688. if(end_num):
  689. num1 = int(end_num[0]['id']) - num * 50
  690. if(num1 > 0):
  691. num2 = num1 + 51
  692. else:
  693. if(num1 + 51 > 0):
  694. num2 = num1 + 51
  695. admin1 = admin_check(1)
  696. admin2 = admin_check(6)
  697. div = '<div><table style="text-align:center; width:100%;"><tbody><tr><td style="width:33.33%;">판</td><td style="width:33.33%;">기여자</td><td style="width:33.33%;">시간</td></tr>'
  698. curs.execute("select send, leng, ip, date, title, id from history where title = '" + db_pas(name) + "' and id + 0 < '" + str(num2) + "' and id + 0 > '" + str(num1) + "' order by id + 0 desc")
  699. all_data = curs.fetchall()
  700. if(all_data):
  701. for data in all_data:
  702. select += '<option value="' + data['id'] + '">' + data['id'] + '</option>'
  703. if(data['send']):
  704. send = data['send']
  705. else:
  706. send = '<br>'
  707. if(re.search("^\+", data['leng'])):
  708. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  709. elif(re.search("^\-", data['leng'])):
  710. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  711. else:
  712. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  713. ip = ip_pas(data['ip'], None)
  714. curs.execute("select block from ban where block = '" + db_pas(data['ip']) + "'")
  715. ban_it = curs.fetchall()
  716. if(ban_it):
  717. if(admin1 == 1):
  718. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  719. else:
  720. ban = ' (X)'
  721. else:
  722. if(admin1 == 1):
  723. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  724. else:
  725. ban = ''
  726. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(data['id']) + "'")
  727. hid_it = curs.fetchall()
  728. if(hid_it):
  729. if(admin2):
  730. hidden = ' <a href="/history/' + url_pas(name) + '/r/' + url_pas(data['id']) + '/hidden">(공개)'
  731. hid = 0
  732. else:
  733. hid = 1
  734. else:
  735. if(admin2):
  736. hidden = ' <a href="/history/' + url_pas(name) + '/r/' + url_pas(data['id']) + '/hidden">(숨김)'
  737. hid = 0
  738. else:
  739. hidden = ''
  740. hid = 0
  741. if(hid == 1):
  742. div += '<tr><td colspan="3">숨김</td></tr>'
  743. else:
  744. div += '<tr><td>' + data['id'] + '판</a> <a href="/w/' + url_pas(data['title']) + '/r/' + url_pas(data['id']) + '">(보기)</a> <a href="/w/' + url_pas(data['title']) + '/raw/' + url_pas(data['id']) + '">(원본)</a> <a href="/revert/' + url_pas(data['title']) + '/r/' + url_pas(data['id']) + '">(되돌리기)</a> (' + leng + ')</td><td>' + ip + ban + hidden + '</td><td>' + data['date'] + '</td></tr><tr><td colspan="3">' + send + '</td></tr>'
  745. else:
  746. div += '</tbody></table></div>'
  747. else:
  748. div = 'None<br>'
  749. div += '<br><a href="/history/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/history/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  750. conn.close()
  751. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, page = url_pas(name), select = select, sub = '역사'))
  752. @route('/search', method=['POST'])
  753. def search():
  754. return(redirect('/search/' + url_pas(request.forms.search)))
  755. @route('/goto', method=['POST'])
  756. def goto():
  757. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  758. curs = conn.cursor(pymysql.cursors.DictCursor)
  759. curs.execute("select title from data where title = '" + db_pas(request.forms.search) + "'")
  760. data = curs.fetchall()
  761. conn.close()
  762. if(data):
  763. return(redirect('/w/' + url_pas(request.forms.search)))
  764. else:
  765. return(redirect('/search/' + url_pas(request.forms.search)))
  766. @route('/search/<name:path>')
  767. @route('/search/<name:path>/n/<num:int>')
  768. def deep_search(name = None, num = 1):
  769. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  770. curs = conn.cursor(pymysql.cursors.DictCursor)
  771. v = num * 50
  772. i = v - 50
  773. div = ''
  774. div_plus = ''
  775. end = ''
  776. curs.execute("select title from data where title like '%" + db_pas(name) + "%'")
  777. title_list = curs.fetchall()
  778. curs.execute("select title from data where data like '%" + db_pas(name) + "%'")
  779. data_list = curs.fetchall()
  780. curs.execute("select title from data where title = '" + db_pas(name) + "'")
  781. exist = curs.fetchall()
  782. if(exist):
  783. div = '<li>문서로 <a href="/w/' + url_pas(name) + '">바로가기</a></li><br>'
  784. else:
  785. div = '<li>문서가 없습니다. <a class="not_thing" href="/w/' + url_pas(name) + '">바로가기</a></li><br>'
  786. if(title_list):
  787. no = 0
  788. if(data_list):
  789. all_list = title_list + data_list
  790. else:
  791. all_list = title_list
  792. else:
  793. if(data_list):
  794. no = 1
  795. all_list = data_list
  796. else:
  797. all_list = ''
  798. if(not all_list == ''):
  799. for data in all_list:
  800. re_title = re.compile(name, re.I)
  801. if(re.search(re_title, data['title'])):
  802. if(no == 0):
  803. div += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (문서명)</li>'
  804. else:
  805. div_plus += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (내용)</li>'
  806. else:
  807. no = 1
  808. div_plus += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (내용)</li>'
  809. else:
  810. div += '<li>검색 결과 없음</li>'
  811. div += div_plus + end
  812. conn.close()
  813. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, sub = '검색'))
  814. @route('/w/<name:path>/r/<num:int>')
  815. def old_view(name = None, num = None):
  816. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  817. curs = conn.cursor(pymysql.cursors.DictCursor)
  818. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  819. row = curs.fetchall()
  820. if(row):
  821. if(admin_check(6) == 1):
  822. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  823. rows = curs.fetchall()
  824. if(rows):
  825. conn.close()
  826. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = namumark(name, rows[0]['data']), sub = '옛 문서'))
  827. else:
  828. conn.close()
  829. return(redirect('/history/' + url_pas(name)))
  830. else:
  831. conn.close()
  832. return(redirect('/error/3'))
  833. else:
  834. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  835. rows = curs.fetchall()
  836. if(rows):
  837. conn.close()
  838. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = namumark(name, rows[0]['data']), sub = '옛 문서'))
  839. else:
  840. conn.close()
  841. return(redirect('/history/' + url_pas(name)))
  842. @route('/w/<name:path>/raw/<num:int>')
  843. def old_raw(name = None, num = None):
  844. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  845. curs = conn.cursor(pymysql.cursors.DictCursor)
  846. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  847. row = curs.fetchall()
  848. if(row):
  849. if(admin_check(6) == 1):
  850. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  851. rows = curs.fetchall()
  852. if(rows):
  853. enddata = re.sub('<', '&lt;', rows[0]['data'])
  854. enddata = re.sub('>', '&gt;', enddata)
  855. enddata = re.sub('"', '&quot;', enddata)
  856. enddata = '<pre>' + enddata + '</pre>'
  857. conn.close()
  858. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '옛 원본'))
  859. else:
  860. conn.close()
  861. return(redirect('/history/' + url_pas(name)))
  862. else:
  863. conn.close()
  864. return(redirect('/error/3'))
  865. else:
  866. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  867. rows = curs.fetchall()
  868. if(rows):
  869. enddata = re.sub('<', '&lt;', rows[0]['data'])
  870. enddata = re.sub('>', '&gt;', enddata)
  871. enddata = re.sub('"', '&quot;', enddata)
  872. enddata = '<pre>' + enddata + '</pre>'
  873. conn.close()
  874. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '옛 원본'))
  875. else:
  876. conn.close()
  877. return(redirect('/history/' + url_pas(name)))
  878. @route('/raw/<name:path>')
  879. def raw_view(name = None):
  880. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  881. curs = conn.cursor(pymysql.cursors.DictCursor)
  882. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  883. rows = curs.fetchall()
  884. if(rows):
  885. enddata = re.sub('<', '&lt;', rows[0]['data'])
  886. enddata = re.sub('>', '&gt;', enddata)
  887. enddata = re.sub('"', '&quot;', enddata)
  888. enddata = '<pre>' + enddata + '</pre>'
  889. conn.close()
  890. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '원본'))
  891. else:
  892. conn.close()
  893. return(redirect('/w/' + url_pas(name)))
  894. @route('/revert/<name:path>/r/<num:int>', method=['POST', 'GET'])
  895. def revert(name = None, num = None):
  896. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  897. curs = conn.cursor(pymysql.cursors.DictCursor)
  898. ip = ip_check()
  899. can = acl_check(ip, name)
  900. today = get_time()
  901. if(request.method == 'POST'):
  902. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  903. row = curs.fetchall()
  904. if(row):
  905. if(admin_check(6) == 1):
  906. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  907. rows = curs.fetchall()
  908. if(rows):
  909. if(can == 1):
  910. conn.close()
  911. return(redirect('/ban'))
  912. else:
  913. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  914. row = curs.fetchall()
  915. if(row):
  916. leng = leng_check(len(row[0]['data']), len(rows[0]['data']))
  917. curs.execute("update data set data = '" + db_pas(rows[0]['data']) + "' where title = '" + db_pas(name) + "'")
  918. conn.commit()
  919. else:
  920. leng = '+' + str(len(rows[0]['data']))
  921. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(rows[0]['data']) + "', '')")
  922. conn.commit()
  923. history_plus(name, rows[0]['data'], today, ip, '문서를 ' + str(num) + '판으로 되돌렸습니다.', leng)
  924. conn.close()
  925. return(redirect('/w/' + url_pas(name)))
  926. else:
  927. conn.close()
  928. return(redirect('/w/' + url_pas(name)))
  929. else:
  930. conn.close()
  931. return(redirect('/error/3'))
  932. else:
  933. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  934. rows = curs.fetchall()
  935. if(rows):
  936. if(can == 1):
  937. conn.close()
  938. return(redirect('/ban'))
  939. else:
  940. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  941. row = curs.fetchall()
  942. if(row):
  943. leng = leng_check(len(row[0]['data']), len(rows[0]['data']))
  944. curs.execute("update data set data = '" + db_pas(rows[0]['data']) + "' where title = '" + db_pas(name) + "'")
  945. conn.commit()
  946. else:
  947. leng = '+' + str(len(rows[0]['data']))
  948. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(rows[0]['data']) + "', '')")
  949. conn.commit()
  950. history_plus(name, rows[0]['data'], today, ip, '문서를 ' + str(num) + '판으로 되돌렸습니다.', leng)
  951. conn.close()
  952. return(redirect('/w/' + url_pas(name)))
  953. else:
  954. conn.close()
  955. return(redirect('/w/' + url_pas(name)) )
  956. else:
  957. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  958. row = curs.fetchall()
  959. if(row):
  960. if(admin_check(6) == 1):
  961. if(can == 1):
  962. conn.close()
  963. return(redirect('/ban'))
  964. else:
  965. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  966. rows = curs.fetchall()
  967. if(rows):
  968. conn.close()
  969. return(template('revert', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), r = url_pas(str(num)), plus = '정말 되돌리시겠습니까?', sub = '되돌리기'))
  970. else:
  971. conn.close()
  972. return(redirect('/w/' + url_pas(name)))
  973. else:
  974. conn.close()
  975. return(redirect('/error/3'))
  976. else:
  977. if(can == 1):
  978. conn.close()
  979. return(redirect('/ban'))
  980. else:
  981. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  982. rows = curs.fetchall()
  983. if(rows):
  984. conn.close()
  985. return(template('revert', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), r = url_pas(str(num)), plus = '정말 되돌리시겠습니까?', sub = '되돌리기'))
  986. else:
  987. conn.close()
  988. return(redirect('/w/' + url_pas(name)))
  989. @route('/manydel', method=['POST', 'GET'])
  990. def many_del():
  991. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  992. curs = conn.cursor(pymysql.cursors.DictCursor)
  993. today = get_time()
  994. ip = ip_check()
  995. if(admin_check(2) == 1):
  996. if(request.method == 'POST'):
  997. data = request.forms.content + '\r\n'
  998. while(True):
  999. m = re.search('(.*)\r\n', data)
  1000. if(m):
  1001. g = m.groups()
  1002. curs.execute("select data from data where title = '" + db_pas(g[0]) + "'")
  1003. rows = curs.fetchall()
  1004. if(rows):
  1005. leng = '-' + str(len(rows[0]['data']))
  1006. curs.execute("delete from data where title = '" + db_pas(g[0]) + "'")
  1007. history_plus(g[0], '', today, ip, '문서를 삭제 했습니다.', leng)
  1008. data = re.sub('(.*)\r\n', '', data, 1)
  1009. else:
  1010. break
  1011. conn.commit()
  1012. conn.close()
  1013. return(redirect('/'))
  1014. else:
  1015. conn.close()
  1016. return(template('mdel', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '많은 문서 삭제', logo = set_data['name']))
  1017. else:
  1018. conn.close()
  1019. return(redirect('/error/3'))
  1020. @route('/edit/<name:path>/section/<num:int>', method=['POST', 'GET'])
  1021. def section_edit(name = None, num = None):
  1022. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1023. curs = conn.cursor(pymysql.cursors.DictCursor)
  1024. ip = ip_check()
  1025. can = acl_check(ip, name)
  1026. if(request.method == 'POST'):
  1027. if(len(request.forms.send) > 500):
  1028. conn.close()
  1029. return(redirect('/error/15'))
  1030. else:
  1031. today = get_time()
  1032. content = savemark(request.forms.content)
  1033. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1034. rows = curs.fetchall()
  1035. if(rows):
  1036. if(request.forms.otent == content):
  1037. conn.close()
  1038. return(redirect('/error/18'))
  1039. else:
  1040. if(can == 1):
  1041. conn.close()
  1042. return(redirect('/ban'))
  1043. else:
  1044. leng = leng_check(len(request.forms.otent), len(content))
  1045. content = rows[0]['data'].replace(request.forms.otent, content)
  1046. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1047. curs.execute("update data set data = '" + db_pas(content) + "' where title = '" + db_pas(name) + "'")
  1048. conn.commit()
  1049. include_check(name, content)
  1050. conn.close()
  1051. return(redirect('/w/' + url_pas(name)))
  1052. else:
  1053. conn.close()
  1054. return(redirect('/w/' + url_pas(name)))
  1055. else:
  1056. if(can == 1):
  1057. conn.close()
  1058. return(redirect('/ban'))
  1059. else:
  1060. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1061. rows = curs.fetchall()
  1062. if(rows):
  1063. i = 0
  1064. j = 0
  1065. gdata = rows[0]['data'] + '\r\n'
  1066. while(True):
  1067. m = re.search("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", gdata)
  1068. if(m):
  1069. if(i == num - 1):
  1070. g = m.groups()
  1071. gdata = re.sub("\r\n$", "", g[0])
  1072. break
  1073. else:
  1074. gdata = re.sub("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", "", gdata, 1)
  1075. i += 1
  1076. else:
  1077. j = 1
  1078. break
  1079. if(j == 0):
  1080. gdata = re.sub("\r\n$", "", gdata)
  1081. conn.close()
  1082. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = gdata, section = 1, number = num, sub = '편집'))
  1083. else:
  1084. conn.close()
  1085. return(redirect('/w/' + url_pas(name)))
  1086. else:
  1087. conn.close()
  1088. return(redirect('/w/' + url_pas(name)))
  1089. @route('/edit/<name:path>', method=['POST', 'GET'])
  1090. def edit(name = None):
  1091. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1092. curs = conn.cursor(pymysql.cursors.DictCursor)
  1093. ip = ip_check()
  1094. can = acl_check(ip, name)
  1095. if(request.method == 'POST'):
  1096. if(len(request.forms.send) > 500):
  1097. conn.close()
  1098. return(redirect('/error/15'))
  1099. else:
  1100. today = get_time()
  1101. content = savemark(request.forms.content)
  1102. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1103. rows = curs.fetchall()
  1104. if(rows):
  1105. if(rows[0]['data'] == content):
  1106. conn.close()
  1107. return(redirect('/error/18'))
  1108. else:
  1109. if(can == 1):
  1110. conn.close()
  1111. return(redirect('/ban'))
  1112. else:
  1113. leng = leng_check(len(rows[0]['data']), len(content))
  1114. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1115. curs.execute("update data set data = '" + db_pas(content) + "' where title = '" + db_pas(name) + "'")
  1116. conn.commit()
  1117. else:
  1118. if(can == 1):
  1119. conn.close()
  1120. return(redirect('/ban'))
  1121. else:
  1122. leng = '+' + str(len(content))
  1123. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1124. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(content) + "', '')")
  1125. conn.commit()
  1126. include_check(name, content)
  1127. conn.close()
  1128. return(redirect('/w/' + url_pas(name)))
  1129. else:
  1130. if(can == 1):
  1131. conn.close()
  1132. return(redirect('/ban'))
  1133. else:
  1134. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1135. rows = curs.fetchall()
  1136. if(rows):
  1137. conn.close()
  1138. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = rows[0]['data'], sub = '편집'))
  1139. else:
  1140. conn.close()
  1141. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = '', sub = '편집'))
  1142. @route('/preview/<name:path>/section/<num:int>', method=['POST'])
  1143. def section_preview(name = None, num = None):
  1144. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1145. curs = conn.cursor(pymysql.cursors.DictCursor)
  1146. ip = ip_check()
  1147. can = acl_check(ip, name)
  1148. if(can == 1):
  1149. conn.close()
  1150. return(redirect('/ban'))
  1151. else:
  1152. newdata = request.forms.content
  1153. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * [[\g<in>]] 문서로 넘겨주기', newdata)
  1154. enddata = namumark(name, newdata)
  1155. conn.close()
  1156. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = request.forms.content, preview = 1, enddata = enddata, section = 1, number = num, odata = request.forms.otent, sub = '미리보기'))
  1157. @route('/preview/<name:path>', method=['POST'])
  1158. def preview(name = None):
  1159. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1160. curs = conn.cursor(pymysql.cursors.DictCursor)
  1161. ip = ip_check()
  1162. can = acl_check(ip, name)
  1163. if(can == 1):
  1164. conn.close()
  1165. return(redirect('/ban'))
  1166. else:
  1167. newdata = request.forms.content
  1168. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * [[\g<in>]] 문서로 넘겨주기', newdata)
  1169. enddata = namumark(name, newdata)
  1170. conn.close()
  1171. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = request.forms.content, preview = 1, enddata = enddata, sub = '미리보기'))
  1172. @route('/delete/<name:path>', method=['POST', 'GET'])
  1173. def delete(name = None):
  1174. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1175. curs = conn.cursor(pymysql.cursors.DictCursor)
  1176. ip = ip_check()
  1177. can = acl_check(ip, name)
  1178. if(request.method == 'POST'):
  1179. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1180. rows = curs.fetchall()
  1181. if(rows):
  1182. if(can == 1):
  1183. conn.close()
  1184. return(redirect('/ban'))
  1185. else:
  1186. today = get_time()
  1187. leng = '-' + str(len(rows[0]['data']))
  1188. history_plus(name, '', today, ip, '문서를 삭제 했습니다.', leng)
  1189. curs.execute("delete from data where title = '" + db_pas(name) + "'")
  1190. conn.commit()
  1191. conn.close()
  1192. return(redirect('/w/' + url_pas(name)))
  1193. else:
  1194. conn.close()
  1195. return(redirect('/w/' + url_pas(name)))
  1196. else:
  1197. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1198. rows = curs.fetchall()
  1199. if(rows):
  1200. if(can == 1):
  1201. conn.close()
  1202. return(redirect('/ban'))
  1203. else:
  1204. conn.close()
  1205. return(template('del', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), plus = '정말 삭제 하시겠습니까?', sub = '삭제'))
  1206. else:
  1207. conn.close()
  1208. return(redirect('/w/' + url_pas(name)))
  1209. @route('/move/<name:path>', method=['POST', 'GET'])
  1210. def move(name = None):
  1211. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1212. curs = conn.cursor(pymysql.cursors.DictCursor)
  1213. ip = ip_check()
  1214. can = acl_check(ip, name)
  1215. today = get_time()
  1216. if(request.method == 'POST'):
  1217. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1218. rows = curs.fetchall()
  1219. if(can == 1):
  1220. conn.close()
  1221. return(redirect('/ban'))
  1222. else:
  1223. leng = '0'
  1224. curs.execute("select * from history where title = '" + db_pas(request.forms.title) + "'")
  1225. row = curs.fetchall()
  1226. if(row):
  1227. conn.close()
  1228. return(redirect('/error/19'))
  1229. else:
  1230. history_plus(name, rows[0]['data'], today, ip, '<a href="/w/' + url_pas(name) + '">' + name + '</a> 문서를 <a href="/w/' + url_pas(request.forms.title) + '">' + request.forms.title + '</a> 문서로 이동 했습니다.', leng)
  1231. if(rows):
  1232. curs.execute("update data set title = '" + db_pas(request.forms.title) + "' where title = '" + db_pas(name) + "'")
  1233. curs.execute("update history set title = '" + db_pas(request.forms.title) + "' where title = '" + db_pas(name) + "'")
  1234. conn.commit()
  1235. conn.close()
  1236. return(redirect('/w/' + url_pas(request.forms.title)))
  1237. else:
  1238. if(can == 1):
  1239. conn.close()
  1240. return(redirect('/ban'))
  1241. else:
  1242. conn.close()
  1243. return(template('move', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), plus = '정말 이동 하시겠습니까?', sub = '이동'))
  1244. @route('/other')
  1245. def other():
  1246. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1247. curs = conn.cursor(pymysql.cursors.DictCursor)
  1248. conn.close()
  1249. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기타 메뉴', logo = set_data['name'], data = '<h2 style="margin-top: 0px;">기록</h2><li><a href="/blocklog">사용자 차단 기록</a></li><li><a href="/userlog">사용자 가입 기록</a></li><li><a href="/manager/6">사용자 기록</a></li><li><a href="/manager/7">사용자 토론 기록</a></li><h2>기타</h2><li><a href="/titleindex">모든 문서</a></li><li><a href="/acllist">ACL 문서 목록</a></li><li><a href="/upload">업로드</a></li><li><a href="/adminlist">관리자 목록</a></li><li><a href="/manager/1">관리자 메뉴</a></li><br>이 오픈나무의 버전은 <a href="https://github.com/2DU/openNAMU/blob/normal/version.md">v' + r_ver + '</a> 입니다.'))
  1250. @route('/manager/<num:int>', method=['POST', 'GET'])
  1251. def manager(num = None):
  1252. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1253. curs = conn.cursor(pymysql.cursors.DictCursor)
  1254. if(num == 1):
  1255. conn.close()
  1256. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '관리자 메뉴', logo = set_data['name'], data = '<h2 style="margin-top: 0px;">목록</h2><li><a href="/manager/2">문서 ACL</a></li><li><a href="/manager/3">사용자 체크</a></li><li><a href="/manager/4">사용자 차단</a></li><li><a href="/manager/5">관리자 권한 주기</a></li><li><a href="/manydel">많은 문서 삭제</a></li><h2>소유자</h2><li><a href="/backreset">모든 역링크 재 생성</a></li><li><a href="/manager/8">새로운 관리 그룹 생성</a></li><h2>기타</h2><li>이 메뉴에 없는 기능은 해당 문서의 역사나 토론에서 바로 사용 가능함</li>'))
  1257. elif(num == 2):
  1258. if(request.method == 'POST'):
  1259. conn.close()
  1260. return(redirect('/acl/' + url_pas(request.forms.name)))
  1261. else:
  1262. conn.close()
  1263. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = 'ACL 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/2"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>'))
  1264. elif(num == 3):
  1265. if(request.method == 'POST'):
  1266. conn.close()
  1267. return(redirect('/check/' + url_pas(request.forms.name)))
  1268. else:
  1269. conn.close()
  1270. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '체크 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/3"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>'))
  1271. elif(num == 4):
  1272. if(request.method == 'POST'):
  1273. conn.close()
  1274. return(redirect('/ban/' + url_pas(request.forms.name)))
  1275. else:
  1276. conn.close()
  1277. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '차단 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/4"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button><br><br><span>아이피 앞 두자리 (XXX.XXX) 입력하면 대역 차단</span></form>'))
  1278. elif(num == 5):
  1279. if(request.method == 'POST'):
  1280. conn.close()
  1281. return(redirect('/admin/' + url_pas(request.forms.name)))
  1282. else:
  1283. conn.close()
  1284. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/5"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1285. elif(num == 6):
  1286. if(request.method == 'POST'):
  1287. conn.close()
  1288. return(redirect('/record/' + url_pas(request.forms.name)))
  1289. else:
  1290. conn.close()
  1291. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기록 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/6"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1292. elif(num == 7):
  1293. if(request.method == 'POST'):
  1294. conn.close()
  1295. return(redirect('/user/' + url_pas(request.forms.name) + '/topic'))
  1296. else:
  1297. conn.close()
  1298. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '토론 기록 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/7"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1299. elif(num == 8):
  1300. if(request.method == 'POST'):
  1301. conn.close()
  1302. return(redirect('/adminplus/' + url_pas(request.forms.name)))
  1303. else:
  1304. conn.close()
  1305. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '그룹 생성 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/8"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1306. else:
  1307. conn.close()
  1308. return(redirect('/'))
  1309. @route('/titleindex')
  1310. def title_index():
  1311. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1312. curs = conn.cursor(pymysql.cursors.DictCursor)
  1313. i = [0, 0, 0, 0, 0, 0]
  1314. data = '<div>'
  1315. curs.execute("select title from data order by title asc")
  1316. title_list = curs.fetchall()
  1317. if(title_list):
  1318. for list_data in title_list:
  1319. data += '<li>' + str(i[0] + 1) + '. <a href="/w/' + url_pas(list_data['title']) + '">' + list_data['title'] + '</a></li>'
  1320. if(re.search('^분류:', list_data['title'])):
  1321. i[1] += 1
  1322. elif(re.search('^사용자:', list_data['title'])):
  1323. i[2] += 1
  1324. elif(re.search('^틀:', list_data['title'])):
  1325. i[3] += 1
  1326. elif(re.search('^파일:', list_data['title'])):
  1327. i[4] += 1
  1328. else:
  1329. i[5] += 1
  1330. i[0] += 1
  1331. else:
  1332. data += '</div>'
  1333. data += '<br><li>이 위키에는 총 ' + str(i[0]) + '개의 문서가 있습니다.</li><br><li>틀 문서는 총 ' + str(i[3]) + '개의 문서가 있습니다.</li><li>분류 문서는 총 ' + str(i[1]) + '개의 문서가 있습니다.</li><li>사용자 문서는 총 ' + str(i[2]) + '개의 문서가 있습니다.</li><li>파일 문서는 총 ' + str(i[4]) + '개의 문서가 있습니다.</li><li>나머지 문서는 총 ' + str(i[5]) + '개의 문서가 있습니다.</li>'
  1334. else:
  1335. data = 'None'
  1336. conn.close()
  1337. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = data, title = '모든 문서'))
  1338. @route('/topic/<name:path>/sub/<sub:path>/b/<num:int>')
  1339. def topic_block(name = None, sub = None, num = None):
  1340. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1341. curs = conn.cursor(pymysql.cursors.DictCursor)
  1342. if(admin_check(3) == 1):
  1343. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1344. block = curs.fetchall()
  1345. if(block):
  1346. if(block[0]['block'] == 'O'):
  1347. curs.execute("update topic set block = '' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1348. else:
  1349. curs.execute("update topic set block = 'O' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1350. conn.commit()
  1351. rd_plus(name, sub, get_time())
  1352. conn.close()
  1353. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1354. else:
  1355. conn.close()
  1356. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1357. else:
  1358. conn.close()
  1359. return(redirect('/error/3'))
  1360. @route('/topic/<name:path>/sub/<sub:path>/notice/<num:int>')
  1361. def topic_top(name = None, sub = None, num = None):
  1362. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1363. curs = conn.cursor(pymysql.cursors.DictCursor)
  1364. if(admin_check(3) == 1):
  1365. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1366. topic_data = curs.fetchall()
  1367. if(topic_data):
  1368. curs.execute("select * from topic where id = '" + str(num) + "' and title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1369. top_data = curs.fetchall()
  1370. if(top_data):
  1371. if(top_data[0]['top'] == 'O'):
  1372. curs.execute("update topic set top = '' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1373. else:
  1374. curs.execute("update topic set top = 'O' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1375. conn.commit()
  1376. rd_plus(name, sub, get_time())
  1377. conn.close()
  1378. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1379. else:
  1380. conn.close()
  1381. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1382. else:
  1383. conn.close()
  1384. return(redirect('/error/3'))
  1385. @route('/topic/<name:path>/sub/<sub:path>/stop')
  1386. def topic_stop(name = None, sub = None):
  1387. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1388. curs = conn.cursor(pymysql.cursors.DictCursor)
  1389. if(admin_check(3) == 1):
  1390. ip = ip_check()
  1391. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1392. topic_check = curs.fetchall()
  1393. if(topic_check):
  1394. time = get_time()
  1395. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1396. stop = curs.fetchall()
  1397. if(stop):
  1398. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 재 시작', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1399. curs.execute("delete from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1400. else:
  1401. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 정지', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1402. curs.execute("insert into stop (title, sub, close) value ('" + db_pas(name) + "', '" + db_pas(sub) + "', '')")
  1403. conn.commit()
  1404. rd_plus(name, sub, time)
  1405. conn.close()
  1406. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1407. else:
  1408. conn.close()
  1409. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1410. else:
  1411. conn.close()
  1412. return(redirect('/error/3'))
  1413. @route('/topic/<name:path>/sub/<sub:path>/close')
  1414. def topic_close(name = None, sub = None):
  1415. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1416. curs = conn.cursor(pymysql.cursors.DictCursor)
  1417. if(admin_check(3) == 1):
  1418. ip = ip_check()
  1419. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1420. topic_check = curs.fetchall()
  1421. if(topic_check):
  1422. time = get_time()
  1423. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1424. close = curs.fetchall()
  1425. if(close):
  1426. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 다시 열기', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1427. curs.execute("delete from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1428. else:
  1429. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 닫음', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1430. curs.execute("insert into stop (title, sub, close) value ('" + db_pas(name) + "', '" + db_pas(sub) + "', 'O')")
  1431. conn.commit()
  1432. rd_plus(name, sub, time)
  1433. conn.close()
  1434. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1435. else:
  1436. conn.close()
  1437. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1438. else:
  1439. conn.close()
  1440. return(redirect('/error/3'))
  1441. @route('/topic/<name:path>/sub/<sub:path>/agree')
  1442. def topic_agree(name = None, sub = None):
  1443. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1444. curs = conn.cursor(pymysql.cursors.DictCursor)
  1445. if(admin_check(3) == 1):
  1446. ip = ip_check()
  1447. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1448. topic_check = curs.fetchall()
  1449. if(topic_check):
  1450. time = get_time()
  1451. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1452. agree = curs.fetchall()
  1453. if(agree):
  1454. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '합의 결렬', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1455. curs.execute("delete from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1456. else:
  1457. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '합의 완료', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1458. curs.execute("insert into agreedis (title, sub) value ('" + db_pas(name) + "', '" + db_pas(sub) + "')")
  1459. conn.commit()
  1460. rd_plus(name, sub, time)
  1461. conn.close()
  1462. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1463. else:
  1464. conn.close()
  1465. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1466. else:
  1467. conn.close()
  1468. return(redirect('/error/3'))
  1469. @route('/topic/<name:path>/sub/<sub:path>', method=['POST', 'GET'])
  1470. def topic(name = None, sub = None):
  1471. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1472. curs = conn.cursor(pymysql.cursors.DictCursor)
  1473. ip = ip_check()
  1474. ban = topic_check(ip, name, sub)
  1475. admin = admin_check(3)
  1476. if(request.method == 'POST'):
  1477. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1478. rows = curs.fetchall()
  1479. if(rows):
  1480. num = int(rows[0]['id']) + 1
  1481. else:
  1482. num = 1
  1483. if(ban == 1 and not admin == 1):
  1484. conn.close()
  1485. return(redirect('/ban'))
  1486. else:
  1487. today = get_time()
  1488. rd_plus(name, sub, today)
  1489. aa = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", "[br]", request.forms.content)
  1490. aa = savemark(aa)
  1491. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + str(num) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '" + db_pas(aa) + "', '" + today + "', '" + ip + "', '', '')")
  1492. conn.commit()
  1493. conn.close()
  1494. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1495. else:
  1496. style = ''
  1497. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1498. close = curs.fetchall()
  1499. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1500. stop = curs.fetchall()
  1501. if(admin == 1):
  1502. div = '<div>'
  1503. if(close):
  1504. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/close">(토론 열기)</a> '
  1505. else:
  1506. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/close">(토론 닫기)</a> '
  1507. if(stop):
  1508. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/stop">(토론 재개)</a> '
  1509. else:
  1510. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/stop">(토론 정지)</a> '
  1511. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1512. agree = curs.fetchall()
  1513. if(agree):
  1514. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/agree">(합의 취소)</a>'
  1515. else:
  1516. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/agree">(합의 완료)</a>'
  1517. div += '<br><br>'
  1518. else:
  1519. div = '<div>'
  1520. if(stop or close):
  1521. if(not admin == 1):
  1522. style = 'display:none;'
  1523. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 asc")
  1524. toda = curs.fetchall()
  1525. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and top = 'O' order by id + 0 asc")
  1526. top = curs.fetchall()
  1527. if(top):
  1528. for dain in top:
  1529. top_data = namumark('', dain['data'])
  1530. top_data = re.sub("(?P<in>#(?:[0-9]*))", '<a href="\g<in>">\g<in></a>', top_data)
  1531. ip = ip_pas(dain['ip'], 1)
  1532. div += '<table id="toron"><tbody><tr><td id="toroncolorred"><a href="#' + dain['id'] + '">#' + dain['id'] + '</a> ' + ip + ' <span style="float:right;">' + dain['date'] + '</span></td></tr><tr><td>' + top_data + '</td></tr></tbody></table><br>'
  1533. i = 0
  1534. for dain in toda:
  1535. if(i == 0):
  1536. start = dain['ip']
  1537. indata = namumark('', dain['data'])
  1538. indata = re.sub("(?P<in>#(?:[0-9]*))", '<a href="\g<in>">\g<in></a>', indata)
  1539. if(dain['block'] == 'O'):
  1540. indata = '블라인드 되었습니다.'
  1541. block = 'id="block"'
  1542. else:
  1543. block = ''
  1544. if(admin == 1):
  1545. if(dain['block'] == 'O'):
  1546. isblock = ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/b/' + str(i + 1) + '">(해제)</a>'
  1547. else:
  1548. isblock = ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/b/' + str(i + 1) + '">(블라인드)</a>'
  1549. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + db_pas(str(i + 1)) + "' and top = 'O'")
  1550. row = curs.fetchall()
  1551. if(row):
  1552. isblock = isblock + ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/notice/' + str(i + 1) + '">(해제)</a>'
  1553. else:
  1554. isblock = isblock + ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/notice/' + str(i + 1) + '">(공지)</a>'
  1555. curs.execute("select end from ban where block = '" + db_pas(dain['ip']) + "'")
  1556. ban_it = curs.fetchall()
  1557. if(ban_it):
  1558. ban = ' <a href="/ban/' + url_pas(dain['ip']) + '">(해제)</a>' + isblock
  1559. else:
  1560. ban = ' <a href="/ban/' + url_pas(dain['ip']) + '">(차단)</a>' + isblock
  1561. else:
  1562. curs.execute("select end from ban where block = '" + db_pas(dain['ip']) + "'")
  1563. ban_it = curs.fetchall()
  1564. if(ban_it):
  1565. ban = ' (X)'
  1566. else:
  1567. ban = ''
  1568. chad = ''
  1569. curs.execute('select acl from user where id = "' + db_pas(dain['ip']) + '"')
  1570. adch = curs.fetchall()
  1571. if(adch):
  1572. if(not adch[0]['acl'] == 'user'):
  1573. chad = ' (관리자)'
  1574. ip = ip_pas(dain['ip'], 1)
  1575. if(dain['top'] == '1'):
  1576. color = 'blue'
  1577. elif(dain['ip'] == start):
  1578. color = 'green'
  1579. else:
  1580. color = ''
  1581. div += '<table id="toron"><tbody><tr><td id="toroncolor' + color + '"><a href="javascript:void(0);" id="' + str(i + 1) + '">#' + str(i + 1) + '</a> ' + ip + chad + ban + ' <span style="float:right;">' + dain['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1582. i += 1
  1583. conn.close()
  1584. return(template('vstopic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), suburl = url_pas(sub), toron = sub, logo = set_data['name'], rows = div, ban = ban, style = style, sub = '토론'))
  1585. @route('/topic/<name:path>/close')
  1586. def close_topic_list(name = None):
  1587. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1588. curs = conn.cursor(pymysql.cursors.DictCursor)
  1589. div = '<div>'
  1590. i = 0
  1591. curs.execute("select * from stop where title = '" + db_pas(name) + "' and close = 'O' order by sub asc")
  1592. rows = curs.fetchall()
  1593. for data in rows:
  1594. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1'")
  1595. row = curs.fetchall()
  1596. if(row):
  1597. indata = namumark(name, row[0]['data'])
  1598. if(row[0]['block'] == 'O'):
  1599. indata = '블라인드 되었습니다.'
  1600. block = 'id="block"'
  1601. else:
  1602. block = ''
  1603. ip = ip_pas(row[0]['ip'], 1)
  1604. div += '<h2><a href="/topic/' + url_pas(name) + '/sub/' + url_pas(data['sub']) + '">' + str((i + 1)) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + row[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1605. else:
  1606. div += '</div>'
  1607. conn.close()
  1608. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, sub = '닫힘'))
  1609. @route('/topic/<name:path>/agree')
  1610. def agree_topic_list(name = None):
  1611. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1612. curs = conn.cursor(pymysql.cursors.DictCursor)
  1613. div = '<div>'
  1614. i = 0
  1615. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' order by sub asc")
  1616. agree_list = curs.fetchall()
  1617. for data in agree_list:
  1618. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1'")
  1619. topic_data = curs.fetchall()
  1620. if(topic_data):
  1621. indata = namumark(name, topic_data[0]['data'])
  1622. if(topic_data[0]['block'] == 'O'):
  1623. indata = '블라인드 되었습니다.'
  1624. block = 'id="block"'
  1625. else:
  1626. block = ''
  1627. ip = ip_pas(topic_data[0]['ip'], 1)
  1628. div += '<h2><a href="/topic/' + url_pas(name) + '/sub/' + url_pas(data['sub']) + '">' + str(i + 1) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + topic_data[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1629. else:
  1630. div += '</div>'
  1631. conn.close()
  1632. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, sub = '합의'))
  1633. @route('/topic/<name:path>', method=['POST', 'GET'])
  1634. def topic_list(name = None):
  1635. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1636. curs = conn.cursor(pymysql.cursors.DictCursor)
  1637. if(request.method == 'POST'):
  1638. conn.close()
  1639. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(request.forms.topic)))
  1640. else:
  1641. div = '<div>'
  1642. j = 1
  1643. curs.execute("select * from rd where title = '" + db_pas(name) + "' order by date asc")
  1644. rows = curs.fetchall()
  1645. for data in rows:
  1646. curs.execute("select * from topic where title = '" + db_pas(data['title']) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1' order by sub asc")
  1647. aa = curs.fetchall()
  1648. indata = namumark(name, aa[0]['data'])
  1649. if(aa[0]['block'] == 'O'):
  1650. indata = '블라인드 되었습니다.'
  1651. block = 'id="block"'
  1652. else:
  1653. block = ''
  1654. ip = ip_pas(aa[0]['ip'], 1)
  1655. curs.execute("select * from stop where title = '" + db_pas(data['title']) + "' and sub = '" + db_pas(data['sub']) + "' and close = 'O'")
  1656. row = curs.fetchall()
  1657. if(not row):
  1658. div += '<h2><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '">' + str(j) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + aa[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1659. j += 1
  1660. else:
  1661. div += '</div>'
  1662. conn.close()
  1663. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, list = 1, sub = '토론 목록'))
  1664. @route('/login', method=['POST', 'GET'])
  1665. def login():
  1666. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1667. curs = conn.cursor(pymysql.cursors.DictCursor)
  1668. session = request.environ.get('beaker.session')
  1669. ip = ip_check()
  1670. ban = ban_check(ip)
  1671. if(request.method == 'POST'):
  1672. if(ban == 1):
  1673. conn.close()
  1674. return(redirect('/ban'))
  1675. else:
  1676. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1677. user = curs.fetchall()
  1678. if(user):
  1679. if(session.get('Now') == True):
  1680. conn.close()
  1681. return(redirect('/error/11'))
  1682. elif(bcrypt.checkpw(bytes(request.forms.pw, 'utf-8'), bytes(user[0]['pw'], 'utf-8'))):
  1683. session['Now'] = True
  1684. session['DREAMER'] = request.forms.id
  1685. curs.execute("select * from custom where user = '" + db_pas(request.forms.id) + "'")
  1686. css_data = curs.fetchall()
  1687. if(css_data):
  1688. session['Daydream'] = css_data[0]['css']
  1689. else:
  1690. session['Daydream'] = ''
  1691. curs.execute("insert into login (user, ip, today) value ('" + db_pas(request.forms.id) + "', '" + db_pas(ip) + "', '" + db_pas(get_time()) + "')")
  1692. conn.commit()
  1693. conn.close()
  1694. return(redirect('/user'))
  1695. else:
  1696. conn.close()
  1697. return(redirect('/error/13'))
  1698. else:
  1699. conn.close()
  1700. return(redirect('/error/12'))
  1701. else:
  1702. if(ban == 1):
  1703. conn.close()
  1704. return(redirect('/ban'))
  1705. else:
  1706. if(session.get('Now') == True):
  1707. conn.close()
  1708. return(redirect('/error/11'))
  1709. else:
  1710. conn.close()
  1711. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인', enter = '로그인', logo = set_data['name']))
  1712. @route('/change', method=['POST', 'GET'])
  1713. def change_password():
  1714. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1715. curs = conn.cursor(pymysql.cursors.DictCursor)
  1716. ip = ip_check()
  1717. ban = ban_check(ip)
  1718. if(request.method == 'POST'):
  1719. if(request.forms.pw2 == request.forms.pw3):
  1720. if(ban == 1):
  1721. conn.close()
  1722. return(redirect('/ban'))
  1723. else:
  1724. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1725. user = curs.fetchall()
  1726. if(user):
  1727. if(not re.search('\.', ip)):
  1728. conn.close()
  1729. return(redirect('/logout'))
  1730. elif(bcrypt.checkpw(bytes(request.forms.pw, 'utf-8'), bytes(user[0]['pw'], 'utf-8'))):
  1731. hashed = bcrypt.hashpw(bytes(request.forms.pw2, 'utf-8'), bcrypt.gensalt())
  1732. curs.execute("update user set pw = '" + db_pas(hashed.decode()) + "' where id = '" + db_pas(request.forms.id) + "'")
  1733. conn.commit()
  1734. conn.close()
  1735. return(redirect('/login'))
  1736. else:
  1737. conn.close()
  1738. return(redirect('/error/10'))
  1739. else:
  1740. conn.close()
  1741. return(redirect('/error/9'))
  1742. else:
  1743. conn.close()
  1744. return(redirect('/error/20'))
  1745. else:
  1746. if(ban == 1):
  1747. conn.close()
  1748. return(redirect('/ban'))
  1749. else:
  1750. if(not re.search('\.', ip)):
  1751. conn.close()
  1752. return(redirect('/logout'))
  1753. else:
  1754. conn.close()
  1755. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '비밀번호 변경', enter = '변경', logo = set_data['name']))
  1756. @route('/check/<name:path>')
  1757. def user_check(name = None):
  1758. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1759. curs = conn.cursor(pymysql.cursors.DictCursor)
  1760. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1761. user = curs.fetchall()
  1762. if(user and not user[0]['acl'] == 'user'):
  1763. conn.close()
  1764. return(redirect('/error/4'))
  1765. else:
  1766. if(admin_check(4) == 1):
  1767. m = re.search('^(?:[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}?)$', name)
  1768. if(m):
  1769. curs.execute("select * from login where ip = '" + db_pas(name) + "' order by today desc")
  1770. row = curs.fetchall()
  1771. if(row):
  1772. c = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">이름</td><td style="text-align: center;width:33.33%;">아이피</td><td style="text-align: center;width:33.33%;">언제</td></tr>'
  1773. for data in row:
  1774. c += '<tr><td style="text-align: center;width:33.33%;">' + data['user'] + '</td><td style="text-align: center;width:33.33%;">' + data['ip'] + '</td><td style="text-align: center;width:33.33%;">' + data['today'] + '</td></tr>'
  1775. else:
  1776. c += '</tbody></table></div>'
  1777. else:
  1778. c = 'None'
  1779. conn.close()
  1780. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '다중 검사', logo = set_data['name'], data = c))
  1781. else:
  1782. curs.execute("select * from login where user = '" + db_pas(name) + "' order by today desc")
  1783. row = curs.fetchall()
  1784. if(row):
  1785. c = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">이름</td><td style="text-align: center;width:33.33%;">아이피</td><td style="text-align: center;width:33.33%;">언제</td></tr>'
  1786. for data in row:
  1787. c += '<tr><td style="text-align: center;width:33.33%;">' + data['user'] + '</td><td style="text-align: center;width:33.33%;">' + data['ip'] + '</td><td style="text-align: center;width:33.33%;">' + data['today'] + '</td></tr>'
  1788. else:
  1789. c += '</tbody></table></div>'
  1790. else:
  1791. c = 'None'
  1792. conn.close()
  1793. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '다중 검사', logo = set_data['name'], data = c))
  1794. else:
  1795. conn.close()
  1796. return(redirect('/error/3'))
  1797. @route('/register', method=['POST', 'GET'])
  1798. def register():
  1799. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1800. curs = conn.cursor(pymysql.cursors.DictCursor)
  1801. ip = ip_check()
  1802. ban = ban_check(ip)
  1803. if(request.method == 'POST'):
  1804. if(request.forms.pw == request.forms.pw2):
  1805. if(ban == 1):
  1806. conn.close()
  1807. return(redirect('/ban'))
  1808. else:
  1809. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.forms.id)
  1810. if(m):
  1811. conn.close()
  1812. return(redirect('/error/8'))
  1813. else:
  1814. if(len(request.forms.id) > 20):
  1815. conn.close()
  1816. return(redirect('/error/7'))
  1817. else:
  1818. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1819. rows = curs.fetchall()
  1820. if(rows):
  1821. conn.close()
  1822. return(redirect('/error/6'))
  1823. else:
  1824. hashed = bcrypt.hashpw(bytes(request.forms.pw, 'utf-8'), bcrypt.gensalt())
  1825. curs.execute("select id from user limit 1")
  1826. user_ex = curs.fetchall()
  1827. if(not user_ex):
  1828. curs.execute("insert into user (id, pw, acl) value ('" + db_pas(request.forms.id) + "', '" + db_pas(hashed.decode()) + "', 'owner')")
  1829. else:
  1830. curs.execute("insert into user (id, pw, acl) value ('" + db_pas(request.forms.id) + "', '" + db_pas(hashed.decode()) + "', 'user')")
  1831. conn.commit()
  1832. conn.close()
  1833. return(redirect('/login'))
  1834. else:
  1835. conn.close()
  1836. return(redirect('/error/20'))
  1837. else:
  1838. if(ban == 1):
  1839. conn.close()
  1840. return(redirect('/ban'))
  1841. else:
  1842. conn.close()
  1843. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '회원가입', enter = '회원가입', logo = set_data['name']))
  1844. @route('/logout')
  1845. def logout():
  1846. session = request.environ.get('beaker.session')
  1847. session['Now'] = False
  1848. session.pop('DREAMER', None)
  1849. return(redirect('/user'))
  1850. @route('/ban/<name:path>', method=['POST', 'GET'])
  1851. def user_ban(name = None):
  1852. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1853. curs = conn.cursor(pymysql.cursors.DictCursor)
  1854. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1855. user = curs.fetchall()
  1856. if(user and not user[0]['acl'] == 'user'):
  1857. conn.close()
  1858. return(redirect('/error/4'))
  1859. else:
  1860. if(request.method == 'POST'):
  1861. if(admin_check(1) == 1):
  1862. ip = ip_check()
  1863. if(not re.search("[0-9]{4}-[0-9]{2}-[0-9]{2}", request.forms.end)):
  1864. end = ''
  1865. else:
  1866. end = request.forms.end
  1867. curs.execute("select * from ban where block = '" + db_pas(name) + "'")
  1868. row = curs.fetchall()
  1869. if(row):
  1870. rb_plus(name, '해제', get_time(), ip, '')
  1871. curs.execute("delete from ban where block = '" + db_pas(name) + "'")
  1872. else:
  1873. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", name)
  1874. if(b):
  1875. rb_plus(name, end, get_time(), ip, request.forms.why)
  1876. curs.execute("insert into ban (block, end, why, band) value ('" + db_pas(name) + "', '" + db_pas(end) + "', '" + db_pas(request.forms.why) + "', 'O')")
  1877. else:
  1878. rb_plus(name, end, get_time(), ip, request.forms.why)
  1879. curs.execute("insert into ban (block, end, why, band) value ('" + db_pas(name) + "', '" + db_pas(end) + "', '" + db_pas(request.forms.why) + "', '')")
  1880. conn.commit()
  1881. conn.close()
  1882. return(redirect('/ban/' + url_pas(name)))
  1883. else:
  1884. conn.close()
  1885. return(redirect('/error/3'))
  1886. else:
  1887. if(admin_check(1) == 1):
  1888. curs.execute("select * from ban where block = '" + db_pas(name) + "'")
  1889. row = curs.fetchall()
  1890. if(row):
  1891. now = '차단 해제'
  1892. else:
  1893. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", name)
  1894. if(b):
  1895. now = '대역 차단'
  1896. else:
  1897. now = '차단'
  1898. conn.close()
  1899. return(template('ban', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], now = now, today = get_time(), sub = '차단'))
  1900. else:
  1901. conn.close()
  1902. return(redirect('/error/3'))
  1903. @route('/acl/<name:path>', method=['POST', 'GET'])
  1904. def acl(name = None):
  1905. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1906. curs = conn.cursor(pymysql.cursors.DictCursor)
  1907. if(request.method == 'POST'):
  1908. if(admin_check(5) == 1):
  1909. curs.execute("select acl from data where title = '" + db_pas(name) + "'")
  1910. row = curs.fetchall()
  1911. if(row):
  1912. if(request.forms.select == 'admin'):
  1913. curs.execute("update data set acl = 'admin' where title = '" + db_pas(name) + "'")
  1914. elif(request.forms.select == 'user'):
  1915. curs.execute("update data set acl = 'user' where title = '" + db_pas(name) + "'")
  1916. else:
  1917. curs.execute("update data set acl = '' where title = '" + db_pas(name) + "'")
  1918. conn.commit()
  1919. conn.close()
  1920. return(redirect('/w/' + url_pas(name)) )
  1921. else:
  1922. conn.close()
  1923. return(redirect('/error/3'))
  1924. else:
  1925. if(admin_check(5) == 1):
  1926. curs.execute("select acl from data where title = '" + db_pas(name) + "'")
  1927. row = curs.fetchall()
  1928. if(row):
  1929. if(row[0]['acl'] == 'admin'):
  1930. now = '관리자만'
  1931. elif(row[0]['acl'] == 'user'):
  1932. now = '로그인 이상'
  1933. else:
  1934. now = '일반'
  1935. conn.close()
  1936. return(template('acl', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], now = '현재 ACL 상태는 ' + now, sub = 'ACL'))
  1937. else:
  1938. conn.close()
  1939. return(redirect('/w/' + url_pas(name)) )
  1940. else:
  1941. conn.close()
  1942. return(redirect('/error/3'))
  1943. @route('/admin/<name:path>', method=['POST', 'GET'])
  1944. def user_admin(name = None):
  1945. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1946. curs = conn.cursor(pymysql.cursors.DictCursor)
  1947. if(request.method == 'POST'):
  1948. if(admin_check(None) == 1):
  1949. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1950. user = curs.fetchall()
  1951. if(user):
  1952. if(not user[0]['acl'] == 'user'):
  1953. curs.execute("update user set acl = 'user' where id = '" + db_pas(name) + "'")
  1954. else:
  1955. curs.execute("update user set acl = '" + db_pas(request.forms.select) + "' where id = '" + db_pas(name) + "'")
  1956. conn.commit()
  1957. conn.close()
  1958. return(redirect('/'))
  1959. else:
  1960. conn.close()
  1961. return(redirect('/error/5'))
  1962. else:
  1963. conn.close()
  1964. return(redirect('/error/3'))
  1965. else:
  1966. if(admin_check(None) == 1):
  1967. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1968. user = curs.fetchall()
  1969. if(user):
  1970. if(not user[0]['acl'] == 'user'):
  1971. now = '권한 해제'
  1972. else:
  1973. now = '권한 부여'
  1974. div = ''
  1975. curs.execute('select name from alist order by name asc')
  1976. get_alist = curs.fetchall()
  1977. if(get_alist):
  1978. i = 0
  1979. name_rem = ''
  1980. for data in get_alist:
  1981. if(not name_rem == data['name']):
  1982. name_rem = data['name']
  1983. div += '<option value="' + data['name'] + '" selected="selected">' + data['name'] + '</option>'
  1984. conn.close()
  1985. return(template('admin', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), datalist = div, logo = set_data['name'], now = now, sub = '권한 부여'))
  1986. else:
  1987. conn.close()
  1988. return(redirect('/error/5'))
  1989. else:
  1990. conn.close()
  1991. return(redirect('/error/3'))
  1992. @route('/ban')
  1993. def are_you_ban():
  1994. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1995. curs = conn.cursor(pymysql.cursors.DictCursor)
  1996. ip = ip_check()
  1997. if(ban_check(ip) == 1):
  1998. curs.execute("select * from ban where block = '" + db_pas(ip) + "'")
  1999. rows = curs.fetchall()
  2000. if(rows):
  2001. if(rows[0]['end']):
  2002. end = rows[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2003. now = re.sub(':', '', get_time())
  2004. now = re.sub('\-', '', now)
  2005. now = int(re.sub(' ', '', now))
  2006. day = re.sub('\-', '', rows[0]['end'])
  2007. if(now >= int(day + '000000')):
  2008. curs.execute("delete from ban where block = '" + db_pas(ip) + "'")
  2009. conn.commit()
  2010. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2011. else:
  2012. end = '영구 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2013. else:
  2014. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  2015. if(b):
  2016. results = b.groups()
  2017. curs.execute("select * from ban where block = '" + db_pas(results[0]) + "' and band = 'O'")
  2018. row = curs.fetchall()
  2019. if(row):
  2020. if(row[0]['end']):
  2021. end = row[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2022. now = re.sub(':', '', get_time())
  2023. now = re.sub('\-', '', now)
  2024. now = int(re.sub(' ', '', now))
  2025. day = re.sub('\-', '', row[0]['end'])
  2026. if(now >= int(day + '000000')):
  2027. curs.execute("delete from ban where block = '" + db_pas(results[0]) + "' and band = 'O'")
  2028. conn.commit()
  2029. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2030. else:
  2031. end = '영구 차단 상태 입니다. / 사유 : ' + row[0]['why']
  2032. else:
  2033. end = '권한이 맞지 않는 상태 입니다.'
  2034. conn.close()
  2035. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = end))
  2036. @route('/w/<name:path>/r/<a:int>/diff/<b:int>')
  2037. def diff_data(name = None, a = None, b = None):
  2038. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2039. curs = conn.cursor(pymysql.cursors.DictCursor)
  2040. curs.execute("select * from history where id = '" + db_pas(str(a)) + "' and title = '" + db_pas(name) + "'")
  2041. a_raw_data = curs.fetchall()
  2042. if(a_raw_data):
  2043. curs.execute("select * from history where id = '" + db_pas(str(b)) + "' and title = '" + db_pas(name) + "'")
  2044. b_raw_data = curs.fetchall()
  2045. if(b_raw_data):
  2046. a_data = re.sub('<', '&lt;', a_raw_data[0]['data'])
  2047. a_data = re.sub('>', '&gt;', a_data)
  2048. a_data = re.sub('"', '&quot;', a_data)
  2049. b_data = re.sub('<', '&lt;', b_raw_data[0]['data'])
  2050. b_data = re.sub('>', '&gt;', b_data)
  2051. b_data = re.sub('"', '&quot;', b_data)
  2052. diff_data = difflib.SequenceMatcher(None, a_data, b_data)
  2053. result = diff(diff_data)
  2054. result = '<pre>' + result + '</pre>'
  2055. conn.close()
  2056. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], data = result, sub = '비교', page = url_pas(name)))
  2057. else:
  2058. conn.close()
  2059. return(redirect('/history/' + url_pas(name)))
  2060. else:
  2061. conn.close()
  2062. return(redirect('/history/' + url_pas(name)))
  2063. @route('/down/<name:path>')
  2064. def down(name = None):
  2065. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2066. curs = conn.cursor(pymysql.cursors.DictCursor)
  2067. curs.execute("select title from data where title like '%" + db_pas(name) + "/%'")
  2068. under = curs.fetchall()
  2069. div = ''
  2070. i = 0
  2071. for data in under:
  2072. div += '<li>' + str(i + 1) + '. <a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a></li>'
  2073. i += 1
  2074. conn.close()
  2075. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], data = div, sub = '하위 문서', page = url_pas(name)))
  2076. @route('/w/<name:path>')
  2077. @route('/w/<name:path>/from/<redirect:path>')
  2078. def read_view(name = None, redirect = None):
  2079. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2080. curs = conn.cursor(pymysql.cursors.DictCursor)
  2081. data_none = False
  2082. sub = None
  2083. acl = ''
  2084. div = ''
  2085. i = 0
  2086. curs.execute("select sub from rd where title = '" + db_pas(name) + "' order by date asc")
  2087. rows = curs.fetchall()
  2088. while(True):
  2089. try:
  2090. curs.execute("select title from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(rows[i]['sub']) + "' and close = 'O'")
  2091. row = curs.fetchall()
  2092. if(not row):
  2093. topic = "open"
  2094. break
  2095. i += 1
  2096. except:
  2097. topic = ""
  2098. break
  2099. curs.execute("select title from data where title like '%" + db_pas(name) + "/%'")
  2100. under = curs.fetchall()
  2101. if(under):
  2102. down = True
  2103. else:
  2104. down = False
  2105. m = re.search("^(.*)\/(.*)$", name)
  2106. if(m):
  2107. uppage = m.groups()[0]
  2108. else:
  2109. uppage = False
  2110. if(admin_check(5) == 1):
  2111. admin_memu = 'ACL'
  2112. else:
  2113. admin_memu = ''
  2114. if(re.search("^분류:", name)):
  2115. curs.execute("select * from cat where title = '" + db_pas(name) + "' order by cat asc")
  2116. rows = curs.fetchall()
  2117. if(rows):
  2118. div = '<h2>분류</h2>'
  2119. i = 0
  2120. for data in rows:
  2121. curs.execute("select * from data where title = '" + db_pas(data['cat']) + "'")
  2122. row = curs.fetchall()
  2123. if(row):
  2124. aa = row[0]['data']
  2125. aa = namumark('', aa)
  2126. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  2127. if(bb):
  2128. cc = bb.groups()
  2129. mm = re.search("^분류:(.*)", name)
  2130. if(mm):
  2131. ee = mm.groups()
  2132. if(re.search("<a (class=\"not_thing\")? href=\"\/w\/" + url_pas(name) + "\">" + ee[0] + "<\/a>", cc[0])):
  2133. div += '<li><a href="/w/' + url_pas(data['cat']) + '">' + data['cat'] + '</a></li>'
  2134. i += 1
  2135. else:
  2136. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2137. conn.commit()
  2138. i += 1
  2139. else:
  2140. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2141. conn.commit()
  2142. i += 1
  2143. else:
  2144. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2145. conn.commit()
  2146. i += 1
  2147. else:
  2148. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2149. conn.commit()
  2150. i += 1
  2151. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  2152. rows = curs.fetchall()
  2153. if(rows):
  2154. if(rows[0]['acl'] == 'admin'):
  2155. acl = '(관리자)'
  2156. elif(rows[0]['acl'] == 'user'):
  2157. acl = '(로그인)'
  2158. elsedata = rows[0]['data']
  2159. else:
  2160. data_none = True
  2161. elsedata = 'None'
  2162. m = re.search("^사용자:([^/]*)", name)
  2163. if(m):
  2164. g = m.groups()
  2165. curs.execute("select acl from user where id = '" + db_pas(g[0]) + "'")
  2166. test = curs.fetchall()
  2167. if(test):
  2168. if(not test[0]['acl'] == 'user'):
  2169. acl = '(관리자)'
  2170. curs.execute("select block from ban where block = '" + db_pas(g[0]) + "'")
  2171. user = curs.fetchall()
  2172. if(user):
  2173. sub = '차단'
  2174. if(redirect):
  2175. elsedata = re.sub("^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)", " * [[\g<in>]] 문서로 넘겨주기", elsedata)
  2176. enddata = namumark(name, elsedata)
  2177. conn.close()
  2178. return(template('read', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata + div, uppage = uppage, acl = acl, topic = topic, redirect = redirect, admin = admin_memu, data_none = data_none, sub = sub, down = down))
  2179. @route('/user/<name:path>/topic')
  2180. @route('/user/<name:path>/topic/<num:int>')
  2181. def user_topic_list(name = None, num = 1):
  2182. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2183. curs = conn.cursor(pymysql.cursors.DictCursor)
  2184. if(num * 50 <= 0):
  2185. v = 50
  2186. else:
  2187. v = num * 50
  2188. i = v - 50
  2189. ydmin = admin_check(1)
  2190. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">토론명</td><td style="text-align: center;width:33.33%;">작성자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  2191. curs.execute("select title, id, sub, ip, date from topic where ip = '" + db_pas(name) + "' order by date desc limit " + str(i) + ", " + str(v))
  2192. rows = curs.fetchall()
  2193. if(rows):
  2194. for data in rows:
  2195. title = re.sub('<', '&lt;', data['title'])
  2196. title = re.sub('>', '&gt;', title)
  2197. title = re.sub('"', '&quot;', title)
  2198. sub = re.sub('<', '&lt;', data['sub'])
  2199. sub = re.sub('>', '&gt;', sub)
  2200. sub = re.sub('"', '&quot;', sub)
  2201. if(ydmin == 1):
  2202. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  2203. row = curs.fetchall()
  2204. if(row):
  2205. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  2206. else:
  2207. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  2208. else:
  2209. ban = ''
  2210. ip = ip_pas(data['ip'], 1)
  2211. div += '<tr><td style="text-align: center;width:33.33%;"><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '#' + data['id'] + '">' + title + '</a> (' + sub + ') (#' + data['id'] + ') </td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr>'
  2212. else:
  2213. div += '</tbody></table></div>'
  2214. else:
  2215. div = 'None<br>'
  2216. div += '<br><a href="/user/' + url_pas(name) + '/topic/' + str(num - 1) + '">(이전)</a> <a href="/user/' + url_pas(name) + '/topic/' + str(num + 1) + '">(이후)</a>'
  2217. curs.execute("select end, why from ban where block = '" + db_pas(name) + "'")
  2218. ban_it = curs.fetchall()
  2219. if(ban_it):
  2220. sub = '차단'
  2221. else:
  2222. sub = None
  2223. conn.close()
  2224. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 토론 기록', sub = sub))
  2225. @route('/user')
  2226. def user_info():
  2227. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2228. curs = conn.cursor(pymysql.cursors.DictCursor)
  2229. ip = ip_check()
  2230. raw_ip = ip
  2231. curs.execute("select * from user where id = '" + db_pas(ip) + "'")
  2232. rows = curs.fetchall()
  2233. if(ban_check(ip) == 0):
  2234. if(rows):
  2235. if(not rows[0]['acl'] == 'user'):
  2236. acl = rows[0]['acl']
  2237. else:
  2238. acl = '로그인'
  2239. else:
  2240. acl = '일반'
  2241. else:
  2242. acl = '차단'
  2243. ip = ip_pas(ip, 2)
  2244. conn.close()
  2245. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '사용자 메뉴', logo = set_data['name'], data = ip + '<br><br><span>권한 상태 : ' + acl + '<h2>로그인 관련</h2><li><a href="/login">로그인</a></li><li><a href="/logout">로그아웃</a></li><li><a href="/register">회원가입</a></li><h2>기타</h2><li><a href="/change">비밀번호 변경</a></li><li><a href="/count">기여 횟수</a></li><li><a href="/record/' + raw_ip + '">기여 목록</a></li><li><a href="/custom">커스텀 CSS</a></li>'))
  2246. @route('/custom', method=['GET', 'POST'])
  2247. def custom_css():
  2248. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2249. curs = conn.cursor(pymysql.cursors.DictCursor)
  2250. session = request.environ.get('beaker.session')
  2251. ip = ip_check()
  2252. if(request.method == 'POST'):
  2253. if(not re.search('\.', ip)):
  2254. curs.execute("select * from custom where user = '" + db_pas(ip) + "'")
  2255. css_data = curs.fetchall()
  2256. if(css_data):
  2257. curs.execute("update custom set css = '" + db_pas(request.forms.content) + "' where user = '" + db_pas(ip) + "'")
  2258. else:
  2259. curs.execute("insert into custom (user, css) value ('" + db_pas(ip) + "', '" + db_pas(request.forms.content) + "')")
  2260. conn.commit()
  2261. session['Daydream'] = request.forms.content
  2262. conn.close()
  2263. return(redirect('/user'))
  2264. else:
  2265. if(not re.search('\.', ip)):
  2266. start = ''
  2267. curs.execute("select * from custom where user = '" + db_pas(ip) + "'")
  2268. css_data = curs.fetchall()
  2269. if(css_data):
  2270. data = css_data[0]['css']
  2271. else:
  2272. data = ''
  2273. else:
  2274. start = '<span>비 로그인의 경우에는 로그인하면 날아갑니다.</span><br><br>'
  2275. try:
  2276. data = session['Daydream']
  2277. except:
  2278. data = ''
  2279. conn.close()
  2280. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '커스텀 CSS', logo = set_data['name'], data = start + '<form id="usrform" name="f1" method="POST" action="/custom"><textarea rows="30" cols="100" name="content" form="usrform">' + data + '</textarea><div class="form-actions"><button class="btn btn-primary" type="submit">저장</button></div></form>'))
  2281. @route('/count')
  2282. def count_edit():
  2283. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2284. curs = conn.cursor(pymysql.cursors.DictCursor)
  2285. curs.execute("select count(title) from history where ip = '" + ip_check() + "'")
  2286. count = curs.fetchall()
  2287. if(count):
  2288. conn.close()
  2289. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기여 횟수', logo = set_data['name'], data = "기여 횟수 : " + str(count[0]["count(title)"])))
  2290. else:
  2291. conn.close()
  2292. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기여 횟수', logo = set_data['name'], data = "기여 횟수 : 0"))
  2293. @route('/random')
  2294. def random():
  2295. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2296. curs = conn.cursor(pymysql.cursors.DictCursor)
  2297. curs.execute("select title from data order by rand() limit 1")
  2298. rows = curs.fetchall()
  2299. if(rows):
  2300. conn.close()
  2301. return(redirect('/w/' + url_pas(rows[0]['title'])))
  2302. else:
  2303. conn.close()
  2304. return(redirect('/'))
  2305. @route('/views/<name:path>')
  2306. def views(name = None):
  2307. if(re.search('\/', name)):
  2308. m = re.search('^(.*)\/(.*)$', name)
  2309. if(m):
  2310. n = m.groups()
  2311. plus = '/' + n[0]
  2312. rename = n[1]
  2313. else:
  2314. plus = ''
  2315. rename = name
  2316. else:
  2317. plus = ''
  2318. rename = name
  2319. return(static_file(rename, root = './views' + plus))
  2320. @route('/error/<num:int>')
  2321. def error_test(num = None):
  2322. if(num == 1):
  2323. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '비 로그인 상태 입니다.'))
  2324. elif(num == 2):
  2325. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '이 계정이 없습니다.'))
  2326. elif(num == 3):
  2327. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '권한이 모자랍니다.'))
  2328. elif(num == 4):
  2329. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '관리자는 차단, 검사 할 수 없습니다.'))
  2330. elif(num == 5):
  2331. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '사용자 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2332. elif(num == 6):
  2333. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '동일한 아이디의 사용자가 있습니다.'))
  2334. elif(num == 7):
  2335. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '아이디는 20글자보다 짧아야 합니다.'))
  2336. elif(num == 8):
  2337. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '아이디에는 한글과 알파벳과 공백만 허용 됩니다.'))
  2338. elif(num == 9):
  2339. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '변경 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2340. elif(num == 10):
  2341. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '변경 오류', logo = set_data['name'], data = '비밀번호가 다릅니다.'))
  2342. elif(num == 11):
  2343. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '이미 로그인 되어 있습니다.'))
  2344. elif(num == 12):
  2345. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2346. elif(num == 13):
  2347. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '비밀번호가 다릅니다.'))
  2348. elif(num == 14):
  2349. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = 'jpg, gif, jpeg, png(대 소문자 상관 없음)만 가능 합니다.'))
  2350. elif(num == 15):
  2351. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '편집 오류', logo = set_data['name'], data = '편집 기록은 500자를 넘을 수 없습니다.'))
  2352. elif(num == 16):
  2353. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = '동일한 이름의 파일이 있습니다.'))
  2354. elif(num == 17):
  2355. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = '파일 용량은 ' + set_data['upload'] + 'MB를 넘길 수 없습니다.'))
  2356. elif(num == 18):
  2357. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '편집 오류', logo = set_data['name'], data = '내용이 원래 문서와 동일 합니다.'))
  2358. elif(num == 19):
  2359. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '이동 오류', logo = set_data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.'))
  2360. elif(num == 20):
  2361. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '비밀번호 오류', logo = set_data['name'], data = '재 확인이랑 비밀번호가 다릅니다.'))
  2362. else:
  2363. return(redirect('/'))
  2364. @error(404)
  2365. def error_404(error):
  2366. return(redirect('/w/' + url_pas(set_data['frontpage'])))
  2367. run(app = app, server='tornado', host = '0.0.0.0', port = int(set_data['port']))