2
0

app.py 169 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749175017511752175317541755175617571758175917601761176217631764176517661767176817691770177117721773177417751776177717781779178017811782178317841785178617871788178917901791179217931794179517961797179817991800180118021803180418051806180718081809181018111812181318141815181618171818181918201821182218231824182518261827182818291830183118321833183418351836183718381839184018411842184318441845184618471848184918501851185218531854185518561857185818591860186118621863186418651866186718681869187018711872187318741875187618771878187918801881188218831884188518861887188818891890189118921893189418951896189718981899190019011902190319041905190619071908190919101911191219131914191519161917191819191920192119221923192419251926192719281929193019311932193319341935193619371938193919401941194219431944194519461947194819491950195119521953195419551956195719581959196019611962196319641965196619671968196919701971197219731974197519761977197819791980198119821983198419851986198719881989199019911992199319941995199619971998199920002001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242025202620272028202920302031203220332034203520362037203820392040204120422043204420452046204720482049205020512052205320542055205620572058205920602061206220632064206520662067206820692070207120722073207420752076207720782079208020812082208320842085208620872088208920902091209220932094209520962097209820992100210121022103210421052106210721082109211021112112211321142115211621172118211921202121212221232124212521262127212821292130213121322133213421352136213721382139214021412142214321442145214621472148214921502151215221532154215521562157215821592160216121622163216421652166216721682169217021712172217321742175217621772178217921802181218221832184218521862187218821892190219121922193219421952196219721982199220022012202220322042205220622072208220922102211221222132214221522162217221822192220222122222223222422252226222722282229223022312232223322342235223622372238223922402241224222432244224522462247224822492250225122522253225422552256225722582259226022612262226322642265226622672268226922702271227222732274227522762277227822792280228122822283228422852286228722882289229022912292229322942295229622972298229923002301230223032304230523062307230823092310231123122313231423152316231723182319232023212322232323242325232623272328232923302331233223332334233523362337233823392340234123422343234423452346234723482349235023512352235323542355235623572358235923602361236223632364236523662367236823692370237123722373237423752376237723782379238023812382238323842385238623872388238923902391239223932394239523962397239823992400240124022403240424052406240724082409241024112412241324142415241624172418241924202421242224232424242524262427242824292430243124322433243424352436243724382439244024412442244324442445244624472448244924502451245224532454245524562457245824592460246124622463246424652466246724682469247024712472247324742475247624772478247924802481248224832484248524862487248824892490249124922493249424952496249724982499250025012502250325042505250625072508250925102511251225132514251525162517251825192520252125222523252425252526252725282529253025312532253325342535253625372538253925402541254225432544254525462547254825492550255125522553255425552556255725582559256025612562256325642565256625672568256925702571257225732574257525762577257825792580258125822583258425852586258725882589259025912592259325942595259625972598259926002601260226032604260526062607260826092610261126122613261426152616261726182619262026212622262326242625262626272628262926302631263226332634263526362637263826392640264126422643264426452646264726482649265026512652265326542655265626572658265926602661266226632664266526662667266826692670267126722673267426752676267726782679268026812682268326842685268626872688268926902691269226932694269526962697269826992700270127022703270427052706270727082709271027112712271327142715271627172718271927202721272227232724272527262727272827292730273127322733273427352736273727382739274027412742274327442745274627472748274927502751275227532754275527562757275827592760276127622763276427652766276727682769277027712772277327742775277627772778277927802781278227832784278527862787278827892790279127922793279427952796279727982799280028012802280328042805280628072808280928102811281228132814281528162817281828192820282128222823282428252826282728282829283028312832283328342835283628372838283928402841284228432844284528462847284828492850285128522853285428552856285728582859286028612862286328642865286628672868286928702871287228732874287528762877287828792880288128822883288428852886288728882889289028912892289328942895289628972898289929002901290229032904290529062907290829092910291129122913291429152916291729182919292029212922292329242925292629272928292929302931293229332934293529362937293829392940294129422943294429452946294729482949295029512952295329542955295629572958295929602961296229632964296529662967296829692970297129722973297429752976297729782979298029812982298329842985298629872988298929902991299229932994299529962997299829993000300130023003300430053006300730083009301030113012301330143015301630173018301930203021302230233024302530263027302830293030303130323033303430353036303730383039304030413042304330443045304630473048304930503051305230533054305530563057305830593060306130623063306430653066306730683069307030713072307330743075307630773078307930803081308230833084308530863087308830893090309130923093309430953096
  1. from flask import Flask, request, session, render_template, send_file
  2. app = Flask(__name__)
  3. from urllib import parse
  4. import json
  5. import pymysql
  6. import time
  7. import re
  8. import bcrypt
  9. import os
  10. import difflib
  11. json_data = open('set.json').read()
  12. data = json.loads(json_data)
  13. print('오픈나무 시작 포트 : ' + data['port'])
  14. import logging
  15. log = logging.getLogger('werkzeug')
  16. log.setLevel(logging.ERROR)
  17. app.config['MAX_CONTENT_LENGTH'] = int(data['upload']) * 1024 * 1024
  18. try:
  19. conn = pymysql.connect(host = data['host'], user = data['user'], password = data['pw'], db = data['db'], charset = 'utf8mb4')
  20. curs = conn.cursor(pymysql.cursors.DictCursor)
  21. try:
  22. curs.execute("select * from data limit 1")
  23. except:
  24. curs.execute("create table data(title text not null, data longtext not null, acl text not null)")
  25. try:
  26. curs.execute("select * from history limit 1")
  27. except:
  28. curs.execute("create table history(id text not null, title text not null, data longtext not null, date text not null, ip text not null, send text not null, leng text not null)")
  29. try:
  30. curs.execute("select * from rd limit 1")
  31. except:
  32. curs.execute("create table rd(title text not null, sub text not null, date text not null)")
  33. try:
  34. curs.execute("select * from user limit 1")
  35. except:
  36. curs.execute("create table user(id text not null, pw text not null, acl text not null)")
  37. try:
  38. curs.execute("select * from ban limit 1")
  39. except:
  40. curs.execute("create table ban(block text not null, end text not null, why text not null, band text not null)")
  41. try:
  42. curs.execute("select * from topic limit 1")
  43. except:
  44. curs.execute("create table topic(id text not null, title text not null, sub text not null, data longtext not null, date text not null, ip text not null, block text not null)")
  45. try:
  46. curs.execute("select * from stop limit 1")
  47. except:
  48. curs.execute("create table stop(title text not null, sub text not null, close text not null)")
  49. try:
  50. curs.execute("select * from rb limit 1")
  51. except:
  52. curs.execute("create table rb(block text not null, end text not null, today text not null, blocker text not null, why text not null)")
  53. try:
  54. curs.execute("select * from login limit 1")
  55. except:
  56. curs.execute("create table login(user text not null, ip text not null, today text not null)")
  57. try:
  58. curs.execute("select * from back limit 1")
  59. except:
  60. curs.execute("create table back(title text not null, link text not null, type text not null)")
  61. try:
  62. curs.execute("select * from cat limit 1")
  63. except:
  64. curs.execute("create table cat(title text not null, cat text not null)")
  65. except:
  66. conn = pymysql.connect(host = data['host'], user = data['user'], password = data['pw'], charset = 'utf8mb4')
  67. curs = conn.cursor(pymysql.cursors.DictCursor)
  68. curs.execute("create database " + data['db'])
  69. curs.execute("alter database " + data['db'] + " character set = utf8mb4 collate = utf8mb4_unicode_ci")
  70. curs.execute("use " + data['db'])
  71. try:
  72. curs.execute("select * from data limit 1")
  73. except:
  74. curs.execute("create table data(title text not null, data longtext not null, acl text not null)")
  75. try:
  76. curs.execute("select * from history limit 1")
  77. except:
  78. curs.execute("create table history(id text not null, title text not null, data longtext not null, date text not null, ip text not null, send text not null, leng text not null)")
  79. try:
  80. curs.execute("select * from rd limit 1")
  81. except:
  82. curs.execute("create table rd(title text not null, sub text not null, date text not null)")
  83. try:
  84. curs.execute("select * from user limit 1")
  85. except:
  86. curs.execute("create table user(id text not null, pw text not null, acl text not null)")
  87. try:
  88. curs.execute("select * from ban limit 1")
  89. except:
  90. curs.execute("create table ban(block text not null, end text not null, why text not null, band text not null)")
  91. try:
  92. curs.execute("select * from topic limit 1")
  93. except:
  94. curs.execute("create table topic(id text not null, title text not null, sub text not null, data longtext not null, date text not null, ip text not null, block text not null)")
  95. try:
  96. curs.execute("select * from stop limit 1")
  97. except:
  98. curs.execute("create table stop(title text not null, sub text not null, close text not null)")
  99. try:
  100. curs.execute("select * from rb limit 1")
  101. except:
  102. curs.execute("create table rb(block text not null, end text not null, today text not null, blocker text not null, why text not null)")
  103. try:
  104. curs.execute("select * from login limit 1")
  105. except:
  106. curs.execute("create table login(user text not null, ip text not null, today text not null)")
  107. try:
  108. curs.execute("select * from back limit 1")
  109. except:
  110. curs.execute("create table back(title text not null, link text not null, type text not null)")
  111. try:
  112. curs.execute("select * from cat limit 1")
  113. except:
  114. curs.execute("create table cat(title text not null, cat text not null)")
  115. app.secret_key = data['key']
  116. ALLOWED_EXTENSIONS = set(['png', 'jpg', 'jpeg', 'gif'])
  117. def show_diff(seqm):
  118. output= []
  119. for opcode, a0, a1, b0, b1 in seqm.get_opcodes():
  120. if opcode == 'equal':
  121. output.append(seqm.a[a0:a1])
  122. elif opcode == 'insert':
  123. output.append("<span style='background:#CFC;'>" + seqm.b[b0:b1] + "</span>")
  124. elif opcode == 'delete':
  125. output.append("<span style='background:#FDD;'>" + seqm.a[a0:a1] + "</span>")
  126. return ''.join(output)
  127. def allowed_file(filename):
  128. return '.' in filename and \
  129. filename.rsplit('.', 1)[1] in ALLOWED_EXTENSIONS
  130. def admincheck():
  131. if(session.get('Now') == True):
  132. ip = getip(request)
  133. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  134. rows = curs.fetchall()
  135. if(rows):
  136. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  137. return 1
  138. def namumark(title, data):
  139. data = re.sub('<', '&lt;', data)
  140. data = re.sub('>', '&gt;', data)
  141. data = re.sub('"', '&quot;', data)
  142. jjjj = 0
  143. while True:
  144. p = re.compile("{{{((?:(?!{{{)(?!}}}).)*)}}}", re.DOTALL)
  145. m = p.search(data)
  146. if(m):
  147. results = m.groups()
  148. q = re.compile("^\+([1-5])\s(.*)$", re.DOTALL)
  149. n = q.search(results[0])
  150. w = re.compile("^\-([1-5])\s(.*)$", re.DOTALL)
  151. a = w.search(results[0])
  152. e = re.compile("^(#[0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  153. b = e.search(results[0])
  154. r = re.compile("^(#[0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  155. c = r.search(results[0])
  156. t = re.compile("^#(\w+)\s(.*)$", re.DOTALL)
  157. d = t.search(results[0])
  158. qqq = re.compile("^@([0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  159. qqe = qqq.search(results[0])
  160. qqw = re.compile("^@([0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  161. qqa = qqw.search(results[0])
  162. qwe = re.compile("^@(\w+)\s(.*)$", re.DOTALL)
  163. qsd = qwe.search(results[0])
  164. qawe = re.compile("^#!noin\s(.*)$", re.DOTALL)
  165. qasd = qawe.search(results[0])
  166. y = re.compile("^#!wiki\sstyle=&quot;((?:(?!&quot;|\n).)*)&quot;\n?\s\n(.*)$", re.DOTALL)
  167. l = y.search(results[0])
  168. ppp = re.compile("^#!folding\s((?:(?!\n).)*)\n?\s\n(.*)$", re.DOTALL)
  169. ooo = ppp.search(results[0])
  170. if(n):
  171. result = n.groups()
  172. data = p.sub('<span class="font-size-' + result[0] + '">' + result[1] + '</span>', data, 1)
  173. elif(a):
  174. result = a.groups()
  175. data = p.sub('<span class="font-size-small-' + result[0] + '">' + result[1] + '</span>', data, 1)
  176. elif(b):
  177. result = b.groups()
  178. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  179. elif(c):
  180. result = c.groups()
  181. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  182. elif(d):
  183. result = d.groups()
  184. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  185. elif(qqe):
  186. result = qqe.groups()
  187. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  188. elif(qqa):
  189. result = qqa.groups()
  190. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  191. elif(qsd):
  192. result = qsd.groups()
  193. data = p.sub('<span style="background:' + result[0] + '">' + result[1] + '</span>', data, 1)
  194. elif(l):
  195. result = l.groups()
  196. data = p.sub('<div style="' + result[0] + '">' + result[1] + '</div>', data, 1)
  197. elif(ooo):
  198. result = ooo.groups()
  199. data = p.sub("<div>" + result[0] + "<span style='float:right;'><div id='folding_" + str(jjjj + 1) + "' style='display:block;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>펼치기</a>]</div><div id='folding_" + str(jjjj + 2) + "' style='display:none;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>접기</a>]</div></a></span><div id='folding_" + str(jjjj) + "' style='display:none;'><br>" + result[1] + "</div></div>", data, 1)
  200. jjjj = jjjj + 3
  201. elif(qasd):
  202. result = qasd.groups()
  203. data = p.sub(result[0], data, 1)
  204. else:
  205. data = p.sub('<code>' + results[0] + '</code>', data, 1)
  206. else:
  207. break
  208. while True:
  209. a = re.compile("<code>(((?!<\/code>).)*)<\/code>", re.DOTALL)
  210. m = a.search(data)
  211. if(m):
  212. g = m.groups()
  213. j = re.sub("<\/span>", "}}}", g[0])
  214. j = re.sub("<\/div>", "}}}", j)
  215. j = re.sub('<span class="font\-size\-(?P<in>[1-6])">', "{{{+\g<in> ", j)
  216. j = re.sub('<span class="font\-size\-small\-(?P<in>[1-6])">', "{{{-\g<in> ", j)
  217. j = re.sub('<span style="color:(?:#)?(?P<in>[^"]*)">', "{{{#\g<in> ", j)
  218. j = re.sub('<span style="background:(?:#)?(?P<in>[^"]*)">', "{{{@\g<in> ", j)
  219. j = re.sub('<div style="(?P<in>[^"]*)">', "{{{#!wiki style=&quot;\g<in>&quot;\n", j)
  220. j = re.sub("(?P<in>.)", "<span>\g<in></span>", j)
  221. data = a.sub(j, data, 1)
  222. else:
  223. break
  224. data = re.sub("<span>&</span><span>l</span><span>t</span><span>;</span>", "<span>&lt;</span>", data)
  225. data = re.sub("<span>&</span><span>g</span><span>t</span><span>;</span>", "<span>&gt;</span>", data)
  226. data = re.sub("\[anchor\((?P<in>[^\[\]]*)\)\]", '<span id="\g<in>"></span>', data)
  227. data = re.sub('\[date\(now\)\]', getnow(), data)
  228. while True:
  229. m = re.search("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", data)
  230. if(m):
  231. results = m.groups()
  232. if(results[0] == title):
  233. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "<b>" + results[0] + "</b>", data, 1)
  234. else:
  235. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  236. rows = curs.fetchall()
  237. if(rows):
  238. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'include'")
  239. abb = curs.fetchall()
  240. if(not abb):
  241. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', 'include')")
  242. conn.commit()
  243. enddata = rows[0]['data']
  244. enddata = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "", enddata)
  245. enddata = re.sub('<', '&lt;', enddata)
  246. enddata = re.sub('>', '&gt;', enddata)
  247. enddata = re.sub('"', '&quot;', enddata)
  248. while True:
  249. p = re.compile("{{{((?:(?!{)(?!}).)*)}}}", re.DOTALL)
  250. m = p.search(enddata)
  251. if(m):
  252. nnn = m.groups()
  253. q = re.compile("^\+([1-5])\s(.*)$", re.DOTALL)
  254. n = q.search(nnn[0])
  255. w = re.compile("^\-([1-5])\s(.*)$", re.DOTALL)
  256. a = w.search(nnn[0])
  257. e = re.compile("^(#[0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  258. b = e.search(nnn[0])
  259. r = re.compile("^(#[0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  260. c = r.search(nnn[0])
  261. t = re.compile("^#(\w+)\s(.*)$", re.DOTALL)
  262. d = t.search(nnn[0])
  263. qqq = re.compile("^@([0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  264. qqe = qqq.search(nnn[0])
  265. qqw = re.compile("^@([0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  266. qqa = qqw.search(nnn[0])
  267. qwe = re.compile("^@(\w+)\s(.*)$", re.DOTALL)
  268. qsd = qwe.search(nnn[0])
  269. qawe = re.compile("^#!noin\s(.*)$", re.DOTALL)
  270. qasd = qawe.search(nnn[0])
  271. y = re.compile("^#!wiki\sstyle=&quot;((?:(?!&quot;|\n).)*)&quot;\n?\s\n(.*)$", re.DOTALL)
  272. l = y.search(nnn[0])
  273. ppp = re.compile("^#!folding\s((?:(?!\n).)*)\n?\s\n(.*)$", re.DOTALL)
  274. ooo = ppp.search(nnn[0])
  275. if(n):
  276. result = n.groups()
  277. enddata = p.sub('<span class="font-size-' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  278. elif(a):
  279. result = a.groups()
  280. enddata = p.sub('<span class="font-size-small-' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  281. elif(b):
  282. result = b.groups()
  283. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  284. elif(c):
  285. result = c.groups()
  286. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  287. elif(d):
  288. result = d.groups()
  289. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  290. elif(qqe):
  291. result = qqe.groups()
  292. enddata = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  293. elif(qqa):
  294. result = qqa.groups()
  295. enddata = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  296. elif(qsd):
  297. result = qsd.groups()
  298. enddata = p.sub('<span style="background:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  299. elif(l):
  300. result = l.groups()
  301. enddata = p.sub('<div style="' + result[0] + '">' + result[1] + '</div>', enddata, 1)
  302. elif(ooo):
  303. result = ooo.groups()
  304. enddata = p.sub("<div>" + result[0] + "<span style='float:right;'><div id='folding_" + str(jjjj + 1) + "' style='display:block;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>펼치기</a>]</div><div id='folding_" + str(jjjj + 2) + "' style='display:none;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>접기</a>]</div></a></span><div id='folding_" + str(jjjj) + "' style='display:none;'><br>" + result[1] + "</div></div>", enddata, 1)
  305. jjjj = jjjj + 3
  306. elif(qasd):
  307. enddata = p.sub("", enddata, 1)
  308. else:
  309. enddata = p.sub('<code>' + nnn[0] + '</code>', enddata, 1)
  310. else:
  311. break
  312. while True:
  313. a = re.compile("<code>(((?!<\/code>).)*)<\/code>", re.DOTALL)
  314. m = a.search(enddata)
  315. if(m):
  316. g = m.groups()
  317. j = re.sub("<\/span>", "}}}", g[0])
  318. j = re.sub("<\/div>", "}}}", j)
  319. j = re.sub('<span class="font\-size\-(?P<in>[1-6])">', "{{{+\g<in> ", j)
  320. j = re.sub('<span class="font\-size\-small\-(?P<in>[1-6])">', "{{{-\g<in> ", j)
  321. j = re.sub('<span style="color:(?:#)?(?P<in>[^"]*)">', "{{{#\g<in> ", j)
  322. j = re.sub('<span style="background:(?:#)?(?P<in>[^"]*)">', "{{{@\g<in> ", j)
  323. j = re.sub('<div style="(?P<in>[^"]*)">', "{{{#!wiki style=&quot;\g<in>&quot;\n", j)
  324. j = re.sub("(?P<in>.)", "<span>\g<in></span>", j)
  325. enddata = a.sub(j, enddata, 1)
  326. else:
  327. break
  328. enddata = re.sub("<span>&</span><span>l</span><span>t</span><span>;</span>", "<span>&lt;</span>", enddata)
  329. enddata = re.sub("<span>&</span><span>g</span><span>t</span><span>;</span>", "<span>&gt;</span>", enddata)
  330. if(results[1]):
  331. a = results[1]
  332. while True:
  333. g = re.search("([^= ,]*)\=([^,]*)", a)
  334. if(g):
  335. result = g.groups()
  336. enddata = re.sub("@" + result[0] + "@", result[1], enddata)
  337. a = re.sub("([^= ,]*)\=([^,]*)", "", a, 1)
  338. else:
  339. break
  340. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", '<div>' + enddata + '</div>\n', data, 1)
  341. else:
  342. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "[[" + results[0] + "]]", data, 1)
  343. else:
  344. break
  345. while True:
  346. m = re.search('^#(?:redirect|넘겨주기)\s([^\n]*)', data)
  347. if(m):
  348. results = m.groups()
  349. aa = re.search("^(.*)(#(?:.*))$", results[0])
  350. if(aa):
  351. results = aa.groups()
  352. data = re.sub('^#(?:redirect|넘겨주기)\s([^\n]*)', '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(results[0]).replace('/','%2F') + '/from/' + parse.quote(title).replace('/','%2F') + results[1] + '" />', data, 1)
  353. else:
  354. data = re.sub('^#(?:redirect|넘겨주기)\s([^\n]*)', '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(results[0]).replace('/','%2F') + '/from/' + parse.quote(title).replace('/','%2F') + '" />', data, 1)
  355. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'redirect'")
  356. abb = curs.fetchall()
  357. if(not abb):
  358. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', 'redirect')")
  359. conn.commit()
  360. else:
  361. break
  362. data = '\n' + data + '\n'
  363. while True:
  364. m = re.search("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", data)
  365. if(m):
  366. result = m.groups()
  367. blockquote = result[0]
  368. blockquote = re.sub("\n&gt;\s?", "\n", blockquote)
  369. data = re.sub("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", "\n<blockquote>" + blockquote + "</blockquote>", data, 1)
  370. else:
  371. break
  372. m = re.search('\[목차\]', data)
  373. if(not m):
  374. data = re.sub("(?P<in>(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n)", "[목차]\n\g<in>", data, 1)
  375. i = 0
  376. h0c = 0
  377. h1c = 0
  378. h2c = 0
  379. h3c = 0
  380. h4c = 0
  381. h5c = 0
  382. last = 0
  383. rtoc = '<div id="toc"><span id="toc-name">목차</span><br><br>'
  384. while True:
  385. i = i + 1
  386. m = re.search('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', data)
  387. if(m):
  388. result = m.groups()
  389. wiki = len(result[0])
  390. if(last < wiki):
  391. last = wiki
  392. else:
  393. last = wiki;
  394. if(wiki == 1):
  395. h1c = 0
  396. h2c = 0
  397. h3c = 0
  398. h4c = 0
  399. h5c = 0
  400. elif(wiki == 2):
  401. h2c = 0
  402. h3c = 0
  403. h4c = 0
  404. h5c = 0
  405. elif(wiki == 3):
  406. h3c = 0
  407. h4c = 0
  408. h5c = 0
  409. elif(wiki == 4):
  410. h4c = 0
  411. h5c = 0
  412. elif(wiki == 5):
  413. h5c = 0
  414. if(wiki == 1):
  415. h0c = h0c + 1
  416. elif(wiki == 2):
  417. h1c = h1c + 1
  418. elif(wiki == 3):
  419. h2c = h2c + 1
  420. elif(wiki == 4):
  421. h3c = h3c + 1
  422. elif(wiki == 5):
  423. h4c = h4c + 1
  424. else:
  425. h5c = h5c + 1
  426. toc = str(h0c) + '.' + str(h1c) + '.' + str(h2c) + '.' + str(h3c) + '.' + str(h4c) + '.' + str(h5c) + '.'
  427. toc = re.sub("(?P<in>[0-9]0(?:[0]*)?)\.", '\g<in>#.', toc)
  428. toc = re.sub("0\.", '', toc)
  429. toc = re.sub("#\.", '.', toc)
  430. toc = re.sub("\.$", '', toc)
  431. rtoc = rtoc + '<a href="#s-' + toc + '">' + toc + '</a>. ' + result[1] + '<br>'
  432. c = re.sub(" $", "", result[1])
  433. data = re.sub('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', '<h' + str(wiki) + ' id="' + c + '"><a href="#toc" id="s-' + toc + '">' + toc + '.</a> ' + c + ' <span style="font-size:11px;">[<a href="/edit/' + parse.quote(title).replace('/','%2F') + '/section/' + str(i) + '">편집</a>]</span></h' + str(wiki) + '>', data, 1);
  434. else:
  435. rtoc = rtoc + '</div>'
  436. break
  437. data = re.sub("\[목차\]", rtoc, data)
  438. category = ''
  439. while True:
  440. m = re.search("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", data)
  441. if(m):
  442. g = m.groups()
  443. if(not title == g[0]):
  444. curs.execute("select * from cat where title = '" + pymysql.escape_string(g[0]) + "' and cat = '" + pymysql.escape_string(title) + "'")
  445. abb = curs.fetchall()
  446. if(not abb):
  447. curs.execute("insert into cat (title, cat) value ('" + pymysql.escape_string(g[0]) + "', '" + pymysql.escape_string(title) + "')")
  448. conn.commit()
  449. if(category == ''):
  450. category = category + '<a href="/w/' + parse.quote(g[0]).replace('/','%2F') + '">' + re.sub("분류:", "", g[0]) + '</a>'
  451. else:
  452. category = category + ' / ' + '<a href="/w/' + parse.quote(g[0]).replace('/','%2F') + '">' + re.sub("분류:", "", g[0]) + '</a>'
  453. data = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", '', data, 1)
  454. else:
  455. break
  456. data = re.sub("'''(?P<in>.+?)'''(?!')", '<b>\g<in></b>', data)
  457. data = re.sub("''(?P<in>.+?)''(?!')", '<i>\g<in></i>', data)
  458. data = re.sub('~~(?P<in>.+?)~~(?!~)', '<s>\g<in></s>', data)
  459. data = re.sub('--(?P<in>.+?)--(?!-)', '<s>\g<in></s>', data)
  460. data = re.sub('__(?P<in>.+?)__(?!_)', '<u>\g<in></u>', data)
  461. data = re.sub('\^\^(?P<in>.+?)\^\^(?!\^)', '<sup>\g<in></sup>', data)
  462. data = re.sub(',,(?P<in>.+?),,(?!,)', '<sub>\g<in></sub>', data)
  463. data = re.sub('&lt;math&gt;(?P<in>((?!&lt;math&gt;).)*)&lt;\/math&gt;', '$\g<in>$', data)
  464. data = re.sub('{{\|(?P<in>(?:(?:(?:(?!\|}}).)*)(?:\n?))+)\|}}', '<table><tbody><tr><td>\g<in></td></tr></tbody></table>', data)
  465. data = re.sub('\[ruby\((?P<in>[^\|]*)\|(?P<out>[^\)]*)\)\]', '<ruby>\g<in><rp>(</rp><rt>\g<out></rt><rp>)</rp></ruby>', data)
  466. data = re.sub("##\s?(?P<in>[^\n]*)\n", "<div style='display:none;'>\g<in></div>", data);
  467. while True:
  468. m = re.search("\[\[파일:((?:(?!\]\]|\|).)*)(?:\|((?:(?!\]\]).)*))?\]\]", data)
  469. if(m):
  470. c = m.groups()
  471. if(c[1]):
  472. n = re.search("width=([^ \n&]*)", c[1])
  473. e = re.search("height=([^ \n&]*)", c[1])
  474. if(n):
  475. a = n.groups()
  476. width = a[0]
  477. else:
  478. width = ''
  479. if(e):
  480. b = e.groups()
  481. height = b[0]
  482. else:
  483. height = ''
  484. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  485. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", '<a href="/w/파일:' + img + '"><img src="/image/' + img + '" width="' + width + '" height="' + height + '"></a>', data, 1)
  486. else:
  487. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  488. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", "<a href='/w/파일:" + img + "'><img src='/image/" + img + "'></a>", data, 1)
  489. if(not re.search("^파일:([^\n]*)", title)):
  490. curs.execute("select * from back where title = '" + pymysql.escape_string(c[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'redirect'")
  491. abb = curs.fetchall()
  492. if(not abb):
  493. curs.execute("insert into back (title, link, type) value ('파일:" + pymysql.escape_string(c[0]) + "', '" + pymysql.escape_string(title) + "', 'file')")
  494. conn.commit()
  495. else:
  496. break
  497. data = re.sub("\[br\]",'<br>', data);
  498. while True:
  499. m = re.search("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", data)
  500. if(m):
  501. result = m.groups()
  502. if(result[1]):
  503. if(result[2]):
  504. width = result[1]
  505. height = result[2]
  506. else:
  507. width = result[1]
  508. height = '315'
  509. elif(result[2]):
  510. if(result[3]):
  511. height = result[2]
  512. width = result[3]
  513. else:
  514. height = result[2]
  515. width = '560'
  516. else:
  517. width = '560'
  518. height = '315'
  519. data = re.sub("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", '<iframe width="' + width + '" height="' + height + '" src="https://www.youtube.com/embed/' + result[0] + '" frameborder="0" allowfullscreen></iframe>', data, 1)
  520. else:
  521. break
  522. data = re.sub("\[\[(?::(?P<in>(?:분류|파일):(?:(?:(?!\]\]).)*)))\]\]", "[[\g<in>]]", data)
  523. while True:
  524. m = re.search("\[\[(((?!\]\]).)*)\]\]", data)
  525. if(m):
  526. result = m.groups()
  527. a = re.search("((?:(?!\|).)*)\|(.*)", result[0])
  528. if(a):
  529. results = a.groups()
  530. aa = re.search("^(.*)(#(?:.*))$", results[0])
  531. if(aa):
  532. g = results[1]
  533. results = aa.groups()
  534. b = re.search("^http(?:s)?:\/\/", results[0])
  535. if(b):
  536. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + results[0] + results[1] + '">' + g + '</a>', data, 1)
  537. else:
  538. if(results[0] == title):
  539. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + g + '</b>', data, 1)
  540. else:
  541. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  542. rows = curs.fetchall()
  543. if(rows):
  544. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + results[1] + '" href="/w/' + parse.quote(results[0]).replace('/','%2F') + results[1] + '">' + g + '</a>', data, 1)
  545. else:
  546. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + results[1] + '" class="not_thing" href="/w/' + parse.quote(results[0]).replace('/','%2F') + results[1] + '">' + g + '</a>', data, 1)
  547. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  548. rows = curs.fetchall()
  549. if(not rows):
  550. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  551. conn.commit()
  552. else:
  553. b = re.search("^http(?:s)?:\/\/", results[0])
  554. if(b):
  555. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", results[0])
  556. if(c):
  557. img = results[0]
  558. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  559. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + results[1] + '</a>', data, 1)
  560. else:
  561. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + results[0] + '">' + results[1] + '</a>', data, 1)
  562. else:
  563. if(results[0] == title):
  564. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + results[1] + '</b>', data, 1)
  565. else:
  566. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  567. rows = curs.fetchall()
  568. if(rows):
  569. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[1] + '</a>', data, 1)
  570. else:
  571. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" class="not_thing" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[1] + '</a>', data, 1)
  572. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  573. rows = curs.fetchall()
  574. if(not rows):
  575. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  576. conn.commit()
  577. else:
  578. aa = re.search("^(.*)(#(?:.*))$", result[0])
  579. if(aa):
  580. result = aa.groups()
  581. b = re.search("^http(?:s)?:\/\/", result[0])
  582. if(b):
  583. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + result[0] + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  584. else:
  585. if(result[0] == title):
  586. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + result[0] + result[1] + '</b>', data, 1)
  587. else:
  588. curs.execute("select * from data where title = '" + pymysql.escape_string(result[0]) + "'")
  589. rows = curs.fetchall()
  590. if(rows):
  591. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a href="/w/' + parse.quote(result[0]).replace('/','%2F') + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  592. else:
  593. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="not_thing" href="/w/' + parse.quote(result[0]).replace('/','%2F') + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  594. curs.execute("select * from back where title = '" + pymysql.escape_string(result[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  595. rows = curs.fetchall()
  596. if(not rows):
  597. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(result[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  598. conn.commit()
  599. else:
  600. b = re.search("^http(?:s)?:\/\/", result[0])
  601. if(b):
  602. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", result[0])
  603. if(c):
  604. img = result[0]
  605. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  606. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + img + '</a>', data, 1)
  607. else:
  608. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + result[0] + '">' + result[0] + '</a>', data, 1)
  609. else:
  610. if(result[0] == title):
  611. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + result[0] + '</b>', data, 1)
  612. else:
  613. curs.execute("select * from data where title = '" + pymysql.escape_string(result[0]) + "'")
  614. rows = curs.fetchall()
  615. if(rows):
  616. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  617. else:
  618. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="not_thing" href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  619. curs.execute("select * from back where title = '" + pymysql.escape_string(result[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  620. rows = curs.fetchall()
  621. if(not rows):
  622. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(result[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  623. conn.commit()
  624. else:
  625. break
  626. while True:
  627. m = re.search("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px|%)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px|%)?))?(?:(?:&)width=((?:[0-9]*)(?:px|%)?))?)?", data)
  628. if(m):
  629. result = m.groups()
  630. if(result[1]):
  631. if(result[2]):
  632. width = result[1]
  633. height = result[2]
  634. else:
  635. width = result[1]
  636. height = ''
  637. elif(result[2]):
  638. if(result[3]):
  639. height = result[2]
  640. width = result[3]
  641. else:
  642. height = result[2]
  643. width = ''
  644. else:
  645. width = ''
  646. height = ''
  647. c = result[0]
  648. c = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c)
  649. data = re.sub("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px)?))?(?:(?:&)width=((?:[0-9]*)(?:px)?))?)?", "<img width='" + width + "' height='" + height + "' src='" + c + "'>", data, 1)
  650. else:
  651. break
  652. while True:
  653. m = re.search("((?:(?:\s\*\s[^\n]*)\n?)+)", data)
  654. if(m):
  655. result = m.groups()
  656. end = str(result[0])
  657. end = re.sub("\s\*\s(?P<in>[^\n]*)", "<li>\g<in></li>", end)
  658. end = re.sub("\n", '', end)
  659. data = re.sub("((?:(?:\s\*\s[^\n]*)\n?)+)", '<ul id="list">' + end + '</ul>', data, 1)
  660. else:
  661. break
  662. data = re.sub('\[date\]', getnow(), data)
  663. data = re.sub("#(?P<in>jpg|png|gif|jpeg)#", ".\g<in>", data)
  664. data = re.sub("-{4,11}", "<hr>", data)
  665. while True:
  666. b = re.search("\r\n( +)", data)
  667. if(b):
  668. result = b.groups()
  669. tp = len(result[0])
  670. up = ''
  671. i = 0
  672. while True:
  673. up = up + '<span id="in"></span>'
  674. i = i + 1
  675. if(i == tp):
  676. break
  677. data = re.sub("\r\n( +)", '<br>' + up, data, 1)
  678. else:
  679. break
  680. a = 1
  681. tou = "<hr id='footnote'><div class='wiki-macro-footnote'><br>"
  682. while True:
  683. b = re.search("\[\*([^\s]*)\s(((?!\]).)*)\]", data)
  684. if(b):
  685. results = b.groups()
  686. if(results[0]):
  687. c = results[1]
  688. c = re.sub("<(?:[^>]*)>", '', c)
  689. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + results[0] + "]</a> " + results[1] + "</span><br>"
  690. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", "<sup><a class=\"footnotes\" title=\"" + c + "\" id=\"rfn-" + str(a) + "\" href=\"#fn-" + str(a) + "\">[" + results[0] + "]</a></sup>", data, 1)
  691. else:
  692. c = results[1]
  693. c = re.sub("<(?:[^>]*)>", '', c)
  694. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + str(a) + "]</a> " + results[1] + "</span><br>"
  695. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", '<sup><a class="footnotes" title="' + c + '" id="rfn-' + str(a) + '" href="#fn-' + str(a) + '">[' + str(a) + ']</a></sup>', data, 1)
  696. a = a + 1
  697. else:
  698. tou = tou + '</div>'
  699. if(tou == "<hr id='footnote'><div class='wiki-macro-footnote'><br></div>"):
  700. tou = ""
  701. break
  702. data = re.sub("\[각주\](?:(?:<br>| |\r|\n)+)?$", "", data)
  703. data = re.sub("\[각주\]", "<br>" + tou, data)
  704. data = data + tou
  705. if(category):
  706. data = data + '<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류: ' + category + '</div>'
  707. while True:
  708. m = re.search("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", data)
  709. if(m):
  710. results = m.groups()
  711. table = results[0]
  712. while True:
  713. a = re.search("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  714. if(a):
  715. row = ''
  716. cel = ''
  717. celstyle = ''
  718. rowstyle = ''
  719. alltable = ''
  720. result = a.groups()
  721. if(result[1]):
  722. q = re.search("&lt;table\s?width=((?:(?!&gt;).)*)&gt;", result[1])
  723. w = re.search("&lt;table\s?height=((?:(?!&gt;).)*)&gt;", result[1])
  724. e = re.search("&lt;table\s?align=((?:(?!&gt;).)*)&gt;", result[1])
  725. alltable = 'style="'
  726. celstyle = 'style="'
  727. rowstyle = 'style="'
  728. if(q):
  729. resultss = q.groups()
  730. alltable = alltable + 'width:' + resultss[0] + ';'
  731. if(w):
  732. resultss = w.groups()
  733. alltable = alltable + 'height:' + resultss[0] + ';'
  734. if(e):
  735. resultss = e.groups()
  736. if(resultss[0] == 'right'):
  737. alltable = alltable + 'margin-left:auto;'
  738. elif(resultss[0] == 'center'):
  739. alltable = alltable + 'margin:auto;'
  740. else:
  741. alltable = alltable + 'margin-right:auto;'
  742. ee = re.search("&lt;table\s?textalign=((?:(?!&gt;).)*)&gt;", result[1])
  743. if(ee):
  744. resultss = ee.groups()
  745. if(resultss[0] == 'right'):
  746. alltable = alltable + 'text-align:right;'
  747. elif(resultss[0] == 'center'):
  748. alltable = alltable + 'text-align:center;'
  749. else:
  750. alltable = alltable + 'text-align:left;'
  751. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  752. if(r):
  753. resultss = r.groups()
  754. cel = 'colspan="' + resultss[0] + '"'
  755. else:
  756. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  757. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  758. if(t):
  759. resultss = t.groups()
  760. row = 'rowspan="' + resultss[0] + '"'
  761. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  762. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  763. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  764. if(ba):
  765. resultss = ba.groups()
  766. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  767. elif(bb):
  768. resultss = bb.groups()
  769. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  770. elif(bc):
  771. resultss = bc.groups()
  772. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  773. z = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  774. x = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  775. c = re.search("&lt;table\s?bordercolor=(\w+)&gt;", result[1])
  776. if(z):
  777. resultss = z.groups()
  778. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  779. elif(x):
  780. resultss = x.groups()
  781. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  782. elif(c):
  783. resultss = c.groups()
  784. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  785. aq = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  786. aw = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  787. ae = re.search("&lt;table\s?bgcolor=(\w+)&gt;", result[1])
  788. if(aq):
  789. resultss = aq.groups()
  790. alltable = alltable + 'background:' + resultss[0] + ';'
  791. elif(aw):
  792. resultss = aw.groups()
  793. alltable = alltable + 'background:' + resultss[0] + ';'
  794. elif(ae):
  795. resultss = ae.groups()
  796. alltable = alltable + 'background:' + resultss[0] + ';'
  797. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  798. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  799. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  800. if(j):
  801. resultss = j.groups()
  802. celstyle = celstyle + 'background:' + resultss[0] + ';'
  803. elif(k):
  804. resultss = k.groups()
  805. celstyle = celstyle + 'background:' + resultss[0] + ';'
  806. elif(l):
  807. resultss = l.groups()
  808. celstyle = celstyle + 'background:' + resultss[0] + ';'
  809. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  810. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  811. ac = re.search("&lt;(\w+)&gt;", result[1])
  812. if(aa):
  813. resultss = aa.groups()
  814. celstyle = celstyle + 'background:' + resultss[0] + ';'
  815. elif(ab):
  816. resultss = ab.groups()
  817. celstyle = celstyle + 'background:' + resultss[0] + ';'
  818. elif(ac):
  819. resultss = ac.groups()
  820. celstyle = celstyle + 'background:' + resultss[0] + ';'
  821. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  822. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  823. if(qa):
  824. resultss = qa.groups()
  825. celstyle = celstyle + 'width:' + resultss[0] + ';'
  826. if(qb):
  827. resultss = qb.groups()
  828. celstyle = celstyle + 'height:' + resultss[0] + ';'
  829. i = re.search("&lt;\)&gt;", result[1])
  830. o = re.search("&lt;:&gt;", result[1])
  831. p = re.search("&lt;\(&gt;", result[1])
  832. if(i):
  833. celstyle = celstyle + 'text-align:right;'
  834. elif(o):
  835. celstyle = celstyle + 'text-align:center;'
  836. elif(p):
  837. celstyle = celstyle + 'text-align:left;'
  838. alltable = alltable + '"'
  839. celstyle = celstyle + '"'
  840. rowstyle = rowstyle + '"'
  841. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table " + alltable + "><tbody><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  842. else:
  843. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  844. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table><tbody><tr><td " + cel + ">", table, 1)
  845. else:
  846. break
  847. table = re.sub("\|\|$", "</td></tr></tbody></table>", table)
  848. while True:
  849. b = re.search("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  850. if(b):
  851. row = ''
  852. cel = ''
  853. celstyle = ''
  854. rowstyle = ''
  855. result = b.groups()
  856. if(result[1]):
  857. celstyle = 'style="'
  858. rowstyle = 'style="'
  859. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  860. if(r):
  861. resultss = r.groups()
  862. cel = 'colspan="' + resultss[0] + '"'
  863. else:
  864. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  865. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  866. if(t):
  867. resultss = t.groups()
  868. row = 'rowspan="' + resultss[0] + '"'
  869. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  870. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  871. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  872. if(ba):
  873. resultss = ba.groups()
  874. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  875. elif(bb):
  876. resultss = bb.groups()
  877. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  878. elif(bc):
  879. resultss = bc.groups()
  880. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  881. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  882. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  883. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  884. if(j):
  885. resultss = j.groups()
  886. celstyle = celstyle + 'background:' + resultss[0] + ';'
  887. elif(k):
  888. resultss = k.groups()
  889. celstyle = celstyle + 'background:' + resultss[0] + ';'
  890. elif(l):
  891. resultss = l.groups()
  892. celstyle = celstyle + 'background:' + resultss[0] + ';'
  893. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  894. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  895. ac = re.search("&lt;(\w+)&gt;", result[1])
  896. if(aa):
  897. resultss = aa.groups()
  898. celstyle = celstyle + 'background:' + resultss[0] + ';'
  899. elif(ab):
  900. resultss = ab.groups()
  901. celstyle = celstyle + 'background:' + resultss[0] + ';'
  902. elif(ac):
  903. resultss = ac.groups()
  904. celstyle = celstyle + 'background:' + resultss[0] + ';'
  905. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  906. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  907. if(qa):
  908. resultss = qa.groups()
  909. celstyle = celstyle + 'width:' + resultss[0] + ';'
  910. if(qb):
  911. resultss = qb.groups()
  912. celstyle = celstyle + 'height:' + resultss[0] + ';'
  913. i = re.search("&lt;\)&gt;", result[1])
  914. o = re.search("&lt;:&gt;", result[1])
  915. p = re.search("&lt;\(&gt;", result[1])
  916. if(i):
  917. celstyle = celstyle + 'text-align:right;'
  918. elif(o):
  919. celstyle = celstyle + 'text-align:center;'
  920. elif(p):
  921. celstyle = celstyle + 'text-align:left;'
  922. celstyle = celstyle + '"'
  923. rowstyle = rowstyle + '"'
  924. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  925. else:
  926. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  927. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr><td " + cel + ">", table, 1)
  928. else:
  929. break
  930. while True:
  931. c = re.search("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  932. if(c):
  933. row = ''
  934. cel = ''
  935. celstyle = ''
  936. result = c.groups()
  937. if(result[1]):
  938. celstyle = 'style="'
  939. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  940. if(r):
  941. resultss = r.groups()
  942. cel = 'colspan="' + resultss[0] + '"';
  943. else:
  944. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  945. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  946. if(t):
  947. resultss = t.groups()
  948. row = 'rowspan="' + resultss[0] + '"';
  949. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  950. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  951. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  952. if(j):
  953. resultss = j.groups()
  954. celstyle = celstyle + 'background:' + resultss[0] + ';'
  955. elif(k):
  956. resultss = k.groups()
  957. celstyle = celstyle + 'background:' + resultss[0] + ';'
  958. elif(l):
  959. resultss = l.groups()
  960. celstyle = celstyle + 'background:' + resultss[0] + ';'
  961. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  962. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  963. ac = re.search("&lt;(\w+)&gt;", result[1])
  964. if(aa):
  965. resultss = aa.groups()
  966. celstyle = celstyle + 'background:' + resultss[0] + ';'
  967. elif(ab):
  968. resultss = ab.groups()
  969. celstyle = celstyle + 'background:' + resultss[0] + ';'
  970. elif(ac):
  971. resultss = ac.groups()
  972. celstyle = celstyle + 'background:' + resultss[0] + ';'
  973. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  974. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  975. if(qa):
  976. resultss = qa.groups()
  977. celstyle = celstyle + 'width:' + resultss[0] + ';'
  978. if(qb):
  979. resultss = qb.groups()
  980. celstyle = celstyle + 'height:' + resultss[0] + ';'
  981. i = re.search("&lt;\)&gt;", result[1])
  982. o = re.search("&lt;:&gt;", result[1])
  983. p = re.search("&lt;\(&gt;", result[1])
  984. if(i):
  985. celstyle = celstyle + 'text-align:right;'
  986. elif(o):
  987. celstyle = celstyle + 'text-align:center;'
  988. elif(p):
  989. celstyle = celstyle + 'text-align:left;'
  990. celstyle = celstyle + '"'
  991. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  992. else:
  993. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  994. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + ">", table, 1)
  995. else:
  996. break
  997. data = re.sub("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", table, data, 1)
  998. else:
  999. break
  1000. data = re.sub('<\/blockquote>((\r)?\n){2}<blockquote>', '</blockquote><br><blockquote>', data)
  1001. data = re.sub('\n', '<br>', data)
  1002. data = re.sub('^<br>', '', data)
  1003. return str(data)
  1004. def getip(request):
  1005. if(session.get('Now') == True):
  1006. ip = format(session['DREAMER'])
  1007. else:
  1008. if(request.headers.getlist("X-Forwarded-For")):
  1009. ip = request.headers.getlist("X-Forwarded-For")[0]
  1010. else:
  1011. ip = request.remote_addr
  1012. return ip
  1013. def getcan(ip, name):
  1014. m = re.search("^사용자:(.*)", name)
  1015. n = re.search("^파일:(.*)", name)
  1016. if(m):
  1017. g = m.groups()
  1018. if(ip == g[0]):
  1019. if(re.search("\.", g[0])):
  1020. return 1
  1021. else:
  1022. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1023. rows = curs.fetchall()
  1024. if(rows):
  1025. return 1
  1026. else:
  1027. return 0
  1028. else:
  1029. return 1
  1030. elif(n):
  1031. return 1
  1032. else:
  1033. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1034. if(b):
  1035. results = b.groups()
  1036. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1037. rowss = curs.fetchall()
  1038. if(rowss):
  1039. return 1
  1040. else:
  1041. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1042. rows = curs.fetchall()
  1043. if(rows):
  1044. return 1
  1045. else:
  1046. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1047. row = curs.fetchall()
  1048. if(row):
  1049. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1050. rows = curs.fetchall()
  1051. if(row[0]['acl'] == 'user'):
  1052. if(rows):
  1053. return 0
  1054. else:
  1055. return 1
  1056. elif(row[0]['acl'] == 'admin'):
  1057. if(rows):
  1058. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  1059. return 0
  1060. else:
  1061. return 1
  1062. else:
  1063. return 1
  1064. else:
  1065. return 0
  1066. else:
  1067. return 0
  1068. else:
  1069. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1070. rows = curs.fetchall()
  1071. if(rows):
  1072. return 1
  1073. else:
  1074. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1075. row = curs.fetchall()
  1076. if(row):
  1077. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1078. rows = curs.fetchall()
  1079. if(row[0]['acl'] == 'user'):
  1080. if(rows):
  1081. return 0
  1082. else:
  1083. return 1
  1084. elif(row[0]['acl'] == 'admin'):
  1085. if(rows):
  1086. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  1087. return 0
  1088. else:
  1089. return 1
  1090. else:
  1091. return 1
  1092. else:
  1093. return 0
  1094. else:
  1095. return 0
  1096. def getban(ip):
  1097. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1098. if(b):
  1099. results = b.groups()
  1100. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1101. rowss = curs.fetchall()
  1102. if(rowss):
  1103. return 1
  1104. else:
  1105. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1106. rows = curs.fetchall()
  1107. if(rows):
  1108. return 1
  1109. else:
  1110. return 0
  1111. else:
  1112. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1113. rows = curs.fetchall()
  1114. if(rows):
  1115. return 1
  1116. else:
  1117. return 0
  1118. def getdiscuss(ip, name, sub):
  1119. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1120. if(b):
  1121. results = b.groups()
  1122. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1123. rowss = curs.fetchall()
  1124. if(rowss):
  1125. return 1
  1126. else:
  1127. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1128. rows = curs.fetchall()
  1129. if(rows):
  1130. return 1
  1131. else:
  1132. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1133. rows = curs.fetchall()
  1134. if(rows):
  1135. return 1
  1136. else:
  1137. return 0
  1138. else:
  1139. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1140. rows = curs.fetchall()
  1141. if(rows):
  1142. return 1
  1143. else:
  1144. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1145. rows = curs.fetchall()
  1146. if(rows):
  1147. return 1
  1148. else:
  1149. return 0
  1150. def getnow():
  1151. now = time.localtime()
  1152. s = "%04d-%02d-%02d %02d:%02d:%02d" % (now.tm_year, now.tm_mon, now.tm_mday, now.tm_hour, now.tm_min, now.tm_sec)
  1153. return s
  1154. def discuss(title, sub, date):
  1155. curs.execute("select * from rd where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1156. rows = curs.fetchall()
  1157. if(rows):
  1158. curs.execute("update rd set date = '" + pymysql.escape_string(date) + "' where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1159. else:
  1160. curs.execute("insert into rd (title, sub, date) value ('" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(date) + "')")
  1161. conn.commit()
  1162. def block(block, end, today, blocker, why):
  1163. curs.execute("insert into rb (block, end, today, blocker, why) value ('" + pymysql.escape_string(block) + "', '" + pymysql.escape_string(end) + "', '" + today + "', '" + pymysql.escape_string(blocker) + "', '" + pymysql.escape_string(why) + "')")
  1164. conn.commit()
  1165. def history(title, data, date, ip, send, leng):
  1166. curs.execute("select * from history where title = '" + pymysql.escape_string(title) + "' order by id+0 desc limit 1")
  1167. rows = curs.fetchall()
  1168. if(rows):
  1169. number = int(rows[0]['id']) + 1
  1170. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('" + str(number) + "', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send) + "', '" + leng + "')")
  1171. conn.commit()
  1172. else:
  1173. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('1', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send + ' (새 문서)') + "', '" + leng + "')")
  1174. conn.commit()
  1175. def getleng(existing, change):
  1176. if(existing < change):
  1177. leng = change - existing
  1178. leng = '+' + str(leng)
  1179. elif(change < existing):
  1180. leng = existing - change
  1181. leng = '-' + str(leng)
  1182. else:
  1183. leng = '0'
  1184. return leng
  1185. @app.route('/upload', methods=['GET', 'POST'])
  1186. def upload():
  1187. if(request.method == 'POST'):
  1188. ip = getip(request)
  1189. ban = getban(ip)
  1190. if(ban == 1):
  1191. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1192. else:
  1193. file = request.files['file']
  1194. if(file and allowed_file(file.filename)):
  1195. if(re.search('^([^./\\*<>|:?"]+)\.(jpg|gif|jpeg|png)$', file.filename)):
  1196. filename = file.filename
  1197. if(os.path.exists(os.path.join('image', filename))):
  1198. return '<meta http-equiv="refresh" content="0;url=/error/16" />'
  1199. else:
  1200. file.save(os.path.join('image', filename))
  1201. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string('파일:' + filename) + "', '" + pymysql.escape_string('[[파일:' + filename + ']][br][br]{{{[[파일:' + filename + ']]}}}') + "', '')")
  1202. conn.commit()
  1203. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote('파일:' + filename).replace('/','%2F') + '" />'
  1204. else:
  1205. return '<meta http-equiv="refresh" content="0;url=/error/15" />'
  1206. else:
  1207. return '<meta http-equiv="refresh" content="0;url=/error/14" />'
  1208. else:
  1209. ip = getip(request)
  1210. ban = getban(ip)
  1211. if(ban == 1):
  1212. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1213. else:
  1214. return render_template('index.html', logo = data['name'], title = '업로드', tn = 21, number = data['upload'])
  1215. @app.route('/image/<path:name>')
  1216. def image(name = None):
  1217. if(os.path.exists(os.path.join('image', name))):
  1218. return send_file(os.path.join('image', name), mimetype='image')
  1219. else:
  1220. return render_template('index.html', logo = data['name'], data = '이미지 없음.', title = '이미지 보기'), 404
  1221. @app.route('/recentchanges')
  1222. def recentchanges():
  1223. i = 0
  1224. div = '<div>'
  1225. curs.execute("select * from history order by date desc limit 50")
  1226. rows = curs.fetchall()
  1227. if(rows):
  1228. admin = admincheck()
  1229. while True:
  1230. try:
  1231. a = rows[i]
  1232. except:
  1233. div = div + '</div>'
  1234. break
  1235. if(rows[i]['send']):
  1236. send = rows[i]['send']
  1237. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1238. else:
  1239. send = '<br>'
  1240. title = rows[i]['title']
  1241. title = re.sub('<', '&lt;', title)
  1242. title = re.sub('>', '&gt;', title)
  1243. m = re.search("\+", rows[i]['leng'])
  1244. n = re.search("\-", rows[i]['leng'])
  1245. if(m):
  1246. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1247. elif(n):
  1248. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1249. else:
  1250. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1251. if(admin == 1):
  1252. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1253. row = curs.fetchall()
  1254. if(row):
  1255. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1256. else:
  1257. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1258. else:
  1259. ban = ''
  1260. if(re.search('\.', rows[i]['ip'])):
  1261. ip = rows[i]['ip']
  1262. else:
  1263. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1264. row = curs.fetchall()
  1265. if(row):
  1266. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1267. else:
  1268. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1269. if((int(rows[i]['id']) - 1) == 0):
  1270. revert = ''
  1271. else:
  1272. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  1273. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1274. i = i + 1
  1275. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '최근 변경내역')
  1276. else:
  1277. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '최근 변경내역')
  1278. @app.route('/record/<path:name>/n/<int:number>')
  1279. def record(name = None, number = None):
  1280. v = number * 50
  1281. i = v - 50
  1282. div = '<div>'
  1283. curs.execute("select * from history where ip = '" + pymysql.escape_string(name) + "' order by date desc")
  1284. rows = curs.fetchall()
  1285. if(rows):
  1286. admin = admincheck()
  1287. while True:
  1288. try:
  1289. a = rows[i]
  1290. except:
  1291. div = div + '</div>'
  1292. if(number != 1):
  1293. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1294. break
  1295. if(rows[i]['send']):
  1296. send = rows[i]['send']
  1297. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1298. else:
  1299. send = '<br>'
  1300. title = rows[i]['title']
  1301. title = re.sub('<', '&lt;', title)
  1302. title = re.sub('>', '&gt;', title)
  1303. m = re.search("\+", rows[i]['leng'])
  1304. n = re.search("\-", rows[i]['leng'])
  1305. if(m):
  1306. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1307. elif(n):
  1308. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1309. else:
  1310. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1311. if(admin == 1):
  1312. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1313. row = curs.fetchall()
  1314. if(row):
  1315. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1316. else:
  1317. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1318. else:
  1319. ban = ''
  1320. if(re.search('\.', rows[i]['ip'])):
  1321. ip = rows[i]['ip']
  1322. else:
  1323. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1324. row = curs.fetchall()
  1325. if(row):
  1326. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1327. else:
  1328. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1329. if((int(rows[i]['id']) - 1) == 0):
  1330. revert = ''
  1331. else:
  1332. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  1333. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> r' + rows[i]['id'] + ' <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1334. if(i == v):
  1335. div = div + '</div>'
  1336. if(number == 1):
  1337. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1338. else:
  1339. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1340. break
  1341. else:
  1342. i = i + 1
  1343. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '유저 기록')
  1344. else:
  1345. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '유저 기록')
  1346. @app.route('/userlog/n/<int:number>')
  1347. def userlog(number = None):
  1348. v = number * 50
  1349. i = v - 50
  1350. div = ''
  1351. curs.execute("select * from user")
  1352. rows = curs.fetchall()
  1353. if(rows):
  1354. admin = admincheck()
  1355. while True:
  1356. try:
  1357. a = rows[i]
  1358. except:
  1359. if(number != 1):
  1360. div = div + '<br><a href="/userlog/n/' + str(number - 1) + '">(이전)'
  1361. break
  1362. if(admin == 1):
  1363. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['id']) + "'")
  1364. row = curs.fetchall()
  1365. if(row):
  1366. ban = ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(해제)</a>'
  1367. else:
  1368. ban = ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(차단)</a>'
  1369. else:
  1370. ban = ''
  1371. if(re.search('\.', rows[i]['id'])):
  1372. ip = rows[i]['id']
  1373. else:
  1374. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['id']) + "'")
  1375. row = curs.fetchall()
  1376. if(row):
  1377. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['id']).replace('/','%2F') + '">' + rows[i]['id'] + '</a>'
  1378. else:
  1379. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['id']).replace('/','%2F') + '">' + rows[i]['id'] + '</a>'
  1380. div = div + '<li>' + ip + ban + '</li>'
  1381. if(i == v):
  1382. if(number == 1):
  1383. div = div + '<br><a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1384. else:
  1385. div = div + '<br><a href="/userlog/n/' + str(number - 1) + '">(이전) <a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1386. break
  1387. else:
  1388. i = i + 1
  1389. return render_template('index.html', logo = data['name'], data = div, title = '유저 가입 기록')
  1390. else:
  1391. return render_template('index.html', logo = data['name'], data = '', title = '유저 가입 기록')
  1392. @app.route('/backlink/<path:name>/n/<int:number>')
  1393. def backlink(name = None, number = None):
  1394. v = number * 50
  1395. i = v - 50
  1396. div = ''
  1397. curs.execute("select * from back where title = '" + pymysql.escape_string(name) + "' order by link asc")
  1398. rows = curs.fetchall()
  1399. if(rows):
  1400. while True:
  1401. try:
  1402. a = rows[i]
  1403. except:
  1404. if(number != 1):
  1405. div = div + '<br><a href="/backlink/n/' + str(number - 1) + '">(이전)'
  1406. break
  1407. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['link']) + "'")
  1408. row = curs.fetchall()
  1409. if(row):
  1410. aa = row[0]['data']
  1411. aa = re.sub("(?P<in>\[include\((?P<out>(?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\])", "\g<in>\n\n[[\g<out>]]\n\n", aa)
  1412. aa = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', '[[\g<in>]]', aa)
  1413. aa = namumark('', aa)
  1414. if(re.search("<a(?: class=\"not_thing\")? href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "(?:\#[^\"]*)?\">([^<]*)<\/a>", aa)):
  1415. div = div + '<li><a href="/w/' + parse.quote(rows[i]['link']).replace('/','%2F') + '">' + rows[i]['link'] + '</a>'
  1416. if(rows[i]['type']):
  1417. div = div + ' (' + rows[i]['type'] + ')</li>'
  1418. else:
  1419. div = div + '</li>'
  1420. if(i == v):
  1421. if(number == 1):
  1422. div = div + '<br><a href="/backlink/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1423. else:
  1424. div = div + '<br><a href="/backlink/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1425. break
  1426. else:
  1427. i = i + 1
  1428. else:
  1429. curs.execute("delete from back where title = '" + pymysql.escape_string(rows[i]['link']) + "' and link = '" + pymysql.escape_string(name) + "'")
  1430. conn.commit()
  1431. i = i + 1
  1432. v = v + 1
  1433. else:
  1434. curs.execute("delete from back where title = '" + pymysql.escape_string(rows[i]['link']) + "' and link = '" + pymysql.escape_string(name) + "'")
  1435. conn.commit()
  1436. i = i + 1
  1437. v = v + 1
  1438. return render_template('index.html', logo = data['name'], data = div, title = name, plus = '(역링크)')
  1439. else:
  1440. return render_template('index.html', logo = data['name'], data = '', title = name, plus = '(역링크)')
  1441. @app.route('/recentdiscuss')
  1442. def recentdiscuss():
  1443. i = 0
  1444. div = '<div>'
  1445. curs.execute("select * from rd order by date desc limit 50")
  1446. rows = curs.fetchall()
  1447. if(rows):
  1448. while True:
  1449. try:
  1450. a = rows[i]
  1451. except:
  1452. div = div + '</div>'
  1453. break
  1454. title = rows[i]['title']
  1455. title = re.sub('<', '&lt;', title)
  1456. title = re.sub('>', '&gt;', title)
  1457. sub = rows[i]['sub']
  1458. sub = re.sub('<', '&lt;', sub)
  1459. sub = re.sub('>', '&gt;', sub)
  1460. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:50%;"><a href="/topic/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + title + '</a> (' + sub + ')</td><td style="text-align: center;width:50%;">' + rows[i]['date'] + '</td></tr></tbody></table>'
  1461. i = i + 1
  1462. return render_template('index.html', logo = data['name'], rows = div, tn = 12, title = '최근 토론내역')
  1463. else:
  1464. return render_template('index.html', logo = data['name'], rows = '', tn = 12, title = '최근 토론내역')
  1465. @app.route('/blocklog/n/<int:number>')
  1466. def blocklog(number = None):
  1467. v = number * 50
  1468. i = v - 50
  1469. div = '<div>'
  1470. curs.execute("select * from rb order by today desc")
  1471. rows = curs.fetchall()
  1472. if(rows):
  1473. while True:
  1474. try:
  1475. a = rows[i]
  1476. except:
  1477. div = div + '</div>'
  1478. if(number != 1):
  1479. div = div + '<br><a href="/blocklog/n/' + str(number - 1) + '">(이전)'
  1480. break
  1481. why = rows[i]['why']
  1482. why = re.sub('<', '&lt;', why)
  1483. why = re.sub('>', '&gt;', why)
  1484. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", rows[i]['block'])
  1485. if(b):
  1486. ip = rows[i]['block'] + ' (대역)'
  1487. else:
  1488. ip = rows[i]['block']
  1489. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:20%;">' + ip + '</a></td><td style="text-align: center;width:20%;">' + rows[i]['blocker'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['end'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['why'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['today'] + '</td></tr></tbody></table>'
  1490. if(i == v):
  1491. div = div + '</div>'
  1492. if(number == 1):
  1493. div = div + '<br><a href="/blocklog/n/' + str(number + 1) + '">(다음)'
  1494. else:
  1495. div = div + '<br><a href="/blocklog/n/' + str(number - 1) + '">(이전) <a href="/blocklog/n/' + str(number + 1) + '">(다음)'
  1496. break
  1497. else:
  1498. i = i + 1
  1499. return render_template('index.html', logo = data['name'], rows = div, tn = 20, title = '유저 차단 기록')
  1500. else:
  1501. return render_template('index.html', logo = data['name'], rows = '', tn = 20, title = '유저 차단 기록')
  1502. @app.route('/history/<path:name>/n/<int:number>', methods=['POST', 'GET'])
  1503. def gethistory(name = None, number = None):
  1504. if(request.method == 'POST'):
  1505. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '/r/' + request.form["b"] + '/diff/' + request.form["a"] + '" />'
  1506. else:
  1507. select = ''
  1508. v = number * 50
  1509. i = v - 50
  1510. div = '<div>'
  1511. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' order by id+0 desc")
  1512. rows = curs.fetchall()
  1513. if(rows):
  1514. admin = admincheck()
  1515. while True:
  1516. try:
  1517. a = rows[i]
  1518. except:
  1519. div = div + '</div>'
  1520. if(number != 1):
  1521. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1522. break
  1523. select = '<option value="' + str(i + 1) + '">' + str(i + 1) + '</option>' + select
  1524. if(rows[i]['send']):
  1525. send = rows[i]['send']
  1526. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1527. else:
  1528. send = '<br>'
  1529. m = re.search("\+", rows[i]['leng'])
  1530. n = re.search("\-", rows[i]['leng'])
  1531. if(m):
  1532. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1533. elif(n):
  1534. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1535. else:
  1536. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1537. if(admin == 1):
  1538. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1539. row = curs.fetchall()
  1540. if(row):
  1541. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1542. ban = ''
  1543. else:
  1544. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1545. row = curs.fetchall()
  1546. if(row):
  1547. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1548. else:
  1549. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1550. else:
  1551. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1552. row = curs.fetchall()
  1553. if(row):
  1554. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1555. else:
  1556. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1557. else:
  1558. ban = ''
  1559. if(re.search("\.", rows[i]["ip"])):
  1560. ip = rows[i]["ip"]
  1561. else:
  1562. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1563. row = curs.fetchall()
  1564. if(row):
  1565. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1566. else:
  1567. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1568. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">r' + rows[i]['id'] + '</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(w)</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/raw/' + rows[i]['id'] + '">(Raw)</a> <a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(되돌리기)</a> (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1569. if(i == v):
  1570. div = div + '</div>'
  1571. if(number == 1):
  1572. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1573. else:
  1574. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1575. break
  1576. else:
  1577. i = i + 1
  1578. return render_template('index.html', logo = data['name'], rows = div, tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1579. else:
  1580. return render_template('index.html', logo = data['name'], rows = '', tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1581. @app.route('/search', methods=['POST', 'GET'])
  1582. def search():
  1583. if(request.method == 'POST'):
  1584. curs.execute("select * from data where title = '" + pymysql.escape_string(request.form["search"]) + "'")
  1585. rows = curs.fetchall()
  1586. if(rows):
  1587. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1588. else:
  1589. curs.execute("select * from data where title like '%" + pymysql.escape_string(request.form["search"]) + "%'")
  1590. rows = curs.fetchall()
  1591. div = ''
  1592. if(rows):
  1593. i = 0
  1594. div = div + '<li>문서가 없습니다. <a href="/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '">바로가기</a></li><br>'
  1595. while True:
  1596. try:
  1597. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  1598. except:
  1599. break
  1600. i = i + 1
  1601. else:
  1602. return div + '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1603. return render_template('index.html', logo = data['name'], data = div, title = '검색')
  1604. else:
  1605. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1606. @app.route('/w/<path:name>')
  1607. def w(name = None):
  1608. i = 0
  1609. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  1610. rows = curs.fetchall()
  1611. while True:
  1612. try:
  1613. a = rows[i]
  1614. except:
  1615. topic = ""
  1616. break
  1617. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  1618. row = curs.fetchall()
  1619. if(not row):
  1620. topic = "open"
  1621. break
  1622. else:
  1623. i = i + 1
  1624. acl = ''
  1625. m = re.search("^(.*)\/(.*)$", name)
  1626. if(m):
  1627. g = m.groups()
  1628. uppage = g[0]
  1629. style = ""
  1630. else:
  1631. uppage = ""
  1632. style = "display:none;"
  1633. if(re.search("^분류:", name)):
  1634. curs.execute("select * from cat where title = '" + pymysql.escape_string(name) + "' order by cat asc")
  1635. rows = curs.fetchall()
  1636. if(rows):
  1637. div = ''
  1638. i = 0
  1639. while True:
  1640. try:
  1641. a = rows[i]
  1642. except:
  1643. break
  1644. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['cat']) + "'")
  1645. row = curs.fetchall()
  1646. if(row):
  1647. aa = row[0]['data']
  1648. aa = namumark('', aa)
  1649. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  1650. if(bb):
  1651. cc = bb.groups()
  1652. mm = re.search("^분류:(.*)", name)
  1653. if(mm):
  1654. ee = mm.groups()
  1655. if(re.search("<a href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "\">" + ee[0] + "<\/a>", cc[0])):
  1656. div = div + '<li><a href="/w/' + parse.quote(rows[i]['cat']).replace('/','%2F') + '">' + rows[i]['cat'] + '</a></li>'
  1657. i = i + 1
  1658. else:
  1659. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1660. conn.commit()
  1661. i = i + 1
  1662. else:
  1663. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1664. conn.commit()
  1665. i = i + 1
  1666. else:
  1667. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1668. conn.commit()
  1669. i = i + 1
  1670. else:
  1671. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1672. conn.commit()
  1673. i = i + 1
  1674. div = '<h2>분류</h2>' + div
  1675. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1676. bb = curs.fetchall()
  1677. if(bb):
  1678. if(bb[0]['acl'] == 'admin'):
  1679. acl = '(관리자)'
  1680. elif(bb[0]['acl'] == 'user'):
  1681. acl = '(유저)'
  1682. else:
  1683. if(not acl):
  1684. acl = ''
  1685. enddata = namumark(name, bb[0]['data'])
  1686. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1687. if(m):
  1688. result = m.groups()
  1689. left = result[0]
  1690. else:
  1691. left = ''
  1692. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata + '<br>' + div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic)
  1693. else:
  1694. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic)
  1695. else:
  1696. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '분류 문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic), 404
  1697. else:
  1698. m = re.search("^사용자:(.*)", name)
  1699. if(m):
  1700. g = m.groups()
  1701. curs.execute("select * from user where id = '" + pymysql.escape_string(g[0]) + "'")
  1702. rows = curs.fetchall()
  1703. if(rows):
  1704. if(rows[0]['acl'] == 'owner'):
  1705. acl = '(소유자)'
  1706. elif(rows[0]['acl'] == 'admin'):
  1707. acl = '(관리자)'
  1708. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1709. rows = curs.fetchall()
  1710. if(rows):
  1711. if(rows[0]['acl'] == 'admin'):
  1712. acl = '(관리자)'
  1713. elif(rows[0]['acl'] == 'user'):
  1714. acl = '(유저)'
  1715. else:
  1716. if(not acl):
  1717. acl = ''
  1718. enddata = namumark(name, rows[0]['data'])
  1719. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1720. if(m):
  1721. result = m.groups()
  1722. left = result[0]
  1723. else:
  1724. left = ''
  1725. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, acl = acl, left = left, uppage = uppage, style = style, topic = topic)
  1726. else:
  1727. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic), 404
  1728. @app.route('/w/<path:name>/from/<path:redirect>')
  1729. def redirectw(name = None, redirect = None):
  1730. i = 0
  1731. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  1732. rows = curs.fetchall()
  1733. while True:
  1734. try:
  1735. a = rows[i]
  1736. except:
  1737. topic = ""
  1738. break
  1739. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  1740. row = curs.fetchall()
  1741. if(not row):
  1742. topic = "open"
  1743. break
  1744. else:
  1745. i = i + 1
  1746. acl = ''
  1747. m = re.search("^(.*)\/(.*)$", name)
  1748. if(m):
  1749. g = m.groups()
  1750. uppage = g[0]
  1751. style = ""
  1752. else:
  1753. uppage = ""
  1754. style = "display:none;"
  1755. if(re.search("^분류:", name)):
  1756. curs.execute("select * from cat where title = '" + pymysql.escape_string(name) + "' order by cat asc")
  1757. rows = curs.fetchall()
  1758. if(rows):
  1759. div = ''
  1760. i = 0
  1761. while True:
  1762. try:
  1763. a = rows[i]
  1764. except:
  1765. break
  1766. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['cat']) + "'")
  1767. row = curs.fetchall()
  1768. if(row):
  1769. aa = row[0]['data']
  1770. aa = namumark('', aa)
  1771. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  1772. if(bb):
  1773. cc = bb.groups()
  1774. mm = re.search("^분류:(.*)", name)
  1775. if(mm):
  1776. ee = mm.groups()
  1777. if(re.search("<a href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "\">" + ee[0] + "<\/a>", cc[0])):
  1778. div = div + '<li><a href="/w/' + parse.quote(rows[i]['cat']).replace('/','%2F') + '">' + rows[i]['cat'] + '</a></li>'
  1779. i = i + 1
  1780. else:
  1781. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1782. conn.commit()
  1783. i = i + 1
  1784. else:
  1785. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1786. conn.commit()
  1787. i = i + 1
  1788. else:
  1789. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1790. conn.commit()
  1791. i = i + 1
  1792. else:
  1793. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1794. conn.commit()
  1795. i = i + 1
  1796. div = '<h2>분류</h2>' + div
  1797. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1798. bb = curs.fetchall()
  1799. if(bb):
  1800. if(bb[0]['acl'] == 'admin'):
  1801. acl = '(관리자)'
  1802. elif(bb[0]['acl'] == 'user'):
  1803. acl = '(유저)'
  1804. else:
  1805. if(not acl):
  1806. acl = ''
  1807. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', bb[0]['data'])
  1808. enddata = namumark(name, newdata)
  1809. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1810. if(m):
  1811. result = m.groups()
  1812. left = result[0]
  1813. else:
  1814. left = ''
  1815. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata + '<br>' + div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1816. else:
  1817. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1818. else:
  1819. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '분류 문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.'), 404
  1820. else:
  1821. m = re.search("^사용자:(.*)", name)
  1822. if(m):
  1823. g = m.groups()
  1824. curs.execute("select * from user where id = '" + pymysql.escape_string(g[0]) + "'")
  1825. rows = curs.fetchall()
  1826. if(rows):
  1827. if(rows[0]['acl'] == 'owner'):
  1828. acl = '(소유자)'
  1829. elif(rows[0]['acl'] == 'admin'):
  1830. acl = '(관리자)'
  1831. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1832. rows = curs.fetchall()
  1833. if(rows):
  1834. if(rows[0]['acl'] == 'admin'):
  1835. acl = '(관리자)'
  1836. elif(rows[0]['acl'] == 'user'):
  1837. acl = '(유저)'
  1838. else:
  1839. if(not acl):
  1840. acl = ''
  1841. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  1842. enddata = namumark(name, newdata)
  1843. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1844. if(m):
  1845. result = m.groups()
  1846. left = result[0]
  1847. else:
  1848. left = ''
  1849. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, acl = acl, left = left, uppage = uppage, style = style, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1850. else:
  1851. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.'), 404
  1852. @app.route('/w/<path:name>/r/<int:number>')
  1853. def rew(name = None, number = None):
  1854. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1855. rows = curs.fetchall()
  1856. if(rows):
  1857. enddata = namumark(name, rows[0]['data'])
  1858. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1859. if(m):
  1860. result = m.groups()
  1861. left = result[0]
  1862. else:
  1863. left = ''
  1864. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 6, left = left)
  1865. else:
  1866. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  1867. @app.route('/w/<path:name>/raw/<int:number>')
  1868. def reraw(name = None, number = None):
  1869. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1870. rows = curs.fetchall()
  1871. if(rows):
  1872. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1873. enddata = re.sub('>', '&gt;', enddata)
  1874. enddata = re.sub('"', '&quot;', enddata)
  1875. enddata = re.sub("\n", '<br>', enddata)
  1876. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'])
  1877. else:
  1878. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  1879. @app.route('/raw/<path:name>')
  1880. def raw(name = None):
  1881. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1882. rows = curs.fetchall()
  1883. if(rows):
  1884. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1885. enddata = re.sub('>', '&gt;', enddata)
  1886. enddata = re.sub('"', '&quot;', enddata)
  1887. enddata = re.sub("\n", '<br>', enddata)
  1888. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 7)
  1889. else:
  1890. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1891. @app.route('/revert/<path:name>/r/<int:number>', methods=['POST', 'GET'])
  1892. def revert(name = None, number = None):
  1893. if(request.method == 'POST'):
  1894. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1895. rows = curs.fetchall()
  1896. if(rows):
  1897. ip = getip(request)
  1898. can = getcan(ip, name)
  1899. if(can == 1):
  1900. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1901. else:
  1902. today = getnow()
  1903. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1904. row = curs.fetchall()
  1905. if(row):
  1906. leng = getleng(len(row[0]['data']), len(rows[0]['data']))
  1907. curs.execute("update data set data = '" + pymysql.escape_string(rows[0]['data']) + "' where title = '" + pymysql.escape_string(name) + "'")
  1908. conn.commit()
  1909. else:
  1910. leng = '+' + str(len(rows[0]['data']))
  1911. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(rows[0]['data']) + "', '')")
  1912. conn.commit()
  1913. history(name, rows[0]['data'], today, ip, '문서를 ' + str(number) + '판으로 되돌렸습니다.', leng)
  1914. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1915. else:
  1916. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1917. else:
  1918. ip = getip(request)
  1919. can = getcan(ip, name)
  1920. if(can == 1):
  1921. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1922. else:
  1923. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1924. rows = curs.fetchall()
  1925. if(rows):
  1926. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), r = parse.quote(str(number)).replace('/','%2F'), tn = 13, plus = '정말 되돌리시겠습니까?')
  1927. else:
  1928. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1929. @app.route('/edit/<path:name>', methods=['POST', 'GET'])
  1930. def edit(name = None):
  1931. if(request.method == 'POST'):
  1932. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["send"])
  1933. if(m):
  1934. return '<meta http-equiv="refresh" content="0;url=/error/17" />'
  1935. else:
  1936. today = getnow()
  1937. content = re.sub("\[date\(now\)\]", today, request.form["content"])
  1938. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1939. rows = curs.fetchall()
  1940. if(rows):
  1941. if(rows[0]['data'] == content):
  1942. return '<meta http-equiv="refresh" content="0;url=/error/18" />'
  1943. else:
  1944. ip = getip(request)
  1945. can = getcan(ip, name)
  1946. if(can == 1):
  1947. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1948. else:
  1949. leng = getleng(len(rows[0]['data']), len(content))
  1950. history(name, content, today, ip, request.form["send"], leng)
  1951. curs.execute("update data set data = '" + pymysql.escape_string(content) + "' where title = '" + pymysql.escape_string(name) + "'")
  1952. conn.commit()
  1953. else:
  1954. ip = getip(request)
  1955. can = getcan(ip, name)
  1956. if(can == 1):
  1957. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1958. else:
  1959. leng = '+' + str(len(content))
  1960. history(name, content, today, ip, request.form["send"], leng)
  1961. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(content) + "', '')")
  1962. conn.commit()
  1963. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1964. else:
  1965. ip = getip(request)
  1966. can = getcan(ip, name)
  1967. if(can == 1):
  1968. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1969. else:
  1970. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  1971. rows = curs.fetchall()
  1972. if(rows):
  1973. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  1974. left = namumark(name, newdata)
  1975. else:
  1976. left = ''
  1977. if(re.search('\.', ip)):
  1978. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  1979. else:
  1980. notice = ''
  1981. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1982. rows = curs.fetchall()
  1983. if(rows):
  1984. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = rows[0]['data'], tn = 2, notice = notice, left = left)
  1985. else:
  1986. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '', tn = 2, notice = notice, left = left)
  1987. @app.route('/edit/<path:name>/section/<int:number>', methods=['POST', 'GET'])
  1988. def secedit(name = None, number = None):
  1989. if(request.method == 'POST'):
  1990. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["send"])
  1991. if(m):
  1992. return '<meta http-equiv="refresh" content="0;url=/error/17" />'
  1993. else:
  1994. today = getnow()
  1995. content = re.sub("\[date\(now\)\]", today, request.form["content"])
  1996. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1997. rows = curs.fetchall()
  1998. if(rows):
  1999. if(request.form["otent"] == content):
  2000. return '<meta http-equiv="refresh" content="0;url=/error/18" />'
  2001. else:
  2002. ip = getip(request)
  2003. can = getcan(ip, name)
  2004. if(can == 1):
  2005. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2006. else:
  2007. leng = getleng(len(request.form['otent']), len(content))
  2008. content = rows[0]['data'].replace(request.form['otent'], content)
  2009. history(name, content, today, ip, request.form["send"], leng)
  2010. curs.execute("update data set data = '" + pymysql.escape_string(content) + "' where title = '" + pymysql.escape_string(name) + "'")
  2011. conn.commit()
  2012. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2013. else:
  2014. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2015. else:
  2016. ip = getip(request)
  2017. can = getcan(ip, name)
  2018. if(can == 1):
  2019. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2020. else:
  2021. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2022. rows = curs.fetchall()
  2023. if(rows):
  2024. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2025. left = namumark(name, newdata)
  2026. else:
  2027. left = ''
  2028. if(re.search('\.', ip)):
  2029. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2030. else:
  2031. notice = ''
  2032. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2033. rows = curs.fetchall()
  2034. if(rows):
  2035. i = 0
  2036. j = 0
  2037. gdata = rows[0]['data'] + '\r\n'
  2038. while True:
  2039. m = re.search("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", gdata)
  2040. if(m):
  2041. if(i == number - 1):
  2042. g = m.groups()
  2043. gdata = re.sub("\r\n$", "", g[0])
  2044. break
  2045. else:
  2046. gdata = re.sub("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", "", gdata, 1)
  2047. i = i + 1
  2048. else:
  2049. j = 1
  2050. break
  2051. if(j == 0):
  2052. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = gdata, tn = 2, notice = notice, left = left, section = 1, number = number)
  2053. else:
  2054. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2055. else:
  2056. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2057. @app.route('/preview/<path:name>', methods=['POST'])
  2058. def preview(name = None):
  2059. ip = getip(request)
  2060. can = getcan(ip, name)
  2061. if(can == 1):
  2062. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2063. else:
  2064. if(re.search('\.', ip)):
  2065. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2066. else:
  2067. notice = ''
  2068. newdata = request.form["content"]
  2069. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  2070. enddata = namumark(name, newdata)
  2071. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2072. rows = curs.fetchall()
  2073. if(rows):
  2074. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2075. left = namumark(name, newdata)
  2076. else:
  2077. left = ''
  2078. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = request.form["content"], tn = 2, preview = 1, enddata = enddata, left = left, notice = notice)
  2079. @app.route('/preview/<path:name>/section/<int:number>', methods=['POST'])
  2080. def secpreview(name = None, number = None):
  2081. ip = getip(request)
  2082. can = getcan(ip, name)
  2083. if(can == 1):
  2084. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2085. else:
  2086. if(re.search('\.', ip)):
  2087. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2088. else:
  2089. notice = ''
  2090. newdata = request.form["content"]
  2091. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  2092. enddata = namumark(name, newdata)
  2093. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2094. rows = curs.fetchall()
  2095. if(rows):
  2096. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2097. left = namumark(name, newdata)
  2098. else:
  2099. left = ''
  2100. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = request.form["content"], tn = 2, preview = 1, enddata = enddata, left = left, notice = notice, section = 1, number = number, odata = request.form["otent"])
  2101. @app.route('/delete/<path:name>', methods=['POST', 'GET'])
  2102. def delete(name = None):
  2103. if(request.method == 'POST'):
  2104. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2105. rows = curs.fetchall()
  2106. if(rows):
  2107. ip = getip(request)
  2108. can = getcan(ip, name)
  2109. if(can == 1):
  2110. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2111. else:
  2112. today = getnow()
  2113. leng = '-' + str(len(rows[0]['data']))
  2114. history(name, '', today, ip, '문서를 삭제 했습니다.', leng)
  2115. curs.execute("delete from data where title = '" + pymysql.escape_string(name) + "'")
  2116. conn.commit()
  2117. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2118. else:
  2119. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2120. else:
  2121. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2122. rows = curs.fetchall()
  2123. if(rows):
  2124. ip = getip(request)
  2125. can = getcan(ip, name)
  2126. if(can == 1):
  2127. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2128. else:
  2129. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 8, plus = '정말 삭제 하시겠습니까?')
  2130. else:
  2131. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2132. @app.route('/move/<path:name>', methods=['POST', 'GET'])
  2133. def move(name = None):
  2134. if(request.method == 'POST'):
  2135. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2136. rows = curs.fetchall()
  2137. if(rows):
  2138. ip = getip(request)
  2139. can = getcan(ip, name)
  2140. if(can == 1):
  2141. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2142. else:
  2143. today = getnow()
  2144. leng = '0'
  2145. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  2146. row = curs.fetchall()
  2147. if(row):
  2148. return '<meta http-equiv="refresh" content="0;url=/error/19" />'
  2149. else:
  2150. history(name, rows[0]['data'], today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  2151. curs.execute("update data set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2152. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2153. conn.commit()
  2154. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  2155. else:
  2156. ip = getip(request)
  2157. can = getcan(ip, name)
  2158. if(can == 1):
  2159. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2160. else:
  2161. today = getnow()
  2162. leng = '0'
  2163. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  2164. row = curs.fetchall()
  2165. if(row):
  2166. return '<meta http-equiv="refresh" content="0;url=/error/19" />'
  2167. else:
  2168. history(name, '', today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  2169. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2170. conn.commit()
  2171. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  2172. else:
  2173. ip = getip(request)
  2174. can = getcan(ip, name)
  2175. if(can == 1):
  2176. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2177. else:
  2178. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 9, plus = '정말 이동 하시겠습니까?')
  2179. @app.route('/other')
  2180. def other():
  2181. return render_template('index.html', title = '기타 메뉴', logo = data['name'], data = '<li><a href="/titleindex">모든 문서</a></li><li><a href="/blocklog/n/1">유저 차단 기록</a></li><li><a href="/userlog/n/1">유저 가입 기록</a></li><li><a href="/upload">업로드</a></li><li><a href="/manager/1">관리자 메뉴</a></li><li><a href="/manager/6">유저 기록</a></li><br>이 오픈나무의 버전은 <a href="https://github.com/2DU/openNAMU/blob/master/version.md">1.7.3</a> 입니다.')
  2182. @app.route('/manager/<int:num>', methods=['POST', 'GET'])
  2183. def manager(num = None):
  2184. if(num == 1):
  2185. return render_template('index.html', title = '관리자 메뉴', logo = data['name'], data = '<li><a href="/manager/2">문서 ACL</a></li><li><a href="/manager/3">유저 체크</a></li><li><a href="/manager/4">유저 차단</a></li><li><a href="/manager/5">관리자 권한 주기</a></li>')
  2186. elif(num == 2):
  2187. if(request.method == 'POST'):
  2188. return '<meta http-equiv="refresh" content="0;url=/acl/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2189. else:
  2190. return render_template('index.html', title = 'ACL 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/2"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2191. elif(num == 3):
  2192. if(request.method == 'POST'):
  2193. return '<meta http-equiv="refresh" content="0;url=/check/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2194. else:
  2195. return render_template('index.html', title = '유저 체크 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/3"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2196. elif(num == 4):
  2197. if(request.method == 'POST'):
  2198. return '<meta http-equiv="refresh" content="0;url=/ban/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2199. else:
  2200. return render_template('index.html', title = '유저 차단 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/4"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button><br><br><span>아이피 앞 두자리 (XXX.XXX) 입력하면 대역 차단</span></form>')
  2201. elif(num == 5):
  2202. if(request.method == 'POST'):
  2203. return '<meta http-equiv="refresh" content="0;url=/admin/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2204. else:
  2205. return render_template('index.html', title = '관리자 권한 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/5"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2206. elif(num == 6):
  2207. if(request.method == 'POST'):
  2208. return '<meta http-equiv="refresh" content="0;url=/record/' + parse.quote(request.form["name"]).replace('/','%2F') + '/n/1" />'
  2209. else:
  2210. return render_template('index.html', title = '유저 기록 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/6"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2211. else:
  2212. return '<meta http-equiv="refresh" content="0;url=/" />'
  2213. @app.route('/titleindex')
  2214. def titleindex():
  2215. i = 0
  2216. div = '<div>'
  2217. curs.execute("select * from data order by title asc")
  2218. rows = curs.fetchall()
  2219. if(rows):
  2220. while True:
  2221. try:
  2222. a = rows[i]
  2223. except:
  2224. div = div + '</div>'
  2225. break
  2226. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  2227. i = i + 1
  2228. return render_template('index.html', logo = data['name'], rows = div + '<br><span>이 위키에는 총 ' + str(i + 1) + '개의 문서가 있습니다.</span>', tn = 4, title = '모든 문서')
  2229. else:
  2230. return render_template('index.html', logo = data['name'], rows = '', tn = 4, title = '모든 문서')
  2231. @app.route('/topic/<path:name>', methods=['POST', 'GET'])
  2232. def topic(name = None):
  2233. if(request.method == 'POST'):
  2234. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  2235. else:
  2236. div = '<div>'
  2237. i = 0
  2238. j = 1
  2239. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  2240. rows = curs.fetchall()
  2241. while True:
  2242. try:
  2243. a = rows[i]
  2244. except:
  2245. div = div + '</div>'
  2246. break
  2247. curs.execute("select * from topic where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and id = '1' order by sub asc")
  2248. aa = curs.fetchall()
  2249. indata = namumark(name, aa[0]['data'])
  2250. if(aa[0]['block'] == 'O'):
  2251. indata = '블라인드 되었습니다.'
  2252. block = 'style="background: gainsboro;"'
  2253. else:
  2254. block = ''
  2255. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  2256. row = curs.fetchall()
  2257. if(not row):
  2258. div = div + '<h2><a href="/topic/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str(j) + '. ' + rows[i]['sub'] + '</a></h2>'
  2259. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + aa[0]['ip'] + ' <span style="float:right;">' + aa[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2260. j = j + 1
  2261. i = i + 1
  2262. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10, list = 1)
  2263. @app.route('/topic/<path:name>/close')
  2264. def topicstoplist(name = None):
  2265. if(request.method == 'POST'):
  2266. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  2267. else:
  2268. div = '<div>'
  2269. i = 0
  2270. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and close = 'O' order by sub asc")
  2271. rows = curs.fetchall()
  2272. while True:
  2273. try:
  2274. a = rows[i]
  2275. except:
  2276. div = div + '</div>'
  2277. break
  2278. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and id = '1'")
  2279. row = curs.fetchall()
  2280. if(row):
  2281. j = i + 1
  2282. indata = namumark(name, row[0]['data'])
  2283. if(row[0]['block'] == 'O'):
  2284. indata = '블라인드 되었습니다.'
  2285. block = 'style="background: gainsboro;"'
  2286. else:
  2287. block = ''
  2288. div = div + '<h2><a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str((i + 1)) + '. ' + rows[i]['sub'] + '</a></h2>'
  2289. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + row[0]['ip'] + ' <span style="float:right;">' + row[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2290. i = i + 1
  2291. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10)
  2292. @app.route('/topic/<path:name>/sub/<path:sub>', methods=['POST', 'GET'])
  2293. def sub(name = None, sub = None):
  2294. if(request.method == 'POST'):
  2295. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2296. rows = curs.fetchall()
  2297. if(rows):
  2298. number = int(rows[0]['id']) + 1
  2299. else:
  2300. number = 1
  2301. ip = getip(request)
  2302. ban = getdiscuss(ip, name, sub)
  2303. if(ban == 1):
  2304. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2305. else:
  2306. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2307. rows = curs.fetchall()
  2308. if(rows):
  2309. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2310. ip = ip + ' - Admin'
  2311. today = getnow()
  2312. discuss(name, sub, today)
  2313. aa = request.form["content"]
  2314. aa = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", "[br]", aa)
  2315. aa = re.sub("\[date\(now\)\]", today, aa)
  2316. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + str(number) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(aa) + "', '" + today + "', '" + ip + "', '')")
  2317. conn.commit()
  2318. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '" />'
  2319. else:
  2320. ip = getip(request)
  2321. ban = getdiscuss(ip, name, sub)
  2322. admin = admincheck()
  2323. if(admin == 1):
  2324. div = '<div>' + '<a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/close">(토론 닫기 및 열기)</a>' + ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/stop">(토론 정지 및 재개)</a><br><br>'
  2325. else:
  2326. div = '<div>'
  2327. i = 0
  2328. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 asc")
  2329. rows = curs.fetchall()
  2330. while True:
  2331. try:
  2332. a = rows[i]
  2333. except:
  2334. div = div + '</div>'
  2335. break
  2336. if(i == 0):
  2337. start = rows[i]['ip']
  2338. indata = namumark(name, rows[i]['data'])
  2339. if(rows[i]['block'] == 'O'):
  2340. indata = '블라인드 되었습니다.'
  2341. block = 'style="background: gainsboro;"'
  2342. else:
  2343. block = ''
  2344. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart)$", rows[i]['ip'])
  2345. if(m):
  2346. ban = ""
  2347. else:
  2348. if(admin == 1):
  2349. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  2350. row = curs.fetchall()
  2351. if(rows[i]['block'] == 'O'):
  2352. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(해제)</a>'
  2353. else:
  2354. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(블라인드)</a>'
  2355. n = re.search("\- (?:Admin)$", rows[i]['ip'])
  2356. if(n):
  2357. ban = isblock
  2358. else:
  2359. if(row):
  2360. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>' + isblock
  2361. else:
  2362. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>' + isblock
  2363. else:
  2364. ban = ""
  2365. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart|Admin)$", rows[i]['ip'])
  2366. if(m):
  2367. g = m.groups()
  2368. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(g[0]) + "'")
  2369. row = curs.fetchall()
  2370. if(row):
  2371. ip = '<a href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  2372. else:
  2373. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  2374. elif(re.search("\.", rows[i]["ip"])):
  2375. ip = rows[i]["ip"]
  2376. else:
  2377. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  2378. row = curs.fetchall()
  2379. if(row):
  2380. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  2381. else:
  2382. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  2383. if(rows[i]['ip'] == start):
  2384. j = i + 1
  2385. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2386. else:
  2387. j = i + 1
  2388. div = div + '<table id="toron"><tbody><tr><td id="toroncolor"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2389. i = i + 1
  2390. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), suburl = parse.quote(sub).replace('/','%2F'), sub = sub, logo = data['name'], rows = div, tn = 11, ban = ban)
  2391. @app.route('/topic/<path:name>/sub/<path:sub>/b/<number>')
  2392. def blind(name = None, sub = None, number = None):
  2393. if(session.get('Now') == True):
  2394. ip = getip(request)
  2395. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2396. rows = curs.fetchall()
  2397. if(rows):
  2398. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2399. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2400. row = curs.fetchall()
  2401. if(row):
  2402. if(row[0]['block'] == 'O'):
  2403. curs.execute("update topic set block = '' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2404. else:
  2405. curs.execute("update topic set block = 'O' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2406. conn.commit()
  2407. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2408. else:
  2409. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2410. else:
  2411. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2412. else:
  2413. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2414. else:
  2415. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2416. @app.route('/topic/<path:name>/sub/<path:sub>/stop')
  2417. def topicstop(name = None, sub = None):
  2418. if(session.get('Now') == True):
  2419. ip = getip(request)
  2420. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2421. rows = curs.fetchall()
  2422. if(rows):
  2423. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2424. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2425. row = curs.fetchall()
  2426. if(row):
  2427. today = getnow()
  2428. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  2429. rows = curs.fetchall()
  2430. if(rows):
  2431. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Restart', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Restart', '')")
  2432. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  2433. else:
  2434. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Stop', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Stop', '')")
  2435. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '')")
  2436. conn.commit()
  2437. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2438. else:
  2439. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2440. else:
  2441. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2442. else:
  2443. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2444. else:
  2445. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2446. @app.route('/topic/<path:name>/sub/<path:sub>/close')
  2447. def topicclose(name = None, sub = None):
  2448. if(session.get('Now') == True):
  2449. ip = getip(request)
  2450. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2451. rows = curs.fetchall()
  2452. if(rows):
  2453. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2454. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2455. row = curs.fetchall()
  2456. if(row):
  2457. today = getnow()
  2458. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  2459. rows = curs.fetchall()
  2460. if(rows):
  2461. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Reopen', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Reopen', '')")
  2462. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  2463. else:
  2464. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Close', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Close', '')")
  2465. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'O')")
  2466. conn.commit()
  2467. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2468. else:
  2469. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2470. else:
  2471. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2472. else:
  2473. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2474. else:
  2475. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2476. @app.route('/login', methods=['POST', 'GET'])
  2477. def login():
  2478. if(request.method == 'POST'):
  2479. ip = getip(request)
  2480. ban = getban(ip)
  2481. if(ban == 1):
  2482. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2483. else:
  2484. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2485. rows = curs.fetchall()
  2486. if(rows):
  2487. if(session.get('Now') == True):
  2488. return '<meta http-equiv="refresh" content="0;url=/error/11" />'
  2489. elif(bcrypt.checkpw(bytes(request.form["pw"], 'utf-8'), bytes(rows[0]['pw'], 'utf-8'))):
  2490. session['Now'] = True
  2491. session['DREAMER'] = request.form["id"]
  2492. curs.execute("insert into login (user, ip, today) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(getnow()) + "')")
  2493. conn.commit()
  2494. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2495. else:
  2496. return '<meta http-equiv="refresh" content="0;url=/error/13" />'
  2497. else:
  2498. return '<meta http-equiv="refresh" content="0;url=/error/12" />'
  2499. else:
  2500. ip = getip(request)
  2501. ban = getban(ip)
  2502. if(ban == 1):
  2503. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2504. else:
  2505. if(session.get('Now') == True):
  2506. return '<meta http-equiv="refresh" content="0;url=/error/11" />'
  2507. else:
  2508. return render_template('index.html', title = '로그인', enter = '로그인', logo = data['name'], tn = 15)
  2509. @app.route('/change', methods=['POST', 'GET'])
  2510. def change():
  2511. if(request.method == 'POST'):
  2512. ip = getip(request)
  2513. ban = getban(ip)
  2514. if(ban == 1):
  2515. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2516. else:
  2517. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2518. rows = curs.fetchall()
  2519. if(rows):
  2520. if(session.get('Now') == True):
  2521. return '<meta http-equiv="refresh" content="0;url=/logout" />'
  2522. elif(bcrypt.checkpw(bytes(request.form["pw"], 'utf-8'), bytes(rows[0]['pw'], 'utf-8'))):
  2523. hashed = bcrypt.hashpw(bytes(request.form["pw2"], 'utf-8'), bcrypt.gensalt())
  2524. curs.execute("update user set pw = '" + pymysql.escape_string(hashed.decode()) + "' where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2525. conn.commit()
  2526. return '<meta http-equiv="refresh" content="0;url=/login" />'
  2527. else:
  2528. return '<meta http-equiv="refresh" content="0;url=/error/10" />'
  2529. else:
  2530. return '<meta http-equiv="refresh" content="0;url=/error/9" />'
  2531. else:
  2532. ip = getip(request)
  2533. ban = getban(ip)
  2534. if(ban == 1):
  2535. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2536. else:
  2537. if(session.get('Now') == True):
  2538. return '<meta http-equiv="refresh" content="0;url=/logout" />'
  2539. else:
  2540. return render_template('index.html', title = '비밀번호 변경', enter = '변경', logo = data['name'], tn = 15)
  2541. @app.route('/check/<name>')
  2542. def check(name = None, sub = None, number = None):
  2543. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2544. rows = curs.fetchall()
  2545. if(rows and rows[0]['acl'] == 'owner' or rows and rows[0]['acl'] == 'admin'):
  2546. return '<meta http-equiv="refresh" content="0;url=/error/4" />'
  2547. else:
  2548. if(admincheck() == 1):
  2549. m = re.search('(?:[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)', name)
  2550. if(m):
  2551. curs.execute("select * from login where ip = '" + pymysql.escape_string(name) + "' order by today desc")
  2552. row = curs.fetchall()
  2553. if(row):
  2554. i = 0
  2555. c = ''
  2556. while True:
  2557. try:
  2558. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  2559. except:
  2560. break
  2561. i = i + 1
  2562. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  2563. else:
  2564. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  2565. else:
  2566. curs.execute("select * from login where user = '" + pymysql.escape_string(name) + "' order by today desc")
  2567. row = curs.fetchall()
  2568. if(row):
  2569. i = 0
  2570. c = ''
  2571. while True:
  2572. try:
  2573. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  2574. except:
  2575. break
  2576. i = i + 1
  2577. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  2578. else:
  2579. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  2580. else:
  2581. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2582. @app.route('/register', methods=['POST', 'GET'])
  2583. def register():
  2584. if(request.method == 'POST'):
  2585. ip = getip(request)
  2586. ban = getban(ip)
  2587. if(ban == 1):
  2588. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2589. else:
  2590. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["id"])
  2591. if(m):
  2592. return '<meta http-equiv="refresh" content="0;url=/error/8" />'
  2593. else:
  2594. if(len(request.form["id"]) > 20):
  2595. return '<meta http-equiv="refresh" content="0;url=/error/7" />'
  2596. else:
  2597. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2598. rows = curs.fetchall()
  2599. if(rows):
  2600. return '<meta http-equiv="refresh" content="0;url=/error/6" />'
  2601. else:
  2602. hashed = bcrypt.hashpw(bytes(request.form["pw"], 'utf-8'), bcrypt.gensalt())
  2603. if(request.form["id"] == data['owner']):
  2604. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'owner')")
  2605. else:
  2606. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'user')")
  2607. conn.commit()
  2608. return '<meta http-equiv="refresh" content="0;url=/login" />'
  2609. else:
  2610. ip = getip(request)
  2611. ban = getban(ip)
  2612. if(ban == 1):
  2613. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2614. else:
  2615. return render_template('index.html', title = '회원가입', enter = '회원가입', logo = data['name'], tn = 15)
  2616. @app.route('/logout')
  2617. def logout():
  2618. session['Now'] = False
  2619. session.pop('DREAMER', None)
  2620. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2621. @app.route('/ban/<name>', methods=['POST', 'GET'])
  2622. def ban(name = None):
  2623. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2624. rows = curs.fetchall()
  2625. if(rows and rows[0]['acl'] == 'owner' or rows and rows[0]['acl'] == 'admin'):
  2626. return '<meta http-equiv="refresh" content="0;url=/error/4" />'
  2627. else:
  2628. if(request.method == 'POST'):
  2629. if(admincheck() == 1):
  2630. ip = getip(request)
  2631. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  2632. row = curs.fetchall()
  2633. if(row):
  2634. block(name, '해제', getnow(), ip, '')
  2635. curs.execute("delete from ban where block = '" + pymysql.escape_string(name) + "'")
  2636. else:
  2637. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", name)
  2638. if(b):
  2639. block(name, request.form["end"], getnow(), ip, request.form["why"])
  2640. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', 'O')")
  2641. else:
  2642. block(name, request.form["end"], getnow(), ip, request.form["why"])
  2643. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', '')")
  2644. conn.commit()
  2645. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2646. else:
  2647. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2648. else:
  2649. if(admincheck() == 1):
  2650. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  2651. row = curs.fetchall()
  2652. if(row):
  2653. now = '차단 해제'
  2654. else:
  2655. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", name)
  2656. if(b):
  2657. now = '대역 차단'
  2658. else:
  2659. now = '차단'
  2660. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 16, now = now, today = getnow())
  2661. else:
  2662. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2663. @app.route('/acl/<path:name>', methods=['POST', 'GET'])
  2664. def acl(name = None):
  2665. if(request.method == 'POST'):
  2666. if(admincheck() == 1):
  2667. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2668. row = curs.fetchall()
  2669. if(row):
  2670. if(request.form["select"] == 'admin'):
  2671. curs.execute("update data set acl = 'admin' where title = '" + pymysql.escape_string(name) + "'")
  2672. elif(request.form["select"] == 'user'):
  2673. curs.execute("update data set acl = 'user' where title = '" + pymysql.escape_string(name) + "'")
  2674. else:
  2675. curs.execute("update data set acl = '' where title = '" + pymysql.escape_string(name) + "'")
  2676. conn.commit()
  2677. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2678. else:
  2679. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2680. else:
  2681. if(admincheck() == 1):
  2682. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2683. row = curs.fetchall()
  2684. if(row):
  2685. if(row[0]['acl'] == 'admin'):
  2686. now = '관리자만'
  2687. elif(row[0]['acl'] == 'user'):
  2688. now = '유저 이상'
  2689. else:
  2690. now = '일반'
  2691. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 19, now = '현재 ACL 상태는 ' + now)
  2692. else:
  2693. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2694. else:
  2695. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2696. @app.route('/admin/<name>', methods=['POST', 'GET'])
  2697. def admin(name = None):
  2698. if(request.method == 'POST'):
  2699. if(session.get('Now') == True):
  2700. ip = getip(request)
  2701. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2702. rows = curs.fetchall()
  2703. if(rows):
  2704. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2705. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2706. row = curs.fetchall()
  2707. if(row):
  2708. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2709. curs.execute("update user set acl = 'user' where id = '" + pymysql.escape_string(name) + "'")
  2710. else:
  2711. curs.execute("update user set acl = '" + pymysql.escape_string(request.form["select"]) + "' where id = '" + pymysql.escape_string(name) + "'")
  2712. conn.commit()
  2713. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2714. else:
  2715. return '<meta http-equiv="refresh" content="0;url=/error/5" />'
  2716. else:
  2717. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2718. else:
  2719. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2720. else:
  2721. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2722. else:
  2723. if(session.get('Now') == True):
  2724. ip = getip(request)
  2725. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2726. rows = curs.fetchall()
  2727. if(rows):
  2728. if(rows[0]['acl'] == 'owner'):
  2729. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2730. row = curs.fetchall()
  2731. if(row):
  2732. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2733. now = '권한 해제'
  2734. else:
  2735. now = '권한 부여'
  2736. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 18, now = now)
  2737. else:
  2738. return '<meta http-equiv="refresh" content="0;url=/error/5" />'
  2739. else:
  2740. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2741. else:
  2742. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2743. else:
  2744. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2745. @app.route('/ban')
  2746. def aban():
  2747. ip = getip(request)
  2748. if(getban(ip) == 1):
  2749. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  2750. rows = curs.fetchall()
  2751. if(rows):
  2752. if(rows[0]['end']):
  2753. end = rows[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2754. now = getnow()
  2755. now = re.sub(':', '', now)
  2756. now = re.sub('\-', '', now)
  2757. now = re.sub(' ', '', now)
  2758. now = int(now)
  2759. day = rows[0]['end']
  2760. day = re.sub('\-', '', day)
  2761. if(now >= int(day + '000000')):
  2762. curs.execute("delete from ban where block = '" + pymysql.escape_string(ip) + "'")
  2763. conn.commit()
  2764. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2765. else:
  2766. end = '영구 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2767. else:
  2768. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  2769. if(b):
  2770. results = b.groups()
  2771. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2772. row = curs.fetchall()
  2773. if(row):
  2774. if(row[0]['end']):
  2775. end = row[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2776. now = getnow()
  2777. now = re.sub(':', '', now)
  2778. now = re.sub('\-', '', now)
  2779. now = re.sub(' ', '', now)
  2780. now = int(now)
  2781. day = row[0]['end']
  2782. day = re.sub('\-', '', day)
  2783. if(now >= int(day + '000000')):
  2784. curs.execute("delete from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2785. conn.commit()
  2786. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2787. else:
  2788. end = '영구 차단 상태 입니다. / 사유 : ' + row[0]['why']
  2789. else:
  2790. end = '권한이 맞지 않는 상태 입니다.'
  2791. return render_template('index.html', title = '권한 오류', logo = data['name'], data = end), 401
  2792. @app.route('/w/<path:name>/r/<int:a>/diff/<int:b>')
  2793. def diff(name = None, a = None, b = None):
  2794. curs.execute("select * from history where id = '" + pymysql.escape_string(str(a)) + "' and title = '" + pymysql.escape_string(name) + "'")
  2795. rows = curs.fetchall()
  2796. if(rows):
  2797. curs.execute("select * from history where id = '" + pymysql.escape_string(str(b)) + "' and title = '" + pymysql.escape_string(name) + "'")
  2798. row = curs.fetchall()
  2799. if(row):
  2800. indata = re.sub('<', '&lt;', rows[0]['data'])
  2801. indata = re.sub('>', '&gt;', indata)
  2802. indata = re.sub('"', '&quot;', indata)
  2803. indata = re.sub('\n', '<br>', indata)
  2804. enddata = re.sub('<', '&lt;', row[0]['data'])
  2805. enddata = re.sub('>', '&gt;', enddata)
  2806. enddata = re.sub('"', '&quot;', enddata)
  2807. enddata = re.sub('\n', '<br>', enddata)
  2808. sm = difflib.SequenceMatcher(None, indata, enddata)
  2809. c = show_diff(sm)
  2810. return render_template('index.html', title = name, logo = data['name'], data = c, plus = '(비교)')
  2811. else:
  2812. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  2813. else:
  2814. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  2815. @app.route('/user')
  2816. def user():
  2817. ip = getip(request)
  2818. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2819. rows = curs.fetchall()
  2820. if(getban(ip) == 0):
  2821. if(rows):
  2822. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  2823. if(rows[0]['acl'] == 'admin'):
  2824. acl = '관리자'
  2825. else:
  2826. acl = '소유자'
  2827. else:
  2828. acl = '유저'
  2829. else:
  2830. acl = '일반'
  2831. else:
  2832. acl = '차단'
  2833. return render_template('index.html', title = '유저 메뉴', logo = data['name'], data = ip + '<br><br><span>권한 상태 : ' + acl + '<br><br><li><a href="/login">로그인</a></li><li><a href="/logout">로그아웃</a></li><li><a href="/register">회원가입</a></li><li><a href="/change">비밀번호 변경</a></li>')
  2834. @app.route('/random')
  2835. def random():
  2836. curs.execute("select * from data order by rand() limit 1")
  2837. rows = curs.fetchall()
  2838. if(rows):
  2839. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(rows[0]['title']).replace('/','%2F') + '" />'
  2840. else:
  2841. return '<meta http-equiv="refresh" content="0;url=/" />'
  2842. @app.route('/error/<int:num>')
  2843. def error(num = None):
  2844. if(num == 1):
  2845. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.'), 401
  2846. elif(num == 2):
  2847. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '이 계정이 없습니다.'), 401
  2848. elif(num == 3):
  2849. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.'), 401
  2850. elif(num == 4):
  2851. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '관리자는 차단, 검사 할 수 없습니다.'), 401
  2852. elif(num == 5):
  2853. return render_template('index.html', title = '유저 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2854. elif(num == 6):
  2855. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '동일한 아이디의 유저가 있습니다.'), 401
  2856. elif(num == 7):
  2857. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '아이디는 20글자보다 짧아야 합니다.'), 401
  2858. elif(num == 8):
  2859. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '아이디에는 한글과 알파벳과 공백만 허용 됩니다.'), 401
  2860. elif(num == 9):
  2861. return render_template('index.html', title = '변경 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2862. elif(num == 10):
  2863. return render_template('index.html', title = '변경 오류', logo = data['name'], data = '비밀번호가 다릅니다.'), 401
  2864. elif(num == 11):
  2865. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '이미 로그인 되어 있습니다.'), 401
  2866. elif(num == 12):
  2867. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2868. elif(num == 13):
  2869. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '비밀번호가 다릅니다.'), 401
  2870. elif(num == 14):
  2871. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = 'jpg, gif, jpeg, png만 가능 합니다.'), 401
  2872. elif(num == 15):
  2873. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = '파일 명에 . / \ * < > | : ? 가 들어 갈 수 없습니다.'), 401
  2874. elif(num == 16):
  2875. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = '동일한 이름의 파일이 있습니다.'), 401
  2876. elif(num == 17):
  2877. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '편집 내용 기록에는 한글과 영어와 숫자, 공백만 허용 됩니다.'), 401
  2878. elif(num == 18):
  2879. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '내용이 원래 문서와 동일 합니다.'), 401
  2880. elif(num == 19):
  2881. return render_template('index.html', title = '이동 오류', logo = data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.'), 401
  2882. else:
  2883. return '<meta http-equiv="refresh" content="0;url=/" />'
  2884. @app.errorhandler(404)
  2885. def uncaughtError(error):
  2886. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2887. if __name__ == '__main__':
  2888. app.run(host = '0.0.0.0', port = int(data['port']), threaded = True)