app.py 170 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749175017511752175317541755175617571758175917601761176217631764176517661767176817691770177117721773177417751776177717781779178017811782178317841785178617871788178917901791179217931794179517961797179817991800180118021803180418051806180718081809181018111812181318141815181618171818181918201821182218231824182518261827182818291830183118321833183418351836183718381839184018411842184318441845184618471848184918501851185218531854185518561857185818591860186118621863186418651866186718681869187018711872187318741875187618771878187918801881188218831884188518861887188818891890189118921893189418951896189718981899190019011902190319041905190619071908190919101911191219131914191519161917191819191920192119221923192419251926192719281929193019311932193319341935193619371938193919401941194219431944194519461947194819491950195119521953195419551956195719581959196019611962196319641965196619671968196919701971197219731974197519761977197819791980198119821983198419851986198719881989199019911992199319941995199619971998199920002001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242025202620272028202920302031203220332034203520362037203820392040204120422043204420452046204720482049205020512052205320542055205620572058205920602061206220632064206520662067206820692070207120722073207420752076207720782079208020812082208320842085208620872088208920902091209220932094209520962097209820992100210121022103210421052106210721082109211021112112211321142115211621172118211921202121212221232124212521262127212821292130213121322133213421352136213721382139214021412142214321442145214621472148214921502151215221532154215521562157215821592160216121622163216421652166216721682169217021712172217321742175217621772178217921802181218221832184218521862187218821892190219121922193219421952196219721982199220022012202220322042205220622072208220922102211221222132214221522162217221822192220222122222223222422252226222722282229223022312232223322342235223622372238223922402241224222432244224522462247224822492250225122522253225422552256225722582259226022612262226322642265226622672268226922702271227222732274227522762277227822792280228122822283228422852286228722882289229022912292229322942295229622972298229923002301230223032304230523062307230823092310231123122313231423152316231723182319232023212322232323242325232623272328232923302331233223332334233523362337233823392340234123422343234423452346234723482349235023512352235323542355235623572358235923602361236223632364236523662367236823692370237123722373237423752376237723782379238023812382238323842385238623872388238923902391239223932394239523962397239823992400240124022403240424052406240724082409241024112412241324142415241624172418241924202421242224232424242524262427242824292430243124322433243424352436243724382439244024412442244324442445244624472448244924502451245224532454245524562457245824592460246124622463246424652466246724682469247024712472247324742475247624772478247924802481248224832484248524862487248824892490249124922493249424952496249724982499250025012502250325042505250625072508250925102511251225132514251525162517251825192520252125222523252425252526252725282529253025312532253325342535253625372538253925402541254225432544254525462547254825492550255125522553255425552556255725582559256025612562256325642565256625672568256925702571257225732574257525762577257825792580258125822583258425852586258725882589259025912592259325942595259625972598259926002601260226032604260526062607260826092610261126122613261426152616261726182619262026212622262326242625262626272628262926302631263226332634263526362637263826392640264126422643264426452646264726482649265026512652265326542655265626572658265926602661266226632664266526662667266826692670267126722673267426752676267726782679268026812682268326842685268626872688268926902691269226932694269526962697269826992700270127022703270427052706270727082709271027112712271327142715271627172718271927202721272227232724272527262727272827292730273127322733273427352736273727382739274027412742274327442745274627472748274927502751275227532754275527562757275827592760276127622763276427652766276727682769277027712772277327742775277627772778277927802781278227832784278527862787278827892790279127922793279427952796279727982799280028012802280328042805280628072808280928102811281228132814281528162817281828192820282128222823282428252826282728282829283028312832283328342835283628372838283928402841284228432844284528462847284828492850285128522853285428552856285728582859286028612862286328642865286628672868286928702871287228732874287528762877287828792880288128822883288428852886288728882889289028912892289328942895289628972898289929002901290229032904290529062907290829092910291129122913291429152916291729182919292029212922292329242925292629272928292929302931293229332934293529362937293829392940294129422943294429452946294729482949295029512952295329542955295629572958295929602961296229632964296529662967296829692970297129722973297429752976297729782979298029812982298329842985298629872988298929902991299229932994299529962997299829993000300130023003300430053006300730083009301030113012301330143015301630173018301930203021302230233024302530263027302830293030303130323033303430353036303730383039304030413042304330443045304630473048304930503051305230533054305530563057305830593060306130623063306430653066306730683069307030713072307330743075307630773078307930803081308230833084308530863087308830893090309130923093309430953096309730983099310031013102310331043105310631073108310931103111311231133114311531163117311831193120312131223123312431253126312731283129313031313132313331343135313631373138313931403141314231433144314531463147314831493150315131523153315431553156315731583159316031613162316331643165316631673168316931703171317231733174317531763177317831793180318131823183318431853186318731883189319031913192319331943195319631973198319932003201
  1. from flask import Flask, request, session, render_template, send_file
  2. app = Flask(__name__)
  3. from urllib import parse
  4. import json
  5. import pymysql
  6. import time
  7. import re
  8. import bcrypt
  9. import os
  10. import difflib
  11. json_data = open('set.json').read()
  12. data = json.loads(json_data)
  13. print('오픈나무 시작 포트 : ' + data['port'])
  14. import logging
  15. log = logging.getLogger('werkzeug')
  16. log.setLevel(logging.ERROR)
  17. app.config['MAX_CONTENT_LENGTH'] = int(data['upload']) * 1024 * 1024
  18. try:
  19. conn = pymysql.connect(host = data['host'], user = data['user'], password = data['pw'], db = data['db'], charset = 'utf8mb4')
  20. curs = conn.cursor(pymysql.cursors.DictCursor)
  21. try:
  22. curs.execute("select * from data limit 1")
  23. except:
  24. curs.execute("create table data(title text, data longtext, acl text)")
  25. try:
  26. curs.execute("select * from history limit 1")
  27. except:
  28. curs.execute("create table history(id text, title text, data longtext, date text, ip text, send text, leng text)")
  29. try:
  30. curs.execute("select * from rd limit 1")
  31. except:
  32. curs.execute("create table rd(title text, sub text, date text)")
  33. try:
  34. curs.execute("select * from user limit 1")
  35. except:
  36. curs.execute("create table user(id text, pw text, acl text)")
  37. try:
  38. curs.execute("select * from ban limit 1")
  39. except:
  40. curs.execute("create table ban(block text, end text, why text, band text)")
  41. try:
  42. curs.execute("select * from topic limit 1")
  43. except:
  44. curs.execute("create table topic(id text, title text, sub text, data longtext, date text, ip text, block text)")
  45. try:
  46. curs.execute("select * from stop limit 1")
  47. except:
  48. curs.execute("create table stop(title text, sub text, close text)")
  49. try:
  50. curs.execute("select * from rb limit 1")
  51. except:
  52. curs.execute("create table rb(block text, end text, today text, blocker text, why text)")
  53. try:
  54. curs.execute("select * from login limit 1")
  55. except:
  56. curs.execute("create table login(user text, ip text, today text)")
  57. try:
  58. curs.execute("select * from back limit 1")
  59. except:
  60. curs.execute("create table back(title text, link text, type text)")
  61. try:
  62. curs.execute("select * from cat limit 1")
  63. except:
  64. curs.execute("create table cat(title text, cat text)")
  65. except:
  66. conn = pymysql.connect(host = data['host'], user = data['user'], password = data['pw'], charset = 'utf8mb4')
  67. curs = conn.cursor(pymysql.cursors.DictCursor)
  68. curs.execute("create database " + data['db'])
  69. curs.execute("alter database " + data['db'] + " character set = utf8mb4 collate = utf8mb4_unicode_ci")
  70. curs.execute("use " + data['db'])
  71. try:
  72. curs.execute("select * from data limit 1")
  73. except:
  74. curs.execute("create table data(title text, data longtext, acl text)")
  75. try:
  76. curs.execute("select * from history limit 1")
  77. except:
  78. curs.execute("create table history(id text, title text, data longtext, date text, ip text, send text, leng text)")
  79. try:
  80. curs.execute("select * from rd limit 1")
  81. except:
  82. curs.execute("create table rd(title text, sub text, date text)")
  83. try:
  84. curs.execute("select * from user limit 1")
  85. except:
  86. curs.execute("create table user(id text, pw text, acl text)")
  87. try:
  88. curs.execute("select * from ban limit 1")
  89. except:
  90. curs.execute("create table ban(block text, end text, why text, band text)")
  91. try:
  92. curs.execute("select * from topic limit 1")
  93. except:
  94. curs.execute("create table topic(id text, title text, sub text, data longtext, date text, ip text, block text)")
  95. try:
  96. curs.execute("select * from stop limit 1")
  97. except:
  98. curs.execute("create table stop(title text, sub text, close text)")
  99. try:
  100. curs.execute("select * from rb limit 1")
  101. except:
  102. curs.execute("create table rb(block text, end text, today text, blocker text, why text)")
  103. try:
  104. curs.execute("select * from login limit 1")
  105. except:
  106. curs.execute("create table login(user text, ip text, today text)")
  107. try:
  108. curs.execute("select * from back limit 1")
  109. except:
  110. curs.execute("create table back(title text, link text, type text)")
  111. try:
  112. curs.execute("select * from cat limit 1")
  113. except:
  114. curs.execute("create table cat(title text, cat text)")
  115. app.secret_key = data['key']
  116. ALLOWED_EXTENSIONS = set(['png', 'jpg', 'jpeg', 'gif'])
  117. def show_diff(seqm):
  118. output= []
  119. for opcode, a0, a1, b0, b1 in seqm.get_opcodes():
  120. if(opcode == 'equal'):
  121. output.append(seqm.a[a0:a1])
  122. elif(opcode == 'insert'):
  123. output.append("<span style='background:#CFC;'>" + seqm.b[b0:b1] + "</span>")
  124. elif(opcode == 'delete'):
  125. output.append("<span style='background:#FDD;'>" + seqm.a[a0:a1] + "</span>")
  126. return ''.join(output)
  127. def allowed_file(filename):
  128. return '.' in filename and \
  129. filename.rsplit('.', 1)[1] in ALLOWED_EXTENSIONS
  130. def admincheck():
  131. if(session.get('Now') == True):
  132. ip = getip(request)
  133. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  134. rows = curs.fetchall()
  135. if(rows):
  136. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  137. return 1
  138. def namumark(title, data):
  139. data = re.sub('<', '&lt;', data)
  140. data = re.sub('>', '&gt;', data)
  141. data = re.sub('"', '&quot;', data)
  142. jjjj = 0
  143. while True:
  144. p = re.compile("{{{((?:(?!{{{)(?!}}}).)*)}}}", re.DOTALL)
  145. m = p.search(data)
  146. if(m):
  147. results = m.groups()
  148. q = re.compile("^\+([1-5])\s(.*)$", re.DOTALL)
  149. n = q.search(results[0])
  150. w = re.compile("^\-([1-5])\s(.*)$", re.DOTALL)
  151. a = w.search(results[0])
  152. e = re.compile("^(#[0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  153. b = e.search(results[0])
  154. r = re.compile("^(#[0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  155. c = r.search(results[0])
  156. t = re.compile("^#(\w+)\s(.*)$", re.DOTALL)
  157. d = t.search(results[0])
  158. qqq = re.compile("^@([0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  159. qqe = qqq.search(results[0])
  160. qqw = re.compile("^@([0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  161. qqa = qqw.search(results[0])
  162. qwe = re.compile("^@(\w+)\s(.*)$", re.DOTALL)
  163. qsd = qwe.search(results[0])
  164. qawe = re.compile("^#!noin\s(.*)$", re.DOTALL)
  165. qasd = qawe.search(results[0])
  166. y = re.compile("^#!wiki\sstyle=&quot;((?:(?!&quot;|\n).)*)&quot;\n?\s\n(.*)$", re.DOTALL)
  167. l = y.search(results[0])
  168. ppp = re.compile("^#!folding\s((?:(?!\n).)*)\n?\s\n(.*)$", re.DOTALL)
  169. ooo = ppp.search(results[0])
  170. if(n):
  171. result = n.groups()
  172. data = p.sub('<span class="font-size-' + result[0] + '">' + result[1] + '</span>', data, 1)
  173. elif(a):
  174. result = a.groups()
  175. data = p.sub('<span class="font-size-small-' + result[0] + '">' + result[1] + '</span>', data, 1)
  176. elif(b):
  177. result = b.groups()
  178. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  179. elif(c):
  180. result = c.groups()
  181. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  182. elif(d):
  183. result = d.groups()
  184. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  185. elif(qqe):
  186. result = qqe.groups()
  187. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  188. elif(qqa):
  189. result = qqa.groups()
  190. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  191. elif(qsd):
  192. result = qsd.groups()
  193. data = p.sub('<span style="background:' + result[0] + '">' + result[1] + '</span>', data, 1)
  194. elif(l):
  195. result = l.groups()
  196. data = p.sub('<div style="' + result[0] + '">' + result[1] + '</div>', data, 1)
  197. elif(ooo):
  198. result = ooo.groups()
  199. data = p.sub("<div>" + result[0] + "<span style='float:right;'><div id='folding_" + str(jjjj + 1) + "' style='display:block;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>펼치기</a>]</div><div id='folding_" + str(jjjj + 2) + "' style='display:none;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>접기</a>]</div></a></span><div id='folding_" + str(jjjj) + "' style='display:none;'><br>" + result[1] + "</div></div>", data, 1)
  200. jjjj = jjjj + 3
  201. elif(qasd):
  202. result = qasd.groups()
  203. data = p.sub(result[0], data, 1)
  204. else:
  205. data = p.sub('<code>' + results[0] + '</code>', data, 1)
  206. else:
  207. break
  208. while True:
  209. a = re.compile("<code>(((?!<\/code>).)*)<\/code>", re.DOTALL)
  210. m = a.search(data)
  211. if(m):
  212. g = m.groups()
  213. j = re.sub("<\/span>", "}}}", g[0])
  214. j = re.sub("<\/div>", "}}}", j)
  215. j = re.sub('<span class="font\-size\-(?P<in>[1-6])">', "{{{+\g<in> ", j)
  216. j = re.sub('<span class="font\-size\-small\-(?P<in>[1-6])">', "{{{-\g<in> ", j)
  217. j = re.sub('<span style="color:(?:#)?(?P<in>[^"]*)">', "{{{#\g<in> ", j)
  218. j = re.sub('<span style="background:(?:#)?(?P<in>[^"]*)">', "{{{@\g<in> ", j)
  219. j = re.sub('<div style="(?P<in>[^"]*)">', "{{{#!wiki style=&quot;\g<in>&quot;\n", j)
  220. j = re.sub("(?P<in>.)", "<span>\g<in></span>", j)
  221. data = a.sub(j, data, 1)
  222. else:
  223. break
  224. data = re.sub("<span>&</span><span>l</span><span>t</span><span>;</span>", "<span>&lt;</span>", data)
  225. data = re.sub("<span>&</span><span>g</span><span>t</span><span>;</span>", "<span>&gt;</span>", data)
  226. data = re.sub("\[anchor\((?P<in>[^\[\]]*)\)\]", '<span id="\g<in>"></span>', data)
  227. data = re.sub('\[date\(now\)\]', getnow(), data)
  228. while True:
  229. m = re.search("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", data)
  230. if(m):
  231. results = m.groups()
  232. if(results[0] == title):
  233. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "<b>" + results[0] + "</b>", data, 1)
  234. else:
  235. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  236. rows = curs.fetchall()
  237. if(rows):
  238. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'include'")
  239. abb = curs.fetchall()
  240. if(not abb):
  241. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', 'include')")
  242. conn.commit()
  243. enddata = rows[0]['data']
  244. enddata = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "", enddata)
  245. enddata = re.sub('<', '&lt;', enddata)
  246. enddata = re.sub('>', '&gt;', enddata)
  247. enddata = re.sub('"', '&quot;', enddata)
  248. while True:
  249. p = re.compile("{{{((?:(?!{)(?!}).)*)}}}", re.DOTALL)
  250. m = p.search(enddata)
  251. if(m):
  252. nnn = m.groups()
  253. q = re.compile("^\+([1-5])\s(.*)$", re.DOTALL)
  254. n = q.search(nnn[0])
  255. w = re.compile("^\-([1-5])\s(.*)$", re.DOTALL)
  256. a = w.search(nnn[0])
  257. e = re.compile("^(#[0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  258. b = e.search(nnn[0])
  259. r = re.compile("^(#[0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  260. c = r.search(nnn[0])
  261. t = re.compile("^#(\w+)\s(.*)$", re.DOTALL)
  262. d = t.search(nnn[0])
  263. qqq = re.compile("^@([0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  264. qqe = qqq.search(nnn[0])
  265. qqw = re.compile("^@([0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  266. qqa = qqw.search(nnn[0])
  267. qwe = re.compile("^@(\w+)\s(.*)$", re.DOTALL)
  268. qsd = qwe.search(nnn[0])
  269. qawe = re.compile("^#!noin\s(.*)$", re.DOTALL)
  270. qasd = qawe.search(nnn[0])
  271. y = re.compile("^#!wiki\sstyle=&quot;((?:(?!&quot;|\n).)*)&quot;\n?\s\n(.*)$", re.DOTALL)
  272. l = y.search(nnn[0])
  273. ppp = re.compile("^#!folding\s((?:(?!\n).)*)\n?\s\n(.*)$", re.DOTALL)
  274. ooo = ppp.search(nnn[0])
  275. if(n):
  276. result = n.groups()
  277. enddata = p.sub('<span class="font-size-' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  278. elif(a):
  279. result = a.groups()
  280. enddata = p.sub('<span class="font-size-small-' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  281. elif(b):
  282. result = b.groups()
  283. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  284. elif(c):
  285. result = c.groups()
  286. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  287. elif(d):
  288. result = d.groups()
  289. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  290. elif(qqe):
  291. result = qqe.groups()
  292. enddata = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  293. elif(qqa):
  294. result = qqa.groups()
  295. enddata = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  296. elif(qsd):
  297. result = qsd.groups()
  298. enddata = p.sub('<span style="background:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  299. elif(l):
  300. result = l.groups()
  301. enddata = p.sub('<div style="' + result[0] + '">' + result[1] + '</div>', enddata, 1)
  302. elif(ooo):
  303. result = ooo.groups()
  304. enddata = p.sub("<div>" + result[0] + "<span style='float:right;'><div id='folding_" + str(jjjj + 1) + "' style='display:block;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>펼치기</a>]</div><div id='folding_" + str(jjjj + 2) + "' style='display:none;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>접기</a>]</div></a></span><div id='folding_" + str(jjjj) + "' style='display:none;'><br>" + result[1] + "</div></div>", enddata, 1)
  305. jjjj = jjjj + 3
  306. elif(qasd):
  307. enddata = p.sub("", enddata, 1)
  308. else:
  309. enddata = p.sub('<code>' + nnn[0] + '</code>', enddata, 1)
  310. else:
  311. break
  312. while True:
  313. a = re.compile("<code>(((?!<\/code>).)*)<\/code>", re.DOTALL)
  314. m = a.search(enddata)
  315. if(m):
  316. g = m.groups()
  317. j = re.sub("<\/span>", "}}}", g[0])
  318. j = re.sub("<\/div>", "}}}", j)
  319. j = re.sub('<span class="font\-size\-(?P<in>[1-6])">', "{{{+\g<in> ", j)
  320. j = re.sub('<span class="font\-size\-small\-(?P<in>[1-6])">', "{{{-\g<in> ", j)
  321. j = re.sub('<span style="color:(?:#)?(?P<in>[^"]*)">', "{{{#\g<in> ", j)
  322. j = re.sub('<span style="background:(?:#)?(?P<in>[^"]*)">', "{{{@\g<in> ", j)
  323. j = re.sub('<div style="(?P<in>[^"]*)">', "{{{#!wiki style=&quot;\g<in>&quot;\n", j)
  324. j = re.sub("(?P<in>.)", "<span>\g<in></span>", j)
  325. enddata = a.sub(j, enddata, 1)
  326. else:
  327. break
  328. enddata = re.sub("<span>&</span><span>l</span><span>t</span><span>;</span>", "<span>&lt;</span>", enddata)
  329. enddata = re.sub("<span>&</span><span>g</span><span>t</span><span>;</span>", "<span>&gt;</span>", enddata)
  330. if(results[1]):
  331. a = results[1]
  332. while True:
  333. g = re.search("([^= ,]*)\=([^,]*)", a)
  334. if(g):
  335. result = g.groups()
  336. enddata = re.sub("@" + result[0] + "@", result[1], enddata)
  337. a = re.sub("([^= ,]*)\=([^,]*)", "", a, 1)
  338. else:
  339. break
  340. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", '<div>' + enddata + '</div>\n', data, 1)
  341. else:
  342. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "[[" + results[0] + "]]", data, 1)
  343. else:
  344. break
  345. while True:
  346. m = re.search('^#(?:redirect|넘겨주기)\s([^\n]*)', data)
  347. if(m):
  348. results = m.groups()
  349. aa = re.search("^(.*)(#(?:.*))$", results[0])
  350. if(aa):
  351. results = aa.groups()
  352. data = re.sub('^#(?:redirect|넘겨주기)\s([^\n]*)', '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(results[0]).replace('/','%2F') + '/from/' + parse.quote(title).replace('/','%2F') + results[1] + '" />', data, 1)
  353. else:
  354. data = re.sub('^#(?:redirect|넘겨주기)\s([^\n]*)', '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(results[0]).replace('/','%2F') + '/from/' + parse.quote(title).replace('/','%2F') + '" />', data, 1)
  355. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'redirect'")
  356. abb = curs.fetchall()
  357. if(not abb):
  358. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', 'redirect')")
  359. conn.commit()
  360. else:
  361. break
  362. data = '\n' + data + '\n'
  363. while True:
  364. m = re.search("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", data)
  365. if(m):
  366. result = m.groups()
  367. blockquote = result[0]
  368. blockquote = re.sub("\n&gt;\s?", "\n", blockquote)
  369. data = re.sub("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", "\n<blockquote>" + blockquote + "</blockquote>", data, 1)
  370. else:
  371. break
  372. m = re.search('\[목차\]', data)
  373. if(not m):
  374. data = re.sub("(?P<in>(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n)", "[목차]\n\g<in>", data, 1)
  375. i = 0
  376. h0c = 0
  377. h1c = 0
  378. h2c = 0
  379. h3c = 0
  380. h4c = 0
  381. h5c = 0
  382. last = 0
  383. rtoc = '<div id="toc"><span id="toc-name">목차</span><br><br>'
  384. while True:
  385. i = i + 1
  386. m = re.search('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', data)
  387. if(m):
  388. result = m.groups()
  389. wiki = len(result[0])
  390. if(last < wiki):
  391. last = wiki
  392. else:
  393. last = wiki;
  394. if(wiki == 1):
  395. h1c = 0
  396. h2c = 0
  397. h3c = 0
  398. h4c = 0
  399. h5c = 0
  400. elif(wiki == 2):
  401. h2c = 0
  402. h3c = 0
  403. h4c = 0
  404. h5c = 0
  405. elif(wiki == 3):
  406. h3c = 0
  407. h4c = 0
  408. h5c = 0
  409. elif(wiki == 4):
  410. h4c = 0
  411. h5c = 0
  412. elif(wiki == 5):
  413. h5c = 0
  414. if(wiki == 1):
  415. h0c = h0c + 1
  416. elif(wiki == 2):
  417. h1c = h1c + 1
  418. elif(wiki == 3):
  419. h2c = h2c + 1
  420. elif(wiki == 4):
  421. h3c = h3c + 1
  422. elif(wiki == 5):
  423. h4c = h4c + 1
  424. else:
  425. h5c = h5c + 1
  426. toc = str(h0c) + '.' + str(h1c) + '.' + str(h2c) + '.' + str(h3c) + '.' + str(h4c) + '.' + str(h5c) + '.'
  427. toc = re.sub("(?P<in>[0-9]0(?:[0]*)?)\.", '\g<in>#.', toc)
  428. toc = re.sub("0\.", '', toc)
  429. toc = re.sub("#\.", '.', toc)
  430. toc = re.sub("\.$", '', toc)
  431. rtoc = rtoc + '<a href="#s-' + toc + '">' + toc + '</a>. ' + result[1] + '<br>'
  432. c = re.sub(" $", "", result[1])
  433. data = re.sub('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', '<h' + str(wiki) + ' id="' + c + '"><a href="#toc" id="s-' + toc + '">' + toc + '.</a> ' + c + ' <span style="font-size:11px;">[<a href="/edit/' + parse.quote(title).replace('/','%2F') + '/section/' + str(i) + '">편집</a>]</span></h' + str(wiki) + '>', data, 1);
  434. else:
  435. rtoc = rtoc + '</div>'
  436. break
  437. data = re.sub("\[목차\]", rtoc, data)
  438. category = ''
  439. while True:
  440. m = re.search("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", data)
  441. if(m):
  442. g = m.groups()
  443. if(not title == g[0]):
  444. curs.execute("select * from cat where title = '" + pymysql.escape_string(g[0]) + "' and cat = '" + pymysql.escape_string(title) + "'")
  445. abb = curs.fetchall()
  446. if(not abb):
  447. curs.execute("insert into cat (title, cat) value ('" + pymysql.escape_string(g[0]) + "', '" + pymysql.escape_string(title) + "')")
  448. conn.commit()
  449. if(category == ''):
  450. category = category + '<a href="/w/' + parse.quote(g[0]).replace('/','%2F') + '">' + re.sub("분류:", "", g[0]) + '</a>'
  451. else:
  452. category = category + ' / ' + '<a href="/w/' + parse.quote(g[0]).replace('/','%2F') + '">' + re.sub("분류:", "", g[0]) + '</a>'
  453. data = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", '', data, 1)
  454. else:
  455. break
  456. data = re.sub("'''(?P<in>.+?)'''(?!')", '<b>\g<in></b>', data)
  457. data = re.sub("''(?P<in>.+?)''(?!')", '<i>\g<in></i>', data)
  458. data = re.sub('~~(?P<in>.+?)~~(?!~)', '<s>\g<in></s>', data)
  459. data = re.sub('--(?P<in>.+?)--(?!-)', '<s>\g<in></s>', data)
  460. data = re.sub('__(?P<in>.+?)__(?!_)', '<u>\g<in></u>', data)
  461. data = re.sub('\^\^(?P<in>.+?)\^\^(?!\^)', '<sup>\g<in></sup>', data)
  462. data = re.sub(',,(?P<in>.+?),,(?!,)', '<sub>\g<in></sub>', data)
  463. data = re.sub('&lt;math&gt;(?P<in>((?!&lt;math&gt;).)*)&lt;\/math&gt;', '$\g<in>$', data)
  464. data = re.sub('{{\|(?P<in>(?:(?:(?:(?!\|}}).)*)(?:\n?))+)\|}}', '<table><tbody><tr><td>\g<in></td></tr></tbody></table>', data)
  465. data = re.sub('\[ruby\((?P<in>[^\|]*)\|(?P<out>[^\)]*)\)\]', '<ruby>\g<in><rp>(</rp><rt>\g<out></rt><rp>)</rp></ruby>', data)
  466. data = re.sub("##\s?(?P<in>[^\n]*)\n", "<div style='display:none;'>\g<in></div>", data);
  467. while True:
  468. m = re.search("\[\[파일:((?:(?!\]\]|\|).)*)(?:\|((?:(?!\]\]).)*))?\]\]", data)
  469. if(m):
  470. c = m.groups()
  471. if(c[1]):
  472. n = re.search("width=([^ \n&]*)", c[1])
  473. e = re.search("height=([^ \n&]*)", c[1])
  474. if(n):
  475. a = n.groups()
  476. width = a[0]
  477. else:
  478. width = ''
  479. if(e):
  480. b = e.groups()
  481. height = b[0]
  482. else:
  483. height = ''
  484. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  485. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", '<a href="/w/파일:' + img + '"><img src="/image/' + img + '" width="' + width + '" height="' + height + '"></a>', data, 1)
  486. else:
  487. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  488. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", "<a href='/w/파일:" + img + "'><img src='/image/" + img + "'></a>", data, 1)
  489. if(not re.search("^파일:([^\n]*)", title)):
  490. curs.execute("select * from back where title = '" + pymysql.escape_string(c[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'redirect'")
  491. abb = curs.fetchall()
  492. if(not abb):
  493. curs.execute("insert into back (title, link, type) value ('파일:" + pymysql.escape_string(c[0]) + "', '" + pymysql.escape_string(title) + "', 'file')")
  494. conn.commit()
  495. else:
  496. break
  497. data = re.sub("\[br\]",'<br>', data);
  498. while True:
  499. m = re.search("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", data)
  500. if(m):
  501. result = m.groups()
  502. if(result[1]):
  503. if(result[2]):
  504. width = result[1]
  505. height = result[2]
  506. else:
  507. width = result[1]
  508. height = '315'
  509. elif(result[2]):
  510. if(result[3]):
  511. height = result[2]
  512. width = result[3]
  513. else:
  514. height = result[2]
  515. width = '560'
  516. else:
  517. width = '560'
  518. height = '315'
  519. data = re.sub("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", '<iframe width="' + width + '" height="' + height + '" src="https://www.youtube.com/embed/' + result[0] + '" frameborder="0" allowfullscreen></iframe>', data, 1)
  520. else:
  521. break
  522. data = re.sub("\[\[(?::(?P<in>(?:분류|파일):(?:(?:(?!\]\]).)*)))\]\]", "[[\g<in>]]", data)
  523. while True:
  524. m = re.search("\[\[(((?!\]\]).)*)\]\]", data)
  525. if(m):
  526. result = m.groups()
  527. a = re.search("((?:(?!\|).)*)\|(.*)", result[0])
  528. if(a):
  529. results = a.groups()
  530. aa = re.search("^(.*)(#(?:.*))$", results[0])
  531. if(aa):
  532. g = results[1]
  533. results = aa.groups()
  534. b = re.search("^http(?:s)?:\/\/", results[0])
  535. if(b):
  536. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + results[0] + results[1] + '">' + g + '</a>', data, 1)
  537. else:
  538. if(results[0] == title):
  539. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + g + '</b>', data, 1)
  540. else:
  541. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  542. rows = curs.fetchall()
  543. if(rows):
  544. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + results[1] + '" href="/w/' + parse.quote(results[0]).replace('/','%2F') + results[1] + '">' + g + '</a>', data, 1)
  545. else:
  546. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + results[1] + '" class="not_thing" href="/w/' + parse.quote(results[0]).replace('/','%2F') + results[1] + '">' + g + '</a>', data, 1)
  547. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  548. rows = curs.fetchall()
  549. if(not rows):
  550. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  551. conn.commit()
  552. else:
  553. b = re.search("^http(?:s)?:\/\/", results[0])
  554. if(b):
  555. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", results[0])
  556. if(c):
  557. img = results[0]
  558. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  559. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + results[1] + '</a>', data, 1)
  560. else:
  561. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + results[0] + '">' + results[1] + '</a>', data, 1)
  562. else:
  563. if(results[0] == title):
  564. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + results[1] + '</b>', data, 1)
  565. else:
  566. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  567. rows = curs.fetchall()
  568. if(rows):
  569. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[1] + '</a>', data, 1)
  570. else:
  571. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" class="not_thing" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[1] + '</a>', data, 1)
  572. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  573. rows = curs.fetchall()
  574. if(not rows):
  575. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  576. conn.commit()
  577. else:
  578. aa = re.search("^(.*)(#(?:.*))$", result[0])
  579. if(aa):
  580. result = aa.groups()
  581. b = re.search("^http(?:s)?:\/\/", result[0])
  582. if(b):
  583. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + result[0] + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  584. else:
  585. if(result[0] == title):
  586. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + result[0] + result[1] + '</b>', data, 1)
  587. else:
  588. curs.execute("select * from data where title = '" + pymysql.escape_string(result[0]) + "'")
  589. rows = curs.fetchall()
  590. if(rows):
  591. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a href="/w/' + parse.quote(result[0]).replace('/','%2F') + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  592. else:
  593. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="not_thing" href="/w/' + parse.quote(result[0]).replace('/','%2F') + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  594. curs.execute("select * from back where title = '" + pymysql.escape_string(result[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  595. rows = curs.fetchall()
  596. if(not rows):
  597. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(result[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  598. conn.commit()
  599. else:
  600. b = re.search("^http(?:s)?:\/\/", result[0])
  601. if(b):
  602. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", result[0])
  603. if(c):
  604. img = result[0]
  605. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  606. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + img + '</a>', data, 1)
  607. else:
  608. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + result[0] + '">' + result[0] + '</a>', data, 1)
  609. else:
  610. if(result[0] == title):
  611. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + result[0] + '</b>', data, 1)
  612. else:
  613. curs.execute("select * from data where title = '" + pymysql.escape_string(result[0]) + "'")
  614. rows = curs.fetchall()
  615. if(rows):
  616. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  617. else:
  618. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="not_thing" href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  619. curs.execute("select * from back where title = '" + pymysql.escape_string(result[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  620. rows = curs.fetchall()
  621. if(not rows):
  622. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(result[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  623. conn.commit()
  624. else:
  625. break
  626. while True:
  627. m = re.search("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px|%)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px|%)?))?(?:(?:&)width=((?:[0-9]*)(?:px|%)?))?)?", data)
  628. if(m):
  629. result = m.groups()
  630. if(result[1]):
  631. if(result[2]):
  632. width = result[1]
  633. height = result[2]
  634. else:
  635. width = result[1]
  636. height = ''
  637. elif(result[2]):
  638. if(result[3]):
  639. height = result[2]
  640. width = result[3]
  641. else:
  642. height = result[2]
  643. width = ''
  644. else:
  645. width = ''
  646. height = ''
  647. c = result[0]
  648. c = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c)
  649. data = re.sub("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px)?))?(?:(?:&)width=((?:[0-9]*)(?:px)?))?)?", "<img width='" + width + "' height='" + height + "' src='" + c + "'>", data, 1)
  650. else:
  651. break
  652. while True:
  653. m = re.search("((?:(?:\s\*\s[^\n]*)\n?)+)", data)
  654. if(m):
  655. result = m.groups()
  656. end = str(result[0])
  657. end = re.sub("\s\*\s(?P<in>[^\n]*)", "<li>\g<in></li>", end)
  658. end = re.sub("\n", '', end)
  659. data = re.sub("((?:(?:\s\*\s[^\n]*)\n?)+)", '<ul id="list">' + end + '</ul>', data, 1)
  660. else:
  661. break
  662. data = re.sub('\[date\]', getnow(), data)
  663. data = re.sub("#(?P<in>jpg|png|gif|jpeg)#", ".\g<in>", data)
  664. data = re.sub("-{4,11}", "<hr>", data)
  665. while True:
  666. b = re.search("\r\n( +)", data)
  667. if(b):
  668. result = b.groups()
  669. tp = len(result[0])
  670. up = ''
  671. i = 0
  672. while True:
  673. up = up + '<span id="in"></span>'
  674. i = i + 1
  675. if(i == tp):
  676. break
  677. data = re.sub("\r\n( +)", '<br>' + up, data, 1)
  678. else:
  679. break
  680. a = 1
  681. tou = "<hr id='footnote'><div class='wiki-macro-footnote'><br>"
  682. while True:
  683. b = re.search("\[\*([^\s]*)\s(((?!\]).)*)\]", data)
  684. if(b):
  685. results = b.groups()
  686. if(results[0]):
  687. c = results[1]
  688. c = re.sub("<(?:[^>]*)>", '', c)
  689. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + results[0] + "]</a> " + results[1] + "</span><br>"
  690. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", "<sup><a class=\"footnotes\" title=\"" + c + "\" id=\"rfn-" + str(a) + "\" href=\"#fn-" + str(a) + "\">[" + results[0] + "]</a></sup>", data, 1)
  691. else:
  692. c = results[1]
  693. c = re.sub("<(?:[^>]*)>", '', c)
  694. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + str(a) + "]</a> " + results[1] + "</span><br>"
  695. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", '<sup><a class="footnotes" title="' + c + '" id="rfn-' + str(a) + '" href="#fn-' + str(a) + '">[' + str(a) + ']</a></sup>', data, 1)
  696. a = a + 1
  697. else:
  698. tou = tou + '</div>'
  699. if(tou == "<hr id='footnote'><div class='wiki-macro-footnote'><br></div>"):
  700. tou = ""
  701. break
  702. data = re.sub("\[각주\](?:(?:<br>| |\r|\n)+)?$", "", data)
  703. data = re.sub("\[각주\]", "<br>" + tou, data)
  704. data = data + tou
  705. if(category):
  706. data = data + '<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류: ' + category + '</div>'
  707. while True:
  708. m = re.search("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", data)
  709. if(m):
  710. results = m.groups()
  711. table = results[0]
  712. while True:
  713. a = re.search("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  714. if(a):
  715. row = ''
  716. cel = ''
  717. celstyle = ''
  718. rowstyle = ''
  719. alltable = ''
  720. result = a.groups()
  721. if(result[1]):
  722. q = re.search("&lt;table\s?width=((?:(?!&gt;).)*)&gt;", result[1])
  723. w = re.search("&lt;table\s?height=((?:(?!&gt;).)*)&gt;", result[1])
  724. e = re.search("&lt;table\s?align=((?:(?!&gt;).)*)&gt;", result[1])
  725. alltable = 'style="'
  726. celstyle = 'style="'
  727. rowstyle = 'style="'
  728. if(q):
  729. resultss = q.groups()
  730. alltable = alltable + 'width:' + resultss[0] + ';'
  731. if(w):
  732. resultss = w.groups()
  733. alltable = alltable + 'height:' + resultss[0] + ';'
  734. if(e):
  735. resultss = e.groups()
  736. if(resultss[0] == 'right'):
  737. alltable = alltable + 'margin-left:auto;'
  738. elif(resultss[0] == 'center'):
  739. alltable = alltable + 'margin:auto;'
  740. else:
  741. alltable = alltable + 'margin-right:auto;'
  742. ee = re.search("&lt;table\s?textalign=((?:(?!&gt;).)*)&gt;", result[1])
  743. if(ee):
  744. resultss = ee.groups()
  745. if(resultss[0] == 'right'):
  746. alltable = alltable + 'text-align:right;'
  747. elif(resultss[0] == 'center'):
  748. alltable = alltable + 'text-align:center;'
  749. else:
  750. alltable = alltable + 'text-align:left;'
  751. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  752. if(r):
  753. resultss = r.groups()
  754. cel = 'colspan="' + resultss[0] + '"'
  755. else:
  756. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  757. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  758. if(t):
  759. resultss = t.groups()
  760. row = 'rowspan="' + resultss[0] + '"'
  761. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  762. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  763. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  764. if(ba):
  765. resultss = ba.groups()
  766. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  767. elif(bb):
  768. resultss = bb.groups()
  769. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  770. elif(bc):
  771. resultss = bc.groups()
  772. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  773. z = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  774. x = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  775. c = re.search("&lt;table\s?bordercolor=(\w+)&gt;", result[1])
  776. if(z):
  777. resultss = z.groups()
  778. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  779. elif(x):
  780. resultss = x.groups()
  781. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  782. elif(c):
  783. resultss = c.groups()
  784. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  785. aq = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  786. aw = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  787. ae = re.search("&lt;table\s?bgcolor=(\w+)&gt;", result[1])
  788. if(aq):
  789. resultss = aq.groups()
  790. alltable = alltable + 'background:' + resultss[0] + ';'
  791. elif(aw):
  792. resultss = aw.groups()
  793. alltable = alltable + 'background:' + resultss[0] + ';'
  794. elif(ae):
  795. resultss = ae.groups()
  796. alltable = alltable + 'background:' + resultss[0] + ';'
  797. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  798. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  799. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  800. if(j):
  801. resultss = j.groups()
  802. celstyle = celstyle + 'background:' + resultss[0] + ';'
  803. elif(k):
  804. resultss = k.groups()
  805. celstyle = celstyle + 'background:' + resultss[0] + ';'
  806. elif(l):
  807. resultss = l.groups()
  808. celstyle = celstyle + 'background:' + resultss[0] + ';'
  809. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  810. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  811. ac = re.search("&lt;(\w+)&gt;", result[1])
  812. if(aa):
  813. resultss = aa.groups()
  814. celstyle = celstyle + 'background:' + resultss[0] + ';'
  815. elif(ab):
  816. resultss = ab.groups()
  817. celstyle = celstyle + 'background:' + resultss[0] + ';'
  818. elif(ac):
  819. resultss = ac.groups()
  820. celstyle = celstyle + 'background:' + resultss[0] + ';'
  821. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  822. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  823. if(qa):
  824. resultss = qa.groups()
  825. celstyle = celstyle + 'width:' + resultss[0] + ';'
  826. if(qb):
  827. resultss = qb.groups()
  828. celstyle = celstyle + 'height:' + resultss[0] + ';'
  829. i = re.search("&lt;\)&gt;", result[1])
  830. o = re.search("&lt;:&gt;", result[1])
  831. p = re.search("&lt;\(&gt;", result[1])
  832. if(i):
  833. celstyle = celstyle + 'text-align:right;'
  834. elif(o):
  835. celstyle = celstyle + 'text-align:center;'
  836. elif(p):
  837. celstyle = celstyle + 'text-align:left;'
  838. alltable = alltable + '"'
  839. celstyle = celstyle + '"'
  840. rowstyle = rowstyle + '"'
  841. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table " + alltable + "><tbody><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  842. else:
  843. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  844. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table><tbody><tr><td " + cel + ">", table, 1)
  845. else:
  846. break
  847. table = re.sub("\|\|$", "</td></tr></tbody></table>", table)
  848. while True:
  849. b = re.search("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  850. if(b):
  851. row = ''
  852. cel = ''
  853. celstyle = ''
  854. rowstyle = ''
  855. result = b.groups()
  856. if(result[1]):
  857. celstyle = 'style="'
  858. rowstyle = 'style="'
  859. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  860. if(r):
  861. resultss = r.groups()
  862. cel = 'colspan="' + resultss[0] + '"'
  863. else:
  864. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  865. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  866. if(t):
  867. resultss = t.groups()
  868. row = 'rowspan="' + resultss[0] + '"'
  869. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  870. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  871. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  872. if(ba):
  873. resultss = ba.groups()
  874. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  875. elif(bb):
  876. resultss = bb.groups()
  877. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  878. elif(bc):
  879. resultss = bc.groups()
  880. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  881. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  882. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  883. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  884. if(j):
  885. resultss = j.groups()
  886. celstyle = celstyle + 'background:' + resultss[0] + ';'
  887. elif(k):
  888. resultss = k.groups()
  889. celstyle = celstyle + 'background:' + resultss[0] + ';'
  890. elif(l):
  891. resultss = l.groups()
  892. celstyle = celstyle + 'background:' + resultss[0] + ';'
  893. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  894. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  895. ac = re.search("&lt;(\w+)&gt;", result[1])
  896. if(aa):
  897. resultss = aa.groups()
  898. celstyle = celstyle + 'background:' + resultss[0] + ';'
  899. elif(ab):
  900. resultss = ab.groups()
  901. celstyle = celstyle + 'background:' + resultss[0] + ';'
  902. elif(ac):
  903. resultss = ac.groups()
  904. celstyle = celstyle + 'background:' + resultss[0] + ';'
  905. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  906. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  907. if(qa):
  908. resultss = qa.groups()
  909. celstyle = celstyle + 'width:' + resultss[0] + ';'
  910. if(qb):
  911. resultss = qb.groups()
  912. celstyle = celstyle + 'height:' + resultss[0] + ';'
  913. i = re.search("&lt;\)&gt;", result[1])
  914. o = re.search("&lt;:&gt;", result[1])
  915. p = re.search("&lt;\(&gt;", result[1])
  916. if(i):
  917. celstyle = celstyle + 'text-align:right;'
  918. elif(o):
  919. celstyle = celstyle + 'text-align:center;'
  920. elif(p):
  921. celstyle = celstyle + 'text-align:left;'
  922. celstyle = celstyle + '"'
  923. rowstyle = rowstyle + '"'
  924. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  925. else:
  926. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  927. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr><td " + cel + ">", table, 1)
  928. else:
  929. break
  930. while True:
  931. c = re.search("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  932. if(c):
  933. row = ''
  934. cel = ''
  935. celstyle = ''
  936. result = c.groups()
  937. if(result[1]):
  938. celstyle = 'style="'
  939. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  940. if(r):
  941. resultss = r.groups()
  942. cel = 'colspan="' + resultss[0] + '"';
  943. else:
  944. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  945. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  946. if(t):
  947. resultss = t.groups()
  948. row = 'rowspan="' + resultss[0] + '"';
  949. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  950. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  951. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  952. if(j):
  953. resultss = j.groups()
  954. celstyle = celstyle + 'background:' + resultss[0] + ';'
  955. elif(k):
  956. resultss = k.groups()
  957. celstyle = celstyle + 'background:' + resultss[0] + ';'
  958. elif(l):
  959. resultss = l.groups()
  960. celstyle = celstyle + 'background:' + resultss[0] + ';'
  961. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  962. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  963. ac = re.search("&lt;(\w+)&gt;", result[1])
  964. if(aa):
  965. resultss = aa.groups()
  966. celstyle = celstyle + 'background:' + resultss[0] + ';'
  967. elif(ab):
  968. resultss = ab.groups()
  969. celstyle = celstyle + 'background:' + resultss[0] + ';'
  970. elif(ac):
  971. resultss = ac.groups()
  972. celstyle = celstyle + 'background:' + resultss[0] + ';'
  973. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  974. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  975. if(qa):
  976. resultss = qa.groups()
  977. celstyle = celstyle + 'width:' + resultss[0] + ';'
  978. if(qb):
  979. resultss = qb.groups()
  980. celstyle = celstyle + 'height:' + resultss[0] + ';'
  981. i = re.search("&lt;\)&gt;", result[1])
  982. o = re.search("&lt;:&gt;", result[1])
  983. p = re.search("&lt;\(&gt;", result[1])
  984. if(i):
  985. celstyle = celstyle + 'text-align:right;'
  986. elif(o):
  987. celstyle = celstyle + 'text-align:center;'
  988. elif(p):
  989. celstyle = celstyle + 'text-align:left;'
  990. celstyle = celstyle + '"'
  991. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  992. else:
  993. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  994. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + ">", table, 1)
  995. else:
  996. break
  997. data = re.sub("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", table, data, 1)
  998. else:
  999. break
  1000. data = re.sub('<\/blockquote>((\r)?\n){2}<blockquote>', '</blockquote><br><blockquote>', data)
  1001. data = re.sub('\n', '<br>', data)
  1002. data = re.sub('^<br>', '', data)
  1003. return str(data)
  1004. def getip(request):
  1005. if(session.get('Now') == True):
  1006. ip = format(session['DREAMER'])
  1007. else:
  1008. if(request.headers.getlist("X-Forwarded-For")):
  1009. ip = request.headers.getlist("X-Forwarded-For")[0]
  1010. else:
  1011. ip = request.remote_addr
  1012. return ip
  1013. def getcan(ip, name):
  1014. m = re.search("^사용자:(.*)", name)
  1015. n = re.search("^파일:(.*)", name)
  1016. if(m):
  1017. g = m.groups()
  1018. if(ip == g[0]):
  1019. if(re.search("\.", g[0])):
  1020. return 1
  1021. else:
  1022. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1023. rows = curs.fetchall()
  1024. if(rows):
  1025. return 1
  1026. else:
  1027. return 0
  1028. else:
  1029. return 1
  1030. elif(n):
  1031. return 1
  1032. else:
  1033. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1034. if(b):
  1035. results = b.groups()
  1036. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1037. rowss = curs.fetchall()
  1038. if(rowss):
  1039. return 1
  1040. else:
  1041. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1042. rows = curs.fetchall()
  1043. if(rows):
  1044. return 1
  1045. else:
  1046. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1047. row = curs.fetchall()
  1048. if(row):
  1049. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1050. rows = curs.fetchall()
  1051. if(row[0]['acl'] == 'user'):
  1052. if(rows):
  1053. return 0
  1054. else:
  1055. return 1
  1056. elif(row[0]['acl'] == 'admin'):
  1057. if(rows):
  1058. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  1059. return 0
  1060. else:
  1061. return 1
  1062. else:
  1063. return 1
  1064. else:
  1065. return 0
  1066. else:
  1067. return 0
  1068. else:
  1069. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1070. rows = curs.fetchall()
  1071. if(rows):
  1072. return 1
  1073. else:
  1074. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1075. row = curs.fetchall()
  1076. if(row):
  1077. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1078. rows = curs.fetchall()
  1079. if(row[0]['acl'] == 'user'):
  1080. if(rows):
  1081. return 0
  1082. else:
  1083. return 1
  1084. elif(row[0]['acl'] == 'admin'):
  1085. if(rows):
  1086. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  1087. return 0
  1088. else:
  1089. return 1
  1090. else:
  1091. return 1
  1092. else:
  1093. return 0
  1094. else:
  1095. return 0
  1096. def getban(ip):
  1097. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1098. if(b):
  1099. results = b.groups()
  1100. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1101. rowss = curs.fetchall()
  1102. if(rowss):
  1103. return 1
  1104. else:
  1105. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1106. rows = curs.fetchall()
  1107. if(rows):
  1108. return 1
  1109. else:
  1110. return 0
  1111. else:
  1112. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1113. rows = curs.fetchall()
  1114. if(rows):
  1115. return 1
  1116. else:
  1117. return 0
  1118. def getdiscuss(ip, name, sub):
  1119. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1120. if(b):
  1121. results = b.groups()
  1122. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1123. rowss = curs.fetchall()
  1124. if(rowss):
  1125. return 1
  1126. else:
  1127. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1128. rows = curs.fetchall()
  1129. if(rows):
  1130. return 1
  1131. else:
  1132. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1133. rows = curs.fetchall()
  1134. if(rows):
  1135. return 1
  1136. else:
  1137. return 0
  1138. else:
  1139. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1140. rows = curs.fetchall()
  1141. if(rows):
  1142. return 1
  1143. else:
  1144. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1145. rows = curs.fetchall()
  1146. if(rows):
  1147. return 1
  1148. else:
  1149. return 0
  1150. def getnow():
  1151. now = time.localtime()
  1152. s = "%04d-%02d-%02d %02d:%02d:%02d" % (now.tm_year, now.tm_mon, now.tm_mday, now.tm_hour, now.tm_min, now.tm_sec)
  1153. return s
  1154. def discuss(title, sub, date):
  1155. curs.execute("select * from rd where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1156. rows = curs.fetchall()
  1157. if(rows):
  1158. curs.execute("update rd set date = '" + pymysql.escape_string(date) + "' where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1159. else:
  1160. curs.execute("insert into rd (title, sub, date) value ('" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(date) + "')")
  1161. conn.commit()
  1162. def block(block, end, today, blocker, why):
  1163. curs.execute("insert into rb (block, end, today, blocker, why) value ('" + pymysql.escape_string(block) + "', '" + pymysql.escape_string(end) + "', '" + today + "', '" + pymysql.escape_string(blocker) + "', '" + pymysql.escape_string(why) + "')")
  1164. conn.commit()
  1165. def history(title, data, date, ip, send, leng):
  1166. curs.execute("select * from history where title = '" + pymysql.escape_string(title) + "' order by id+0 desc limit 1")
  1167. rows = curs.fetchall()
  1168. if(rows):
  1169. number = int(rows[0]['id']) + 1
  1170. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('" + str(number) + "', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send) + "', '" + leng + "')")
  1171. conn.commit()
  1172. else:
  1173. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('1', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send + ' (새 문서)') + "', '" + leng + "')")
  1174. conn.commit()
  1175. def getleng(existing, change):
  1176. if(existing < change):
  1177. leng = change - existing
  1178. leng = '+' + str(leng)
  1179. elif(change < existing):
  1180. leng = existing - change
  1181. leng = '-' + str(leng)
  1182. else:
  1183. leng = '0'
  1184. return leng
  1185. @app.route('/upload', methods=['GET', 'POST'])
  1186. def upload():
  1187. if(request.method == 'POST'):
  1188. ip = getip(request)
  1189. ban = getban(ip)
  1190. if(ban == 1):
  1191. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1192. else:
  1193. file = request.files['file']
  1194. if(file and allowed_file(file.filename)):
  1195. if(re.search('^([^./\\*<>|:?"]+)\.(jpg|gif|jpeg|png)$', file.filename)):
  1196. filename = file.filename
  1197. if(os.path.exists(os.path.join('image', filename))):
  1198. return '<meta http-equiv="refresh" content="0;url=/error/16" />'
  1199. else:
  1200. file.save(os.path.join('image', filename))
  1201. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string('파일:' + filename) + "', '" + pymysql.escape_string('[[파일:' + filename + ']][br][br]{{{[[파일:' + filename + ']]}}}') + "', '')")
  1202. conn.commit()
  1203. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote('파일:' + filename).replace('/','%2F') + '" />'
  1204. else:
  1205. return '<meta http-equiv="refresh" content="0;url=/error/15" />'
  1206. else:
  1207. return '<meta http-equiv="refresh" content="0;url=/error/14" />'
  1208. else:
  1209. ip = getip(request)
  1210. ban = getban(ip)
  1211. if(ban == 1):
  1212. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1213. else:
  1214. return render_template('index.html', logo = data['name'], title = '업로드', tn = 21, number = data['upload'])
  1215. @app.route('/image/<path:name>')
  1216. def image(name = None):
  1217. if(os.path.exists(os.path.join('image', name))):
  1218. return send_file(os.path.join('image', name), mimetype='image')
  1219. else:
  1220. return render_template('index.html', logo = data['name'], data = '이미지 없음.', title = '이미지 보기'), 404
  1221. @app.route('/recentchanges')
  1222. def recentchanges():
  1223. i = 0
  1224. div = '<div>'
  1225. curs.execute("select * from history order by date desc limit 50")
  1226. rows = curs.fetchall()
  1227. if(rows):
  1228. admin = admincheck()
  1229. while True:
  1230. try:
  1231. a = rows[i]
  1232. except:
  1233. div = div + '</div>'
  1234. break
  1235. if(rows[i]['send']):
  1236. send = rows[i]['send']
  1237. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1238. else:
  1239. send = '<br>'
  1240. title = rows[i]['title']
  1241. title = re.sub('<', '&lt;', title)
  1242. title = re.sub('>', '&gt;', title)
  1243. m = re.search("\+", rows[i]['leng'])
  1244. n = re.search("\-", rows[i]['leng'])
  1245. if(m):
  1246. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1247. elif(n):
  1248. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1249. else:
  1250. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1251. if(admin == 1):
  1252. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1253. row = curs.fetchall()
  1254. if(row):
  1255. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1256. else:
  1257. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1258. else:
  1259. ban = ''
  1260. if(re.search('\.', rows[i]['ip'])):
  1261. ip = rows[i]['ip']
  1262. else:
  1263. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1264. row = curs.fetchall()
  1265. if(row):
  1266. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1267. else:
  1268. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1269. if((int(rows[i]['id']) - 1) == 0):
  1270. revert = ''
  1271. else:
  1272. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  1273. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1274. i = i + 1
  1275. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '최근 변경내역')
  1276. else:
  1277. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '최근 변경내역')
  1278. @app.route('/record/<path:name>/n/<int:number>')
  1279. def record(name = None, number = None):
  1280. v = number * 50
  1281. i = v - 50
  1282. div = '<div>'
  1283. curs.execute("select * from history where ip = '" + pymysql.escape_string(name) + "' order by date desc")
  1284. rows = curs.fetchall()
  1285. if(rows):
  1286. admin = admincheck()
  1287. while True:
  1288. try:
  1289. a = rows[i]
  1290. except:
  1291. div = div + '</div>'
  1292. if(number != 1):
  1293. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1294. break
  1295. if(rows[i]['send']):
  1296. send = rows[i]['send']
  1297. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1298. else:
  1299. send = '<br>'
  1300. title = rows[i]['title']
  1301. title = re.sub('<', '&lt;', title)
  1302. title = re.sub('>', '&gt;', title)
  1303. m = re.search("\+", rows[i]['leng'])
  1304. n = re.search("\-", rows[i]['leng'])
  1305. if(m):
  1306. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1307. elif(n):
  1308. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1309. else:
  1310. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1311. if(admin == 1):
  1312. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1313. row = curs.fetchall()
  1314. if(row):
  1315. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1316. else:
  1317. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1318. else:
  1319. ban = ''
  1320. if(re.search('\.', rows[i]['ip'])):
  1321. ip = rows[i]['ip']
  1322. else:
  1323. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1324. row = curs.fetchall()
  1325. if(row):
  1326. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1327. else:
  1328. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1329. if((int(rows[i]['id']) - 1) == 0):
  1330. revert = ''
  1331. else:
  1332. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  1333. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> r' + rows[i]['id'] + ' <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1334. if(i == v):
  1335. div = div + '</div>'
  1336. if(number == 1):
  1337. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1338. else:
  1339. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1340. break
  1341. else:
  1342. i = i + 1
  1343. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '유저 기록')
  1344. else:
  1345. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '유저 기록')
  1346. @app.route('/userlog/n/<int:number>')
  1347. def userlog(number = None):
  1348. v = number * 50
  1349. i = v - 50
  1350. div = ''
  1351. curs.execute("select * from user")
  1352. rows = curs.fetchall()
  1353. if(rows):
  1354. admin = admincheck()
  1355. while True:
  1356. try:
  1357. a = rows[i]
  1358. except:
  1359. if(number != 1):
  1360. div = div + '<br><a href="/userlog/n/' + str(number - 1) + '">(이전)'
  1361. break
  1362. if(admin == 1):
  1363. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['id']) + "'")
  1364. row = curs.fetchall()
  1365. if(row):
  1366. ban = ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(해제)</a>'
  1367. else:
  1368. ban = ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(차단)</a>'
  1369. else:
  1370. ban = ''
  1371. if(re.search('\.', rows[i]['id'])):
  1372. ip = rows[i]['id']
  1373. else:
  1374. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['id']) + "'")
  1375. row = curs.fetchall()
  1376. if(row):
  1377. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['id']).replace('/','%2F') + '">' + rows[i]['id'] + '</a>'
  1378. else:
  1379. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['id']).replace('/','%2F') + '">' + rows[i]['id'] + '</a>'
  1380. div = div + '<li>' + ip + ban + '</li>'
  1381. if(i == v):
  1382. if(number == 1):
  1383. div = div + '<br><a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1384. else:
  1385. div = div + '<br><a href="/userlog/n/' + str(number - 1) + '">(이전) <a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1386. break
  1387. else:
  1388. i = i + 1
  1389. return render_template('index.html', logo = data['name'], data = div, title = '유저 가입 기록')
  1390. else:
  1391. return render_template('index.html', logo = data['name'], data = '', title = '유저 가입 기록')
  1392. @app.route('/backlink/<path:name>/n/<int:number>')
  1393. def backlink(name = None, number = None):
  1394. v = number * 50
  1395. i = v - 50
  1396. div = ''
  1397. curs.execute("select * from back where title = '" + pymysql.escape_string(name) + "' order by link asc")
  1398. rows = curs.fetchall()
  1399. if(rows):
  1400. while True:
  1401. try:
  1402. a = rows[i]
  1403. except:
  1404. if(number != 1):
  1405. div = div + '<br><a href="/backlink/n/' + str(number - 1) + '">(이전)'
  1406. break
  1407. if(not re.search('^사용자:', rows[i]['link'])):
  1408. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['link']) + "'")
  1409. row = curs.fetchall()
  1410. if(row):
  1411. aa = row[0]['data']
  1412. aa = re.sub("(?P<in>\[include\((?P<out>(?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\])", "\g<in>\n\n[[\g<out>]]\n\n", aa)
  1413. aa = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', '[[\g<in>]]', aa)
  1414. aa = namumark('', aa)
  1415. if(re.search("<a(?: class=\"not_thing\")? href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "(?:\#[^\"]*)?\">([^<]*)<\/a>", aa)):
  1416. div = div + '<li><a href="/w/' + parse.quote(rows[i]['link']).replace('/','%2F') + '">' + rows[i]['link'] + '</a>'
  1417. if(rows[i]['type']):
  1418. div = div + ' (' + rows[i]['type'] + ')</li>'
  1419. else:
  1420. div = div + '</li>'
  1421. if(i == v):
  1422. if(number == 1):
  1423. div = div + '<br><a href="/backlink/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1424. else:
  1425. div = div + '<br><a href="/backlink/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/backlink/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1426. break
  1427. else:
  1428. i = i + 1
  1429. else:
  1430. curs.execute("delete from back where title = '" + pymysql.escape_string(name) + "' and link = '" + pymysql.escape_string(rows[i]['link']) + "'")
  1431. conn.commit()
  1432. i = i + 1
  1433. v = v + 1
  1434. else:
  1435. curs.execute("delete from back where title = '" + pymysql.escape_string(name) + "' and link = '" + pymysql.escape_string(rows[i]['link']) + "'")
  1436. conn.commit()
  1437. i = i + 1
  1438. v = v + 1
  1439. else:
  1440. curs.execute("delete from back where title = '" + pymysql.escape_string(name) + "' and link = '" + pymysql.escape_string(rows[i]['link']) + "'")
  1441. conn.commit()
  1442. i = i + 1
  1443. v = v + 1
  1444. return render_template('index.html', logo = data['name'], data = div, title = name, plus = '(역링크)')
  1445. else:
  1446. return render_template('index.html', logo = data['name'], data = '', title = name, plus = '(역링크)')
  1447. @app.route('/recentdiscuss')
  1448. def recentdiscuss():
  1449. i = 0
  1450. div = '<div>'
  1451. curs.execute("select * from rd order by date desc limit 50")
  1452. rows = curs.fetchall()
  1453. if(rows):
  1454. while True:
  1455. try:
  1456. a = rows[i]
  1457. except:
  1458. div = div + '</div>'
  1459. break
  1460. title = rows[i]['title']
  1461. title = re.sub('<', '&lt;', title)
  1462. title = re.sub('>', '&gt;', title)
  1463. sub = rows[i]['sub']
  1464. sub = re.sub('<', '&lt;', sub)
  1465. sub = re.sub('>', '&gt;', sub)
  1466. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:50%;"><a href="/topic/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + title + '</a> (' + sub + ')</td><td style="text-align: center;width:50%;">' + rows[i]['date'] + '</td></tr></tbody></table>'
  1467. i = i + 1
  1468. return render_template('index.html', logo = data['name'], rows = div, tn = 12, title = '최근 토론내역')
  1469. else:
  1470. return render_template('index.html', logo = data['name'], rows = '', tn = 12, title = '최근 토론내역')
  1471. @app.route('/blocklog/n/<int:number>')
  1472. def blocklog(number = None):
  1473. v = number * 50
  1474. i = v - 50
  1475. div = '<div>'
  1476. curs.execute("select * from rb order by today desc")
  1477. rows = curs.fetchall()
  1478. if(rows):
  1479. while True:
  1480. try:
  1481. a = rows[i]
  1482. except:
  1483. div = div + '</div>'
  1484. if(number != 1):
  1485. div = div + '<br><a href="/blocklog/n/' + str(number - 1) + '">(이전)'
  1486. break
  1487. why = rows[i]['why']
  1488. why = re.sub('<', '&lt;', why)
  1489. why = re.sub('>', '&gt;', why)
  1490. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", rows[i]['block'])
  1491. if(b):
  1492. ip = rows[i]['block'] + ' (대역)'
  1493. else:
  1494. ip = rows[i]['block']
  1495. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:20%;">' + ip + '</a></td><td style="text-align: center;width:20%;">' + rows[i]['blocker'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['end'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['why'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['today'] + '</td></tr></tbody></table>'
  1496. if(i == v):
  1497. div = div + '</div>'
  1498. if(number == 1):
  1499. div = div + '<br><a href="/blocklog/n/' + str(number + 1) + '">(다음)'
  1500. else:
  1501. div = div + '<br><a href="/blocklog/n/' + str(number - 1) + '">(이전) <a href="/blocklog/n/' + str(number + 1) + '">(다음)'
  1502. break
  1503. else:
  1504. i = i + 1
  1505. return render_template('index.html', logo = data['name'], rows = div, tn = 20, title = '유저 차단 기록')
  1506. else:
  1507. return render_template('index.html', logo = data['name'], rows = '', tn = 20, title = '유저 차단 기록')
  1508. @app.route('/history/<path:name>/n/<int:number>', methods=['POST', 'GET'])
  1509. def gethistory(name = None, number = None):
  1510. if(request.method == 'POST'):
  1511. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '/r/' + request.form["b"] + '/diff/' + request.form["a"] + '" />'
  1512. else:
  1513. select = ''
  1514. v = number * 50
  1515. i = v - 50
  1516. div = '<div>'
  1517. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' order by id+0 desc")
  1518. rows = curs.fetchall()
  1519. if(rows):
  1520. admin = admincheck()
  1521. while True:
  1522. try:
  1523. a = rows[i]
  1524. except:
  1525. div = div + '</div>'
  1526. if(number != 1):
  1527. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1528. break
  1529. select = '<option value="' + str(i + 1) + '">' + str(i + 1) + '</option>' + select
  1530. if(rows[i]['send']):
  1531. send = rows[i]['send']
  1532. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1533. else:
  1534. send = '<br>'
  1535. m = re.search("\+", rows[i]['leng'])
  1536. n = re.search("\-", rows[i]['leng'])
  1537. if(m):
  1538. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1539. elif(n):
  1540. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1541. else:
  1542. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1543. if(admin == 1):
  1544. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1545. row = curs.fetchall()
  1546. if(row):
  1547. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1548. ban = ''
  1549. else:
  1550. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1551. row = curs.fetchall()
  1552. if(row):
  1553. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1554. else:
  1555. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1556. else:
  1557. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1558. row = curs.fetchall()
  1559. if(row):
  1560. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1561. else:
  1562. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1563. else:
  1564. ban = ''
  1565. if(re.search("\.", rows[i]["ip"])):
  1566. ip = rows[i]["ip"]
  1567. else:
  1568. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1569. row = curs.fetchall()
  1570. if(row):
  1571. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1572. else:
  1573. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1574. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">r' + rows[i]['id'] + '</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(w)</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/raw/' + rows[i]['id'] + '">(Raw)</a> <a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(되돌리기)</a> (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1575. if(i == v):
  1576. div = div + '</div>'
  1577. if(number == 1):
  1578. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1579. else:
  1580. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1581. break
  1582. else:
  1583. i = i + 1
  1584. return render_template('index.html', logo = data['name'], rows = div, tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1585. else:
  1586. return render_template('index.html', logo = data['name'], rows = '', tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1587. @app.route('/search', methods=['POST', 'GET'])
  1588. def search():
  1589. if(request.method == 'POST'):
  1590. curs.execute("select * from data where title = '" + pymysql.escape_string(request.form["search"]) + "'")
  1591. rows = curs.fetchall()
  1592. if(rows):
  1593. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1594. else:
  1595. curs.execute("select * from data where title like '%" + pymysql.escape_string(request.form["search"]) + "%'")
  1596. rows = curs.fetchall()
  1597. div = ''
  1598. if(rows):
  1599. i = 0
  1600. div = div + '<li>문서가 없습니다. <a href="/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '">바로가기</a></li><br>'
  1601. while True:
  1602. try:
  1603. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  1604. except:
  1605. break
  1606. i = i + 1
  1607. else:
  1608. return div + '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1609. return render_template('index.html', logo = data['name'], data = div, title = '검색')
  1610. else:
  1611. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1612. @app.route('/w/<path:name>')
  1613. def w(name = None):
  1614. i = 0
  1615. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  1616. rows = curs.fetchall()
  1617. while True:
  1618. try:
  1619. a = rows[i]
  1620. except:
  1621. topic = ""
  1622. break
  1623. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  1624. row = curs.fetchall()
  1625. if(not row):
  1626. topic = "open"
  1627. break
  1628. else:
  1629. i = i + 1
  1630. acl = ''
  1631. m = re.search("^(.*)\/(.*)$", name)
  1632. if(m):
  1633. g = m.groups()
  1634. uppage = g[0]
  1635. style = ""
  1636. else:
  1637. uppage = ""
  1638. style = "display:none;"
  1639. if(re.search("^분류:", name)):
  1640. curs.execute("select * from cat where title = '" + pymysql.escape_string(name) + "' order by cat asc")
  1641. rows = curs.fetchall()
  1642. if(rows):
  1643. div = ''
  1644. i = 0
  1645. while True:
  1646. try:
  1647. a = rows[i]
  1648. except:
  1649. break
  1650. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['cat']) + "'")
  1651. row = curs.fetchall()
  1652. if(row):
  1653. aa = row[0]['data']
  1654. aa = namumark('', aa)
  1655. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  1656. if(bb):
  1657. cc = bb.groups()
  1658. mm = re.search("^분류:(.*)", name)
  1659. if(mm):
  1660. ee = mm.groups()
  1661. if(re.search("<a href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "\">" + ee[0] + "<\/a>", cc[0])):
  1662. div = div + '<li><a href="/w/' + parse.quote(rows[i]['cat']).replace('/','%2F') + '">' + rows[i]['cat'] + '</a></li>'
  1663. i = i + 1
  1664. else:
  1665. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1666. conn.commit()
  1667. i = i + 1
  1668. else:
  1669. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1670. conn.commit()
  1671. i = i + 1
  1672. else:
  1673. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1674. conn.commit()
  1675. i = i + 1
  1676. else:
  1677. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1678. conn.commit()
  1679. i = i + 1
  1680. div = '<h2>분류</h2>' + div
  1681. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1682. bb = curs.fetchall()
  1683. if(bb):
  1684. if(bb[0]['acl'] == 'admin'):
  1685. acl = '(관리자)'
  1686. elif(bb[0]['acl'] == 'user'):
  1687. acl = '(유저)'
  1688. else:
  1689. if(not acl):
  1690. acl = ''
  1691. enddata = namumark(name, bb[0]['data'])
  1692. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1693. if(m):
  1694. result = m.groups()
  1695. left = result[0]
  1696. else:
  1697. left = ''
  1698. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata + '<br>' + div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic)
  1699. else:
  1700. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic)
  1701. else:
  1702. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '분류 문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic), 404
  1703. else:
  1704. m = re.search("^사용자:(.*)", name)
  1705. if(m):
  1706. g = m.groups()
  1707. curs.execute("select * from user where id = '" + pymysql.escape_string(g[0]) + "'")
  1708. rows = curs.fetchall()
  1709. if(rows):
  1710. if(rows[0]['acl'] == 'owner'):
  1711. acl = '(소유자)'
  1712. elif(rows[0]['acl'] == 'admin'):
  1713. acl = '(관리자)'
  1714. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1715. rows = curs.fetchall()
  1716. if(rows):
  1717. if(rows[0]['acl'] == 'admin'):
  1718. acl = '(관리자)'
  1719. elif(rows[0]['acl'] == 'user'):
  1720. acl = '(유저)'
  1721. else:
  1722. if(not acl):
  1723. acl = ''
  1724. enddata = namumark(name, rows[0]['data'])
  1725. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1726. if(m):
  1727. result = m.groups()
  1728. left = result[0]
  1729. else:
  1730. left = ''
  1731. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, acl = acl, left = left, uppage = uppage, style = style, topic = topic)
  1732. else:
  1733. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic), 404
  1734. @app.route('/w/<path:name>/from/<path:redirect>')
  1735. def redirectw(name = None, redirect = None):
  1736. i = 0
  1737. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  1738. rows = curs.fetchall()
  1739. while True:
  1740. try:
  1741. a = rows[i]
  1742. except:
  1743. topic = ""
  1744. break
  1745. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  1746. row = curs.fetchall()
  1747. if(not row):
  1748. topic = "open"
  1749. break
  1750. else:
  1751. i = i + 1
  1752. acl = ''
  1753. m = re.search("^(.*)\/(.*)$", name)
  1754. if(m):
  1755. g = m.groups()
  1756. uppage = g[0]
  1757. style = ""
  1758. else:
  1759. uppage = ""
  1760. style = "display:none;"
  1761. if(re.search("^분류:", name)):
  1762. curs.execute("select * from cat where title = '" + pymysql.escape_string(name) + "' order by cat asc")
  1763. rows = curs.fetchall()
  1764. if(rows):
  1765. div = ''
  1766. i = 0
  1767. while True:
  1768. try:
  1769. a = rows[i]
  1770. except:
  1771. break
  1772. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['cat']) + "'")
  1773. row = curs.fetchall()
  1774. if(row):
  1775. aa = row[0]['data']
  1776. aa = namumark('', aa)
  1777. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  1778. if(bb):
  1779. cc = bb.groups()
  1780. mm = re.search("^분류:(.*)", name)
  1781. if(mm):
  1782. ee = mm.groups()
  1783. if(re.search("<a href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "\">" + ee[0] + "<\/a>", cc[0])):
  1784. div = div + '<li><a href="/w/' + parse.quote(rows[i]['cat']).replace('/','%2F') + '">' + rows[i]['cat'] + '</a></li>'
  1785. i = i + 1
  1786. else:
  1787. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1788. conn.commit()
  1789. i = i + 1
  1790. else:
  1791. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1792. conn.commit()
  1793. i = i + 1
  1794. else:
  1795. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1796. conn.commit()
  1797. i = i + 1
  1798. else:
  1799. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1800. conn.commit()
  1801. i = i + 1
  1802. div = '<h2>분류</h2>' + div
  1803. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1804. bb = curs.fetchall()
  1805. if(bb):
  1806. if(bb[0]['acl'] == 'admin'):
  1807. acl = '(관리자)'
  1808. elif(bb[0]['acl'] == 'user'):
  1809. acl = '(유저)'
  1810. else:
  1811. if(not acl):
  1812. acl = ''
  1813. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', bb[0]['data'])
  1814. enddata = namumark(name, newdata)
  1815. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1816. if(m):
  1817. result = m.groups()
  1818. left = result[0]
  1819. else:
  1820. left = ''
  1821. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata + '<br>' + div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1822. else:
  1823. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1824. else:
  1825. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '분류 문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.'), 404
  1826. else:
  1827. m = re.search("^사용자:(.*)", name)
  1828. if(m):
  1829. g = m.groups()
  1830. curs.execute("select * from user where id = '" + pymysql.escape_string(g[0]) + "'")
  1831. rows = curs.fetchall()
  1832. if(rows):
  1833. if(rows[0]['acl'] == 'owner'):
  1834. acl = '(소유자)'
  1835. elif(rows[0]['acl'] == 'admin'):
  1836. acl = '(관리자)'
  1837. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1838. rows = curs.fetchall()
  1839. if(rows):
  1840. if(rows[0]['acl'] == 'admin'):
  1841. acl = '(관리자)'
  1842. elif(rows[0]['acl'] == 'user'):
  1843. acl = '(유저)'
  1844. else:
  1845. if(not acl):
  1846. acl = ''
  1847. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  1848. enddata = namumark(name, newdata)
  1849. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1850. if(m):
  1851. result = m.groups()
  1852. left = result[0]
  1853. else:
  1854. left = ''
  1855. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, acl = acl, left = left, uppage = uppage, style = style, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1856. else:
  1857. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.'), 404
  1858. @app.route('/w/<path:name>/r/<int:number>')
  1859. def rew(name = None, number = None):
  1860. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1861. rows = curs.fetchall()
  1862. if(rows):
  1863. enddata = namumark(name, rows[0]['data'])
  1864. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1865. if(m):
  1866. result = m.groups()
  1867. left = result[0]
  1868. else:
  1869. left = ''
  1870. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 6, left = left)
  1871. else:
  1872. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  1873. @app.route('/w/<path:name>/raw/<int:number>')
  1874. def reraw(name = None, number = None):
  1875. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1876. rows = curs.fetchall()
  1877. if(rows):
  1878. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1879. enddata = re.sub('>', '&gt;', enddata)
  1880. enddata = re.sub('"', '&quot;', enddata)
  1881. enddata = re.sub("\n", '<br>', enddata)
  1882. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'])
  1883. else:
  1884. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  1885. @app.route('/raw/<path:name>')
  1886. def raw(name = None):
  1887. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1888. rows = curs.fetchall()
  1889. if(rows):
  1890. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1891. enddata = re.sub('>', '&gt;', enddata)
  1892. enddata = re.sub('"', '&quot;', enddata)
  1893. enddata = re.sub("\n", '<br>', enddata)
  1894. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 7)
  1895. else:
  1896. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1897. @app.route('/revert/<path:name>/r/<int:number>', methods=['POST', 'GET'])
  1898. def revert(name = None, number = None):
  1899. if(request.method == 'POST'):
  1900. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1901. rows = curs.fetchall()
  1902. if(rows):
  1903. ip = getip(request)
  1904. can = getcan(ip, name)
  1905. if(can == 1):
  1906. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1907. else:
  1908. today = getnow()
  1909. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1910. row = curs.fetchall()
  1911. if(row):
  1912. leng = getleng(len(row[0]['data']), len(rows[0]['data']))
  1913. curs.execute("update data set data = '" + pymysql.escape_string(rows[0]['data']) + "' where title = '" + pymysql.escape_string(name) + "'")
  1914. conn.commit()
  1915. else:
  1916. leng = '+' + str(len(rows[0]['data']))
  1917. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(rows[0]['data']) + "', '')")
  1918. conn.commit()
  1919. history(name, rows[0]['data'], today, ip, '문서를 ' + str(number) + '판으로 되돌렸습니다.', leng)
  1920. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1921. else:
  1922. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1923. else:
  1924. ip = getip(request)
  1925. can = getcan(ip, name)
  1926. if(can == 1):
  1927. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1928. else:
  1929. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1930. rows = curs.fetchall()
  1931. if(rows):
  1932. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), r = parse.quote(str(number)).replace('/','%2F'), tn = 13, plus = '정말 되돌리시겠습니까?')
  1933. else:
  1934. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1935. @app.route('/edit/<path:name>', methods=['POST', 'GET'])
  1936. def edit(name = None):
  1937. if(request.method == 'POST'):
  1938. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["send"])
  1939. if(m):
  1940. return '<meta http-equiv="refresh" content="0;url=/error/17" />'
  1941. else:
  1942. today = getnow()
  1943. content = re.sub("\[date\(now\)\]", today, request.form["content"])
  1944. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1945. rows = curs.fetchall()
  1946. if(rows):
  1947. if(rows[0]['data'] == content):
  1948. return '<meta http-equiv="refresh" content="0;url=/error/18" />'
  1949. else:
  1950. ip = getip(request)
  1951. can = getcan(ip, name)
  1952. if(can == 1):
  1953. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1954. else:
  1955. leng = getleng(len(rows[0]['data']), len(content))
  1956. history(name, content, today, ip, request.form["send"], leng)
  1957. curs.execute("update data set data = '" + pymysql.escape_string(content) + "' where title = '" + pymysql.escape_string(name) + "'")
  1958. conn.commit()
  1959. else:
  1960. ip = getip(request)
  1961. can = getcan(ip, name)
  1962. if(can == 1):
  1963. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1964. else:
  1965. leng = '+' + str(len(content))
  1966. history(name, content, today, ip, request.form["send"], leng)
  1967. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(content) + "', '')")
  1968. conn.commit()
  1969. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1970. else:
  1971. ip = getip(request)
  1972. can = getcan(ip, name)
  1973. if(can == 1):
  1974. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1975. else:
  1976. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  1977. rows = curs.fetchall()
  1978. if(rows):
  1979. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  1980. left = namumark(name, newdata)
  1981. else:
  1982. left = ''
  1983. if(re.search('\.', ip)):
  1984. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  1985. else:
  1986. notice = ''
  1987. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1988. rows = curs.fetchall()
  1989. if(rows):
  1990. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = rows[0]['data'], tn = 2, notice = notice, left = left)
  1991. else:
  1992. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '', tn = 2, notice = notice, left = left)
  1993. @app.route('/edit/<path:name>/section/<int:number>', methods=['POST', 'GET'])
  1994. def secedit(name = None, number = None):
  1995. if(request.method == 'POST'):
  1996. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["send"])
  1997. if(m):
  1998. return '<meta http-equiv="refresh" content="0;url=/error/17" />'
  1999. else:
  2000. today = getnow()
  2001. content = re.sub("\[date\(now\)\]", today, request.form["content"])
  2002. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2003. rows = curs.fetchall()
  2004. if(rows):
  2005. if(request.form["otent"] == content):
  2006. return '<meta http-equiv="refresh" content="0;url=/error/18" />'
  2007. else:
  2008. ip = getip(request)
  2009. can = getcan(ip, name)
  2010. if(can == 1):
  2011. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2012. else:
  2013. leng = getleng(len(request.form['otent']), len(content))
  2014. content = rows[0]['data'].replace(request.form['otent'], content)
  2015. history(name, content, today, ip, request.form["send"], leng)
  2016. curs.execute("update data set data = '" + pymysql.escape_string(content) + "' where title = '" + pymysql.escape_string(name) + "'")
  2017. conn.commit()
  2018. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2019. else:
  2020. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2021. else:
  2022. ip = getip(request)
  2023. can = getcan(ip, name)
  2024. if(can == 1):
  2025. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2026. else:
  2027. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2028. rows = curs.fetchall()
  2029. if(rows):
  2030. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2031. left = namumark(name, newdata)
  2032. else:
  2033. left = ''
  2034. if(re.search('\.', ip)):
  2035. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2036. else:
  2037. notice = ''
  2038. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2039. rows = curs.fetchall()
  2040. if(rows):
  2041. i = 0
  2042. j = 0
  2043. gdata = rows[0]['data'] + '\r\n'
  2044. while True:
  2045. m = re.search("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", gdata)
  2046. if(m):
  2047. if(i == number - 1):
  2048. g = m.groups()
  2049. gdata = re.sub("\r\n$", "", g[0])
  2050. break
  2051. else:
  2052. gdata = re.sub("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", "", gdata, 1)
  2053. i = i + 1
  2054. else:
  2055. j = 1
  2056. break
  2057. if(j == 0):
  2058. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = gdata, tn = 2, notice = notice, left = left, section = 1, number = number)
  2059. else:
  2060. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2061. else:
  2062. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2063. @app.route('/preview/<path:name>', methods=['POST'])
  2064. def preview(name = None):
  2065. ip = getip(request)
  2066. can = getcan(ip, name)
  2067. if(can == 1):
  2068. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2069. else:
  2070. if(re.search('\.', ip)):
  2071. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2072. else:
  2073. notice = ''
  2074. newdata = request.form["content"]
  2075. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  2076. enddata = namumark(name, newdata)
  2077. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2078. rows = curs.fetchall()
  2079. if(rows):
  2080. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2081. left = namumark(name, newdata)
  2082. else:
  2083. left = ''
  2084. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = request.form["content"], tn = 2, preview = 1, enddata = enddata, left = left, notice = notice)
  2085. @app.route('/preview/<path:name>/section/<int:number>', methods=['POST'])
  2086. def secpreview(name = None, number = None):
  2087. ip = getip(request)
  2088. can = getcan(ip, name)
  2089. if(can == 1):
  2090. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2091. else:
  2092. if(re.search('\.', ip)):
  2093. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2094. else:
  2095. notice = ''
  2096. newdata = request.form["content"]
  2097. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  2098. enddata = namumark(name, newdata)
  2099. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2100. rows = curs.fetchall()
  2101. if(rows):
  2102. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2103. left = namumark(name, newdata)
  2104. else:
  2105. left = ''
  2106. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = request.form["content"], tn = 2, preview = 1, enddata = enddata, left = left, notice = notice, section = 1, number = number, odata = request.form["otent"])
  2107. @app.route('/delete/<path:name>', methods=['POST', 'GET'])
  2108. def delete(name = None):
  2109. if(request.method == 'POST'):
  2110. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2111. rows = curs.fetchall()
  2112. if(rows):
  2113. ip = getip(request)
  2114. can = getcan(ip, name)
  2115. if(can == 1):
  2116. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2117. else:
  2118. today = getnow()
  2119. leng = '-' + str(len(rows[0]['data']))
  2120. history(name, '', today, ip, '문서를 삭제 했습니다.', leng)
  2121. curs.execute("delete from data where title = '" + pymysql.escape_string(name) + "'")
  2122. conn.commit()
  2123. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2124. else:
  2125. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2126. else:
  2127. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2128. rows = curs.fetchall()
  2129. if(rows):
  2130. ip = getip(request)
  2131. can = getcan(ip, name)
  2132. if(can == 1):
  2133. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2134. else:
  2135. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 8, plus = '정말 삭제 하시겠습니까?')
  2136. else:
  2137. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2138. @app.route('/move/<path:name>', methods=['POST', 'GET'])
  2139. def move(name = None):
  2140. if(request.method == 'POST'):
  2141. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2142. rows = curs.fetchall()
  2143. if(rows):
  2144. ip = getip(request)
  2145. can = getcan(ip, name)
  2146. if(can == 1):
  2147. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2148. else:
  2149. today = getnow()
  2150. leng = '0'
  2151. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  2152. row = curs.fetchall()
  2153. if(row):
  2154. return '<meta http-equiv="refresh" content="0;url=/error/19" />'
  2155. else:
  2156. history(name, rows[0]['data'], today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  2157. curs.execute("update data set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2158. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2159. conn.commit()
  2160. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  2161. else:
  2162. ip = getip(request)
  2163. can = getcan(ip, name)
  2164. if(can == 1):
  2165. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2166. else:
  2167. today = getnow()
  2168. leng = '0'
  2169. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  2170. row = curs.fetchall()
  2171. if(row):
  2172. return '<meta http-equiv="refresh" content="0;url=/error/19" />'
  2173. else:
  2174. history(name, '', today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  2175. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2176. conn.commit()
  2177. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  2178. else:
  2179. ip = getip(request)
  2180. can = getcan(ip, name)
  2181. if(can == 1):
  2182. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2183. else:
  2184. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 9, plus = '정말 이동 하시겠습니까?')
  2185. @app.route('/other')
  2186. def other():
  2187. return render_template('index.html', title = '기타 메뉴', logo = data['name'], data = '<li><a href="/titleindex">모든 문서</a></li><li><a href="/blocklog/n/1">유저 차단 기록</a></li><li><a href="/userlog/n/1">유저 가입 기록</a></li><li><a href="/upload">업로드</a></li><li><a href="/manager/1">관리자 메뉴</a></li><li><a href="/manager/6">유저 기록</a></li><br>이 오픈나무의 버전은 <a href="https://github.com/2DU/openNAMU/blob/master/version.md">1.7.4.1</a> 입니다.')
  2188. @app.route('/manager/<int:num>', methods=['POST', 'GET'])
  2189. def manager(num = None):
  2190. if(num == 1):
  2191. return render_template('index.html', title = '관리자 메뉴', logo = data['name'], data = '<li><a href="/manager/2">문서 ACL</a></li><li><a href="/manager/3">유저 체크</a></li><li><a href="/manager/4">유저 차단</a></li><li><a href="/manager/5">관리자 권한 주기</a></li>')
  2192. elif(num == 2):
  2193. if(request.method == 'POST'):
  2194. return '<meta http-equiv="refresh" content="0;url=/acl/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2195. else:
  2196. return render_template('index.html', title = 'ACL 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/2"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2197. elif(num == 3):
  2198. if(request.method == 'POST'):
  2199. return '<meta http-equiv="refresh" content="0;url=/check/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2200. else:
  2201. return render_template('index.html', title = '체크 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/3"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2202. elif(num == 4):
  2203. if(request.method == 'POST'):
  2204. return '<meta http-equiv="refresh" content="0;url=/ban/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2205. else:
  2206. return render_template('index.html', title = '차단 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/4"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button><br><br><span>아이피 앞 두자리 (XXX.XXX) 입력하면 대역 차단</span></form>')
  2207. elif(num == 5):
  2208. if(request.method == 'POST'):
  2209. return '<meta http-equiv="refresh" content="0;url=/admin/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2210. else:
  2211. return render_template('index.html', title = '권한 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/5"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2212. elif(num == 6):
  2213. if(request.method == 'POST'):
  2214. return '<meta http-equiv="refresh" content="0;url=/record/' + parse.quote(request.form["name"]).replace('/','%2F') + '/n/1" />'
  2215. else:
  2216. return render_template('index.html', title = '기록 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/manager/6"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2217. else:
  2218. return '<meta http-equiv="refresh" content="0;url=/" />'
  2219. @app.route('/titleindex')
  2220. def titleindex():
  2221. i = 0
  2222. div = '<div>'
  2223. curs.execute("select * from data order by title asc")
  2224. rows = curs.fetchall()
  2225. if(rows):
  2226. while True:
  2227. try:
  2228. a = rows[i]
  2229. except:
  2230. div = div + '</div>'
  2231. break
  2232. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  2233. i = i + 1
  2234. return render_template('index.html', logo = data['name'], rows = div + '<br><span>이 위키에는 총 ' + str(i + 1) + '개의 문서가 있습니다.</span>', tn = 4, title = '모든 문서')
  2235. else:
  2236. return render_template('index.html', logo = data['name'], rows = '', tn = 4, title = '모든 문서')
  2237. @app.route('/topic/<path:name>', methods=['POST', 'GET'])
  2238. def topic(name = None):
  2239. if(request.method == 'POST'):
  2240. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  2241. else:
  2242. div = '<div>'
  2243. i = 0
  2244. j = 1
  2245. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  2246. rows = curs.fetchall()
  2247. while True:
  2248. try:
  2249. a = rows[i]
  2250. except:
  2251. div = div + '</div>'
  2252. break
  2253. curs.execute("select * from topic where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and id = '1' order by sub asc")
  2254. aa = curs.fetchall()
  2255. indata = namumark(name, aa[0]['data'])
  2256. if(aa[0]['block'] == 'O'):
  2257. indata = '블라인드 되었습니다.'
  2258. block = 'style="background: gainsboro;"'
  2259. else:
  2260. block = ''
  2261. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  2262. row = curs.fetchall()
  2263. if(not row):
  2264. div = div + '<h2><a href="/topic/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str(j) + '. ' + rows[i]['sub'] + '</a></h2>'
  2265. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + aa[0]['ip'] + ' <span style="float:right;">' + aa[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2266. j = j + 1
  2267. i = i + 1
  2268. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10, list = 1)
  2269. @app.route('/topic/<path:name>/close')
  2270. def topicstoplist(name = None):
  2271. if(request.method == 'POST'):
  2272. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  2273. else:
  2274. div = '<div>'
  2275. i = 0
  2276. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and close = 'O' order by sub asc")
  2277. rows = curs.fetchall()
  2278. while True:
  2279. try:
  2280. a = rows[i]
  2281. except:
  2282. div = div + '</div>'
  2283. break
  2284. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and id = '1'")
  2285. row = curs.fetchall()
  2286. if(row):
  2287. j = i + 1
  2288. indata = namumark(name, row[0]['data'])
  2289. if(row[0]['block'] == 'O'):
  2290. indata = '블라인드 되었습니다.'
  2291. block = 'style="background: gainsboro;"'
  2292. else:
  2293. block = ''
  2294. div = div + '<h2><a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str((i + 1)) + '. ' + rows[i]['sub'] + '</a></h2>'
  2295. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + row[0]['ip'] + ' <span style="float:right;">' + row[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2296. i = i + 1
  2297. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10)
  2298. @app.route('/topic/<path:name>/sub/<path:sub>', methods=['POST', 'GET'])
  2299. def sub(name = None, sub = None):
  2300. if(request.method == 'POST'):
  2301. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2302. rows = curs.fetchall()
  2303. if(rows):
  2304. number = int(rows[0]['id']) + 1
  2305. else:
  2306. number = 1
  2307. ip = getip(request)
  2308. ban = getdiscuss(ip, name, sub)
  2309. if(ban == 1):
  2310. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2311. else:
  2312. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2313. rows = curs.fetchall()
  2314. if(rows):
  2315. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2316. ip = ip + ' - Admin'
  2317. today = getnow()
  2318. discuss(name, sub, today)
  2319. aa = request.form["content"]
  2320. aa = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", "[br]", aa)
  2321. aa = re.sub("\[date\(now\)\]", today, aa)
  2322. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + str(number) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(aa) + "', '" + today + "', '" + ip + "', '')")
  2323. conn.commit()
  2324. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '" />'
  2325. else:
  2326. ip = getip(request)
  2327. ban = getdiscuss(ip, name, sub)
  2328. admin = admincheck()
  2329. if(admin == 1):
  2330. div = '<div>' + '<a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/close">(토론 닫기 및 열기)</a>' + ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/stop">(토론 정지 및 재개)</a><br><br>'
  2331. else:
  2332. div = '<div>'
  2333. i = 0
  2334. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 asc")
  2335. rows = curs.fetchall()
  2336. while True:
  2337. try:
  2338. a = rows[i]
  2339. except:
  2340. div = div + '</div>'
  2341. break
  2342. if(i == 0):
  2343. start = rows[i]['ip']
  2344. indata = namumark(name, rows[i]['data'])
  2345. if(rows[i]['block'] == 'O'):
  2346. indata = '블라인드 되었습니다.'
  2347. block = 'style="background: gainsboro;"'
  2348. else:
  2349. block = ''
  2350. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart)$", rows[i]['ip'])
  2351. if(m):
  2352. ban = ""
  2353. else:
  2354. if(admin == 1):
  2355. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  2356. row = curs.fetchall()
  2357. if(rows[i]['block'] == 'O'):
  2358. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(해제)</a>'
  2359. else:
  2360. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(블라인드)</a>'
  2361. n = re.search("\- (?:Admin)$", rows[i]['ip'])
  2362. if(n):
  2363. ban = isblock
  2364. else:
  2365. if(row):
  2366. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>' + isblock
  2367. else:
  2368. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>' + isblock
  2369. else:
  2370. ban = ""
  2371. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart|Admin)$", rows[i]['ip'])
  2372. if(m):
  2373. g = m.groups()
  2374. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(g[0]) + "'")
  2375. row = curs.fetchall()
  2376. if(row):
  2377. ip = '<a href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  2378. else:
  2379. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  2380. elif(re.search("\.", rows[i]["ip"])):
  2381. ip = rows[i]["ip"]
  2382. else:
  2383. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  2384. row = curs.fetchall()
  2385. if(row):
  2386. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  2387. else:
  2388. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  2389. if(rows[i]['ip'] == start):
  2390. j = i + 1
  2391. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2392. else:
  2393. j = i + 1
  2394. div = div + '<table id="toron"><tbody><tr><td id="toroncolor"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2395. i = i + 1
  2396. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), suburl = parse.quote(sub).replace('/','%2F'), sub = sub, logo = data['name'], rows = div, tn = 11, ban = ban)
  2397. @app.route('/topic/<path:name>/sub/<path:sub>/b/<number>')
  2398. def blind(name = None, sub = None, number = None):
  2399. if(session.get('Now') == True):
  2400. ip = getip(request)
  2401. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2402. rows = curs.fetchall()
  2403. if(rows):
  2404. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2405. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2406. row = curs.fetchall()
  2407. if(row):
  2408. if(row[0]['block'] == 'O'):
  2409. curs.execute("update topic set block = '' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2410. else:
  2411. curs.execute("update topic set block = 'O' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2412. conn.commit()
  2413. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2414. else:
  2415. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2416. else:
  2417. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2418. else:
  2419. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2420. else:
  2421. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2422. @app.route('/topic/<path:name>/sub/<path:sub>/stop')
  2423. def topicstop(name = None, sub = None):
  2424. if(session.get('Now') == True):
  2425. ip = getip(request)
  2426. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2427. rows = curs.fetchall()
  2428. if(rows):
  2429. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2430. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2431. row = curs.fetchall()
  2432. if(row):
  2433. today = getnow()
  2434. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  2435. rows = curs.fetchall()
  2436. if(rows):
  2437. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Restart', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Restart', '')")
  2438. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  2439. else:
  2440. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Stop', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Stop', '')")
  2441. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '')")
  2442. conn.commit()
  2443. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2444. else:
  2445. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2446. else:
  2447. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2448. else:
  2449. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2450. else:
  2451. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2452. @app.route('/topic/<path:name>/sub/<path:sub>/close')
  2453. def topicclose(name = None, sub = None):
  2454. if(session.get('Now') == True):
  2455. ip = getip(request)
  2456. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2457. rows = curs.fetchall()
  2458. if(rows):
  2459. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2460. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2461. row = curs.fetchall()
  2462. if(row):
  2463. today = getnow()
  2464. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  2465. rows = curs.fetchall()
  2466. if(rows):
  2467. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Reopen', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Reopen', '')")
  2468. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  2469. else:
  2470. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Close', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Close', '')")
  2471. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'O')")
  2472. conn.commit()
  2473. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2474. else:
  2475. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2476. else:
  2477. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2478. else:
  2479. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2480. else:
  2481. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2482. @app.route('/login', methods=['POST', 'GET'])
  2483. def login():
  2484. if(request.method == 'POST'):
  2485. ip = getip(request)
  2486. ban = getban(ip)
  2487. if(ban == 1):
  2488. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2489. else:
  2490. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2491. rows = curs.fetchall()
  2492. if(rows):
  2493. if(session.get('Now') == True):
  2494. return '<meta http-equiv="refresh" content="0;url=/error/11" />'
  2495. elif(bcrypt.checkpw(bytes(request.form["pw"], 'utf-8'), bytes(rows[0]['pw'], 'utf-8'))):
  2496. session['Now'] = True
  2497. session['DREAMER'] = request.form["id"]
  2498. curs.execute("insert into login (user, ip, today) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(getnow()) + "')")
  2499. conn.commit()
  2500. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2501. else:
  2502. return '<meta http-equiv="refresh" content="0;url=/error/13" />'
  2503. else:
  2504. return '<meta http-equiv="refresh" content="0;url=/error/12" />'
  2505. else:
  2506. ip = getip(request)
  2507. ban = getban(ip)
  2508. if(ban == 1):
  2509. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2510. else:
  2511. if(session.get('Now') == True):
  2512. return '<meta http-equiv="refresh" content="0;url=/error/11" />'
  2513. else:
  2514. return render_template('index.html', title = '로그인', enter = '로그인', logo = data['name'], tn = 15)
  2515. @app.route('/change', methods=['POST', 'GET'])
  2516. def change():
  2517. if(request.method == 'POST'):
  2518. ip = getip(request)
  2519. ban = getban(ip)
  2520. if(ban == 1):
  2521. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2522. else:
  2523. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2524. rows = curs.fetchall()
  2525. if(rows):
  2526. if(session.get('Now') == True):
  2527. return '<meta http-equiv="refresh" content="0;url=/logout" />'
  2528. elif(bcrypt.checkpw(bytes(request.form["pw"], 'utf-8'), bytes(rows[0]['pw'], 'utf-8'))):
  2529. hashed = bcrypt.hashpw(bytes(request.form["pw2"], 'utf-8'), bcrypt.gensalt())
  2530. curs.execute("update user set pw = '" + pymysql.escape_string(hashed.decode()) + "' where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2531. conn.commit()
  2532. return '<meta http-equiv="refresh" content="0;url=/login" />'
  2533. else:
  2534. return '<meta http-equiv="refresh" content="0;url=/error/10" />'
  2535. else:
  2536. return '<meta http-equiv="refresh" content="0;url=/error/9" />'
  2537. else:
  2538. ip = getip(request)
  2539. ban = getban(ip)
  2540. if(ban == 1):
  2541. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2542. else:
  2543. if(session.get('Now') == True):
  2544. return '<meta http-equiv="refresh" content="0;url=/logout" />'
  2545. else:
  2546. return render_template('index.html', title = '비밀번호 변경', enter = '변경', logo = data['name'], tn = 15)
  2547. @app.route('/check/<name>')
  2548. def check(name = None, sub = None, number = None):
  2549. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2550. rows = curs.fetchall()
  2551. if(rows and rows[0]['acl'] == 'owner' or rows and rows[0]['acl'] == 'admin'):
  2552. return '<meta http-equiv="refresh" content="0;url=/error/4" />'
  2553. else:
  2554. if(admincheck() == 1):
  2555. m = re.search('(?:[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)', name)
  2556. if(m):
  2557. curs.execute("select * from login where ip = '" + pymysql.escape_string(name) + "' order by today desc")
  2558. row = curs.fetchall()
  2559. if(row):
  2560. i = 0
  2561. c = ''
  2562. while True:
  2563. try:
  2564. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  2565. except:
  2566. break
  2567. i = i + 1
  2568. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  2569. else:
  2570. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  2571. else:
  2572. curs.execute("select * from login where user = '" + pymysql.escape_string(name) + "' order by today desc")
  2573. row = curs.fetchall()
  2574. if(row):
  2575. i = 0
  2576. c = ''
  2577. while True:
  2578. try:
  2579. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  2580. except:
  2581. break
  2582. i = i + 1
  2583. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  2584. else:
  2585. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  2586. else:
  2587. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2588. @app.route('/register', methods=['POST', 'GET'])
  2589. def register():
  2590. if(request.method == 'POST'):
  2591. ip = getip(request)
  2592. ban = getban(ip)
  2593. if(ban == 1):
  2594. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2595. else:
  2596. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["id"])
  2597. if(m):
  2598. return '<meta http-equiv="refresh" content="0;url=/error/8" />'
  2599. else:
  2600. if(len(request.form["id"]) > 20):
  2601. return '<meta http-equiv="refresh" content="0;url=/error/7" />'
  2602. else:
  2603. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2604. rows = curs.fetchall()
  2605. if(rows):
  2606. return '<meta http-equiv="refresh" content="0;url=/error/6" />'
  2607. else:
  2608. hashed = bcrypt.hashpw(bytes(request.form["pw"], 'utf-8'), bcrypt.gensalt())
  2609. if(request.form["id"] == data['owner']):
  2610. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'owner')")
  2611. else:
  2612. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'user')")
  2613. conn.commit()
  2614. return '<meta http-equiv="refresh" content="0;url=/login" />'
  2615. else:
  2616. ip = getip(request)
  2617. ban = getban(ip)
  2618. if(ban == 1):
  2619. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2620. else:
  2621. return render_template('index.html', title = '회원가입', enter = '회원가입', logo = data['name'], tn = 15)
  2622. @app.route('/logout')
  2623. def logout():
  2624. session['Now'] = False
  2625. session.pop('DREAMER', None)
  2626. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2627. @app.route('/ban/<name>', methods=['POST', 'GET'])
  2628. def ban(name = None):
  2629. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2630. rows = curs.fetchall()
  2631. if(rows and rows[0]['acl'] == 'owner' or rows and rows[0]['acl'] == 'admin'):
  2632. return '<meta http-equiv="refresh" content="0;url=/error/4" />'
  2633. else:
  2634. if(request.method == 'POST'):
  2635. if(admincheck() == 1):
  2636. ip = getip(request)
  2637. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  2638. row = curs.fetchall()
  2639. if(row):
  2640. block(name, '해제', getnow(), ip, '')
  2641. curs.execute("delete from ban where block = '" + pymysql.escape_string(name) + "'")
  2642. else:
  2643. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", name)
  2644. if(b):
  2645. block(name, request.form["end"], getnow(), ip, request.form["why"])
  2646. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', 'O')")
  2647. else:
  2648. block(name, request.form["end"], getnow(), ip, request.form["why"])
  2649. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', '')")
  2650. conn.commit()
  2651. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2652. else:
  2653. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2654. else:
  2655. if(admincheck() == 1):
  2656. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  2657. row = curs.fetchall()
  2658. if(row):
  2659. now = '차단 해제'
  2660. else:
  2661. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", name)
  2662. if(b):
  2663. now = '대역 차단'
  2664. else:
  2665. now = '차단'
  2666. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 16, now = now, today = getnow())
  2667. else:
  2668. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2669. @app.route('/acl/<path:name>', methods=['POST', 'GET'])
  2670. def acl(name = None):
  2671. if(request.method == 'POST'):
  2672. if(admincheck() == 1):
  2673. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2674. row = curs.fetchall()
  2675. if(row):
  2676. if(request.form["select"] == 'admin'):
  2677. curs.execute("update data set acl = 'admin' where title = '" + pymysql.escape_string(name) + "'")
  2678. elif(request.form["select"] == 'user'):
  2679. curs.execute("update data set acl = 'user' where title = '" + pymysql.escape_string(name) + "'")
  2680. else:
  2681. curs.execute("update data set acl = '' where title = '" + pymysql.escape_string(name) + "'")
  2682. conn.commit()
  2683. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2684. else:
  2685. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2686. else:
  2687. if(admincheck() == 1):
  2688. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2689. row = curs.fetchall()
  2690. if(row):
  2691. if(row[0]['acl'] == 'admin'):
  2692. now = '관리자만'
  2693. elif(row[0]['acl'] == 'user'):
  2694. now = '유저 이상'
  2695. else:
  2696. now = '일반'
  2697. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 19, now = '현재 ACL 상태는 ' + now)
  2698. else:
  2699. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2700. else:
  2701. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2702. @app.route('/admin/<name>', methods=['POST', 'GET'])
  2703. def admin(name = None):
  2704. if(request.method == 'POST'):
  2705. if(session.get('Now') == True):
  2706. ip = getip(request)
  2707. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2708. rows = curs.fetchall()
  2709. if(rows):
  2710. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2711. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2712. row = curs.fetchall()
  2713. if(row):
  2714. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2715. curs.execute("update user set acl = 'user' where id = '" + pymysql.escape_string(name) + "'")
  2716. else:
  2717. curs.execute("update user set acl = '" + pymysql.escape_string(request.form["select"]) + "' where id = '" + pymysql.escape_string(name) + "'")
  2718. conn.commit()
  2719. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2720. else:
  2721. return '<meta http-equiv="refresh" content="0;url=/error/5" />'
  2722. else:
  2723. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2724. else:
  2725. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2726. else:
  2727. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2728. else:
  2729. if(session.get('Now') == True):
  2730. ip = getip(request)
  2731. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2732. rows = curs.fetchall()
  2733. if(rows):
  2734. if(rows[0]['acl'] == 'owner'):
  2735. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2736. row = curs.fetchall()
  2737. if(row):
  2738. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2739. now = '권한 해제'
  2740. else:
  2741. now = '권한 부여'
  2742. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 18, now = now)
  2743. else:
  2744. return '<meta http-equiv="refresh" content="0;url=/error/5" />'
  2745. else:
  2746. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2747. else:
  2748. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2749. else:
  2750. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2751. @app.route('/ban')
  2752. def aban():
  2753. ip = getip(request)
  2754. if(getban(ip) == 1):
  2755. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  2756. rows = curs.fetchall()
  2757. if(rows):
  2758. if(rows[0]['end']):
  2759. end = rows[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2760. now = getnow()
  2761. now = re.sub(':', '', now)
  2762. now = re.sub('\-', '', now)
  2763. now = re.sub(' ', '', now)
  2764. now = int(now)
  2765. day = rows[0]['end']
  2766. day = re.sub('\-', '', day)
  2767. if(now >= int(day + '000000')):
  2768. curs.execute("delete from ban where block = '" + pymysql.escape_string(ip) + "'")
  2769. conn.commit()
  2770. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2771. else:
  2772. end = '영구 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2773. else:
  2774. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  2775. if(b):
  2776. results = b.groups()
  2777. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2778. row = curs.fetchall()
  2779. if(row):
  2780. if(row[0]['end']):
  2781. end = row[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2782. now = getnow()
  2783. now = re.sub(':', '', now)
  2784. now = re.sub('\-', '', now)
  2785. now = re.sub(' ', '', now)
  2786. now = int(now)
  2787. day = row[0]['end']
  2788. day = re.sub('\-', '', day)
  2789. if(now >= int(day + '000000')):
  2790. curs.execute("delete from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2791. conn.commit()
  2792. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2793. else:
  2794. end = '영구 차단 상태 입니다. / 사유 : ' + row[0]['why']
  2795. else:
  2796. end = '권한이 맞지 않는 상태 입니다.'
  2797. return render_template('index.html', title = '권한 오류', logo = data['name'], data = end), 401
  2798. @app.route('/w/<path:name>/r/<int:a>/diff/<int:b>')
  2799. def diff(name = None, a = None, b = None):
  2800. curs.execute("select * from history where id = '" + pymysql.escape_string(str(a)) + "' and title = '" + pymysql.escape_string(name) + "'")
  2801. rows = curs.fetchall()
  2802. if(rows):
  2803. curs.execute("select * from history where id = '" + pymysql.escape_string(str(b)) + "' and title = '" + pymysql.escape_string(name) + "'")
  2804. row = curs.fetchall()
  2805. if(row):
  2806. indata = re.sub('<', '&lt;', rows[0]['data'])
  2807. indata = re.sub('>', '&gt;', indata)
  2808. indata = re.sub('"', '&quot;', indata)
  2809. indata = re.sub('\n', '<br>', indata)
  2810. enddata = re.sub('<', '&lt;', row[0]['data'])
  2811. enddata = re.sub('>', '&gt;', enddata)
  2812. enddata = re.sub('"', '&quot;', enddata)
  2813. enddata = re.sub('\n', '<br>', enddata)
  2814. sm = difflib.SequenceMatcher(None, indata, enddata)
  2815. c = show_diff(sm)
  2816. return render_template('index.html', title = name, logo = data['name'], data = c, plus = '(비교)')
  2817. else:
  2818. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  2819. else:
  2820. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  2821. @app.route('/user')
  2822. def user():
  2823. ip = getip(request)
  2824. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2825. rows = curs.fetchall()
  2826. if(getban(ip) == 0):
  2827. if(rows):
  2828. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  2829. if(rows[0]['acl'] == 'admin'):
  2830. acl = '관리자'
  2831. else:
  2832. acl = '소유자'
  2833. else:
  2834. acl = '유저'
  2835. else:
  2836. acl = '일반'
  2837. else:
  2838. acl = '차단'
  2839. if(not re.search('\.', ip)):
  2840. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(ip) + "'")
  2841. row = curs.fetchall()
  2842. if(row):
  2843. ip = '<a href="/w/' + parse.quote('사용자:' + ip).replace('/','%2F') + '">' + ip + '</a>'
  2844. else:
  2845. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + ip).replace('/','%2F') + '">' + ip + '</a>'
  2846. return render_template('index.html', title = '유저 메뉴', logo = data['name'], data = ip + '<br><br><span>권한 상태 : ' + acl + '<br><br><li><a href="/login">로그인</a></li><li><a href="/logout">로그아웃</a></li><li><a href="/register">회원가입</a></li><li><a href="/change">비밀번호 변경</a></li>')
  2847. @app.route('/random')
  2848. def random():
  2849. curs.execute("select * from data order by rand() limit 1")
  2850. rows = curs.fetchall()
  2851. if(rows):
  2852. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(rows[0]['title']).replace('/','%2F') + '" />'
  2853. else:
  2854. return '<meta http-equiv="refresh" content="0;url=/" />'
  2855. @app.route('/error/<int:num>')
  2856. def error(num = None):
  2857. if(num == 1):
  2858. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.'), 401
  2859. elif(num == 2):
  2860. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '이 계정이 없습니다.'), 401
  2861. elif(num == 3):
  2862. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.'), 401
  2863. elif(num == 4):
  2864. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '관리자는 차단, 검사 할 수 없습니다.'), 401
  2865. elif(num == 5):
  2866. return render_template('index.html', title = '유저 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2867. elif(num == 6):
  2868. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '동일한 아이디의 유저가 있습니다.'), 401
  2869. elif(num == 7):
  2870. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '아이디는 20글자보다 짧아야 합니다.'), 401
  2871. elif(num == 8):
  2872. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '아이디에는 한글과 알파벳과 공백만 허용 됩니다.'), 401
  2873. elif(num == 9):
  2874. return render_template('index.html', title = '변경 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2875. elif(num == 10):
  2876. return render_template('index.html', title = '변경 오류', logo = data['name'], data = '비밀번호가 다릅니다.'), 401
  2877. elif(num == 11):
  2878. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '이미 로그인 되어 있습니다.'), 401
  2879. elif(num == 12):
  2880. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2881. elif(num == 13):
  2882. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '비밀번호가 다릅니다.'), 401
  2883. elif(num == 14):
  2884. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = 'jpg, gif, jpeg, png만 가능 합니다.'), 401
  2885. elif(num == 15):
  2886. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = '파일 명에 . / \ * < > | : ? 가 들어 갈 수 없습니다.'), 401
  2887. elif(num == 16):
  2888. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = '동일한 이름의 파일이 있습니다.'), 401
  2889. elif(num == 17):
  2890. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '편집 내용 기록에는 한글과 영어와 숫자, 공백만 허용 됩니다.'), 401
  2891. elif(num == 18):
  2892. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '내용이 원래 문서와 동일 합니다.'), 401
  2893. elif(num == 19):
  2894. return render_template('index.html', title = '이동 오류', logo = data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.'), 401
  2895. else:
  2896. return '<meta http-equiv="refresh" content="0;url=/" />'
  2897. @app.errorhandler(404)
  2898. def uncaughtError(error):
  2899. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2900. if __name__ == '__main__':
  2901. app.run(host = '0.0.0.0', port = int(data['port']), threaded = True)