app.py 130 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699170017011702170317041705170617071708170917101711171217131714171517161717171817191720172117221723172417251726172717281729173017311732173317341735173617371738173917401741174217431744174517461747174817491750175117521753175417551756175717581759176017611762176317641765176617671768176917701771177217731774177517761777177817791780178117821783178417851786178717881789179017911792179317941795179617971798179918001801180218031804180518061807180818091810181118121813181418151816181718181819182018211822182318241825182618271828182918301831183218331834183518361837183818391840184118421843184418451846184718481849185018511852185318541855185618571858185918601861186218631864186518661867186818691870187118721873187418751876187718781879188018811882188318841885188618871888188918901891189218931894189518961897189818991900190119021903190419051906190719081909191019111912191319141915191619171918191919201921192219231924192519261927192819291930193119321933193419351936193719381939194019411942194319441945194619471948194919501951195219531954195519561957195819591960196119621963196419651966196719681969197019711972197319741975197619771978197919801981198219831984198519861987198819891990199119921993199419951996199719981999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202420252026202720282029203020312032203320342035203620372038203920402041204220432044204520462047204820492050205120522053205420552056205720582059206020612062206320642065206620672068206920702071207220732074207520762077207820792080208120822083208420852086208720882089209020912092209320942095209620972098209921002101210221032104210521062107210821092110211121122113211421152116211721182119212021212122212321242125212621272128212921302131213221332134213521362137213821392140214121422143214421452146214721482149215021512152215321542155215621572158215921602161216221632164216521662167216821692170217121722173217421752176217721782179218021812182218321842185218621872188218921902191219221932194219521962197219821992200220122022203220422052206220722082209221022112212221322142215221622172218221922202221222222232224222522262227222822292230223122322233223422352236223722382239224022412242224322442245224622472248224922502251225222532254225522562257225822592260226122622263226422652266226722682269227022712272227322742275227622772278227922802281228222832284228522862287228822892290229122922293229422952296229722982299230023012302230323042305230623072308230923102311231223132314231523162317231823192320232123222323232423252326232723282329233023312332233323342335233623372338233923402341234223432344234523462347234823492350235123522353235423552356235723582359236023612362236323642365236623672368236923702371237223732374237523762377237823792380238123822383238423852386238723882389239023912392239323942395239623972398239924002401240224032404240524062407240824092410241124122413241424152416241724182419242024212422242324242425242624272428242924302431243224332434243524362437243824392440244124422443244424452446244724482449245024512452245324542455245624572458245924602461246224632464246524662467246824692470247124722473247424752476247724782479248024812482248324842485248624872488248924902491249224932494249524962497249824992500250125022503250425052506250725082509251025112512251325142515251625172518251925202521252225232524252525262527252825292530253125322533253425352536253725382539254025412542254325442545254625472548254925502551255225532554255525562557255825592560256125622563256425652566256725682569257025712572257325742575257625772578257925802581258225832584258525862587258825892590259125922593259425952596259725982599260026012602260326042605260626072608260926102611261226132614261526162617261826192620262126222623262426252626262726282629263026312632263326342635263626372638263926402641264226432644264526462647264826492650265126522653265426552656265726582659266026612662266326642665266626672668266926702671267226732674267526762677267826792680268126822683268426852686268726882689269026912692269326942695269626972698269927002701270227032704270527062707270827092710271127122713271427152716271727182719272027212722272327242725272627272728272927302731273227332734273527362737273827392740274127422743274427452746274727482749
  1. from bottle import route, run, template, error, request, static_file, app, BaseRequest
  2. from bottle.ext import beaker
  3. import bcrypt
  4. import os
  5. import difflib
  6. import hashlib
  7. import json
  8. import pymysql
  9. json_data = open('set.json').read()
  10. set_data = json.loads(json_data)
  11. session_opts = {
  12. 'session.type': 'file',
  13. 'session.data_dir': './app_session/',
  14. 'session.auto': True
  15. }
  16. app = beaker.middleware.SessionMiddleware(app(), session_opts)
  17. BaseRequest.MEMFILE_MAX = 1024 * 1024
  18. def redirect(data):
  19. return('<meta http-equiv="refresh" content="0;url=' + data + '" />')
  20. from func import *
  21. from mark import *
  22. db_pas = pymysql.escape_string
  23. r_ver = '2.1.3'
  24. @route('/setup', method=['GET', 'POST'])
  25. def setup():
  26. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4')
  27. curs = conn.cursor(pymysql.cursors.DictCursor)
  28. if(request.method == 'POST'):
  29. if(not request.forms.owner == set_data['pw']):
  30. conn.close()
  31. return(redirect('/error/3'))
  32. else:
  33. try:
  34. curs.execute("use " + set_data['db'])
  35. except:
  36. curs.execute("create database " + set_data['db'])
  37. curs.execute("use " + set_data['db'])
  38. curs.execute("alter database " + set_data['db'] + " character set = utf8mb4 collate = utf8mb4_unicode_ci")
  39. try:
  40. curs.execute("create table data(title text, data longtext, acl text)")
  41. except:
  42. pass
  43. try:
  44. curs.execute("create table history(id text, title text, data longtext, date text, ip text, send text, leng text)")
  45. except:
  46. pass
  47. try:
  48. curs.execute("create table rd(title text, sub text, date text)")
  49. except:
  50. pass
  51. try:
  52. curs.execute("create table user(id text, pw text, acl text)")
  53. except:
  54. pass
  55. try:
  56. curs.execute("create table ban(block text, end text, why text, band text)")
  57. except:
  58. pass
  59. try:
  60. curs.execute("create table topic(id text, title text, sub text, data longtext, date text, ip text, block text, top text)")
  61. except:
  62. pass
  63. try:
  64. curs.execute("create table stop(title text, sub text, close text)")
  65. except:
  66. pass
  67. try:
  68. curs.execute("create table rb(block text, end text, today text, blocker text, why text)")
  69. except:
  70. pass
  71. try:
  72. curs.execute("create table login(user text, ip text, today text)")
  73. except:
  74. pass
  75. try:
  76. curs.execute("create table back(title text, link text, type text)")
  77. except:
  78. pass
  79. try:
  80. curs.execute("create table cat(title text, cat text)")
  81. except:
  82. pass
  83. try:
  84. curs.execute("create table hidhi(title text, re text)")
  85. except:
  86. pass
  87. try:
  88. curs.execute("create table agreedis(title text, sub text)")
  89. except:
  90. pass
  91. try:
  92. curs.execute("create table custom(user text, css longtext)")
  93. except:
  94. pass
  95. try:
  96. curs.execute("create table other(name text, data text)")
  97. except:
  98. pass
  99. try:
  100. curs.execute("create table alist(name text, acl text)")
  101. except:
  102. pass
  103. conn.close()
  104. return(redirect('/'))
  105. else:
  106. conn.close()
  107. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '<form method="POST"><input name="owner" type="password"> <button class="btn btn-primary" type="submit">저장</button></form>', title = '오픈나무 설치'))
  108. @route('/upload', method=['GET', 'POST'])
  109. def upload():
  110. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  111. curs = conn.cursor(pymysql.cursors.DictCursor)
  112. MEMFILE_MAX = int(set_data['upload']) * 1024 * 1024
  113. ip = ip_check()
  114. ban = ban_check(ip)
  115. if(request.method == 'POST'):
  116. if(ban == 1):
  117. conn.close()
  118. return(redirect('/ban'))
  119. else:
  120. file = request.files.file
  121. if(file):
  122. comp = re.compile("^(.+)(\.(?:jpg|gif|png|jpeg))$", re.I)
  123. exist = comp.search(file.filename)
  124. if(exist):
  125. if((int(set_data['upload']) * 1024 * 1024) < request.content_length):
  126. conn.close()
  127. return(redirect('/error/17'))
  128. else:
  129. file_info = exist.groups()
  130. file_data = file_info[0] + file_info[1]
  131. file_name = sha224(file_info[0]) + file_info[1]
  132. if(os.path.exists(os.path.join('image', file_name))):
  133. conn.close()
  134. return(redirect('/error/16'))
  135. else:
  136. file.save(os.path.join('image', file_name))
  137. curs.execute("select title from data where title = '" + db_pas('파일:' + file_data) + "'")
  138. exist_db = curs.fetchall()
  139. if(not exist_db):
  140. curs.execute("insert into data (title, data, acl) value ('" + db_pas('파일:' + file_data) + "', '" + db_pas('[[파일:' + file_data + ']][br][br]{{{[[파일:' + file_data + ']]}}}') + "', '')")
  141. conn.commit()
  142. history_plus('파일:' + file_data, '[[파일:' + file_data + ']][br][br]{{{[[파일:' + file_data + ']]}}}', get_time(), ip, '파일:' + file_data + ' 업로드', '0')
  143. conn.close()
  144. return(redirect('/w/' + url_pas('파일:' + file_data)))
  145. else:
  146. conn.close()
  147. return(redirect('/error/14'))
  148. else:
  149. conn.close()
  150. return(redirect('/error/14'))
  151. else:
  152. if(ban == 1):
  153. conn.close()
  154. return(redirect('/ban'))
  155. else:
  156. conn.close()
  157. return(template('upload', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], title = '업로드', number = set_data['upload']))
  158. @route('/image/<name:path>')
  159. def static(name = None):
  160. if(os.path.exists(os.path.join('image', name))):
  161. return(static_file(name, root = 'image'))
  162. else:
  163. return(redirect('/'))
  164. @route('/acllist')
  165. def acl_list():
  166. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  167. curs = conn.cursor(pymysql.cursors.DictCursor)
  168. div = '<div>'
  169. i = 0
  170. curs.execute("select title, acl from data where acl = 'admin' or acl = 'user' order by acl desc")
  171. list_data = curs.fetchall()
  172. if(list_data):
  173. for data in list_data:
  174. if(data['acl'] == 'admin'):
  175. acl = '관리자'
  176. else:
  177. acl = '로그인'
  178. div += '<li>' + str(i + 1) + '. <a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (' + acl + ')</li>'
  179. i += 1
  180. else:
  181. div += '</div>'
  182. else:
  183. div = ''
  184. conn.close()
  185. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = 'ACL 문서 목록'))
  186. @route('/listacl')
  187. def list_acl():
  188. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  189. curs = conn.cursor(pymysql.cursors.DictCursor)
  190. div = '<div>'
  191. i = 0
  192. curs.execute("select * from alist order by name desc")
  193. list_data = curs.fetchall()
  194. if(list_data):
  195. for data in list_data:
  196. if(data['acl'] == 'ban'):
  197. acl = '차단'
  198. elif(data['acl'] == 'mdel'):
  199. acl = '많은 문서 삭제'
  200. elif(data['acl'] == 'toron'):
  201. acl = '토론 관리'
  202. elif(data['acl'] == 'check'):
  203. acl = '사용자 검사'
  204. elif(data['acl'] == 'acl'):
  205. acl = '문서 ACL'
  206. elif(data['acl'] == 'hidel'):
  207. acl = '역사 숨김'
  208. elif(data['acl'] == 'owner'):
  209. acl = '소유자'
  210. div += '<li>' + str(i + 1) + '. <a href="/adminplus/' + url_pas(data['name']) + '">' + data['name'] + '</a> (' + acl + ')</li>'
  211. i += 1
  212. else:
  213. div += '<br><a href="/manager/8">(새로 생성)</a></div>'
  214. else:
  215. div = '<a href="/manager/8">(새로 생성)</a></div>'
  216. conn.close()
  217. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = 'ACL 목록'))
  218. @route('/adminplus/<name:path>', method=['POST', 'GET'])
  219. def admin_plus(name = None):
  220. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  221. curs = conn.cursor(pymysql.cursors.DictCursor)
  222. if(admin_check(None) == 1):
  223. if(request.method == 'POST'):
  224. curs.execute("delete from alist where name = '" + db_pas(name) + "'")
  225. if(request.forms.ban):
  226. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'ban')")
  227. if(request.forms.mdel):
  228. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'mdel')")
  229. if(request.forms.toron):
  230. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'toron')")
  231. if(request.forms.check):
  232. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'check')")
  233. if(request.forms.acl):
  234. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'acl')")
  235. if(request.forms.hidel):
  236. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'hidel')")
  237. if(request.forms.owner):
  238. curs.execute("insert into alist (name, acl) value ('" + db_pas(name) + "', 'owner')")
  239. conn.commit()
  240. conn.close()
  241. return(redirect('/adminplus/admin'))
  242. else:
  243. curs.execute('select acl from alist where name = "' + db_pas(name) + '"')
  244. test = curs.fetchall()
  245. list = ''
  246. exist_list = ['', '', '', '', '', '', '', '', '']
  247. for go in test:
  248. if(go['acl'] == 'ban'):
  249. exist_list[0] = 'checked="checked"'
  250. elif(go['acl'] == 'mdel'):
  251. exist_list[1] = 'checked="checked"'
  252. elif(go['acl'] == 'toron'):
  253. exist_list[2] = 'checked="checked"'
  254. elif(go['acl'] == 'check'):
  255. exist_list[3] = 'checked="checked"'
  256. elif(go['acl'] == 'acl'):
  257. exist_list[4] = 'checked="checked"'
  258. elif(go['acl'] == 'hidel'):
  259. exist_list[5] = 'checked="checked"'
  260. elif(go['acl'] == 'owner'):
  261. exist_list[7] = 'checked="checked"'
  262. list += '<li><input type="checkbox" name="ban" ' + exist_list[0] + '> 차단</li>'
  263. list += '<li><input type="checkbox" name="mdel" ' + exist_list[1] + '> 많은 문서 삭제</li>'
  264. list += '<li><input type="checkbox" name="toron" ' + exist_list[2] + '> 토론 관리</li>'
  265. list += '<li><input type="checkbox" name="check" ' + exist_list[3] + '> 사용자 검사</li>'
  266. list += '<li><input type="checkbox" name="acl" ' + exist_list[4] + '> 문서 ACL</li>'
  267. list += '<li><input type="checkbox" name="hidel" ' + exist_list[5] + '> 역사 숨김</li>'
  268. list += '<li><input type="checkbox" name="owner" ' + exist_list[7] + '> 소유자</li>'
  269. conn.close()
  270. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '관리 그룹 추가', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/adminplus/' + url_pas(name) + '">' + list + '<div class="form-actions"><button class="btn btn-primary" type="submit">저장</button></div></form>'))
  271. else:
  272. conn.close()
  273. return(redirect('/error/3'))
  274. @route('/adminlist')
  275. def admin_list():
  276. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  277. curs = conn.cursor(pymysql.cursors.DictCursor)
  278. i = 1
  279. div = '<div>'
  280. curs.execute("select * from user where acl = 'admin' or acl = 'owner'")
  281. user_data = curs.fetchall()
  282. if(user_data):
  283. for data in user_data:
  284. name = ip_pas(data['id'], 2)
  285. name += ' (' + data['acl'] + ')'
  286. div += '<li>' + str(i) + '. ' + name + '</li>'
  287. i += 1
  288. else:
  289. div += '</div>'
  290. conn.close()
  291. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '관리자 목록'))
  292. else:
  293. conn.close()
  294. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], title = '관리자 목록'))
  295. @route('/recentchanges')
  296. def recentchanges():
  297. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  298. curs = conn.cursor(pymysql.cursors.DictCursor)
  299. ydmin = admin_check(1)
  300. zdmin = admin_check(6)
  301. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">문서명</td><td style="text-align: center;width:33.33%;">기여자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  302. curs.execute("select id, title, date, ip, send, leng from history order by date desc limit 50")
  303. rows = curs.fetchall()
  304. if(rows):
  305. for data in rows:
  306. if(data['send']):
  307. if(re.search("^(?: *)$", data['send'])):
  308. send = '<br>'
  309. else:
  310. send = data['send']
  311. else:
  312. send = '<br>'
  313. title = data['title']
  314. title = re.sub('<', '&lt;', title)
  315. title = re.sub('>', '&gt;', title)
  316. title = re.sub('"', '&quot;', title)
  317. m = re.search("\+", data['leng'])
  318. n = re.search("\-", data['leng'])
  319. if(m):
  320. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  321. elif(n):
  322. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  323. else:
  324. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  325. if(ydmin == 1):
  326. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  327. row = curs.fetchall()
  328. if(row):
  329. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  330. else:
  331. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  332. else:
  333. ban = ''
  334. ip = ip_pas(data['ip'], None)
  335. if((int(data['id']) - 1) == 0):
  336. revert = ''
  337. else:
  338. revert = '<a href="/w/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '/diff/' + data['id'] + '">(비교)</a> <a href="/revert/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '">(되돌리기)</a>'
  339. style = ''
  340. if(zdmin == 1):
  341. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  342. row = curs.fetchall()
  343. if(row):
  344. ip += ' (숨김)'
  345. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(공개)'
  346. else:
  347. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(숨김)'
  348. else:
  349. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  350. row = curs.fetchall()
  351. if(row):
  352. ip = '숨김'
  353. hidden = ''
  354. send = '숨김'
  355. ban = ''
  356. style = 'display:none;'
  357. else:
  358. hidden = ''
  359. div += '<tr style="' + style + '"><td style="text-align: center;width:33.33%;"><a href="/w/' + url_pas(data['title']) + '">' + title + '</a> (<a href="/history/' + url_pas(data['title']) + '">' + data['id'] + '판</a>) ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + hidden + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr>'
  360. else:
  361. div += '</tbody></table></div>'
  362. else:
  363. div = 'None'
  364. conn.close()
  365. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '최근 변경내역'))
  366. @route('/history/<name:path>/r/<num:int>/hidden')
  367. def history_hidden(name = None, num = None):
  368. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  369. curs = conn.cursor(pymysql.cursors.DictCursor)
  370. if(admin_check(6) == 1):
  371. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  372. exist = curs.fetchall()
  373. if(exist):
  374. curs.execute("delete from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  375. else:
  376. curs.execute("insert into hidhi (title, re) value ('" + db_pas(name) + "', '" + db_pas(str(num)) + "')")
  377. conn.commit()
  378. conn.close()
  379. return(redirect('/history/' + url_pas(name)))
  380. @route('/record/<name:path>')
  381. @route('/record/<name:path>/n/<num:int>')
  382. def user_record(name = None, num = 1):
  383. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  384. curs = conn.cursor(pymysql.cursors.DictCursor)
  385. if(num * 50 <= 0):
  386. v = 50
  387. else:
  388. v = num * 50
  389. i = v - 50
  390. ydmin = admin_check(1)
  391. zdmin = admin_check(6)
  392. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">문서명</td><td style="text-align: center;width:33.33%;">기여자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  393. curs.execute("select * from history where ip = '" + db_pas(name) + "' order by date desc limit " + str(i) + ", " + str(v))
  394. rows = curs.fetchall()
  395. if(rows):
  396. for data in rows:
  397. if(data['send']):
  398. send = data['send']
  399. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  400. else:
  401. send = '<br>'
  402. title = data['title']
  403. title = re.sub('<', '&lt;', title)
  404. title = re.sub('>', '&gt;', title)
  405. title = re.sub('"', '&quot;', title)
  406. m = re.search("\+", data['leng'])
  407. n = re.search("\-", data['leng'])
  408. if(m):
  409. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  410. elif(n):
  411. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  412. else:
  413. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  414. if(ydmin == 1):
  415. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  416. row = curs.fetchall()
  417. if(row):
  418. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  419. else:
  420. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  421. else:
  422. ban = ''
  423. ip = ip_pas(data['ip'], None)
  424. if((int(data['id']) - 1) == 0):
  425. revert = ''
  426. else:
  427. revert = '<a href="/revert/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '">(되돌리기)</a>'
  428. style = ''
  429. if(zdmin == 1):
  430. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  431. row = curs.fetchall()
  432. if(row):
  433. ip += ' (숨김)'
  434. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(공개)'
  435. else:
  436. hidden = ' <a href="/history/' + url_pas(data['title']) + '/r/' + data['id'] + '/hidden">(숨김)'
  437. else:
  438. curs.execute("select * from hidhi where title = '" + db_pas(data['title']) + "' and re = '" + db_pas(data['id']) + "'")
  439. row = curs.fetchall()
  440. if(row):
  441. ip = '숨김'
  442. hidden = ''
  443. send = '숨김'
  444. ban = ''
  445. style = 'display:none;'
  446. else:
  447. hidden = ''
  448. div += '<tr style="' + style + '"><td style="text-align: center;width:33.33%;"><a href="/w/' + url_pas(data['title']) + '">' + title + '</a> (<a href="/history/' + url_pas(data['title']) + '">' + data['id'] + '판</a>) <a href="/w/' + url_pas(data['title']) + '/r/' + str(int(data['id']) - 1) + '/diff/' + data['id'] + '">(비교)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + hidden + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr>'
  449. else:
  450. div += '</tbody></table></div>'
  451. else:
  452. div = 'None<br>'
  453. div += '<br><a href="/record/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/record/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  454. curs.execute("select end, why from ban where block = '" + db_pas(name) + "'")
  455. ban_it = curs.fetchall()
  456. if(ban_it):
  457. div = namumark('', '{{{#!wiki style="border:2px solid red;padding:10px;"\r\n{{{+2 {{{#red 이 사용자는 차단 당했습니다.}}}}}}\r\n\r\n차단 해제 일 : ' + ban_it[0]['end'] + '[br]사유 : ' + ban_it[0]['why'] + '}}}') + '<br>' + div
  458. conn.close()
  459. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 기록'))
  460. @route('/userlog')
  461. @route('/userlog/n/<num:int>')
  462. def user_log(num = 1):
  463. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  464. curs = conn.cursor(pymysql.cursors.DictCursor)
  465. if(num * 50 <= 0):
  466. i = 50
  467. else:
  468. i = num * 50
  469. j = i - 50
  470. list_data = ''
  471. ydmin = admin_check(1)
  472. curs.execute("select * from user limit " + str(j) + ", " + str(i))
  473. user_list = curs.fetchall()
  474. if(user_list):
  475. for data in user_list:
  476. if(ydmin == 1):
  477. curs.execute("select * from ban where block = '" + db_pas(data['id']) + "'")
  478. ban_exist = curs.fetchall()
  479. if(ban_exist):
  480. ban_button = ' <a href="/ban/' + url_pas(data['id']) + '">(해제)</a>'
  481. else:
  482. ban_button = ' <a href="/ban/' + url_pas(data['id']) + '">(차단)</a>'
  483. else:
  484. ban_button = ''
  485. ip = ip_pas(data['id'], None)
  486. list_data += '<li>' + str(j + 1) + '. ' + ip + ban_button + '</li>'
  487. j += 1
  488. list_data += '<br><a href="/userlog/n/' + str(num - 1) + '">(이전)</a> <a href="/userlog/n/' + str(num + 1) + '">(이후)</a>'
  489. conn.close()
  490. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = list_data, title = '사용자 가입 기록'))
  491. else:
  492. conn.close()
  493. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '', title = '사용자 가입 기록'))
  494. @route('/backreset')
  495. def xref_reset():
  496. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  497. curs = conn.cursor(pymysql.cursors.DictCursor)
  498. if(admin_check(None) == 1):
  499. i = 0
  500. curs.execute("delete from back")
  501. conn.commit()
  502. curs.execute("select title, data from data")
  503. all = curs.fetchall()
  504. if(all):
  505. for data in all:
  506. namumark(data['title'], data['data'])
  507. conn.close()
  508. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = '에러 없음', title = '완료'))
  509. else:
  510. conn.close()
  511. return(redirect('/error/3'))
  512. @route('/xref/<name:path>')
  513. @route('/xref/<name:path>/n/<num:int>')
  514. def xref(name = None, num = 1):
  515. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  516. curs = conn.cursor(pymysql.cursors.DictCursor)
  517. if(num * 50 <= 0):
  518. v = 50
  519. else:
  520. v = num * 50
  521. i = v - 50
  522. div = ''
  523. curs.execute("delete from back where title = '" + db_pas(name) + "' and link = ''")
  524. conn.commit()
  525. curs.execute("select * from back where title = '" + db_pas(name) + "' order by link asc")
  526. rows = curs.fetchall()
  527. if(rows):
  528. for data in rows:
  529. div += '<li><a href="/w/' + url_pas(data['link']) + '">' + data['link'] + '</a>'
  530. if(data['type']):
  531. div += ' (' + data['type'] + ')</li>'
  532. else:
  533. div += '</li>'
  534. div += '<br><a href="/xref/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/xref/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  535. conn.close()
  536. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, page = url_pas(name), sub = '역링크'))
  537. else:
  538. conn.close()
  539. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = 'None', title = name, page = url_pas(name), sub = '역링크'))
  540. @route('/recentdiscuss')
  541. def recentdiscuss():
  542. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  543. curs = conn.cursor(pymysql.cursors.DictCursor)
  544. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:50%;">토론명</td><td style="text-align: center;width:50%;">시간</td></tr>'
  545. curs.execute("select * from rd order by date desc limit 50")
  546. rows = curs.fetchall()
  547. if(rows):
  548. for data in rows:
  549. title = data['title']
  550. title = re.sub('<', '&lt;', title)
  551. title = re.sub('>', '&gt;', title)
  552. title = re.sub('"', '&quot;', title)
  553. sub = data['sub']
  554. sub = re.sub('<', '&lt;', sub)
  555. sub = re.sub('>', '&gt;', sub)
  556. sub = re.sub('"', '&quot;', sub)
  557. div += '<tr><td style="text-align: center;width:50%;"><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '">' + title + '</a> (' + sub + ')</td><td style="text-align: center;width:50%;">' + data['date'] + '</td></tr>'
  558. else:
  559. div += '</tbody></table></div>'
  560. else:
  561. div = 'None'
  562. conn.close()
  563. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '최근 토론내역'))
  564. @route('/blocklog')
  565. @route('/blocklog/n/<number:int>')
  566. def blocklog(num = 1):
  567. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  568. curs = conn.cursor(pymysql.cursors.DictCursor)
  569. if(num * 50 <= 0):
  570. v = 50
  571. else:
  572. v = num * 50
  573. i = v - 50
  574. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:20%;">차단자</td><td style="text-align: center;width:20%;">관리자</td><td style="text-align: center;width:20%;">기간</td><td style="text-align: center;width:20%;">이유</td><td style="text-align: center;width:20%;">시간</td></tr>'
  575. curs.execute("select * from rb order by today desc")
  576. rows = curs.fetchall()
  577. if(rows):
  578. for data in rows:
  579. why = data['why']
  580. why = re.sub('<', '&lt;', why)
  581. why = re.sub('>', '&gt;', why)
  582. why = re.sub('"', '&quot;', why)
  583. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", data['block'])
  584. if(b):
  585. ip = data['block'] + ' (대역)'
  586. else:
  587. ip = data['block']
  588. div += '<tr><td style="text-align: center;width:20%;">' + ip + '</a></td><td style="text-align: center;width:20%;">' + data['blocker'] + '</td><td style="text-align: center;width:20%;">' + data['end'] + '</td><td style="text-align: center;width:20%;">' + data['why'] + '</td><td style="text-align: center;width:20%;">' + data['today'] + '</td></tr>'
  589. else:
  590. div += '</tbody></table></div>'
  591. else:
  592. div = 'None'
  593. conn.close()
  594. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 차단 기록'))
  595. @route('/history/<name:path>', method=['POST', 'GET'])
  596. @route('/history/<name:path>/n/<num:int>', method=['POST', 'GET'])
  597. def history_view(name = None, num = 1):
  598. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  599. curs = conn.cursor(pymysql.cursors.DictCursor)
  600. if(request.method == 'POST'):
  601. conn.close()
  602. return(redirect('/w/' + url_pas(name) + '/r/' + request.forms.b + '/diff/' + request.forms.a))
  603. else:
  604. select = ''
  605. num1 = 0
  606. num2 = 0
  607. curs.execute("select id from history where title = '" + db_pas(name) + "' order by id + 0 desc limit 1")
  608. end_num = curs.fetchall()
  609. if(end_num):
  610. num1 = int(end_num[0]['id']) - num * 50
  611. if(num1 > 0):
  612. num2 = num1 + 51
  613. else:
  614. if(num1 + 51 > 0):
  615. num2 = num1 + 51
  616. admin1 = admin_check(1)
  617. admin2 = admin_check(6)
  618. div = '<div><table style="text-align:center; width:100%;"><tbody><tr><td style="width:33.33%;">판</td><td style="width:33.33%;">기여자</td><td style="width:33.33%;">시간</td></tr>'
  619. curs.execute("select send, leng, ip, date, title, id from history where title = '" + db_pas(name) + "' and id + 0 < '" + str(num2) + "' and id + 0 > '" + str(num1) + "' order by id + 0 desc")
  620. all_data = curs.fetchall()
  621. if(all_data):
  622. for data in all_data:
  623. select += '<option value="' + data['id'] + '">' + data['id'] + '</option>'
  624. if(data['send']):
  625. send = data['send']
  626. else:
  627. send = '<br>'
  628. if(re.search("^\+", data['leng'])):
  629. leng = '<span style="color:green;">' + data['leng'] + '</span>'
  630. elif(re.search("^\-", data['leng'])):
  631. leng = '<span style="color:red;">' + data['leng'] + '</span>'
  632. else:
  633. leng = '<span style="color:gray;">' + data['leng'] + '</span>'
  634. ip = ip_pas(data['ip'], None)
  635. curs.execute("select block from ban where block = '" + db_pas(data['ip']) + "'")
  636. ban_it = curs.fetchall()
  637. if(ban_it):
  638. if(admin1 == 1):
  639. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  640. else:
  641. ban = ' (X)'
  642. else:
  643. if(admin1 == 1):
  644. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  645. else:
  646. ban = ''
  647. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(data['id']) + "'")
  648. hid_it = curs.fetchall()
  649. if(hid_it):
  650. if(admin2):
  651. hidden = ' <a href="/history/' + url_pas(name) + '/r/' + url_pas(data['id']) + '/hidden">(공개)'
  652. hid = 0
  653. else:
  654. hid = 1
  655. else:
  656. if(admin2):
  657. hidden = ' <a href="/history/' + url_pas(name) + '/r/' + url_pas(data['id']) + '/hidden">(숨김)'
  658. hid = 0
  659. else:
  660. hidden = ''
  661. hid = 0
  662. if(hid == 1):
  663. div += '<tr><td colspan="3">숨김</td></tr>'
  664. else:
  665. div += '<tr><td>' + data['id'] + '판</a> <a href="/w/' + url_pas(data['title']) + '/r/' + url_pas(data['id']) + '">(보기)</a> <a href="/w/' + url_pas(data['title']) + '/raw/' + url_pas(data['id']) + '">(원본)</a> <a href="/revert/' + url_pas(data['title']) + '/r/' + url_pas(data['id']) + '">(되돌리기)</a> (' + leng + ')</td><td>' + ip + ban + hidden + '</td><td>' + data['date'] + '</td></tr><tr><td colspan="3">' + send + '</td></tr>'
  666. else:
  667. div += '</tbody></table></div>'
  668. else:
  669. div = 'None<br>'
  670. div += '<br><a href="/history/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/history/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  671. conn.close()
  672. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, page = url_pas(name), select = select, sub = '역사'))
  673. @route('/search', method=['POST'])
  674. def search():
  675. return(redirect('/search/' + url_pas(request.forms.search)))
  676. @route('/goto', method=['POST'])
  677. def goto():
  678. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  679. curs = conn.cursor(pymysql.cursors.DictCursor)
  680. curs.execute("select title from data where title = '" + db_pas(request.forms.search) + "'")
  681. data = curs.fetchall()
  682. conn.close()
  683. if(data):
  684. return(redirect('/w/' + url_pas(request.forms.search)))
  685. else:
  686. return(redirect('/search/' + url_pas(request.forms.search)))
  687. @route('/search/<name:path>')
  688. @route('/search/<name:path>/n/<num:int>')
  689. def deep_search(name = None, num = 1):
  690. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  691. curs = conn.cursor(pymysql.cursors.DictCursor)
  692. if(num * 50 <= 0):
  693. v = num * 50
  694. else:
  695. v = 50
  696. i = v - 50
  697. div = ''
  698. div_plus = ''
  699. end = ''
  700. curs.execute("select title from data where title like '%" + db_pas(name) + "%'")
  701. title_list = curs.fetchall()
  702. curs.execute("select title from data where data like '%" + db_pas(name) + "%'")
  703. data_list = curs.fetchall()
  704. curs.execute("select title from data where title = '" + db_pas(name) + "'")
  705. exist = curs.fetchall()
  706. if(exist):
  707. div = '<li>문서로 <a href="/w/' + url_pas(name) + '">바로가기</a></li><br>'
  708. else:
  709. div = '<li>문서가 없습니다. <a class="not_thing" href="/w/' + url_pas(name) + '">바로가기</a></li><br>'
  710. if(title_list):
  711. no = 0
  712. if(data_list):
  713. all_list = title_list + data_list
  714. else:
  715. all_list = title_list
  716. else:
  717. if(data_list):
  718. no = 1
  719. all_list = data_list
  720. else:
  721. all_list = ''
  722. if(not all_list == ''):
  723. for data in all_list:
  724. re_title = re.compile(name, re.I)
  725. if(re.search(re_title, data['title'])):
  726. if(no == 0):
  727. div += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (문서명)</li>'
  728. else:
  729. div_plus += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (내용)</li>'
  730. else:
  731. no = 1
  732. div_plus += '<li><a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a> (내용)</li>'
  733. else:
  734. div += '<li>검색 결과 없음</li>'
  735. div += div_plus + end
  736. div += '<br><a href="/search/' + url_pas(name) + '/n/' + str(num - 1) + '">(이전)</a> <a href="/search/' + url_pas(name) + '/n/' + str(num + 1) + '">(이후)</a>'
  737. conn.close()
  738. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = name, sub = '검색'))
  739. @route('/w/<name:path>/r/<num:int>')
  740. def old_view(name = None, num = None):
  741. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  742. curs = conn.cursor(pymysql.cursors.DictCursor)
  743. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  744. row = curs.fetchall()
  745. if(row):
  746. if(admin_check(6) == 1):
  747. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  748. rows = curs.fetchall()
  749. if(rows):
  750. conn.close()
  751. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = namumark(name, rows[0]['data']), sub = '옛 문서'))
  752. else:
  753. conn.close()
  754. return(redirect('/history/' + url_pas(name)))
  755. else:
  756. conn.close()
  757. return(redirect('/error/3'))
  758. else:
  759. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  760. rows = curs.fetchall()
  761. if(rows):
  762. conn.close()
  763. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = namumark(name, rows[0]['data']), sub = '옛 문서'))
  764. else:
  765. conn.close()
  766. return(redirect('/history/' + url_pas(name)))
  767. @route('/w/<name:path>/raw/<num:int>')
  768. def old_raw(name = None, num = None):
  769. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  770. curs = conn.cursor(pymysql.cursors.DictCursor)
  771. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  772. row = curs.fetchall()
  773. if(row):
  774. if(admin_check(6) == 1):
  775. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  776. rows = curs.fetchall()
  777. if(rows):
  778. enddata = re.sub('<', '&lt;', rows[0]['data'])
  779. enddata = re.sub('>', '&gt;', enddata)
  780. enddata = re.sub('"', '&quot;', enddata)
  781. enddata = '<pre>' + enddata + '</pre>'
  782. conn.close()
  783. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '옛 원본'))
  784. else:
  785. conn.close()
  786. return(redirect('/history/' + url_pas(name)))
  787. else:
  788. conn.close()
  789. return(redirect('/error/3'))
  790. else:
  791. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  792. rows = curs.fetchall()
  793. if(rows):
  794. enddata = re.sub('<', '&lt;', rows[0]['data'])
  795. enddata = re.sub('>', '&gt;', enddata)
  796. enddata = re.sub('"', '&quot;', enddata)
  797. enddata = '<pre>' + enddata + '</pre>'
  798. conn.close()
  799. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '옛 원본'))
  800. else:
  801. conn.close()
  802. return(redirect('/history/' + url_pas(name)))
  803. @route('/raw/<name:path>')
  804. def raw_view(name = None):
  805. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  806. curs = conn.cursor(pymysql.cursors.DictCursor)
  807. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  808. rows = curs.fetchall()
  809. if(rows):
  810. enddata = re.sub('<', '&lt;', rows[0]['data'])
  811. enddata = re.sub('>', '&gt;', enddata)
  812. enddata = re.sub('"', '&quot;', enddata)
  813. enddata = '<pre>' + enddata + '</pre>'
  814. conn.close()
  815. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata, sub = '원본'))
  816. else:
  817. conn.close()
  818. return(redirect('/w/' + url_pas(name)))
  819. @route('/revert/<name:path>/r/<num:int>', method=['POST', 'GET'])
  820. def revert(name = None, num = None):
  821. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  822. curs = conn.cursor(pymysql.cursors.DictCursor)
  823. ip = ip_check()
  824. can = acl_check(ip, name)
  825. today = get_time()
  826. if(request.method == 'POST'):
  827. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  828. row = curs.fetchall()
  829. if(row):
  830. if(admin_check(6) == 1):
  831. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  832. rows = curs.fetchall()
  833. if(rows):
  834. if(can == 1):
  835. conn.close()
  836. return(redirect('/ban'))
  837. else:
  838. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  839. row = curs.fetchall()
  840. if(row):
  841. leng = leng_check(len(row[0]['data']), len(rows[0]['data']))
  842. curs.execute("update data set data = '" + db_pas(rows[0]['data']) + "' where title = '" + db_pas(name) + "'")
  843. conn.commit()
  844. else:
  845. leng = '+' + str(len(rows[0]['data']))
  846. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(rows[0]['data']) + "', '')")
  847. conn.commit()
  848. history_plus(name, rows[0]['data'], today, ip, '문서를 ' + str(num) + '판으로 되돌렸습니다.', leng)
  849. conn.close()
  850. return(redirect('/w/' + url_pas(name)))
  851. else:
  852. conn.close()
  853. return(redirect('/w/' + url_pas(name)))
  854. else:
  855. conn.close()
  856. return(redirect('/error/3'))
  857. else:
  858. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  859. rows = curs.fetchall()
  860. if(rows):
  861. if(can == 1):
  862. conn.close()
  863. return(redirect('/ban'))
  864. else:
  865. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  866. row = curs.fetchall()
  867. if(row):
  868. leng = leng_check(len(row[0]['data']), len(rows[0]['data']))
  869. curs.execute("update data set data = '" + db_pas(rows[0]['data']) + "' where title = '" + db_pas(name) + "'")
  870. conn.commit()
  871. else:
  872. leng = '+' + str(len(rows[0]['data']))
  873. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(rows[0]['data']) + "', '')")
  874. conn.commit()
  875. history_plus(name, rows[0]['data'], today, ip, '문서를 ' + str(num) + '판으로 되돌렸습니다.', leng)
  876. conn.close()
  877. return(redirect('/w/' + url_pas(name)))
  878. else:
  879. conn.close()
  880. return(redirect('/w/' + url_pas(name)) )
  881. else:
  882. curs.execute("select * from hidhi where title = '" + db_pas(name) + "' and re = '" + db_pas(str(num)) + "'")
  883. row = curs.fetchall()
  884. if(row):
  885. if(admin_check(6) == 1):
  886. if(can == 1):
  887. conn.close()
  888. return(redirect('/ban'))
  889. else:
  890. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  891. rows = curs.fetchall()
  892. if(rows):
  893. conn.close()
  894. return(template('revert', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), r = url_pas(str(num)), plus = '정말 되돌리시겠습니까?', sub = '되돌리기'))
  895. else:
  896. conn.close()
  897. return(redirect('/w/' + url_pas(name)))
  898. else:
  899. conn.close()
  900. return(redirect('/error/3'))
  901. else:
  902. if(can == 1):
  903. conn.close()
  904. return(redirect('/ban'))
  905. else:
  906. curs.execute("select * from history where title = '" + db_pas(name) + "' and id = '" + str(num) + "'")
  907. rows = curs.fetchall()
  908. if(rows):
  909. conn.close()
  910. return(template('revert', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), r = url_pas(str(num)), plus = '정말 되돌리시겠습니까?', sub = '되돌리기'))
  911. else:
  912. conn.close()
  913. return(redirect('/w/' + url_pas(name)))
  914. @route('/mdel', method=['POST', 'GET'])
  915. def many_del():
  916. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  917. curs = conn.cursor(pymysql.cursors.DictCursor)
  918. today = get_time()
  919. ip = ip_check()
  920. if(admin_check(2) == 1):
  921. if(request.method == 'POST'):
  922. data = request.forms.content + '\r\n'
  923. while(True):
  924. m = re.search('(.*)\r\n', data)
  925. if(m):
  926. g = m.groups()
  927. curs.execute("select data from data where title = '" + db_pas(g[0]) + "'")
  928. rows = curs.fetchall()
  929. if(rows):
  930. leng = '-' + str(len(rows[0]['data']))
  931. curs.execute("delete from data where title = '" + db_pas(g[0]) + "'")
  932. history_plus(g[0], '', today, ip, request.forms.send + ' (대량 삭제)', leng)
  933. data = re.sub('(.*)\r\n', '', data, 1)
  934. else:
  935. break
  936. conn.commit()
  937. conn.close()
  938. return(redirect('/'))
  939. else:
  940. conn.close()
  941. return(template('mdel', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '많은 문서 삭제', logo = set_data['name']))
  942. else:
  943. conn.close()
  944. return(redirect('/error/3'))
  945. @route('/edit/<name:path>/section/<num:int>', method=['POST', 'GET'])
  946. def section_edit(name = None, num = None):
  947. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  948. curs = conn.cursor(pymysql.cursors.DictCursor)
  949. ip = ip_check()
  950. can = acl_check(ip, name)
  951. if(request.method == 'POST'):
  952. if(len(request.forms.send) > 500):
  953. conn.close()
  954. return(redirect('/error/15'))
  955. else:
  956. today = get_time()
  957. content = savemark(request.forms.content)
  958. curs.execute("delete from back where title = '" + db_pas(name) + "'")
  959. conn.commit()
  960. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  961. rows = curs.fetchall()
  962. if(rows):
  963. if(request.forms.otent == content):
  964. conn.close()
  965. return(redirect('/error/18'))
  966. else:
  967. if(can == 1):
  968. conn.close()
  969. return(redirect('/ban'))
  970. else:
  971. leng = leng_check(len(request.forms.otent), len(content))
  972. content = rows[0]['data'].replace(request.forms.otent, content)
  973. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  974. curs.execute("update data set data = '" + db_pas(content) + "' where title = '" + db_pas(name) + "'")
  975. conn.commit()
  976. include_check(name, content)
  977. conn.close()
  978. return(redirect('/w/' + url_pas(name)))
  979. else:
  980. conn.close()
  981. return(redirect('/w/' + url_pas(name)))
  982. else:
  983. if(can == 1):
  984. conn.close()
  985. return(redirect('/ban'))
  986. else:
  987. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  988. rows = curs.fetchall()
  989. if(rows):
  990. i = 0
  991. j = 0
  992. gdata = rows[0]['data'] + '\r\n'
  993. while(True):
  994. m = re.search("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", gdata)
  995. if(m):
  996. if(i == num - 1):
  997. g = m.groups()
  998. gdata = re.sub("\r\n$", "", g[0])
  999. break
  1000. else:
  1001. gdata = re.sub("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", "", gdata, 1)
  1002. i += 1
  1003. else:
  1004. j = 1
  1005. break
  1006. if(j == 0):
  1007. gdata = re.sub("\r\n$", "", gdata)
  1008. conn.close()
  1009. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = gdata, section = 1, number = num, sub = '편집'))
  1010. else:
  1011. conn.close()
  1012. return(redirect('/w/' + url_pas(name)))
  1013. else:
  1014. conn.close()
  1015. return(redirect('/w/' + url_pas(name)))
  1016. @route('/edit/<name:path>', method=['POST', 'GET'])
  1017. def edit(name = None):
  1018. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1019. curs = conn.cursor(pymysql.cursors.DictCursor)
  1020. ip = ip_check()
  1021. can = acl_check(ip, name)
  1022. if(request.method == 'POST'):
  1023. if(len(request.forms.send) > 500):
  1024. conn.close()
  1025. return(redirect('/error/15'))
  1026. else:
  1027. today = get_time()
  1028. content = savemark(request.forms.content)
  1029. curs.execute("delete from back where title = '" + db_pas(name) + "'")
  1030. conn.commit()
  1031. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1032. rows = curs.fetchall()
  1033. if(rows):
  1034. if(rows[0]['data'] == content):
  1035. conn.close()
  1036. return(redirect('/error/18'))
  1037. else:
  1038. if(can == 1):
  1039. conn.close()
  1040. return(redirect('/ban'))
  1041. else:
  1042. leng = leng_check(len(rows[0]['data']), len(content))
  1043. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1044. curs.execute("update data set data = '" + db_pas(content) + "' where title = '" + db_pas(name) + "'")
  1045. conn.commit()
  1046. else:
  1047. if(can == 1):
  1048. conn.close()
  1049. return(redirect('/ban'))
  1050. else:
  1051. leng = '+' + str(len(content))
  1052. history_plus(name, content, today, ip, html_pas(request.forms.send, 2), leng)
  1053. curs.execute("insert into data (title, data, acl) value ('" + db_pas(name) + "', '" + db_pas(content) + "', '')")
  1054. conn.commit()
  1055. include_check(name, content)
  1056. conn.close()
  1057. return(redirect('/w/' + url_pas(name)))
  1058. else:
  1059. if(can == 1):
  1060. conn.close()
  1061. return(redirect('/ban'))
  1062. else:
  1063. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1064. rows = curs.fetchall()
  1065. if(rows):
  1066. conn.close()
  1067. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = rows[0]['data'], sub = '편집'))
  1068. else:
  1069. conn.close()
  1070. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = '', sub = '편집'))
  1071. @route('/preview/<name:path>/section/<num:int>', method=['POST'])
  1072. def section_preview(name = None, num = None):
  1073. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1074. curs = conn.cursor(pymysql.cursors.DictCursor)
  1075. ip = ip_check()
  1076. can = acl_check(ip, name)
  1077. if(can == 1):
  1078. conn.close()
  1079. return(redirect('/ban'))
  1080. else:
  1081. newdata = request.forms.content
  1082. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * [[\g<in>]] 문서로 넘겨주기', newdata)
  1083. enddata = namumark(name, newdata)
  1084. conn.close()
  1085. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = request.forms.content, preview = 1, enddata = enddata, section = 1, number = num, odata = request.forms.otent, sub = '미리보기'))
  1086. @route('/preview/<name:path>', method=['POST'])
  1087. def preview(name = None):
  1088. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1089. curs = conn.cursor(pymysql.cursors.DictCursor)
  1090. ip = ip_check()
  1091. can = acl_check(ip, name)
  1092. if(can == 1):
  1093. conn.close()
  1094. return(redirect('/ban'))
  1095. else:
  1096. newdata = request.forms.content
  1097. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * [[\g<in>]] 문서로 넘겨주기', newdata)
  1098. enddata = namumark(name, newdata)
  1099. conn.close()
  1100. return(template('edit', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = request.forms.content, preview = 1, enddata = enddata, sub = '미리보기'))
  1101. @route('/delete/<name:path>', method=['POST', 'GET'])
  1102. def delete(name = None):
  1103. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1104. curs = conn.cursor(pymysql.cursors.DictCursor)
  1105. ip = ip_check()
  1106. can = acl_check(ip, name)
  1107. if(request.method == 'POST'):
  1108. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1109. rows = curs.fetchall()
  1110. if(rows):
  1111. if(can == 1):
  1112. conn.close()
  1113. return(redirect('/ban'))
  1114. else:
  1115. today = get_time()
  1116. leng = '-' + str(len(rows[0]['data']))
  1117. history_plus(name, '', today, ip, request.forms.send + ' (삭제)', leng)
  1118. curs.execute("delete from data where title = '" + db_pas(name) + "'")
  1119. conn.commit()
  1120. conn.close()
  1121. return(redirect('/w/' + url_pas(name)))
  1122. else:
  1123. conn.close()
  1124. return(redirect('/w/' + url_pas(name)))
  1125. else:
  1126. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1127. rows = curs.fetchall()
  1128. if(rows):
  1129. if(can == 1):
  1130. conn.close()
  1131. return(redirect('/ban'))
  1132. else:
  1133. conn.close()
  1134. return(template('del', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), plus = '정말 삭제 하시겠습니까?', sub = '삭제'))
  1135. else:
  1136. conn.close()
  1137. return(redirect('/w/' + url_pas(name)))
  1138. @route('/move/<name:path>', method=['POST', 'GET'])
  1139. def move(name = None):
  1140. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1141. curs = conn.cursor(pymysql.cursors.DictCursor)
  1142. ip = ip_check()
  1143. can = acl_check(ip, name)
  1144. today = get_time()
  1145. if(request.method == 'POST'):
  1146. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  1147. rows = curs.fetchall()
  1148. if(can == 1):
  1149. conn.close()
  1150. return(redirect('/ban'))
  1151. else:
  1152. leng = '0'
  1153. curs.execute("select * from history where title = '" + db_pas(request.forms.title) + "'")
  1154. row = curs.fetchall()
  1155. if(row):
  1156. conn.close()
  1157. return(redirect('/error/19'))
  1158. else:
  1159. history_plus(name, rows[0]['data'], today, ip, request.forms.send + ' (<a href="/w/' + url_pas(name) + '">' + name + '</a> - <a href="/w/' + url_pas(request.forms.title) + '">' + request.forms.title + '</a> 이동)', leng)
  1160. if(rows):
  1161. curs.execute("update data set title = '" + db_pas(request.forms.title) + "' where title = '" + db_pas(name) + "'")
  1162. curs.execute("update history set title = '" + db_pas(request.forms.title) + "' where title = '" + db_pas(name) + "'")
  1163. conn.commit()
  1164. conn.close()
  1165. return(redirect('/w/' + url_pas(request.forms.title)))
  1166. else:
  1167. if(can == 1):
  1168. conn.close()
  1169. return(redirect('/ban'))
  1170. else:
  1171. conn.close()
  1172. return(template('move', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), plus = '정말 이동 하시겠습니까?', sub = '이동'))
  1173. @route('/other')
  1174. def other():
  1175. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1176. curs = conn.cursor(pymysql.cursors.DictCursor)
  1177. conn.close()
  1178. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기타 메뉴', logo = set_data['name'], data = '<h2 style="margin-top: 0px;">기록</h2><li><a href="/blocklog">사용자 차단 기록</a></li><li><a href="/userlog">사용자 가입 기록</a></li><li><a href="/manager/6">사용자 기록</a></li><li><a href="/manager/7">사용자 토론 기록</a></li><h2>기타</h2><li><a href="/titleindex">모든 문서</a></li><li><a href="/acllist">ACL 문서 목록</a></li><li><a href="/upload">업로드</a></li><li><a href="/adminlist">관리자 목록</a></li><li><a href="/manager/1">관리자 메뉴</a></li><br>이 오픈나무의 버전은 <a href="https://github.com/2DU/openNAMU/blob/normal/version.md">v' + r_ver + '</a> 입니다.'))
  1179. @route('/manager/<num:int>', method=['POST', 'GET'])
  1180. def manager(num = None):
  1181. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1182. curs = conn.cursor(pymysql.cursors.DictCursor)
  1183. if(num == 1):
  1184. conn.close()
  1185. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '관리자 메뉴', logo = set_data['name'], data = '<h2 style="margin-top: 0px;">목록</h2><li><a href="/manager/2">문서 ACL</a></li><li><a href="/manager/3">사용자 체크</a></li><li><a href="/manager/4">사용자 차단</a></li><li><a href="/manager/5">관리자 권한 주기</a></li><li><a href="/mdel">많은 문서 삭제</a></li><h2>소유자</h2><li><a href="/backreset">모든 역링크 재 생성</a></li><li><a href="/manager/8">새로운 관리 그룹 생성</a></li><h2>기타</h2><li>이 메뉴에 없는 기능은 해당 문서의 역사나 토론에서 바로 사용 가능함</li>'))
  1186. elif(num == 2):
  1187. if(request.method == 'POST'):
  1188. conn.close()
  1189. return(redirect('/acl/' + url_pas(request.forms.name)))
  1190. else:
  1191. conn.close()
  1192. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = 'ACL 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/2"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>'))
  1193. elif(num == 3):
  1194. if(request.method == 'POST'):
  1195. conn.close()
  1196. return(redirect('/check/' + url_pas(request.forms.name)))
  1197. else:
  1198. conn.close()
  1199. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '체크 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/3"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>'))
  1200. elif(num == 4):
  1201. if(request.method == 'POST'):
  1202. conn.close()
  1203. return(redirect('/ban/' + url_pas(request.forms.name)))
  1204. else:
  1205. conn.close()
  1206. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '차단 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/4"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button><br><br><span>아이피 앞 두자리 (XXX.XXX) 입력하면 대역 차단</span></form>'))
  1207. elif(num == 5):
  1208. if(request.method == 'POST'):
  1209. conn.close()
  1210. return(redirect('/admin/' + url_pas(request.forms.name)))
  1211. else:
  1212. conn.close()
  1213. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/5"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1214. elif(num == 6):
  1215. if(request.method == 'POST'):
  1216. conn.close()
  1217. return(redirect('/record/' + url_pas(request.forms.name)))
  1218. else:
  1219. conn.close()
  1220. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기록 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/6"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1221. elif(num == 7):
  1222. if(request.method == 'POST'):
  1223. conn.close()
  1224. return(redirect('/user/' + url_pas(request.forms.name) + '/topic'))
  1225. else:
  1226. conn.close()
  1227. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '토론 기록 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/7"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1228. elif(num == 8):
  1229. if(request.method == 'POST'):
  1230. conn.close()
  1231. return(redirect('/adminplus/' + url_pas(request.forms.name)))
  1232. else:
  1233. conn.close()
  1234. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '그룹 생성 이동', logo = set_data['name'], data = '<form id="usrform" method="POST" action="/manager/8"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>') )
  1235. else:
  1236. conn.close()
  1237. return(redirect('/'))
  1238. @route('/titleindex')
  1239. def title_index():
  1240. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1241. curs = conn.cursor(pymysql.cursors.DictCursor)
  1242. i = [0, 0, 0, 0, 0, 0]
  1243. data = '<div>'
  1244. curs.execute("select title from data order by title asc")
  1245. title_list = curs.fetchall()
  1246. if(title_list):
  1247. for list_data in title_list:
  1248. data += '<li>' + str(i[0] + 1) + '. <a href="/w/' + url_pas(list_data['title']) + '">' + list_data['title'] + '</a></li>'
  1249. if(re.search('^분류:', list_data['title'])):
  1250. i[1] += 1
  1251. elif(re.search('^사용자:', list_data['title'])):
  1252. i[2] += 1
  1253. elif(re.search('^틀:', list_data['title'])):
  1254. i[3] += 1
  1255. elif(re.search('^파일:', list_data['title'])):
  1256. i[4] += 1
  1257. else:
  1258. i[5] += 1
  1259. i[0] += 1
  1260. else:
  1261. data += '</div>'
  1262. data += '<br><li>이 위키에는 총 ' + str(i[0]) + '개의 문서가 있습니다.</li><br><li>틀 문서는 총 ' + str(i[3]) + '개의 문서가 있습니다.</li><li>분류 문서는 총 ' + str(i[1]) + '개의 문서가 있습니다.</li><li>사용자 문서는 총 ' + str(i[2]) + '개의 문서가 있습니다.</li><li>파일 문서는 총 ' + str(i[4]) + '개의 문서가 있습니다.</li><li>나머지 문서는 총 ' + str(i[5]) + '개의 문서가 있습니다.</li>'
  1263. else:
  1264. data = 'None'
  1265. conn.close()
  1266. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = data, title = '모든 문서'))
  1267. @route('/topic/<name:path>/sub/<sub:path>/b/<num:int>')
  1268. def topic_block(name = None, sub = None, num = None):
  1269. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1270. curs = conn.cursor(pymysql.cursors.DictCursor)
  1271. if(admin_check(3) == 1):
  1272. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1273. block = curs.fetchall()
  1274. if(block):
  1275. if(block[0]['block'] == 'O'):
  1276. curs.execute("update topic set block = '' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1277. else:
  1278. curs.execute("update topic set block = 'O' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1279. conn.commit()
  1280. rd_plus(name, sub, get_time())
  1281. conn.close()
  1282. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1283. else:
  1284. conn.close()
  1285. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1286. else:
  1287. conn.close()
  1288. return(redirect('/error/3'))
  1289. @route('/topic/<name:path>/sub/<sub:path>/notice/<num:int>')
  1290. def topic_top(name = None, sub = None, num = None):
  1291. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1292. curs = conn.cursor(pymysql.cursors.DictCursor)
  1293. if(admin_check(3) == 1):
  1294. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1295. topic_data = curs.fetchall()
  1296. if(topic_data):
  1297. curs.execute("select * from topic where id = '" + str(num) + "' and title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1298. top_data = curs.fetchall()
  1299. if(top_data):
  1300. if(top_data[0]['top'] == 'O'):
  1301. curs.execute("update topic set top = '' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1302. else:
  1303. curs.execute("update topic set top = 'O' where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + str(num) + "'")
  1304. conn.commit()
  1305. rd_plus(name, sub, get_time())
  1306. conn.close()
  1307. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1308. else:
  1309. conn.close()
  1310. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1311. else:
  1312. conn.close()
  1313. return(redirect('/error/3'))
  1314. @route('/topic/<name:path>/sub/<sub:path>/stop')
  1315. def topic_stop(name = None, sub = None):
  1316. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1317. curs = conn.cursor(pymysql.cursors.DictCursor)
  1318. if(admin_check(3) == 1):
  1319. ip = ip_check()
  1320. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1321. topic_check = curs.fetchall()
  1322. if(topic_check):
  1323. time = get_time()
  1324. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1325. stop = curs.fetchall()
  1326. if(stop):
  1327. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 재 시작', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1328. curs.execute("delete from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1329. else:
  1330. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 정지', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1331. curs.execute("insert into stop (title, sub, close) value ('" + db_pas(name) + "', '" + db_pas(sub) + "', '')")
  1332. conn.commit()
  1333. rd_plus(name, sub, time)
  1334. conn.close()
  1335. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1336. else:
  1337. conn.close()
  1338. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1339. else:
  1340. conn.close()
  1341. return(redirect('/error/3'))
  1342. @route('/topic/<name:path>/sub/<sub:path>/close')
  1343. def topic_close(name = None, sub = None):
  1344. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1345. curs = conn.cursor(pymysql.cursors.DictCursor)
  1346. if(admin_check(3) == 1):
  1347. ip = ip_check()
  1348. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1349. topic_check = curs.fetchall()
  1350. if(topic_check):
  1351. time = get_time()
  1352. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1353. close = curs.fetchall()
  1354. if(close):
  1355. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 다시 열기', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1356. curs.execute("delete from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1357. else:
  1358. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '토론 닫음', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1359. curs.execute("insert into stop (title, sub, close) value ('" + db_pas(name) + "', '" + db_pas(sub) + "', 'O')")
  1360. conn.commit()
  1361. rd_plus(name, sub, time)
  1362. conn.close()
  1363. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1364. else:
  1365. conn.close()
  1366. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1367. else:
  1368. conn.close()
  1369. return(redirect('/error/3'))
  1370. @route('/topic/<name:path>/sub/<sub:path>/agree')
  1371. def topic_agree(name = None, sub = None):
  1372. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1373. curs = conn.cursor(pymysql.cursors.DictCursor)
  1374. if(admin_check(3) == 1):
  1375. ip = ip_check()
  1376. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1377. topic_check = curs.fetchall()
  1378. if(topic_check):
  1379. time = get_time()
  1380. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1381. agree = curs.fetchall()
  1382. if(agree):
  1383. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '합의 결렬', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1384. curs.execute("delete from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1385. else:
  1386. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + db_pas(str(int(topic_check[0]['id']) + 1)) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '합의 완료', '" + db_pas(time) + "', '" + db_pas(ip) + "', '', '1')")
  1387. curs.execute("insert into agreedis (title, sub) value ('" + db_pas(name) + "', '" + db_pas(sub) + "')")
  1388. conn.commit()
  1389. rd_plus(name, sub, time)
  1390. conn.close()
  1391. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1392. else:
  1393. conn.close()
  1394. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1395. else:
  1396. conn.close()
  1397. return(redirect('/error/3'))
  1398. @route('/topic/<name:path>/sub/<sub:path>', method=['POST', 'GET'])
  1399. def topic(name = None, sub = None):
  1400. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1401. curs = conn.cursor(pymysql.cursors.DictCursor)
  1402. ip = ip_check()
  1403. ban = topic_check(ip, name, sub)
  1404. admin = admin_check(3)
  1405. if(request.method == 'POST'):
  1406. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 desc limit 1")
  1407. rows = curs.fetchall()
  1408. if(rows):
  1409. num = int(rows[0]['id']) + 1
  1410. else:
  1411. num = 1
  1412. if(ban == 1 and not admin == 1):
  1413. conn.close()
  1414. return(redirect('/ban'))
  1415. else:
  1416. today = get_time()
  1417. rd_plus(name, sub, today)
  1418. aa = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", "[br]", request.forms.content)
  1419. aa = savemark(aa)
  1420. curs.execute("insert into topic (id, title, sub, data, date, ip, block, top) value ('" + str(num) + "', '" + db_pas(name) + "', '" + db_pas(sub) + "', '" + db_pas(aa) + "', '" + today + "', '" + ip + "', '', '')")
  1421. conn.commit()
  1422. conn.close()
  1423. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(sub)))
  1424. else:
  1425. style = ''
  1426. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = 'O'")
  1427. close = curs.fetchall()
  1428. curs.execute("select * from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and close = ''")
  1429. stop = curs.fetchall()
  1430. if(admin == 1):
  1431. div = '<div>'
  1432. if(close):
  1433. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/close">(토론 열기)</a> '
  1434. else:
  1435. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/close">(토론 닫기)</a> '
  1436. if(stop):
  1437. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/stop">(토론 재개)</a> '
  1438. else:
  1439. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/stop">(토론 정지)</a> '
  1440. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "'")
  1441. agree = curs.fetchall()
  1442. if(agree):
  1443. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/agree">(합의 취소)</a>'
  1444. else:
  1445. div += '<a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/agree">(합의 완료)</a>'
  1446. div += '<br><br>'
  1447. else:
  1448. div = '<div>'
  1449. if(stop or close):
  1450. if(not admin == 1):
  1451. style = 'display:none;'
  1452. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' order by id + 0 asc")
  1453. toda = curs.fetchall()
  1454. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and top = 'O' order by id + 0 asc")
  1455. top = curs.fetchall()
  1456. if(top):
  1457. for dain in top:
  1458. top_data = namumark('', dain['data'])
  1459. top_data = re.sub("(?P<in>#(?:[0-9]*))", '<a href="\g<in>">\g<in></a>', top_data)
  1460. ip = ip_pas(dain['ip'], 1)
  1461. div += '<table id="toron"><tbody><tr><td id="toroncolorred"><a href="#' + dain['id'] + '">#' + dain['id'] + '</a> ' + ip + ' <span style="float:right;">' + dain['date'] + '</span></td></tr><tr><td>' + top_data + '</td></tr></tbody></table><br>'
  1462. i = 0
  1463. for dain in toda:
  1464. if(i == 0):
  1465. start = dain['ip']
  1466. indata = namumark('', dain['data'])
  1467. indata = re.sub("(?P<in>#(?:[0-9]*))", '<a href="\g<in>">\g<in></a>', indata)
  1468. if(dain['block'] == 'O'):
  1469. indata = '블라인드 되었습니다.'
  1470. block = 'id="block"'
  1471. else:
  1472. block = ''
  1473. if(admin == 1):
  1474. if(dain['block'] == 'O'):
  1475. isblock = ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/b/' + str(i + 1) + '">(해제)</a>'
  1476. else:
  1477. isblock = ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/b/' + str(i + 1) + '">(블라인드)</a>'
  1478. curs.execute("select id from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(sub) + "' and id = '" + db_pas(str(i + 1)) + "' and top = 'O'")
  1479. row = curs.fetchall()
  1480. if(row):
  1481. isblock = isblock + ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/notice/' + str(i + 1) + '">(해제)</a>'
  1482. else:
  1483. isblock = isblock + ' <a href="/topic/' + url_pas(name) + '/sub/' + url_pas(sub) + '/notice/' + str(i + 1) + '">(공지)</a>'
  1484. curs.execute("select end from ban where block = '" + db_pas(dain['ip']) + "'")
  1485. ban_it = curs.fetchall()
  1486. if(ban_it):
  1487. ban = ' <a href="/ban/' + url_pas(dain['ip']) + '">(해제)</a>' + isblock
  1488. else:
  1489. ban = ' <a href="/ban/' + url_pas(dain['ip']) + '">(차단)</a>' + isblock
  1490. else:
  1491. curs.execute("select end from ban where block = '" + db_pas(dain['ip']) + "'")
  1492. ban_it = curs.fetchall()
  1493. if(ban_it):
  1494. ban = ' (X)'
  1495. else:
  1496. ban = ''
  1497. chad = ''
  1498. curs.execute('select acl from user where id = "' + db_pas(dain['ip']) + '"')
  1499. adch = curs.fetchall()
  1500. if(adch):
  1501. if(not adch[0]['acl'] == 'user'):
  1502. chad = ' (관리자)'
  1503. ip = ip_pas(dain['ip'], 1)
  1504. if(dain['top'] == '1'):
  1505. color = 'blue'
  1506. elif(dain['ip'] == start):
  1507. color = 'green'
  1508. else:
  1509. color = ''
  1510. div += '<table id="toron"><tbody><tr><td id="toroncolor' + color + '"><a href="javascript:void(0);" id="' + str(i + 1) + '">#' + str(i + 1) + '</a> ' + ip + chad + ban + ' <span style="float:right;">' + dain['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1511. i += 1
  1512. conn.close()
  1513. return(template('vstopic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), suburl = url_pas(sub), toron = sub, logo = set_data['name'], rows = div, ban = ban, style = style, sub = '토론'))
  1514. @route('/topic/<name:path>/close')
  1515. def close_topic_list(name = None):
  1516. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1517. curs = conn.cursor(pymysql.cursors.DictCursor)
  1518. div = '<div>'
  1519. i = 0
  1520. curs.execute("select * from stop where title = '" + db_pas(name) + "' and close = 'O' order by sub asc")
  1521. rows = curs.fetchall()
  1522. for data in rows:
  1523. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1'")
  1524. row = curs.fetchall()
  1525. if(row):
  1526. indata = namumark(name, row[0]['data'])
  1527. if(row[0]['block'] == 'O'):
  1528. indata = '블라인드 되었습니다.'
  1529. block = 'id="block"'
  1530. else:
  1531. block = ''
  1532. ip = ip_pas(row[0]['ip'], 1)
  1533. div += '<h2><a href="/topic/' + url_pas(name) + '/sub/' + url_pas(data['sub']) + '">' + str((i + 1)) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + row[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1534. i += 1
  1535. else:
  1536. div += '</div>'
  1537. conn.close()
  1538. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, sub = '닫힘'))
  1539. @route('/topic/<name:path>/agree')
  1540. def agree_topic_list(name = None):
  1541. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1542. curs = conn.cursor(pymysql.cursors.DictCursor)
  1543. div = '<div>'
  1544. i = 0
  1545. curs.execute("select * from agreedis where title = '" + db_pas(name) + "' order by sub asc")
  1546. agree_list = curs.fetchall()
  1547. for data in agree_list:
  1548. curs.execute("select * from topic where title = '" + db_pas(name) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1'")
  1549. topic_data = curs.fetchall()
  1550. if(topic_data):
  1551. indata = namumark(name, topic_data[0]['data'])
  1552. if(topic_data[0]['block'] == 'O'):
  1553. indata = '블라인드 되었습니다.'
  1554. block = 'id="block"'
  1555. else:
  1556. block = ''
  1557. ip = ip_pas(topic_data[0]['ip'], 1)
  1558. div += '<h2><a href="/topic/' + url_pas(name) + '/sub/' + url_pas(data['sub']) + '">' + str(i + 1) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + topic_data[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1559. i += 1
  1560. else:
  1561. div += '</div>'
  1562. conn.close()
  1563. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, sub = '합의'))
  1564. @route('/topic/<name:path>', method=['POST', 'GET'])
  1565. def topic_list(name = None):
  1566. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1567. curs = conn.cursor(pymysql.cursors.DictCursor)
  1568. if(request.method == 'POST'):
  1569. conn.close()
  1570. return(redirect('/topic/' + url_pas(name) + '/sub/' + url_pas(request.forms.topic)))
  1571. else:
  1572. div = '<div>'
  1573. j = 1
  1574. curs.execute("select * from rd where title = '" + db_pas(name) + "' order by date asc")
  1575. rows = curs.fetchall()
  1576. for data in rows:
  1577. curs.execute("select * from topic where title = '" + db_pas(data['title']) + "' and sub = '" + db_pas(data['sub']) + "' and id = '1' order by sub asc")
  1578. aa = curs.fetchall()
  1579. indata = namumark(name, aa[0]['data'])
  1580. if(aa[0]['block'] == 'O'):
  1581. indata = '블라인드 되었습니다.'
  1582. block = 'id="block"'
  1583. else:
  1584. block = ''
  1585. ip = ip_pas(aa[0]['ip'], 1)
  1586. curs.execute("select * from stop where title = '" + db_pas(data['title']) + "' and sub = '" + db_pas(data['sub']) + "' and close = 'O'")
  1587. row = curs.fetchall()
  1588. if(not row):
  1589. div += '<h2><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '">' + str(j) + '. ' + data['sub'] + '</a></h2><table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + ip + ' <span style="float:right;">' + aa[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  1590. j += 1
  1591. else:
  1592. div += '</div>'
  1593. conn.close()
  1594. return(template('topic', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], plus = div, list = 1, sub = '토론 목록'))
  1595. @route('/login', method=['POST', 'GET'])
  1596. def login():
  1597. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1598. curs = conn.cursor(pymysql.cursors.DictCursor)
  1599. session = request.environ.get('beaker.session')
  1600. ip = ip_check()
  1601. ban = ban_check(ip)
  1602. if(request.method == 'POST'):
  1603. if(ban == 1):
  1604. conn.close()
  1605. return(redirect('/ban'))
  1606. else:
  1607. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1608. user = curs.fetchall()
  1609. if(user):
  1610. if(session.get('Now') == True):
  1611. conn.close()
  1612. return(redirect('/error/11'))
  1613. elif(bcrypt.checkpw(bytes(request.forms.pw, 'utf-8'), bytes(user[0]['pw'], 'utf-8'))):
  1614. session['Now'] = True
  1615. session['DREAMER'] = request.forms.id
  1616. curs.execute("select * from custom where user = '" + db_pas(request.forms.id) + "'")
  1617. css_data = curs.fetchall()
  1618. if(css_data):
  1619. session['Daydream'] = css_data[0]['css']
  1620. else:
  1621. session['Daydream'] = ''
  1622. curs.execute("insert into login (user, ip, today) value ('" + db_pas(request.forms.id) + "', '" + db_pas(ip) + "', '" + db_pas(get_time()) + "')")
  1623. conn.commit()
  1624. conn.close()
  1625. return(redirect('/user'))
  1626. else:
  1627. conn.close()
  1628. return(redirect('/error/13'))
  1629. else:
  1630. conn.close()
  1631. return(redirect('/error/12'))
  1632. else:
  1633. if(ban == 1):
  1634. conn.close()
  1635. return(redirect('/ban'))
  1636. else:
  1637. if(session.get('Now') == True):
  1638. conn.close()
  1639. return(redirect('/error/11'))
  1640. else:
  1641. conn.close()
  1642. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인', enter = '로그인', logo = set_data['name']))
  1643. @route('/change', method=['POST', 'GET'])
  1644. def change_password():
  1645. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1646. curs = conn.cursor(pymysql.cursors.DictCursor)
  1647. ip = ip_check()
  1648. ban = ban_check(ip)
  1649. if(request.method == 'POST'):
  1650. if(request.forms.pw2 == request.forms.pw3):
  1651. if(ban == 1):
  1652. conn.close()
  1653. return(redirect('/ban'))
  1654. else:
  1655. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1656. user = curs.fetchall()
  1657. if(user):
  1658. if(not re.search('(\.|:)', ip)):
  1659. conn.close()
  1660. return(redirect('/logout'))
  1661. elif(bcrypt.checkpw(bytes(request.forms.pw, 'utf-8'), bytes(user[0]['pw'], 'utf-8'))):
  1662. hashed = bcrypt.hashpw(bytes(request.forms.pw2, 'utf-8'), bcrypt.gensalt())
  1663. curs.execute("update user set pw = '" + db_pas(hashed.decode()) + "' where id = '" + db_pas(request.forms.id) + "'")
  1664. conn.commit()
  1665. conn.close()
  1666. return(redirect('/login'))
  1667. else:
  1668. conn.close()
  1669. return(redirect('/error/10'))
  1670. else:
  1671. conn.close()
  1672. return(redirect('/error/9'))
  1673. else:
  1674. conn.close()
  1675. return(redirect('/error/20'))
  1676. else:
  1677. if(ban == 1):
  1678. conn.close()
  1679. return(redirect('/ban'))
  1680. else:
  1681. if(not re.search('(\.|:)', ip)):
  1682. conn.close()
  1683. return(redirect('/logout'))
  1684. else:
  1685. conn.close()
  1686. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '비밀번호 변경', enter = '변경', logo = set_data['name']))
  1687. @route('/check/<name:path>')
  1688. def user_check(name = None):
  1689. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1690. curs = conn.cursor(pymysql.cursors.DictCursor)
  1691. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1692. user = curs.fetchall()
  1693. if(user and not user[0]['acl'] == 'user'):
  1694. conn.close()
  1695. return(redirect('/error/4'))
  1696. else:
  1697. if(admin_check(4) == 1):
  1698. m = re.search('^(?:[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}?)$', name)
  1699. if(m):
  1700. curs.execute("select * from login where ip = '" + db_pas(name) + "' order by today desc")
  1701. row = curs.fetchall()
  1702. if(row):
  1703. c = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">이름</td><td style="text-align: center;width:33.33%;">아이피</td><td style="text-align: center;width:33.33%;">언제</td></tr>'
  1704. for data in row:
  1705. c += '<tr><td style="text-align: center;width:33.33%;">' + data['user'] + '</td><td style="text-align: center;width:33.33%;">' + data['ip'] + '</td><td style="text-align: center;width:33.33%;">' + data['today'] + '</td></tr>'
  1706. else:
  1707. c += '</tbody></table></div>'
  1708. else:
  1709. c = 'None'
  1710. conn.close()
  1711. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '다중 검사', logo = set_data['name'], data = c))
  1712. else:
  1713. curs.execute("select * from login where user = '" + db_pas(name) + "' order by today desc")
  1714. row = curs.fetchall()
  1715. if(row):
  1716. c = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">이름</td><td style="text-align: center;width:33.33%;">아이피</td><td style="text-align: center;width:33.33%;">언제</td></tr>'
  1717. for data in row:
  1718. c += '<tr><td style="text-align: center;width:33.33%;">' + data['user'] + '</td><td style="text-align: center;width:33.33%;">' + data['ip'] + '</td><td style="text-align: center;width:33.33%;">' + data['today'] + '</td></tr>'
  1719. else:
  1720. c += '</tbody></table></div>'
  1721. else:
  1722. c = 'None'
  1723. conn.close()
  1724. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '다중 검사', logo = set_data['name'], data = c))
  1725. else:
  1726. conn.close()
  1727. return(redirect('/error/3'))
  1728. @route('/register', method=['POST', 'GET'])
  1729. def register():
  1730. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1731. curs = conn.cursor(pymysql.cursors.DictCursor)
  1732. ip = ip_check()
  1733. ban = ban_check(ip)
  1734. if(request.method == 'POST'):
  1735. if(request.forms.pw == request.forms.pw2):
  1736. if(ban == 1):
  1737. conn.close()
  1738. return(redirect('/ban'))
  1739. else:
  1740. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.forms.id)
  1741. if(m):
  1742. conn.close()
  1743. return(redirect('/error/8'))
  1744. else:
  1745. if(len(request.forms.id) > 20):
  1746. conn.close()
  1747. return(redirect('/error/7'))
  1748. else:
  1749. curs.execute("select * from user where id = '" + db_pas(request.forms.id) + "'")
  1750. rows = curs.fetchall()
  1751. if(rows):
  1752. conn.close()
  1753. return(redirect('/error/6'))
  1754. else:
  1755. hashed = bcrypt.hashpw(bytes(request.forms.pw, 'utf-8'), bcrypt.gensalt())
  1756. curs.execute("select id from user limit 1")
  1757. user_ex = curs.fetchall()
  1758. if(not user_ex):
  1759. curs.execute("insert into user (id, pw, acl) value ('" + db_pas(request.forms.id) + "', '" + db_pas(hashed.decode()) + "', 'owner')")
  1760. else:
  1761. curs.execute("insert into user (id, pw, acl) value ('" + db_pas(request.forms.id) + "', '" + db_pas(hashed.decode()) + "', 'user')")
  1762. conn.commit()
  1763. conn.close()
  1764. return(redirect('/login'))
  1765. else:
  1766. conn.close()
  1767. return(redirect('/error/20'))
  1768. else:
  1769. if(ban == 1):
  1770. conn.close()
  1771. return(redirect('/ban'))
  1772. else:
  1773. conn.close()
  1774. return(template('login', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '회원가입', enter = '회원가입', logo = set_data['name']))
  1775. @route('/logout')
  1776. def logout():
  1777. session = request.environ.get('beaker.session')
  1778. session['Now'] = False
  1779. session.pop('DREAMER', None)
  1780. return(redirect('/user'))
  1781. @route('/ban/<name:path>', method=['POST', 'GET'])
  1782. def user_ban(name = None):
  1783. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1784. curs = conn.cursor(pymysql.cursors.DictCursor)
  1785. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1786. user = curs.fetchall()
  1787. if(user and not user[0]['acl'] == 'user'):
  1788. conn.close()
  1789. return(redirect('/error/4'))
  1790. else:
  1791. if(request.method == 'POST'):
  1792. if(admin_check(1) == 1):
  1793. ip = ip_check()
  1794. if(not re.search("[0-9]{4}-[0-9]{2}-[0-9]{2}", request.forms.end)):
  1795. end = ''
  1796. else:
  1797. end = request.forms.end
  1798. curs.execute("select * from ban where block = '" + db_pas(name) + "'")
  1799. row = curs.fetchall()
  1800. if(row):
  1801. rb_plus(name, '해제', get_time(), ip, '')
  1802. curs.execute("delete from ban where block = '" + db_pas(name) + "'")
  1803. else:
  1804. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", name)
  1805. if(b):
  1806. rb_plus(name, end, get_time(), ip, request.forms.why)
  1807. curs.execute("insert into ban (block, end, why, band) value ('" + db_pas(name) + "', '" + db_pas(end) + "', '" + db_pas(request.forms.why) + "', 'O')")
  1808. else:
  1809. rb_plus(name, end, get_time(), ip, request.forms.why)
  1810. curs.execute("insert into ban (block, end, why, band) value ('" + db_pas(name) + "', '" + db_pas(end) + "', '" + db_pas(request.forms.why) + "', '')")
  1811. conn.commit()
  1812. conn.close()
  1813. return(redirect('/ban/' + url_pas(name)))
  1814. else:
  1815. conn.close()
  1816. return(redirect('/error/3'))
  1817. else:
  1818. if(admin_check(1) == 1):
  1819. curs.execute("select * from ban where block = '" + db_pas(name) + "'")
  1820. row = curs.fetchall()
  1821. if(row):
  1822. now = '차단 해제'
  1823. else:
  1824. b = re.search("^([0-9]{1,3}\.[0-9]{1,3})$", name)
  1825. if(b):
  1826. now = '대역 차단'
  1827. else:
  1828. now = '차단'
  1829. conn.close()
  1830. return(template('ban', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], now = now, today = get_time(), sub = '차단'))
  1831. else:
  1832. conn.close()
  1833. return(redirect('/error/3'))
  1834. @route('/acl/<name:path>', method=['POST', 'GET'])
  1835. def acl(name = None):
  1836. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1837. curs = conn.cursor(pymysql.cursors.DictCursor)
  1838. if(request.method == 'POST'):
  1839. if(admin_check(5) == 1):
  1840. curs.execute("select acl from data where title = '" + db_pas(name) + "'")
  1841. row = curs.fetchall()
  1842. if(row):
  1843. if(request.forms.select == 'admin'):
  1844. curs.execute("update data set acl = 'admin' where title = '" + db_pas(name) + "'")
  1845. elif(request.forms.select == 'user'):
  1846. curs.execute("update data set acl = 'user' where title = '" + db_pas(name) + "'")
  1847. else:
  1848. curs.execute("update data set acl = '' where title = '" + db_pas(name) + "'")
  1849. conn.commit()
  1850. conn.close()
  1851. return(redirect('/w/' + url_pas(name)) )
  1852. else:
  1853. conn.close()
  1854. return(redirect('/error/3'))
  1855. else:
  1856. if(admin_check(5) == 1):
  1857. curs.execute("select acl from data where title = '" + db_pas(name) + "'")
  1858. row = curs.fetchall()
  1859. if(row):
  1860. if(row[0]['acl'] == 'admin'):
  1861. now = '관리자만'
  1862. elif(row[0]['acl'] == 'user'):
  1863. now = '로그인 이상'
  1864. else:
  1865. now = '일반'
  1866. conn.close()
  1867. return(template('acl', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), logo = set_data['name'], now = '현재 ACL 상태는 ' + now, sub = 'ACL'))
  1868. else:
  1869. conn.close()
  1870. return(redirect('/w/' + url_pas(name)) )
  1871. else:
  1872. conn.close()
  1873. return(redirect('/error/3'))
  1874. @route('/admin/<name:path>', method=['POST', 'GET'])
  1875. def user_admin(name = None):
  1876. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1877. curs = conn.cursor(pymysql.cursors.DictCursor)
  1878. if(request.method == 'POST'):
  1879. if(admin_check(None) == 1):
  1880. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1881. user = curs.fetchall()
  1882. if(user):
  1883. if(not user[0]['acl'] == 'user'):
  1884. curs.execute("update user set acl = 'user' where id = '" + db_pas(name) + "'")
  1885. else:
  1886. curs.execute("update user set acl = '" + db_pas(request.forms.select) + "' where id = '" + db_pas(name) + "'")
  1887. conn.commit()
  1888. conn.close()
  1889. return(redirect('/'))
  1890. else:
  1891. conn.close()
  1892. return(redirect('/error/5'))
  1893. else:
  1894. conn.close()
  1895. return(redirect('/error/3'))
  1896. else:
  1897. if(admin_check(None) == 1):
  1898. curs.execute("select * from user where id = '" + db_pas(name) + "'")
  1899. user = curs.fetchall()
  1900. if(user):
  1901. if(not user[0]['acl'] == 'user'):
  1902. now = '권한 해제'
  1903. else:
  1904. now = '권한 부여'
  1905. div = ''
  1906. curs.execute('select name from alist order by name asc')
  1907. get_alist = curs.fetchall()
  1908. if(get_alist):
  1909. i = 0
  1910. name_rem = ''
  1911. for data in get_alist:
  1912. if(not name_rem == data['name']):
  1913. name_rem = data['name']
  1914. div += '<option value="' + data['name'] + '" selected="selected">' + data['name'] + '</option>'
  1915. conn.close()
  1916. return(template('admin', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, page = url_pas(name), datalist = div, logo = set_data['name'], now = now, sub = '권한 부여'))
  1917. else:
  1918. conn.close()
  1919. return(redirect('/error/5'))
  1920. else:
  1921. conn.close()
  1922. return(redirect('/error/3'))
  1923. @route('/ban')
  1924. def are_you_ban():
  1925. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1926. curs = conn.cursor(pymysql.cursors.DictCursor)
  1927. ip = ip_check()
  1928. if(ban_check(ip) == 1):
  1929. curs.execute("select * from ban where block = '" + db_pas(ip) + "'")
  1930. rows = curs.fetchall()
  1931. if(rows):
  1932. if(rows[0]['end']):
  1933. end = rows[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  1934. now = re.sub(':', '', get_time())
  1935. now = re.sub('\-', '', now)
  1936. now = int(re.sub(' ', '', now))
  1937. day = re.sub('\-', '', rows[0]['end'])
  1938. if(now >= int(day + '000000')):
  1939. curs.execute("delete from ban where block = '" + db_pas(ip) + "'")
  1940. conn.commit()
  1941. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  1942. else:
  1943. end = '영구 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  1944. else:
  1945. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1946. if(b):
  1947. results = b.groups()
  1948. curs.execute("select * from ban where block = '" + db_pas(results[0]) + "' and band = 'O'")
  1949. row = curs.fetchall()
  1950. if(row):
  1951. if(row[0]['end']):
  1952. end = row[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  1953. now = re.sub(':', '', get_time())
  1954. now = re.sub('\-', '', now)
  1955. now = int(re.sub(' ', '', now))
  1956. day = re.sub('\-', '', row[0]['end'])
  1957. if(now >= int(day + '000000')):
  1958. curs.execute("delete from ban where block = '" + db_pas(results[0]) + "' and band = 'O'")
  1959. conn.commit()
  1960. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  1961. else:
  1962. end = '영구 차단 상태 입니다. / 사유 : ' + row[0]['why']
  1963. else:
  1964. end = '권한이 맞지 않는 상태 입니다.'
  1965. conn.close()
  1966. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = end))
  1967. @route('/w/<name:path>/r/<a:int>/diff/<b:int>')
  1968. def diff_data(name = None, a = None, b = None):
  1969. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1970. curs = conn.cursor(pymysql.cursors.DictCursor)
  1971. curs.execute("select * from history where id = '" + db_pas(str(a)) + "' and title = '" + db_pas(name) + "'")
  1972. a_raw_data = curs.fetchall()
  1973. if(a_raw_data):
  1974. curs.execute("select * from history where id = '" + db_pas(str(b)) + "' and title = '" + db_pas(name) + "'")
  1975. b_raw_data = curs.fetchall()
  1976. if(b_raw_data):
  1977. a_data = re.sub('<', '&lt;', a_raw_data[0]['data'])
  1978. a_data = re.sub('>', '&gt;', a_data)
  1979. a_data = re.sub('"', '&quot;', a_data)
  1980. b_data = re.sub('<', '&lt;', b_raw_data[0]['data'])
  1981. b_data = re.sub('>', '&gt;', b_data)
  1982. b_data = re.sub('"', '&quot;', b_data)
  1983. diff_data = difflib.SequenceMatcher(None, a_data, b_data)
  1984. result = diff(diff_data)
  1985. result = '<pre>' + result + '</pre>'
  1986. conn.close()
  1987. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], data = result, sub = '비교', page = url_pas(name)))
  1988. else:
  1989. conn.close()
  1990. return(redirect('/history/' + url_pas(name)))
  1991. else:
  1992. conn.close()
  1993. return(redirect('/history/' + url_pas(name)))
  1994. @route('/down/<name:path>')
  1995. def down(name = None):
  1996. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  1997. curs = conn.cursor(pymysql.cursors.DictCursor)
  1998. curs.execute("select title from data where title like '%" + db_pas(name) + "/%'")
  1999. under = curs.fetchall()
  2000. div = ''
  2001. i = 0
  2002. for data in under:
  2003. div += '<li>' + str(i + 1) + '. <a href="/w/' + url_pas(data['title']) + '">' + data['title'] + '</a></li>'
  2004. i += 1
  2005. conn.close()
  2006. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], data = div, sub = '하위 문서', page = url_pas(name)))
  2007. @route('/w/<name:path>')
  2008. @route('/w/<name:path>/from/<redirect:path>')
  2009. def read_view(name = None, redirect = None):
  2010. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2011. curs = conn.cursor(pymysql.cursors.DictCursor)
  2012. data_none = False
  2013. sub = None
  2014. acl = ''
  2015. div = ''
  2016. i = 0
  2017. curs.execute("select sub from rd where title = '" + db_pas(name) + "' order by date asc")
  2018. rows = curs.fetchall()
  2019. while(True):
  2020. try:
  2021. curs.execute("select title from stop where title = '" + db_pas(name) + "' and sub = '" + db_pas(rows[i]['sub']) + "' and close = 'O'")
  2022. row = curs.fetchall()
  2023. if(not row):
  2024. topic = "open"
  2025. break
  2026. i += 1
  2027. except:
  2028. topic = ""
  2029. break
  2030. curs.execute("select title from data where title like '%" + db_pas(name) + "/%'")
  2031. under = curs.fetchall()
  2032. if(under):
  2033. down = True
  2034. else:
  2035. down = False
  2036. m = re.search("^(.*)\/(.*)$", name)
  2037. if(m):
  2038. uppage = m.groups()[0]
  2039. else:
  2040. uppage = False
  2041. if(admin_check(5) == 1):
  2042. admin_memu = 'ACL'
  2043. else:
  2044. admin_memu = ''
  2045. if(re.search("^분류:", name)):
  2046. curs.execute("select * from cat where title = '" + db_pas(name) + "' order by cat asc")
  2047. rows = curs.fetchall()
  2048. if(rows):
  2049. div = '<h2>분류</h2>'
  2050. i = 0
  2051. for data in rows:
  2052. curs.execute("select * from data where title = '" + db_pas(data['cat']) + "'")
  2053. row = curs.fetchall()
  2054. if(row):
  2055. aa = row[0]['data']
  2056. aa = namumark('', aa)
  2057. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  2058. if(bb):
  2059. cc = bb.groups()
  2060. mm = re.search("^분류:(.*)", name)
  2061. if(mm):
  2062. ee = mm.groups()
  2063. if(re.search("<a (class=\"not_thing\")? href=\"\/w\/" + url_pas(name) + "\">" + ee[0] + "<\/a>", cc[0])):
  2064. div += '<li><a href="/w/' + url_pas(data['cat']) + '">' + data['cat'] + '</a></li>'
  2065. i += 1
  2066. else:
  2067. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2068. conn.commit()
  2069. i += 1
  2070. else:
  2071. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2072. conn.commit()
  2073. i += 1
  2074. else:
  2075. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2076. conn.commit()
  2077. i += 1
  2078. else:
  2079. curs.execute("delete from cat where title = '" + db_pas(name) + "' and cat = '" + db_pas(data['cat']) + "'")
  2080. conn.commit()
  2081. i += 1
  2082. curs.execute("select * from data where title = '" + db_pas(name) + "'")
  2083. rows = curs.fetchall()
  2084. if(rows):
  2085. if(rows[0]['acl'] == 'admin'):
  2086. acl = '(관리자)'
  2087. elif(rows[0]['acl'] == 'user'):
  2088. acl = '(로그인)'
  2089. elsedata = rows[0]['data']
  2090. else:
  2091. data_none = True
  2092. elsedata = 'None'
  2093. m = re.search("^사용자:([^/]*)", name)
  2094. if(m):
  2095. g = m.groups()
  2096. curs.execute("select acl from user where id = '" + db_pas(g[0]) + "'")
  2097. test = curs.fetchall()
  2098. if(test):
  2099. if(not test[0]['acl'] == 'user'):
  2100. acl = '(관리자)'
  2101. curs.execute("select block from ban where block = '" + db_pas(g[0]) + "'")
  2102. user = curs.fetchall()
  2103. if(user):
  2104. sub = '차단'
  2105. if(redirect):
  2106. elsedata = re.sub("^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)", " * [[\g<in>]] 문서로 넘겨주기", elsedata)
  2107. enddata = namumark(name, elsedata)
  2108. conn.close()
  2109. return(template('read', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = name, logo = set_data['name'], page = url_pas(name), data = enddata + div, uppage = uppage, acl = acl, topic = topic, redirect = redirect, admin = admin_memu, data_none = data_none, sub = sub, down = down))
  2110. @route('/user/<name:path>/topic')
  2111. @route('/user/<name:path>/topic/<num:int>')
  2112. def user_topic_list(name = None, num = 1):
  2113. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2114. curs = conn.cursor(pymysql.cursors.DictCursor)
  2115. if(num * 50 <= 0):
  2116. v = 50
  2117. else:
  2118. v = num * 50
  2119. i = v - 50
  2120. ydmin = admin_check(1)
  2121. div = '<div><table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">토론명</td><td style="text-align: center;width:33.33%;">작성자</td><td style="text-align: center;width:33.33%;">시간</td></tr>'
  2122. curs.execute("select title, id, sub, ip, date from topic where ip = '" + db_pas(name) + "' order by date desc limit " + str(i) + ", " + str(v))
  2123. rows = curs.fetchall()
  2124. if(rows):
  2125. for data in rows:
  2126. title = re.sub('<', '&lt;', data['title'])
  2127. title = re.sub('>', '&gt;', title)
  2128. title = re.sub('"', '&quot;', title)
  2129. sub = re.sub('<', '&lt;', data['sub'])
  2130. sub = re.sub('>', '&gt;', sub)
  2131. sub = re.sub('"', '&quot;', sub)
  2132. if(ydmin == 1):
  2133. curs.execute("select * from ban where block = '" + db_pas(data['ip']) + "'")
  2134. row = curs.fetchall()
  2135. if(row):
  2136. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(해제)</a>'
  2137. else:
  2138. ban = ' <a href="/ban/' + url_pas(data['ip']) + '">(차단)</a>'
  2139. else:
  2140. ban = ''
  2141. ip = ip_pas(data['ip'], 1)
  2142. div += '<tr><td style="text-align: center;width:33.33%;"><a href="/topic/' + url_pas(data['title']) + '/sub/' + url_pas(data['sub']) + '#' + data['id'] + '">' + title + '</a> (' + sub + ') (#' + data['id'] + ') </td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + data['date'] + '</td></tr>'
  2143. else:
  2144. div += '</tbody></table></div>'
  2145. else:
  2146. div = 'None<br>'
  2147. div += '<br><a href="/user/' + url_pas(name) + '/topic/' + str(num - 1) + '">(이전)</a> <a href="/user/' + url_pas(name) + '/topic/' + str(num + 1) + '">(이후)</a>'
  2148. curs.execute("select end, why from ban where block = '" + db_pas(name) + "'")
  2149. ban_it = curs.fetchall()
  2150. if(ban_it):
  2151. sub = '차단'
  2152. else:
  2153. sub = None
  2154. conn.close()
  2155. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), logo = set_data['name'], data = div, title = '사용자 토론 기록', sub = sub))
  2156. @route('/user')
  2157. def user_info():
  2158. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2159. curs = conn.cursor(pymysql.cursors.DictCursor)
  2160. ip = ip_check()
  2161. raw_ip = ip
  2162. curs.execute("select * from user where id = '" + db_pas(ip) + "'")
  2163. rows = curs.fetchall()
  2164. if(ban_check(ip) == 0):
  2165. if(rows):
  2166. if(not rows[0]['acl'] == 'user'):
  2167. acl = rows[0]['acl']
  2168. else:
  2169. acl = '로그인'
  2170. else:
  2171. acl = '일반'
  2172. else:
  2173. acl = '차단'
  2174. ip = ip_pas(ip, 2)
  2175. conn.close()
  2176. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '사용자 메뉴', logo = set_data['name'], data = ip + '<br><br><span>권한 상태 : ' + acl + '<h2>로그인 관련</h2><li><a href="/login">로그인</a></li><li><a href="/logout">로그아웃</a></li><li><a href="/register">회원가입</a></li><h2>기타</h2><li><a href="/change">비밀번호 변경</a></li><li><a href="/count">기여 횟수</a></li><li><a href="/record/' + raw_ip + '">기여 목록</a></li><li><a href="/custom">커스텀 CSS</a></li>'))
  2177. @route('/custom', method=['GET', 'POST'])
  2178. def custom_css():
  2179. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2180. curs = conn.cursor(pymysql.cursors.DictCursor)
  2181. session = request.environ.get('beaker.session')
  2182. ip = ip_check()
  2183. if(request.method == 'POST'):
  2184. if(not re.search('(\.|:)', ip)):
  2185. curs.execute("select * from custom where user = '" + db_pas(ip) + "'")
  2186. css_data = curs.fetchall()
  2187. if(css_data):
  2188. curs.execute("update custom set css = '" + db_pas(request.forms.content) + "' where user = '" + db_pas(ip) + "'")
  2189. else:
  2190. curs.execute("insert into custom (user, css) value ('" + db_pas(ip) + "', '" + db_pas(request.forms.content) + "')")
  2191. conn.commit()
  2192. session['Daydream'] = request.forms.content
  2193. conn.close()
  2194. return(redirect('/user'))
  2195. else:
  2196. if(not re.search('(\.|:)', ip)):
  2197. start = ''
  2198. curs.execute("select * from custom where user = '" + db_pas(ip) + "'")
  2199. css_data = curs.fetchall()
  2200. if(css_data):
  2201. data = css_data[0]['css']
  2202. else:
  2203. data = ''
  2204. else:
  2205. start = '<span>비 로그인의 경우에는 로그인하면 날아갑니다.</span><br><br>'
  2206. try:
  2207. data = session['Daydream']
  2208. except:
  2209. data = ''
  2210. conn.close()
  2211. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '커스텀 CSS', logo = set_data['name'], data = start + '<form id="usrform" name="f1" method="POST" action="/custom"><textarea rows="30" cols="100" name="content" form="usrform">' + data + '</textarea><div class="form-actions"><button class="btn btn-primary" type="submit">저장</button></div></form>'))
  2212. @route('/count')
  2213. def count_edit():
  2214. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2215. curs = conn.cursor(pymysql.cursors.DictCursor)
  2216. curs.execute("select count(title) from history where ip = '" + ip_check() + "'")
  2217. count = curs.fetchall()
  2218. if(count):
  2219. conn.close()
  2220. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기여 횟수', logo = set_data['name'], data = "기여 횟수 : " + str(count[0]["count(title)"])))
  2221. else:
  2222. conn.close()
  2223. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '기여 횟수', logo = set_data['name'], data = "기여 횟수 : 0"))
  2224. @route('/random')
  2225. def random():
  2226. conn = pymysql.connect(user = set_data['user'], password = set_data['pw'], charset = 'utf8mb4', db = set_data['db'])
  2227. curs = conn.cursor(pymysql.cursors.DictCursor)
  2228. curs.execute("select title from data order by rand() limit 1")
  2229. rows = curs.fetchall()
  2230. if(rows):
  2231. conn.close()
  2232. return(redirect('/w/' + url_pas(rows[0]['title'])))
  2233. else:
  2234. conn.close()
  2235. return(redirect('/'))
  2236. @route('/views/<name:path>')
  2237. def views(name = None):
  2238. if(re.search('\/', name)):
  2239. m = re.search('^(.*)\/(.*)$', name)
  2240. if(m):
  2241. n = m.groups()
  2242. plus = '/' + n[0]
  2243. rename = n[1]
  2244. else:
  2245. plus = ''
  2246. rename = name
  2247. else:
  2248. plus = ''
  2249. rename = name
  2250. return(static_file(rename, root = './views' + plus))
  2251. @route('/error/<num:int>')
  2252. def error_test(num = None):
  2253. if(num == 1):
  2254. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '비 로그인 상태 입니다.'))
  2255. elif(num == 2):
  2256. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '이 계정이 없습니다.'))
  2257. elif(num == 3):
  2258. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '권한이 모자랍니다.'))
  2259. elif(num == 4):
  2260. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '권한 오류', logo = set_data['name'], data = '관리자는 차단, 검사 할 수 없습니다.'))
  2261. elif(num == 5):
  2262. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '사용자 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2263. elif(num == 6):
  2264. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '동일한 아이디의 사용자가 있습니다.'))
  2265. elif(num == 7):
  2266. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '아이디는 20글자보다 짧아야 합니다.'))
  2267. elif(num == 8):
  2268. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '가입 오류', logo = set_data['name'], data = '아이디에는 한글과 알파벳과 공백만 허용 됩니다.'))
  2269. elif(num == 9):
  2270. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '변경 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2271. elif(num == 10):
  2272. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '변경 오류', logo = set_data['name'], data = '비밀번호가 다릅니다.'))
  2273. elif(num == 11):
  2274. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '이미 로그인 되어 있습니다.'))
  2275. elif(num == 12):
  2276. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '그런 계정이 없습니다.'))
  2277. elif(num == 13):
  2278. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '로그인 오류', logo = set_data['name'], data = '비밀번호가 다릅니다.'))
  2279. elif(num == 14):
  2280. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = 'jpg, gif, jpeg, png(대 소문자 상관 없음)만 가능 합니다.'))
  2281. elif(num == 15):
  2282. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '편집 오류', logo = set_data['name'], data = '편집 기록은 500자를 넘을 수 없습니다.'))
  2283. elif(num == 16):
  2284. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = '동일한 이름의 파일이 있습니다.'))
  2285. elif(num == 17):
  2286. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '업로드 오류', logo = set_data['name'], data = '파일 용량은 ' + set_data['upload'] + 'MB를 넘길 수 없습니다.'))
  2287. elif(num == 18):
  2288. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '편집 오류', logo = set_data['name'], data = '내용이 원래 문서와 동일 합니다.'))
  2289. elif(num == 19):
  2290. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '이동 오류', logo = set_data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.'))
  2291. elif(num == 20):
  2292. return(template('other', custom = custom_css_user(), license = set_data['license'], login = login_check(), title = '비밀번호 오류', logo = set_data['name'], data = '재 확인이랑 비밀번호가 다릅니다.'))
  2293. else:
  2294. return(redirect('/'))
  2295. @error(404)
  2296. def error_404(error):
  2297. return(redirect('/w/' + url_pas(set_data['frontpage'])))
  2298. run(app = app, server='tornado', host = '0.0.0.0', port = int(set_data['port']))