app.py 169 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517151815191520152115221523152415251526152715281529153015311532153315341535153615371538153915401541154215431544154515461547154815491550155115521553155415551556155715581559156015611562156315641565156615671568156915701571157215731574157515761577157815791580158115821583158415851586158715881589159015911592159315941595159615971598159916001601160216031604160516061607160816091610161116121613161416151616161716181619162016211622162316241625162616271628162916301631163216331634163516361637163816391640164116421643164416451646164716481649165016511652165316541655165616571658165916601661166216631664166516661667166816691670167116721673167416751676167716781679168016811682168316841685168616871688168916901691169216931694169516961697169816991700170117021703170417051706170717081709171017111712171317141715171617171718171917201721172217231724172517261727172817291730173117321733173417351736173717381739174017411742174317441745174617471748174917501751175217531754175517561757175817591760176117621763176417651766176717681769177017711772177317741775177617771778177917801781178217831784178517861787178817891790179117921793179417951796179717981799180018011802180318041805180618071808180918101811181218131814181518161817181818191820182118221823182418251826182718281829183018311832183318341835183618371838183918401841184218431844184518461847184818491850185118521853185418551856185718581859186018611862186318641865186618671868186918701871187218731874187518761877187818791880188118821883188418851886188718881889189018911892189318941895189618971898189919001901190219031904190519061907190819091910191119121913191419151916191719181919192019211922192319241925192619271928192919301931193219331934193519361937193819391940194119421943194419451946194719481949195019511952195319541955195619571958195919601961196219631964196519661967196819691970197119721973197419751976197719781979198019811982198319841985198619871988198919901991199219931994199519961997199819992000200120022003200420052006200720082009201020112012201320142015201620172018201920202021202220232024202520262027202820292030203120322033203420352036203720382039204020412042204320442045204620472048204920502051205220532054205520562057205820592060206120622063206420652066206720682069207020712072207320742075207620772078207920802081208220832084208520862087208820892090209120922093209420952096209720982099210021012102210321042105210621072108210921102111211221132114211521162117211821192120212121222123212421252126212721282129213021312132213321342135213621372138213921402141214221432144214521462147214821492150215121522153215421552156215721582159216021612162216321642165216621672168216921702171217221732174217521762177217821792180218121822183218421852186218721882189219021912192219321942195219621972198219922002201220222032204220522062207220822092210221122122213221422152216221722182219222022212222222322242225222622272228222922302231223222332234223522362237223822392240224122422243224422452246224722482249225022512252225322542255225622572258225922602261226222632264226522662267226822692270227122722273227422752276227722782279228022812282228322842285228622872288228922902291229222932294229522962297229822992300230123022303230423052306230723082309231023112312231323142315231623172318231923202321232223232324232523262327232823292330233123322333233423352336233723382339234023412342234323442345234623472348234923502351235223532354235523562357235823592360236123622363236423652366236723682369237023712372237323742375237623772378237923802381238223832384238523862387238823892390239123922393239423952396239723982399240024012402240324042405240624072408240924102411241224132414241524162417241824192420242124222423242424252426242724282429243024312432243324342435243624372438243924402441244224432444244524462447244824492450245124522453245424552456245724582459246024612462246324642465246624672468246924702471247224732474247524762477247824792480248124822483248424852486248724882489249024912492249324942495249624972498249925002501250225032504250525062507250825092510251125122513251425152516251725182519252025212522252325242525252625272528252925302531253225332534253525362537253825392540254125422543254425452546254725482549255025512552255325542555255625572558255925602561256225632564256525662567256825692570257125722573257425752576257725782579258025812582258325842585258625872588258925902591259225932594259525962597259825992600260126022603260426052606260726082609261026112612261326142615261626172618261926202621262226232624262526262627262826292630263126322633263426352636263726382639264026412642264326442645264626472648264926502651265226532654265526562657265826592660266126622663266426652666266726682669267026712672267326742675267626772678267926802681268226832684268526862687268826892690269126922693269426952696269726982699270027012702270327042705270627072708270927102711271227132714271527162717271827192720272127222723272427252726272727282729273027312732273327342735273627372738273927402741274227432744274527462747274827492750275127522753275427552756275727582759276027612762276327642765276627672768276927702771277227732774277527762777277827792780278127822783278427852786278727882789279027912792279327942795279627972798279928002801280228032804280528062807280828092810281128122813281428152816281728182819282028212822282328242825282628272828282928302831283228332834283528362837283828392840284128422843284428452846284728482849285028512852285328542855285628572858285928602861286228632864286528662867286828692870287128722873287428752876287728782879288028812882288328842885288628872888288928902891289228932894289528962897289828992900290129022903290429052906290729082909291029112912291329142915291629172918291929202921292229232924292529262927292829292930293129322933293429352936293729382939294029412942294329442945294629472948294929502951295229532954295529562957295829592960296129622963296429652966296729682969297029712972297329742975297629772978297929802981298229832984298529862987298829892990299129922993299429952996299729982999300030013002300330043005300630073008300930103011301230133014301530163017301830193020302130223023302430253026302730283029303030313032303330343035303630373038303930403041304230433044304530463047304830493050305130523053305430553056305730583059306030613062306330643065306630673068306930703071307230733074307530763077307830793080308130823083308430853086
  1. from flask import Flask, request, session, render_template, send_file
  2. app = Flask(__name__)
  3. from urllib import parse
  4. import json
  5. import pymysql
  6. import time
  7. import re
  8. import bcrypt
  9. import os
  10. import difflib
  11. json_data = open('set.json').read()
  12. data = json.loads(json_data)
  13. print('오픈나무 시작 포트 : ' + data['port'])
  14. import logging
  15. log = logging.getLogger('werkzeug')
  16. log.setLevel(logging.ERROR)
  17. app.config['MAX_CONTENT_LENGTH'] = int(data['upload']) * 1024 * 1024
  18. try:
  19. conn = pymysql.connect(host = data['host'], user = data['user'], password = data['pw'], db = data['db'], charset = 'utf8mb4')
  20. curs = conn.cursor(pymysql.cursors.DictCursor)
  21. try:
  22. curs.execute("select * from data limit 1")
  23. except:
  24. curs.execute("create table data(title text not null, data longtext not null, acl text not null)")
  25. try:
  26. curs.execute("select * from history limit 1")
  27. except:
  28. curs.execute("create table history(id text not null, title text not null, data longtext not null, date text not null, ip text not null, send text not null, leng text not null)")
  29. try:
  30. curs.execute("select * from rd limit 1")
  31. except:
  32. curs.execute("create table rd(title text not null, sub text not null, date text not null)")
  33. try:
  34. curs.execute("select * from user limit 1")
  35. except:
  36. curs.execute("create table user(id text not null, pw text not null, acl text not null)")
  37. try:
  38. curs.execute("select * from ban limit 1")
  39. except:
  40. curs.execute("create table ban(block text not null, end text not null, why text not null, band text not null)")
  41. try:
  42. curs.execute("select * from topic limit 1")
  43. except:
  44. curs.execute("create table topic(id text not null, title text not null, sub text not null, data longtext not null, date text not null, ip text not null, block text not null)")
  45. try:
  46. curs.execute("select * from stop limit 1")
  47. except:
  48. curs.execute("create table stop(title text not null, sub text not null, close text not null)")
  49. try:
  50. curs.execute("select * from rb limit 1")
  51. except:
  52. curs.execute("create table rb(block text not null, end text not null, today text not null, blocker text not null, why text not null)")
  53. try:
  54. curs.execute("select * from login limit 1")
  55. except:
  56. curs.execute("create table login(user text not null, ip text not null, today text not null)")
  57. try:
  58. curs.execute("select * from back limit 1")
  59. except:
  60. curs.execute("create table back(title text not null, link text not null, type text not null)")
  61. try:
  62. curs.execute("select * from cat limit 1")
  63. except:
  64. curs.execute("create table cat(title text not null, cat text not null)")
  65. except:
  66. conn = pymysql.connect(host = data['host'], user = data['user'], password = data['pw'], charset = 'utf8mb4')
  67. curs = conn.cursor(pymysql.cursors.DictCursor)
  68. curs.execute("create database " + data['db'])
  69. curs.execute("alter database " + data['db'] + " character set = utf8mb4 collate = utf8mb4_unicode_ci")
  70. curs.execute("use " + data['db'])
  71. try:
  72. curs.execute("select * from data limit 1")
  73. except:
  74. curs.execute("create table data(title text not null, data longtext not null, acl text not null)")
  75. try:
  76. curs.execute("select * from history limit 1")
  77. except:
  78. curs.execute("create table history(id text not null, title text not null, data longtext not null, date text not null, ip text not null, send text not null, leng text not null)")
  79. try:
  80. curs.execute("select * from rd limit 1")
  81. except:
  82. curs.execute("create table rd(title text not null, sub text not null, date text not null)")
  83. try:
  84. curs.execute("select * from user limit 1")
  85. except:
  86. curs.execute("create table user(id text not null, pw text not null, acl text not null)")
  87. try:
  88. curs.execute("select * from ban limit 1")
  89. except:
  90. curs.execute("create table ban(block text not null, end text not null, why text not null, band text not null)")
  91. try:
  92. curs.execute("select * from topic limit 1")
  93. except:
  94. curs.execute("create table topic(id text not null, title text not null, sub text not null, data longtext not null, date text not null, ip text not null, block text not null)")
  95. try:
  96. curs.execute("select * from stop limit 1")
  97. except:
  98. curs.execute("create table stop(title text not null, sub text not null, close text not null)")
  99. try:
  100. curs.execute("select * from rb limit 1")
  101. except:
  102. curs.execute("create table rb(block text not null, end text not null, today text not null, blocker text not null, why text not null)")
  103. try:
  104. curs.execute("select * from login limit 1")
  105. except:
  106. curs.execute("create table login(user text not null, ip text not null, today text not null)")
  107. try:
  108. curs.execute("select * from back limit 1")
  109. except:
  110. curs.execute("create table back(title text not null, link text not null, type text not null)")
  111. try:
  112. curs.execute("select * from cat limit 1")
  113. except:
  114. curs.execute("create table cat(title text not null, cat text not null)")
  115. app.secret_key = data['key']
  116. ALLOWED_EXTENSIONS = set(['png', 'jpg', 'jpeg', 'gif'])
  117. def show_diff(seqm):
  118. output= []
  119. for opcode, a0, a1, b0, b1 in seqm.get_opcodes():
  120. if opcode == 'equal':
  121. output.append(seqm.a[a0:a1])
  122. elif opcode == 'insert':
  123. output.append("<span style='background:#CFC;'>" + seqm.b[b0:b1] + "</span>")
  124. elif opcode == 'delete':
  125. output.append("<span style='background:#FDD;'>" + seqm.a[a0:a1] + "</span>")
  126. return ''.join(output)
  127. def allowed_file(filename):
  128. return '.' in filename and \
  129. filename.rsplit('.', 1)[1] in ALLOWED_EXTENSIONS
  130. def admincheck():
  131. if(session.get('Now') == True):
  132. ip = getip(request)
  133. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  134. rows = curs.fetchall()
  135. if(rows):
  136. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  137. return 1
  138. def namumark(title, data):
  139. data = re.sub('<', '&lt;', data)
  140. data = re.sub('>', '&gt;', data)
  141. data = re.sub('"', '&quot;', data)
  142. jjjj = 0
  143. while True:
  144. p = re.compile("{{{((?:(?!{{{)(?!}}}).)*)}}}", re.DOTALL)
  145. m = p.search(data)
  146. if(m):
  147. results = m.groups()
  148. q = re.compile("^\+([1-5])\s(.*)$", re.DOTALL)
  149. n = q.search(results[0])
  150. w = re.compile("^\-([1-5])\s(.*)$", re.DOTALL)
  151. a = w.search(results[0])
  152. e = re.compile("^(#[0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  153. b = e.search(results[0])
  154. r = re.compile("^(#[0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  155. c = r.search(results[0])
  156. t = re.compile("^#(\w+)\s(.*)$", re.DOTALL)
  157. d = t.search(results[0])
  158. qqq = re.compile("^@([0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  159. qqe = qqq.search(results[0])
  160. qqw = re.compile("^@([0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  161. qqa = qqw.search(results[0])
  162. qwe = re.compile("^@(\w+)\s(.*)$", re.DOTALL)
  163. qsd = qwe.search(results[0])
  164. qawe = re.compile("^#!noin\s(.*)$", re.DOTALL)
  165. qasd = qawe.search(results[0])
  166. y = re.compile("^#!wiki\sstyle=&quot;((?:(?!&quot;|\n).)*)&quot;\n?\s\n(.*)$", re.DOTALL)
  167. l = y.search(results[0])
  168. ppp = re.compile("^#!folding\s((?:(?!\n).)*)\n?\s\n(.*)$", re.DOTALL)
  169. ooo = ppp.search(results[0])
  170. if(n):
  171. result = n.groups()
  172. data = p.sub('<span class="font-size-' + result[0] + '">' + result[1] + '</span>', data, 1)
  173. elif(a):
  174. result = a.groups()
  175. data = p.sub('<span class="font-size-small-' + result[0] + '">' + result[1] + '</span>', data, 1)
  176. elif(b):
  177. result = b.groups()
  178. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  179. elif(c):
  180. result = c.groups()
  181. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  182. elif(d):
  183. result = d.groups()
  184. data = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', data, 1)
  185. elif(qqe):
  186. result = qqe.groups()
  187. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  188. elif(qqa):
  189. result = qqa.groups()
  190. data = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', data, 1)
  191. elif(qsd):
  192. result = qsd.groups()
  193. data = p.sub('<span style="background:' + result[0] + '">' + result[1] + '</span>', data, 1)
  194. elif(l):
  195. result = l.groups()
  196. data = p.sub('<div style="' + result[0] + '">' + result[1] + '</div>', data, 1)
  197. elif(ooo):
  198. result = ooo.groups()
  199. data = p.sub("<div>" + result[0] + "<span style='float:right;'><div id='folding_" + str(jjjj + 1) + "' style='display:block;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>펼치기</a>]</div><div id='folding_" + str(jjjj + 2) + "' style='display:none;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>접기</a>]</div></a></span><div id='folding_" + str(jjjj) + "' style='display:none;'><br>" + result[1] + "</div></div>", data, 1)
  200. jjjj = jjjj + 3
  201. elif(qasd):
  202. result = qasd.groups()
  203. data = p.sub(result[0], data, 1)
  204. else:
  205. data = p.sub('<code>' + results[0] + '</code>', data, 1)
  206. else:
  207. break
  208. while True:
  209. a = re.compile("<code>(((?!<\/code>).)*)<\/code>", re.DOTALL)
  210. m = a.search(data)
  211. if(m):
  212. g = m.groups()
  213. j = re.sub("<\/span>", "}}}", g[0])
  214. j = re.sub("<\/div>", "}}}", j)
  215. j = re.sub('<span class="font\-size\-(?P<in>[1-6])">', "{{{+\g<in> ", j)
  216. j = re.sub('<span class="font\-size\-small\-(?P<in>[1-6])">', "{{{-\g<in> ", j)
  217. j = re.sub('<span style="color:(?:#)?(?P<in>[^"]*)">', "{{{#\g<in> ", j)
  218. j = re.sub('<span style="background:(?:#)?(?P<in>[^"]*)">', "{{{@\g<in> ", j)
  219. j = re.sub('<div style="(?P<in>[^"]*)">', "{{{#!wiki style=&quot;\g<in>&quot;\n", j)
  220. j = re.sub("(?P<in>.)", "<span>\g<in></span>", j)
  221. data = a.sub(j, data, 1)
  222. else:
  223. break
  224. data = re.sub("<span>&</span><span>l</span><span>t</span><span>;</span>", "<span>&lt;</span>", data)
  225. data = re.sub("<span>&</span><span>g</span><span>t</span><span>;</span>", "<span>&gt;</span>", data)
  226. data = re.sub("\[anchor\((?P<in>[^\[\]]*)\)\]", '<span id="\g<in>"></span>', data)
  227. data = re.sub('\[date\(now\)\]', getnow(), data)
  228. while True:
  229. m = re.search("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", data)
  230. if(m):
  231. results = m.groups()
  232. if(results[0] == title):
  233. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "<b>" + results[0] + "</b>", data, 1)
  234. else:
  235. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  236. rows = curs.fetchall()
  237. if(rows):
  238. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'include'")
  239. abb = curs.fetchall()
  240. if(not abb):
  241. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', 'include')")
  242. conn.commit()
  243. enddata = rows[0]['data']
  244. enddata = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "", enddata)
  245. enddata = re.sub('<', '&lt;', enddata)
  246. enddata = re.sub('>', '&gt;', enddata)
  247. enddata = re.sub('"', '&quot;', enddata)
  248. while True:
  249. p = re.compile("{{{((?:(?!{)(?!}).)*)}}}", re.DOTALL)
  250. m = p.search(enddata)
  251. if(m):
  252. nnn = m.groups()
  253. q = re.compile("^\+([1-5])\s(.*)$", re.DOTALL)
  254. n = q.search(nnn[0])
  255. w = re.compile("^\-([1-5])\s(.*)$", re.DOTALL)
  256. a = w.search(nnn[0])
  257. e = re.compile("^(#[0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  258. b = e.search(nnn[0])
  259. r = re.compile("^(#[0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  260. c = r.search(nnn[0])
  261. t = re.compile("^#(\w+)\s(.*)$", re.DOTALL)
  262. d = t.search(nnn[0])
  263. qqq = re.compile("^@([0-9a-f-A-F]{6})\s(.*)$", re.DOTALL)
  264. qqe = qqq.search(nnn[0])
  265. qqw = re.compile("^@([0-9a-f-A-F]{3})\s(.*)$", re.DOTALL)
  266. qqa = qqw.search(nnn[0])
  267. qwe = re.compile("^@(\w+)\s(.*)$", re.DOTALL)
  268. qsd = qwe.search(nnn[0])
  269. qawe = re.compile("^#!noin\s(.*)$", re.DOTALL)
  270. qasd = qawe.search(nnn[0])
  271. y = re.compile("^#!wiki\sstyle=&quot;((?:(?!&quot;|\n).)*)&quot;\n?\s\n(.*)$", re.DOTALL)
  272. l = y.search(nnn[0])
  273. ppp = re.compile("^#!folding\s((?:(?!\n).)*)\n?\s\n(.*)$", re.DOTALL)
  274. ooo = ppp.search(nnn[0])
  275. if(n):
  276. result = n.groups()
  277. enddata = p.sub('<span class="font-size-' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  278. elif(a):
  279. result = a.groups()
  280. enddata = p.sub('<span class="font-size-small-' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  281. elif(b):
  282. result = b.groups()
  283. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  284. elif(c):
  285. result = c.groups()
  286. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  287. elif(d):
  288. result = d.groups()
  289. enddata = p.sub('<span style="color:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  290. elif(qqe):
  291. result = qqe.groups()
  292. enddata = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  293. elif(qqa):
  294. result = qqa.groups()
  295. enddata = p.sub('<span style="background:#' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  296. elif(qsd):
  297. result = qsd.groups()
  298. enddata = p.sub('<span style="background:' + result[0] + '">' + result[1] + '</span>', enddata, 1)
  299. elif(l):
  300. result = l.groups()
  301. enddata = p.sub('<div style="' + result[0] + '">' + result[1] + '</div>', enddata, 1)
  302. elif(ooo):
  303. result = ooo.groups()
  304. enddata = p.sub("<div>" + result[0] + "<span style='float:right;'><div id='folding_" + str(jjjj + 1) + "' style='display:block;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>펼치기</a>]</div><div id='folding_" + str(jjjj + 2) + "' style='display:none;'>[<a href='javascript:void(0);' onclick='var f=document.getElementById(\"folding_" + str(jjjj) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";this.className=s?\"\":\"opened\";var f=document.getElementById(\"folding_" + str(jjjj + 1) + "\");var s=f.style.display==\"none\";f.style.display=s?\"block\":\"none\";var f=document.getElementById(\"folding_" + str(jjjj + 2) + "\");var s=f.style.display==\"block\";f.style.display=s?\"none\":\"block\";'>접기</a>]</div></a></span><div id='folding_" + str(jjjj) + "' style='display:none;'><br>" + result[1] + "</div></div>", enddata, 1)
  305. jjjj = jjjj + 3
  306. elif(qasd):
  307. enddata = p.sub("", enddata, 1)
  308. else:
  309. enddata = p.sub('<code>' + nnn[0] + '</code>', enddata, 1)
  310. else:
  311. break
  312. while True:
  313. a = re.compile("<code>(((?!<\/code>).)*)<\/code>", re.DOTALL)
  314. m = a.search(enddata)
  315. if(m):
  316. g = m.groups()
  317. j = re.sub("<\/span>", "}}}", g[0])
  318. j = re.sub("<\/div>", "}}}", j)
  319. j = re.sub('<span class="font\-size\-(?P<in>[1-6])">', "{{{+\g<in> ", j)
  320. j = re.sub('<span class="font\-size\-small\-(?P<in>[1-6])">', "{{{-\g<in> ", j)
  321. j = re.sub('<span style="color:(?:#)?(?P<in>[^"]*)">', "{{{#\g<in> ", j)
  322. j = re.sub('<span style="background:(?:#)?(?P<in>[^"]*)">', "{{{@\g<in> ", j)
  323. j = re.sub('<div style="(?P<in>[^"]*)">', "{{{#!wiki style=&quot;\g<in>&quot;\n", j)
  324. j = re.sub("(?P<in>.)", "<span>\g<in></span>", j)
  325. enddata = a.sub(j, enddata, 1)
  326. else:
  327. break
  328. enddata = re.sub("<span>&</span><span>l</span><span>t</span><span>;</span>", "<span>&lt;</span>", enddata)
  329. enddata = re.sub("<span>&</span><span>g</span><span>t</span><span>;</span>", "<span>&gt;</span>", enddata)
  330. if(results[1]):
  331. a = results[1]
  332. while True:
  333. g = re.search("([^= ,]*)\=([^,]*)", a)
  334. if(g):
  335. result = g.groups()
  336. enddata = re.sub("@" + result[0] + "@", result[1], enddata)
  337. a = re.sub("([^= ,]*)\=([^,]*)", "", a, 1)
  338. else:
  339. break
  340. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", '<div>' + enddata + '</div>\n', data, 1)
  341. else:
  342. data = re.sub("\[include\(((?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\]", "[[" + results[0] + "]]", data, 1)
  343. else:
  344. break
  345. while True:
  346. m = re.search('^#(?:redirect|넘겨주기)\s([^\n]*)', data)
  347. if(m):
  348. results = m.groups()
  349. aa = re.search("^(.*)(#(?:.*))$", results[0])
  350. if(aa):
  351. results = aa.groups()
  352. data = re.sub('^#(?:redirect|넘겨주기)\s([^\n]*)', '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(results[0]).replace('/','%2F') + '/from/' + parse.quote(title).replace('/','%2F') + results[1] + '" />', data, 1)
  353. else:
  354. data = re.sub('^#(?:redirect|넘겨주기)\s([^\n]*)', '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(results[0]).replace('/','%2F') + '/from/' + parse.quote(title).replace('/','%2F') + '" />', data, 1)
  355. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'redirect'")
  356. abb = curs.fetchall()
  357. if(not abb):
  358. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', 'redirect')")
  359. conn.commit()
  360. else:
  361. break
  362. data = '\n' + data + '\n'
  363. while True:
  364. m = re.search("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", data)
  365. if(m):
  366. result = m.groups()
  367. blockquote = result[0]
  368. blockquote = re.sub("\n&gt;\s?", "\n", blockquote)
  369. data = re.sub("\n&gt;\s?((?:[^\n]*)(?:(?:(?:(?:\n&gt;\s?)(?:[^\n]*))+)?))", "\n<blockquote>" + blockquote + "</blockquote>", data, 1)
  370. else:
  371. break
  372. m = re.search('\[목차\]', data)
  373. if(not m):
  374. data = re.sub("(?P<in>(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n)", "[목차]\n\g<in>", data, 1)
  375. i = 0
  376. h0c = 0
  377. h1c = 0
  378. h2c = 0
  379. h3c = 0
  380. h4c = 0
  381. h5c = 0
  382. last = 0
  383. rtoc = '<div id="toc"><span id="toc-name">목차</span><br><br>'
  384. while True:
  385. i = i + 1
  386. m = re.search('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', data)
  387. if(m):
  388. result = m.groups()
  389. wiki = len(result[0])
  390. if(last < wiki):
  391. last = wiki
  392. else:
  393. last = wiki;
  394. if(wiki == 1):
  395. h1c = 0
  396. h2c = 0
  397. h3c = 0
  398. h4c = 0
  399. h5c = 0
  400. elif(wiki == 2):
  401. h2c = 0
  402. h3c = 0
  403. h4c = 0
  404. h5c = 0
  405. elif(wiki == 3):
  406. h3c = 0
  407. h4c = 0
  408. h5c = 0
  409. elif(wiki == 4):
  410. h4c = 0
  411. h5c = 0
  412. elif(wiki == 5):
  413. h5c = 0
  414. if(wiki == 1):
  415. h0c = h0c + 1
  416. elif(wiki == 2):
  417. h1c = h1c + 1
  418. elif(wiki == 3):
  419. h2c = h2c + 1
  420. elif(wiki == 4):
  421. h3c = h3c + 1
  422. elif(wiki == 5):
  423. h4c = h4c + 1
  424. else:
  425. h5c = h5c + 1
  426. toc = str(h0c) + '.' + str(h1c) + '.' + str(h2c) + '.' + str(h3c) + '.' + str(h4c) + '.' + str(h5c) + '.'
  427. toc = re.sub("(?P<in>[0-9]0(?:[0]*)?)\.", '\g<in>#.', toc)
  428. toc = re.sub("0\.", '', toc)
  429. toc = re.sub("#\.", '.', toc)
  430. toc = re.sub("\.$", '', toc)
  431. rtoc = rtoc + '<a href="#s-' + toc + '">' + toc + '</a>. ' + result[1] + '<br>'
  432. c = re.sub(" $", "", result[1])
  433. data = re.sub('(={1,6})\s?([^=]*)\s?(?:={1,6})(?:\s+)?\n', '<h' + str(wiki) + ' id="' + c + '"><a href="#toc" id="s-' + toc + '">' + toc + '.</a> ' + c + ' <span style="font-size:11px;">[<a href="/edit/' + parse.quote(title).replace('/','%2F') + '/section/' + str(i) + '">편집</a>]</span></h' + str(wiki) + '>', data, 1);
  434. else:
  435. rtoc = rtoc + '</div>'
  436. break
  437. data = re.sub("\[목차\]", rtoc, data)
  438. category = ''
  439. while True:
  440. m = re.search("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", data)
  441. if(m):
  442. g = m.groups()
  443. if(not title == g[0]):
  444. curs.execute("select * from cat where title = '" + pymysql.escape_string(g[0]) + "' and cat = '" + pymysql.escape_string(title) + "'")
  445. abb = curs.fetchall()
  446. if(not abb):
  447. curs.execute("insert into cat (title, cat) value ('" + pymysql.escape_string(g[0]) + "', '" + pymysql.escape_string(title) + "')")
  448. conn.commit()
  449. if(category == ''):
  450. category = category + '<a href="/w/' + parse.quote(g[0]).replace('/','%2F') + '">' + re.sub("분류:", "", g[0]) + '</a>'
  451. else:
  452. category = category + ' / ' + '<a href="/w/' + parse.quote(g[0]).replace('/','%2F') + '">' + re.sub("분류:", "", g[0]) + '</a>'
  453. data = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", '', data, 1)
  454. else:
  455. break
  456. data = re.sub("'''(?P<in>.+?)'''(?!')", '<b>\g<in></b>', data)
  457. data = re.sub("''(?P<in>.+?)''(?!')", '<i>\g<in></i>', data)
  458. data = re.sub('~~(?P<in>.+?)~~(?!~)', '<s>\g<in></s>', data)
  459. data = re.sub('--(?P<in>.+?)--(?!-)', '<s>\g<in></s>', data)
  460. data = re.sub('__(?P<in>.+?)__(?!_)', '<u>\g<in></u>', data)
  461. data = re.sub('\^\^(?P<in>.+?)\^\^(?!\^)', '<sup>\g<in></sup>', data)
  462. data = re.sub(',,(?P<in>.+?),,(?!,)', '<sub>\g<in></sub>', data)
  463. data = re.sub('&lt;math&gt;(?P<in>((?!&lt;math&gt;).)*)&lt;\/math&gt;', '$\g<in>$', data)
  464. data = re.sub('{{\|(?P<in>(?:(?:(?:(?!\|}}).)*)(?:\n?))+)\|}}', '<table><tbody><tr><td>\g<in></td></tr></tbody></table>', data)
  465. data = re.sub('\[ruby\((?P<in>[^\|]*)\|(?P<out>[^\)]*)\)\]', '<ruby>\g<in><rp>(</rp><rt>\g<out></rt><rp>)</rp></ruby>', data)
  466. data = re.sub("##\s?(?P<in>[^\n]*)\n", "<div style='display:none;'>\g<in></div>", data);
  467. while True:
  468. m = re.search("\[\[파일:((?:(?!\]\]|\|).)*)(?:\|((?:(?!\]\]).)*))?\]\]", data)
  469. if(m):
  470. c = m.groups()
  471. if(c[1]):
  472. n = re.search("width=([^ \n&]*)", c[1])
  473. e = re.search("height=([^ \n&]*)", c[1])
  474. if(n):
  475. a = n.groups()
  476. width = a[0]
  477. else:
  478. width = ''
  479. if(e):
  480. b = e.groups()
  481. height = b[0]
  482. else:
  483. height = ''
  484. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  485. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", '<a href="/w/파일:' + img + '"><img src="/image/' + img + '" width="' + width + '" height="' + height + '"></a>', data, 1)
  486. else:
  487. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c[0])
  488. data = re.sub("\[\[파일:((?:(?!\]\]|\?).)*)(?:\?((?:(?!\]\]).)*))?\]\]", "<a href='/w/파일:" + img + "'><img src='/image/" + img + "'></a>", data, 1)
  489. if(not re.search("^파일:([^\n]*)", title)):
  490. curs.execute("select * from back where title = '" + pymysql.escape_string(c[0]) + "' and link = '" + pymysql.escape_string(title) + "' and type = 'redirect'")
  491. abb = curs.fetchall()
  492. if(not abb):
  493. curs.execute("insert into back (title, link, type) value ('파일:" + pymysql.escape_string(c[0]) + "', '" + pymysql.escape_string(title) + "', 'file')")
  494. conn.commit()
  495. else:
  496. break
  497. data = re.sub("\[br\]",'<br>', data);
  498. while True:
  499. m = re.search("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", data)
  500. if(m):
  501. result = m.groups()
  502. if(result[1]):
  503. if(result[2]):
  504. width = result[1]
  505. height = result[2]
  506. else:
  507. width = result[1]
  508. height = '315'
  509. elif(result[2]):
  510. if(result[3]):
  511. height = result[2]
  512. width = result[3]
  513. else:
  514. height = result[2]
  515. width = '560'
  516. else:
  517. width = '560'
  518. height = '315'
  519. data = re.sub("\[youtube\(((?:(?!,|\)\]).)*)(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?(?:,\s)?(?:height=((?:(?!,|\)\]).)*))?(?:,\s)?(?:width=((?:(?!,|\)\]).)*))?\)\]", '<iframe width="' + width + '" height="' + height + '" src="https://www.youtube.com/embed/' + result[0] + '" frameborder="0" allowfullscreen></iframe>', data, 1)
  520. else:
  521. break
  522. data = re.sub("\[\[(?::(?P<in>(?:분류|파일):(?:(?:(?!\]\]).)*)))\]\]", "[[\g<in>]]", data)
  523. while True:
  524. m = re.search("\[\[(((?!\]\]).)*)\]\]", data)
  525. if(m):
  526. result = m.groups()
  527. a = re.search("((?:(?!\|).)*)\|(.*)", result[0])
  528. if(a):
  529. results = a.groups()
  530. aa = re.search("^(.*)(#(?:.*))$", results[0])
  531. if(aa):
  532. g = results[1]
  533. results = aa.groups()
  534. b = re.search("^http(?:s)?:\/\/", results[0])
  535. if(b):
  536. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + results[0] + results[1] + '">' + g + '</a>', data, 1)
  537. else:
  538. if(results[0] == title):
  539. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + g + '</b>', data, 1)
  540. else:
  541. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  542. rows = curs.fetchall()
  543. if(rows):
  544. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + results[1] + '" href="/w/' + parse.quote(results[0]).replace('/','%2F') + results[1] + '">' + g + '</a>', data, 1)
  545. else:
  546. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + results[1] + '" class="not_thing" href="/w/' + parse.quote(results[0]).replace('/','%2F') + results[1] + '">' + g + '</a>', data, 1)
  547. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  548. rows = curs.fetchall()
  549. if(not rows):
  550. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  551. conn.commit()
  552. else:
  553. b = re.search("^http(?:s)?:\/\/", results[0])
  554. if(b):
  555. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", results[0])
  556. if(c):
  557. img = results[0]
  558. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  559. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + results[1] + '</a>', data, 1)
  560. else:
  561. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + results[0] + '">' + results[1] + '</a>', data, 1)
  562. else:
  563. if(results[0] == title):
  564. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + results[1] + '</b>', data, 1)
  565. else:
  566. curs.execute("select * from data where title = '" + pymysql.escape_string(results[0]) + "'")
  567. rows = curs.fetchall()
  568. if(rows):
  569. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[1] + '</a>', data, 1)
  570. else:
  571. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a title="' + results[0] + '" class="not_thing" href="/w/' + parse.quote(results[0]).replace('/','%2F') + '">' + results[1] + '</a>', data, 1)
  572. curs.execute("select * from back where title = '" + pymysql.escape_string(results[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  573. rows = curs.fetchall()
  574. if(not rows):
  575. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(results[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  576. conn.commit()
  577. else:
  578. aa = re.search("^(.*)(#(?:.*))$", result[0])
  579. if(aa):
  580. result = aa.groups()
  581. b = re.search("^http(?:s)?:\/\/", result[0])
  582. if(b):
  583. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + result[0] + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  584. else:
  585. if(result[0] == title):
  586. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + result[0] + result[1] + '</b>', data, 1)
  587. else:
  588. curs.execute("select * from data where title = '" + pymysql.escape_string(result[0]) + "'")
  589. rows = curs.fetchall()
  590. if(rows):
  591. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a href="/w/' + parse.quote(result[0]).replace('/','%2F') + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  592. else:
  593. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="not_thing" href="/w/' + parse.quote(result[0]).replace('/','%2F') + result[1] + '">' + result[0] + result[1] + '</a>', data, 1)
  594. curs.execute("select * from back where title = '" + pymysql.escape_string(result[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  595. rows = curs.fetchall()
  596. if(not rows):
  597. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(result[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  598. conn.commit()
  599. else:
  600. b = re.search("^http(?:s)?:\/\/", result[0])
  601. if(b):
  602. c = re.search("(?:\.jpg|\.png|\.gif|\.jpeg)", result[0])
  603. if(c):
  604. img = result[0]
  605. img = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", img)
  606. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + img + '">' + img + '</a>', data, 1)
  607. else:
  608. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="out_link" href="' + result[0] + '">' + result[0] + '</a>', data, 1)
  609. else:
  610. if(result[0] == title):
  611. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<b>' + result[0] + '</b>', data, 1)
  612. else:
  613. curs.execute("select * from data where title = '" + pymysql.escape_string(result[0]) + "'")
  614. rows = curs.fetchall()
  615. if(rows):
  616. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  617. else:
  618. data = re.sub('\[\[(((?!\]\]).)*)\]\]', '<a class="not_thing" href="/w/' + parse.quote(result[0]).replace('/','%2F') + '">' + result[0] + '</a>', data, 1)
  619. curs.execute("select * from back where title = '" + pymysql.escape_string(result[0]) + "' and link = '" + pymysql.escape_string(title) + "'")
  620. rows = curs.fetchall()
  621. if(not rows):
  622. curs.execute("insert into back (title, link, type) value ('" + pymysql.escape_string(result[0]) + "', '" + pymysql.escape_string(title) + "', '')")
  623. conn.commit()
  624. else:
  625. break
  626. while True:
  627. m = re.search("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px|%)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px|%)?))?(?:(?:&)width=((?:[0-9]*)(?:px|%)?))?)?", data)
  628. if(m):
  629. result = m.groups()
  630. if(result[1]):
  631. if(result[2]):
  632. width = result[1]
  633. height = result[2]
  634. else:
  635. width = result[1]
  636. height = ''
  637. elif(result[2]):
  638. if(result[3]):
  639. height = result[2]
  640. width = result[3]
  641. else:
  642. height = result[2]
  643. width = ''
  644. else:
  645. width = ''
  646. height = ''
  647. c = result[0]
  648. c = re.sub("\.(?P<in>jpg|png|gif|jpeg)", "#\g<in>#", c)
  649. data = re.sub("(http(?:s)?:\/\/(?:(?:(?:(?!\.jpg|\.png|\.gif|\.jpeg|#jpg#|#png#|#gif#|#jpeg#).)*)(?:\.jpg|\.png|\.gif|\.jpeg)))(?:(?:(?:\?)width=((?:[0-9]*)(?:px)?))?(?:(?:\?|&)height=((?:[0-9]*)(?:px)?))?(?:(?:&)width=((?:[0-9]*)(?:px)?))?)?", "<img width='" + width + "' height='" + height + "' src='" + c + "'>", data, 1)
  650. else:
  651. break
  652. while True:
  653. m = re.search("((?:(?:\s\*\s[^\n]*)\n?)+)", data)
  654. if(m):
  655. result = m.groups()
  656. end = str(result[0])
  657. end = re.sub("\s\*\s(?P<in>[^\n]*)", "<li>\g<in></li>", end)
  658. end = re.sub("\n", '', end)
  659. data = re.sub("((?:(?:\s\*\s[^\n]*)\n?)+)", '<ul id="list">' + end + '</ul>', data, 1)
  660. else:
  661. break
  662. data = re.sub('\[date\]', getnow(), data)
  663. data = re.sub("#(?P<in>jpg|png|gif|jpeg)#", ".\g<in>", data)
  664. data = re.sub("-{4,11}", "<hr>", data)
  665. while True:
  666. b = re.search("\r\n( +)", data)
  667. if(b):
  668. result = b.groups()
  669. tp = len(result[0])
  670. up = ''
  671. i = 0
  672. while True:
  673. up = up + '<span id="in"></span>'
  674. i = i + 1
  675. if(i == tp):
  676. break
  677. data = re.sub("\r\n( +)", '<br>' + up, data, 1)
  678. else:
  679. break
  680. a = 1
  681. tou = "<hr id='footnote'><div class='wiki-macro-footnote'><br>"
  682. while True:
  683. b = re.search("\[\*([^\s]*)\s(((?!\]).)*)\]", data)
  684. if(b):
  685. results = b.groups()
  686. if(results[0]):
  687. c = results[1]
  688. c = re.sub("<(?:[^>]*)>", '', c)
  689. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + results[0] + "]</a> " + results[1] + "</span><br>"
  690. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", "<sup><a class=\"footnotes\" title=\"" + c + "\" id=\"rfn-" + str(a) + "\" href=\"#fn-" + str(a) + "\">[" + results[0] + "]</a></sup>", data, 1)
  691. else:
  692. c = results[1]
  693. c = re.sub("<(?:[^>]*)>", '', c)
  694. tou = tou + "<span class='footnote-list'><a href=\"#rfn-" + str(a) + "\" id=\"fn-" + str(a) + "\">[" + str(a) + "]</a> " + results[1] + "</span><br>"
  695. data = re.sub("\[\*([^\s]*)\s(((?!\]).)*)\]", '<sup><a class="footnotes" title="' + c + '" id="rfn-' + str(a) + '" href="#fn-' + str(a) + '">[' + str(a) + ']</a></sup>', data, 1)
  696. a = a + 1
  697. else:
  698. tou = tou + '</div>'
  699. if(tou == "<hr id='footnote'><div class='wiki-macro-footnote'><br></div>"):
  700. tou = ""
  701. break
  702. data = re.sub("\[각주\](?:(?:<br>| |\r|\n)+)?$", "", data)
  703. data = re.sub("\[각주\]", "<br>" + tou, data)
  704. data = data + tou
  705. if(category):
  706. data = data + '<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류: ' + category + '</div>'
  707. while True:
  708. m = re.search("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", data)
  709. if(m):
  710. results = m.groups()
  711. table = results[0]
  712. while True:
  713. a = re.search("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  714. if(a):
  715. row = ''
  716. cel = ''
  717. celstyle = ''
  718. rowstyle = ''
  719. alltable = ''
  720. result = a.groups()
  721. if(result[1]):
  722. q = re.search("&lt;table\s?width=((?:(?!&gt;).)*)&gt;", result[1])
  723. w = re.search("&lt;table\s?height=((?:(?!&gt;).)*)&gt;", result[1])
  724. e = re.search("&lt;table\s?align=((?:(?!&gt;).)*)&gt;", result[1])
  725. alltable = 'style="'
  726. celstyle = 'style="'
  727. rowstyle = 'style="'
  728. if(q):
  729. resultss = q.groups()
  730. alltable = alltable + 'width:' + resultss[0] + ';'
  731. if(w):
  732. resultss = w.groups()
  733. alltable = alltable + 'height:' + resultss[0] + ';'
  734. if(e):
  735. resultss = e.groups()
  736. if(resultss[0] == 'right'):
  737. alltable = alltable + 'margin-left:auto;'
  738. elif(resultss[0] == 'center'):
  739. alltable = alltable + 'margin:auto;'
  740. else:
  741. alltable = alltable + 'margin-right:auto;'
  742. ee = re.search("&lt;table\s?textalign=((?:(?!&gt;).)*)&gt;", result[1])
  743. if(ee):
  744. resultss = ee.groups()
  745. if(resultss[0] == 'right'):
  746. alltable = alltable + 'text-align:right;'
  747. elif(resultss[0] == 'center'):
  748. alltable = alltable + 'text-align:center;'
  749. else:
  750. alltable = alltable + 'text-align:left;'
  751. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  752. if(r):
  753. resultss = r.groups()
  754. cel = 'colspan="' + resultss[0] + '"'
  755. else:
  756. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  757. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  758. if(t):
  759. resultss = t.groups()
  760. row = 'rowspan="' + resultss[0] + '"'
  761. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  762. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  763. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  764. if(ba):
  765. resultss = ba.groups()
  766. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  767. elif(bb):
  768. resultss = bb.groups()
  769. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  770. elif(bc):
  771. resultss = bc.groups()
  772. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  773. z = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  774. x = re.search("&lt;table\s?bordercolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  775. c = re.search("&lt;table\s?bordercolor=(\w+)&gt;", result[1])
  776. if(z):
  777. resultss = z.groups()
  778. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  779. elif(x):
  780. resultss = x.groups()
  781. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  782. elif(c):
  783. resultss = c.groups()
  784. alltable = alltable + 'border:' + resultss[0] + ' 2px solid;'
  785. aq = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  786. aw = re.search("&lt;table\s?bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  787. ae = re.search("&lt;table\s?bgcolor=(\w+)&gt;", result[1])
  788. if(aq):
  789. resultss = aq.groups()
  790. alltable = alltable + 'background:' + resultss[0] + ';'
  791. elif(aw):
  792. resultss = aw.groups()
  793. alltable = alltable + 'background:' + resultss[0] + ';'
  794. elif(ae):
  795. resultss = ae.groups()
  796. alltable = alltable + 'background:' + resultss[0] + ';'
  797. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  798. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  799. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  800. if(j):
  801. resultss = j.groups()
  802. celstyle = celstyle + 'background:' + resultss[0] + ';'
  803. elif(k):
  804. resultss = k.groups()
  805. celstyle = celstyle + 'background:' + resultss[0] + ';'
  806. elif(l):
  807. resultss = l.groups()
  808. celstyle = celstyle + 'background:' + resultss[0] + ';'
  809. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  810. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  811. ac = re.search("&lt;(\w+)&gt;", result[1])
  812. if(aa):
  813. resultss = aa.groups()
  814. celstyle = celstyle + 'background:' + resultss[0] + ';'
  815. elif(ab):
  816. resultss = ab.groups()
  817. celstyle = celstyle + 'background:' + resultss[0] + ';'
  818. elif(ac):
  819. resultss = ac.groups()
  820. celstyle = celstyle + 'background:' + resultss[0] + ';'
  821. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  822. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  823. if(qa):
  824. resultss = qa.groups()
  825. celstyle = celstyle + 'width:' + resultss[0] + ';'
  826. if(qb):
  827. resultss = qb.groups()
  828. celstyle = celstyle + 'height:' + resultss[0] + ';'
  829. i = re.search("&lt;\)&gt;", result[1])
  830. o = re.search("&lt;:&gt;", result[1])
  831. p = re.search("&lt;\(&gt;", result[1])
  832. if(i):
  833. celstyle = celstyle + 'text-align:right;'
  834. elif(o):
  835. celstyle = celstyle + 'text-align:center;'
  836. elif(p):
  837. celstyle = celstyle + 'text-align:left;'
  838. alltable = alltable + '"'
  839. celstyle = celstyle + '"'
  840. rowstyle = rowstyle + '"'
  841. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table " + alltable + "><tbody><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  842. else:
  843. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  844. table = re.sub("^(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "<table><tbody><tr><td " + cel + ">", table, 1)
  845. else:
  846. break
  847. table = re.sub("\|\|$", "</td></tr></tbody></table>", table)
  848. while True:
  849. b = re.search("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  850. if(b):
  851. row = ''
  852. cel = ''
  853. celstyle = ''
  854. rowstyle = ''
  855. result = b.groups()
  856. if(result[1]):
  857. celstyle = 'style="'
  858. rowstyle = 'style="'
  859. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  860. if(r):
  861. resultss = r.groups()
  862. cel = 'colspan="' + resultss[0] + '"'
  863. else:
  864. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  865. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  866. if(t):
  867. resultss = t.groups()
  868. row = 'rowspan="' + resultss[0] + '"'
  869. ba = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  870. bb = re.search("&lt;rowbgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  871. bc = re.search("&lt;rowbgcolor=(\w+)&gt;", result[1])
  872. if(ba):
  873. resultss = ba.groups()
  874. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  875. elif(bb):
  876. resultss = bb.groups()
  877. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  878. elif(bc):
  879. resultss = bc.groups()
  880. rowstyle = rowstyle + 'background:' + resultss[0] + ';'
  881. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  882. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  883. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  884. if(j):
  885. resultss = j.groups()
  886. celstyle = celstyle + 'background:' + resultss[0] + ';'
  887. elif(k):
  888. resultss = k.groups()
  889. celstyle = celstyle + 'background:' + resultss[0] + ';'
  890. elif(l):
  891. resultss = l.groups()
  892. celstyle = celstyle + 'background:' + resultss[0] + ';'
  893. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  894. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  895. ac = re.search("&lt;(\w+)&gt;", result[1])
  896. if(aa):
  897. resultss = aa.groups()
  898. celstyle = celstyle + 'background:' + resultss[0] + ';'
  899. elif(ab):
  900. resultss = ab.groups()
  901. celstyle = celstyle + 'background:' + resultss[0] + ';'
  902. elif(ac):
  903. resultss = ac.groups()
  904. celstyle = celstyle + 'background:' + resultss[0] + ';'
  905. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  906. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  907. if(qa):
  908. resultss = qa.groups()
  909. celstyle = celstyle + 'width:' + resultss[0] + ';'
  910. if(qb):
  911. resultss = qb.groups()
  912. celstyle = celstyle + 'height:' + resultss[0] + ';'
  913. i = re.search("&lt;\)&gt;", result[1])
  914. o = re.search("&lt;:&gt;", result[1])
  915. p = re.search("&lt;\(&gt;", result[1])
  916. if(i):
  917. celstyle = celstyle + 'text-align:right;'
  918. elif(o):
  919. celstyle = celstyle + 'text-align:center;'
  920. elif(p):
  921. celstyle = celstyle + 'text-align:left;'
  922. celstyle = celstyle + '"'
  923. rowstyle = rowstyle + '"'
  924. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr " + rowstyle + "><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  925. else:
  926. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  927. table = re.sub("\|\|\r\n(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td></tr><tr><td " + cel + ">", table, 1)
  928. else:
  929. break
  930. while True:
  931. c = re.search("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", table)
  932. if(c):
  933. row = ''
  934. cel = ''
  935. celstyle = ''
  936. result = c.groups()
  937. if(result[1]):
  938. celstyle = 'style="'
  939. r = re.search("&lt;-((?:(?!&gt;).)*)&gt;", result[1])
  940. if(r):
  941. resultss = r.groups()
  942. cel = 'colspan="' + resultss[0] + '"';
  943. else:
  944. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  945. t = re.search("&lt;\|((?:(?!&gt;).)*)&gt;", result[1])
  946. if(t):
  947. resultss = t.groups()
  948. row = 'rowspan="' + resultss[0] + '"';
  949. j = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{6})&gt;", result[1])
  950. k = re.search("&lt;bgcolor=(#[0-9a-f-A-F]{3})&gt;", result[1])
  951. l = re.search("&lt;bgcolor=(\w+)&gt;", result[1])
  952. if(j):
  953. resultss = j.groups()
  954. celstyle = celstyle + 'background:' + resultss[0] + ';'
  955. elif(k):
  956. resultss = k.groups()
  957. celstyle = celstyle + 'background:' + resultss[0] + ';'
  958. elif(l):
  959. resultss = l.groups()
  960. celstyle = celstyle + 'background:' + resultss[0] + ';'
  961. aa = re.search("&lt;(#[0-9a-f-A-F]{6})&gt;", result[1])
  962. ab = re.search("&lt;(#[0-9a-f-A-F]{3})&gt;", result[1])
  963. ac = re.search("&lt;(\w+)&gt;", result[1])
  964. if(aa):
  965. resultss = aa.groups()
  966. celstyle = celstyle + 'background:' + resultss[0] + ';'
  967. elif(ab):
  968. resultss = ab.groups()
  969. celstyle = celstyle + 'background:' + resultss[0] + ';'
  970. elif(ac):
  971. resultss = ac.groups()
  972. celstyle = celstyle + 'background:' + resultss[0] + ';'
  973. qa = re.search("&lt;width=((?:(?!&gt;).)*)&gt;", result[1])
  974. qb = re.search("&lt;height=((?:(?!&gt;).)*)&gt;", result[1])
  975. if(qa):
  976. resultss = qa.groups()
  977. celstyle = celstyle + 'width:' + resultss[0] + ';'
  978. if(qb):
  979. resultss = qb.groups()
  980. celstyle = celstyle + 'height:' + resultss[0] + ';'
  981. i = re.search("&lt;\)&gt;", result[1])
  982. o = re.search("&lt;:&gt;", result[1])
  983. p = re.search("&lt;\(&gt;", result[1])
  984. if(i):
  985. celstyle = celstyle + 'text-align:right;'
  986. elif(o):
  987. celstyle = celstyle + 'text-align:center;'
  988. elif(p):
  989. celstyle = celstyle + 'text-align:left;'
  990. celstyle = celstyle + '"'
  991. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + " " + row + " " + celstyle + ">", table, 1)
  992. else:
  993. cel = 'colspan="' + str(round(len(result[0]) / 2)) + '"'
  994. table = re.sub("(\|\|(?:(?:\|\|)+)?)((?:&lt;(?:(?:(?!&gt;).)*)&gt;)+)?", "</td><td " + cel + ">", table, 1)
  995. else:
  996. break
  997. data = re.sub("(\|\|(?:(?:(?:.*)\n?)\|\|)+)", table, data, 1)
  998. else:
  999. break
  1000. data = re.sub('<\/blockquote>((\r)?\n){2}<blockquote>', '</blockquote><br><blockquote>', data)
  1001. data = re.sub('\n', '<br>', data)
  1002. data = re.sub('^<br>', '', data)
  1003. return str(data)
  1004. def getip(request):
  1005. if(session.get('Now') == True):
  1006. ip = format(session['DREAMER'])
  1007. else:
  1008. if(request.headers.getlist("X-Forwarded-For")):
  1009. ip = request.headers.getlist("X-Forwarded-For")[0]
  1010. else:
  1011. ip = request.remote_addr
  1012. return ip
  1013. def getcan(ip, name):
  1014. m = re.search("^사용자:(.*)", name)
  1015. n = re.search("^파일:(.*)", name)
  1016. if(m):
  1017. g = m.groups()
  1018. if(ip == g[0]):
  1019. if(re.search("\.", g[0])):
  1020. return 1
  1021. else:
  1022. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1023. rows = curs.fetchall()
  1024. if(rows):
  1025. return 1
  1026. else:
  1027. return 0
  1028. else:
  1029. return 1
  1030. elif(n):
  1031. return 1
  1032. else:
  1033. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1034. if(b):
  1035. results = b.groups()
  1036. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1037. rowss = curs.fetchall()
  1038. if(rowss):
  1039. return 1
  1040. else:
  1041. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1042. rows = curs.fetchall()
  1043. if(rows):
  1044. return 1
  1045. else:
  1046. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1047. row = curs.fetchall()
  1048. if(row):
  1049. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1050. rows = curs.fetchall()
  1051. if(row[0]['acl'] == 'user'):
  1052. if(rows):
  1053. return 0
  1054. else:
  1055. return 1
  1056. elif(row[0]['acl'] == 'admin'):
  1057. if(rows):
  1058. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  1059. return 0
  1060. else:
  1061. return 1
  1062. else:
  1063. return 1
  1064. else:
  1065. return 0
  1066. else:
  1067. return 0
  1068. else:
  1069. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1070. rows = curs.fetchall()
  1071. if(rows):
  1072. return 1
  1073. else:
  1074. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1075. row = curs.fetchall()
  1076. if(row):
  1077. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  1078. rows = curs.fetchall()
  1079. if(row[0]['acl'] == 'user'):
  1080. if(rows):
  1081. return 0
  1082. else:
  1083. return 1
  1084. elif(row[0]['acl'] == 'admin'):
  1085. if(rows):
  1086. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  1087. return 0
  1088. else:
  1089. return 1
  1090. else:
  1091. return 1
  1092. else:
  1093. return 0
  1094. else:
  1095. return 0
  1096. def getban(ip):
  1097. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1098. if(b):
  1099. results = b.groups()
  1100. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1101. rowss = curs.fetchall()
  1102. if(rowss):
  1103. return 1
  1104. else:
  1105. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1106. rows = curs.fetchall()
  1107. if(rows):
  1108. return 1
  1109. else:
  1110. return 0
  1111. else:
  1112. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1113. rows = curs.fetchall()
  1114. if(rows):
  1115. return 1
  1116. else:
  1117. return 0
  1118. def getdiscuss(ip, name, sub):
  1119. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  1120. if(b):
  1121. results = b.groups()
  1122. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  1123. rowss = curs.fetchall()
  1124. if(rowss):
  1125. return 1
  1126. else:
  1127. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1128. rows = curs.fetchall()
  1129. if(rows):
  1130. return 1
  1131. else:
  1132. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1133. rows = curs.fetchall()
  1134. if(rows):
  1135. return 1
  1136. else:
  1137. return 0
  1138. else:
  1139. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  1140. rows = curs.fetchall()
  1141. if(rows):
  1142. return 1
  1143. else:
  1144. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1145. rows = curs.fetchall()
  1146. if(rows):
  1147. return 1
  1148. else:
  1149. return 0
  1150. def getnow():
  1151. now = time.localtime()
  1152. s = "%04d-%02d-%02d %02d:%02d:%02d" % (now.tm_year, now.tm_mon, now.tm_mday, now.tm_hour, now.tm_min, now.tm_sec)
  1153. return s
  1154. def discuss(title, sub, date):
  1155. curs.execute("select * from rd where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1156. rows = curs.fetchall()
  1157. if(rows):
  1158. curs.execute("update rd set date = '" + pymysql.escape_string(date) + "' where title = '" + pymysql.escape_string(title) + "' and sub = '" + pymysql.escape_string(sub) + "'")
  1159. else:
  1160. curs.execute("insert into rd (title, sub, date) value ('" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(date) + "')")
  1161. conn.commit()
  1162. def block(block, end, today, blocker, why):
  1163. curs.execute("insert into rb (block, end, today, blocker, why) value ('" + pymysql.escape_string(block) + "', '" + pymysql.escape_string(end) + "', '" + today + "', '" + pymysql.escape_string(blocker) + "', '" + pymysql.escape_string(why) + "')")
  1164. conn.commit()
  1165. def history(title, data, date, ip, send, leng):
  1166. curs.execute("select * from history where title = '" + pymysql.escape_string(title) + "' order by id+0 desc limit 1")
  1167. rows = curs.fetchall()
  1168. if(rows):
  1169. number = int(rows[0]['id']) + 1
  1170. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('" + str(number) + "', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send) + "', '" + leng + "')")
  1171. conn.commit()
  1172. else:
  1173. curs.execute("insert into history (id, title, data, date, ip, send, leng) value ('1', '" + pymysql.escape_string(title) + "', '" + pymysql.escape_string(data) + "', '" + date + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(send + ' (새 문서)') + "', '" + leng + "')")
  1174. conn.commit()
  1175. def getleng(existing, change):
  1176. if(existing < change):
  1177. leng = change - existing
  1178. leng = '+' + str(leng)
  1179. elif(change < existing):
  1180. leng = existing - change
  1181. leng = '-' + str(leng)
  1182. else:
  1183. leng = '0'
  1184. return leng;
  1185. @app.route('/upload', methods=['GET', 'POST'])
  1186. def upload():
  1187. if(request.method == 'POST'):
  1188. ip = getip(request)
  1189. ban = getban(ip)
  1190. if(ban == 1):
  1191. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1192. else:
  1193. file = request.files['file']
  1194. if(file and allowed_file(file.filename)):
  1195. if(re.search('^([^./\\*<>|:?"]+)\.(jpg|gif|jpeg|png)$', file.filename)):
  1196. filename = file.filename
  1197. if(os.path.exists(os.path.join('image', filename))):
  1198. return '<meta http-equiv="refresh" content="0;url=/error/16" />'
  1199. else:
  1200. file.save(os.path.join('image', filename))
  1201. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string('파일:' + filename) + "', '" + pymysql.escape_string('[[파일:' + filename + ']][br][br]{{{[[파일:' + filename + ']]}}}') + "', '')")
  1202. conn.commit()
  1203. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote('파일:' + filename).replace('/','%2F') + '" />'
  1204. else:
  1205. return '<meta http-equiv="refresh" content="0;url=/error/15" />'
  1206. else:
  1207. return '<meta http-equiv="refresh" content="0;url=/error/14" />'
  1208. else:
  1209. ip = getip(request)
  1210. ban = getban(ip)
  1211. if(ban == 1):
  1212. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1213. else:
  1214. return render_template('index.html', logo = data['name'], title = '업로드', tn = 21, number = data['upload'])
  1215. @app.route('/image/<path:name>')
  1216. def image(name = None):
  1217. if(os.path.exists(os.path.join('image', name))):
  1218. return send_file(os.path.join('image', name), mimetype='image')
  1219. else:
  1220. return render_template('index.html', logo = data['name'], data = '이미지 없음.', title = '이미지 보기')
  1221. @app.route('/')
  1222. @app.route('/w/')
  1223. def redirect():
  1224. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1225. @app.route('/recentchanges')
  1226. def recentchanges():
  1227. i = 0
  1228. div = '<div>'
  1229. curs.execute("select * from history order by date desc limit 50")
  1230. rows = curs.fetchall()
  1231. if(rows):
  1232. admin = admincheck()
  1233. while True:
  1234. try:
  1235. a = rows[i]
  1236. except:
  1237. div = div + '</div>'
  1238. break
  1239. if(rows[i]['send']):
  1240. send = rows[i]['send']
  1241. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1242. else:
  1243. send = '<br>'
  1244. title = rows[i]['title']
  1245. title = re.sub('<', '&lt;', title)
  1246. title = re.sub('>', '&gt;', title)
  1247. m = re.search("\+", rows[i]['leng'])
  1248. n = re.search("\-", rows[i]['leng'])
  1249. if(m):
  1250. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1251. elif(n):
  1252. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1253. else:
  1254. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1255. if(admin == 1):
  1256. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1257. row = curs.fetchall()
  1258. if(row):
  1259. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1260. ban = ''
  1261. else:
  1262. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1263. row = curs.fetchall()
  1264. if(row):
  1265. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1266. else:
  1267. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1268. else:
  1269. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1270. row = curs.fetchall()
  1271. if(row):
  1272. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1273. else:
  1274. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1275. else:
  1276. ban = ''
  1277. if(re.search('\.', rows[i]['ip'])):
  1278. ip = rows[i]['ip']
  1279. else:
  1280. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1281. row = curs.fetchall()
  1282. if(row):
  1283. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1284. else:
  1285. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1286. if((int(rows[i]['id']) - 1) == 0):
  1287. revert = ''
  1288. else:
  1289. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  1290. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1291. i = i + 1
  1292. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '최근 변경내역')
  1293. else:
  1294. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '최근 변경내역')
  1295. @app.route('/record/<path:name>/n/<int:number>')
  1296. def record(name = None, number = None):
  1297. v = number * 50
  1298. i = v - 50
  1299. div = '<div>'
  1300. curs.execute("select * from history where ip = '" + pymysql.escape_string(name) + "' order by date desc")
  1301. rows = curs.fetchall()
  1302. if(rows):
  1303. admin = admincheck()
  1304. while True:
  1305. try:
  1306. a = rows[i]
  1307. except:
  1308. div = div + '</div>'
  1309. if(number != 1):
  1310. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1311. break
  1312. if(rows[i]['send']):
  1313. send = rows[i]['send']
  1314. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1315. else:
  1316. send = '<br>'
  1317. title = rows[i]['title']
  1318. title = re.sub('<', '&lt;', title)
  1319. title = re.sub('>', '&gt;', title)
  1320. m = re.search("\+", rows[i]['leng'])
  1321. n = re.search("\-", rows[i]['leng'])
  1322. if(m):
  1323. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1324. elif(n):
  1325. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1326. else:
  1327. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1328. if(admin == 1):
  1329. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1330. row = curs.fetchall()
  1331. if(row):
  1332. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1333. ip = rows[i]['ip']
  1334. else:
  1335. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1336. row = curs.fetchall()
  1337. if(row):
  1338. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1339. else:
  1340. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1341. else:
  1342. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1343. row = curs.fetchall()
  1344. if(row):
  1345. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1346. else:
  1347. ip = rows[i]['ip'] + ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1348. else:
  1349. ip = rows[i]['ip']
  1350. if((int(rows[i]['id']) - 1) == 0):
  1351. revert = ''
  1352. else:
  1353. revert = '<a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + str(int(rows[i]['id']) - 1) + '">(되돌리기)</a>'
  1354. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;"><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + title + '</a> r' + rows[i]['id'] + ' <a href="/history/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/n/1">(역사)</a> ' + revert + ' (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1355. if(i == v):
  1356. div = div + '</div>'
  1357. if(number == 1):
  1358. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1359. else:
  1360. div = div + '<br><a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/record/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1361. break
  1362. else:
  1363. i = i + 1
  1364. return render_template('index.html', logo = data['name'], rows = div, tn = 3, title = '유저 기록')
  1365. else:
  1366. return render_template('index.html', logo = data['name'], rows = '', tn = 3, title = '유저 기록')
  1367. @app.route('/userlog/n/<int:number>')
  1368. def userlog(number = None):
  1369. v = number * 50
  1370. i = v - 50
  1371. div = ''
  1372. curs.execute("select * from user")
  1373. rows = curs.fetchall()
  1374. if(rows):
  1375. admin = admincheck()
  1376. while True:
  1377. try:
  1378. a = rows[i]
  1379. except:
  1380. if(number != 1):
  1381. div = div + '<br><a href="/userlog/n/' + str(number - 1) + '">(이전)'
  1382. break
  1383. if(admin == 1):
  1384. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['id']) + "'")
  1385. row = curs.fetchall()
  1386. if(row):
  1387. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1388. ip = rows[i]['id']
  1389. else:
  1390. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['id']) + "'")
  1391. row = curs.fetchall()
  1392. if(row):
  1393. ip = rows[i]['id'] + ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(해제)</a>'
  1394. else:
  1395. ip = rows[i]['id'] + ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(차단)</a>'
  1396. else:
  1397. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['id']) + "'")
  1398. row = curs.fetchall()
  1399. if(row):
  1400. ip = rows[i]['id'] + ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(해제)</a>'
  1401. else:
  1402. ip = rows[i]['id'] + ' <a href="/ban/' + parse.quote(rows[i]['id']).replace('/','%2F') + '">(차단)</a>'
  1403. else:
  1404. ip = rows[i]['id']
  1405. div = div + '<li>' + rows[i]['id'] + '</li>'
  1406. if(i == v):
  1407. if(number == 1):
  1408. div = div + '<br><a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1409. else:
  1410. div = div + '<br><a href="/userlog/n/' + str(number - 1) + '">(이전) <a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1411. break
  1412. else:
  1413. i = i + 1
  1414. return render_template('index.html', logo = data['name'], data = div, title = '유저 가입 기록')
  1415. else:
  1416. return render_template('index.html', logo = data['name'], data = '', title = '유저 가입 기록')
  1417. @app.route('/backlink/<path:name>/n/<int:number>')
  1418. def xref(name = None, number = None):
  1419. v = number * 50
  1420. i = v - 50
  1421. div = ''
  1422. curs.execute("select * from back where title = '" + pymysql.escape_string(name) + "' order by link asc")
  1423. rows = curs.fetchall()
  1424. if(rows):
  1425. while True:
  1426. try:
  1427. a = rows[i]
  1428. except:
  1429. if(number != 1):
  1430. div = div + '<br><a href="/backlink/n/' + str(number - 1) + '">(이전)'
  1431. break
  1432. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['link']) + "'")
  1433. row = curs.fetchall()
  1434. if(row):
  1435. aa = row[0]['data']
  1436. aa = re.sub("(?P<in>\[include\((?P<out>(?:(?!\)\]|,).)*)((?:,\s?(?:[^)]*))+)?\)\])", "\g<in>\n\n[[\g<out>]]\n\n", aa)
  1437. aa = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', '[[\g<in>]]', aa)
  1438. aa = namumark('', aa)
  1439. if(re.search("<a(?: class=\"not_thing\")? href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "(?:\#[^\"]*)?\">([^<]*)<\/a>", aa)):
  1440. div = div + '<li><a href="/w/' + parse.quote(rows[i]['link']).replace('/','%2F') + '">' + rows[i]['link'] + '</a>'
  1441. if(rows[i]['type']):
  1442. div = div + ' (' + rows[i]['type'] + ')</li>'
  1443. else:
  1444. div = div + '</li>'
  1445. if(i == v):
  1446. if(number == 1):
  1447. div = div + '<br><a href="/backlink/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1448. else:
  1449. div = div + '<br><a href="/backlink/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/userlog/n/' + str(number + 1) + '">(다음)'
  1450. break
  1451. else:
  1452. i = i + 1
  1453. else:
  1454. curs.execute("delete from back where title = '" + pymysql.escape_string(rows[i]['link']) + "' and link = '" + pymysql.escape_string(name) + "'")
  1455. conn.commit()
  1456. i = i + 1
  1457. v = v + 1
  1458. else:
  1459. curs.execute("delete from back where title = '" + pymysql.escape_string(rows[i]['link']) + "' and link = '" + pymysql.escape_string(name) + "'")
  1460. conn.commit()
  1461. i = i + 1
  1462. v = v + 1
  1463. return render_template('index.html', logo = data['name'], data = div, title = name, plus = '(역링크)')
  1464. else:
  1465. return render_template('index.html', logo = data['name'], data = '', title = name, plus = '(역링크)')
  1466. @app.route('/recentdiscuss')
  1467. def recentdiscuss():
  1468. i = 0
  1469. div = '<div>'
  1470. curs.execute("select * from rd order by date desc limit 50")
  1471. rows = curs.fetchall()
  1472. if(rows):
  1473. while True:
  1474. try:
  1475. a = rows[i]
  1476. except:
  1477. div = div + '</div>'
  1478. break
  1479. title = rows[i]['title']
  1480. title = re.sub('<', '&lt;', title)
  1481. title = re.sub('>', '&gt;', title)
  1482. sub = rows[i]['sub']
  1483. sub = re.sub('<', '&lt;', sub)
  1484. sub = re.sub('>', '&gt;', sub)
  1485. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:50%;"><a href="/topic/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + title + '</a> (' + sub + ')</td><td style="text-align: center;width:50%;">' + rows[i]['date'] + '</td></tr></tbody></table>'
  1486. i = i + 1
  1487. return render_template('index.html', logo = data['name'], rows = div, tn = 12, title = '최근 토론내역')
  1488. else:
  1489. return render_template('index.html', logo = data['name'], rows = '', tn = 12, title = '최근 토론내역')
  1490. @app.route('/blocklog/n/<int:number>')
  1491. def blocklog(number = None):
  1492. v = number * 50
  1493. i = v - 50
  1494. div = '<div>'
  1495. curs.execute("select * from rb order by today desc")
  1496. rows = curs.fetchall()
  1497. if(rows):
  1498. while True:
  1499. try:
  1500. a = rows[i]
  1501. except:
  1502. div = div + '</div>'
  1503. if(number != 1):
  1504. div = div + '<br><a href="/blocklog/n/' + str(number - 1) + '">(이전)'
  1505. break
  1506. why = rows[i]['why']
  1507. why = re.sub('<', '&lt;', why)
  1508. why = re.sub('>', '&gt;', why)
  1509. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", rows[i]['block'])
  1510. if(b):
  1511. ip = rows[i]['block'] + ' (대역)'
  1512. else:
  1513. ip = rows[i]['block']
  1514. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:20%;">' + ip + '</a></td><td style="text-align: center;width:20%;">' + rows[i]['blocker'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['end'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['why'] + '</td><td style="text-align: center;width:20%;">' + rows[i]['today'] + '</td></tr></tbody></table>'
  1515. if(i == v):
  1516. div = div + '</div>'
  1517. if(number == 1):
  1518. div = div + '<br><a href="/blocklog/n/' + str(number + 1) + '">(다음)'
  1519. else:
  1520. div = div + '<br><a href="/blocklog/n/' + str(number - 1) + '">(이전) <a href="/blocklog/n/' + str(number + 1) + '">(다음)'
  1521. break
  1522. else:
  1523. i = i + 1
  1524. return render_template('index.html', logo = data['name'], rows = div, tn = 20, title = '유저 차단 기록')
  1525. else:
  1526. return render_template('index.html', logo = data['name'], rows = '', tn = 20, title = '유저 차단 기록')
  1527. @app.route('/history/<path:name>/n/<int:number>', methods=['POST', 'GET'])
  1528. def gethistory(name = None, number = None):
  1529. if(request.method == 'POST'):
  1530. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '/r/' + request.form["b"] + '/diff/' + request.form["a"] + '" />'
  1531. else:
  1532. select = ''
  1533. v = number * 50
  1534. i = v - 50
  1535. div = '<div>'
  1536. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' order by id+0 desc")
  1537. rows = curs.fetchall()
  1538. if(rows):
  1539. admin = admincheck()
  1540. while True:
  1541. try:
  1542. a = rows[i]
  1543. except:
  1544. div = div + '</div>'
  1545. if(number != 1):
  1546. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전)'
  1547. break
  1548. select = '<option value="' + str(i + 1) + '">' + str(i + 1) + '</option>' + select
  1549. if(rows[i]['send']):
  1550. send = rows[i]['send']
  1551. send = re.sub('<a href="\/w\/(?P<in>[^"]*)">(?P<out>[^&]*)<\/a>', '<a href="/w/\g<in>">\g<out></a>', send)
  1552. else:
  1553. send = '<br>'
  1554. m = re.search("\+", rows[i]['leng'])
  1555. n = re.search("\-", rows[i]['leng'])
  1556. if(m):
  1557. leng = '<span style="color:green;">' + rows[i]['leng'] + '</span>'
  1558. elif(n):
  1559. leng = '<span style="color:red;">' + rows[i]['leng'] + '</span>'
  1560. else:
  1561. leng = '<span style="color:gray;">' + rows[i]['leng'] + '</span>'
  1562. if(admin == 1):
  1563. curs.execute("select * from user where id = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1564. row = curs.fetchall()
  1565. if(row):
  1566. if(row[0]['acl'] == 'owner' or row[0]['acl'] == 'admin'):
  1567. ban = ''
  1568. else:
  1569. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1570. row = curs.fetchall()
  1571. if(row):
  1572. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1573. else:
  1574. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1575. else:
  1576. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  1577. row = curs.fetchall()
  1578. if(row):
  1579. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>'
  1580. else:
  1581. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>'
  1582. else:
  1583. ban = ''
  1584. if(re.search("\.", rows[i]["ip"])):
  1585. ip = rows[i]["ip"]
  1586. else:
  1587. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  1588. row = curs.fetchall()
  1589. if(row):
  1590. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1591. else:
  1592. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  1593. div = div + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">r' + rows[i]['id'] + '</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(w)</a> <a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/raw/' + rows[i]['id'] + '">(Raw)</a> <a href="/revert/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/r/' + rows[i]['id'] + '">(되돌리기)</a> (' + leng + ')</td><td style="text-align: center;width:33.33%;">' + ip + ban + '</td><td style="text-align: center;width:33.33%;">' + rows[i]['date'] + '</td></tr><tr><td colspan="3" style="text-align: center;width:100%;">' + send + '</td></tr></tbody></table>'
  1594. if(i == v):
  1595. div = div + '</div>'
  1596. if(number == 1):
  1597. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1598. else:
  1599. div = div + '<br><a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number - 1) + '">(이전) <a href="/history/' + parse.quote(name).replace('/','%2F') + '/n/' + str(number + 1) + '">(다음)'
  1600. break
  1601. else:
  1602. i = i + 1
  1603. return render_template('index.html', logo = data['name'], rows = div, tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1604. else:
  1605. return render_template('index.html', logo = data['name'], rows = '', tn = 5, title = name, page = parse.quote(name).replace('/','%2F'), select = select)
  1606. @app.route('/search', methods=['POST', 'GET'])
  1607. def search():
  1608. if(request.method == 'POST'):
  1609. curs.execute("select * from data where title = '" + pymysql.escape_string(request.form["search"]) + "'")
  1610. rows = curs.fetchall()
  1611. if(rows):
  1612. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1613. else:
  1614. curs.execute("select * from data where title like '%" + pymysql.escape_string(request.form["search"]) + "%'")
  1615. rows = curs.fetchall()
  1616. div = ''
  1617. if(rows):
  1618. i = 0
  1619. div = div + '<li>문서가 없습니다. <a href="/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '">바로가기</a></li><br>'
  1620. while True:
  1621. try:
  1622. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  1623. except:
  1624. break
  1625. i = i + 1
  1626. else:
  1627. return div + '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["search"]).replace('/','%2F') + '" />'
  1628. return render_template('index.html', logo = data['name'], data = div, title = '검색')
  1629. else:
  1630. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  1631. @app.route('/w/<path:name>')
  1632. def w(name = None):
  1633. i = 0
  1634. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  1635. rows = curs.fetchall()
  1636. while True:
  1637. try:
  1638. a = rows[i]
  1639. except:
  1640. topic = ""
  1641. break
  1642. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  1643. row = curs.fetchall()
  1644. if(not row):
  1645. topic = "open"
  1646. break
  1647. else:
  1648. i = i + 1
  1649. acl = ''
  1650. m = re.search("^(.*)\/(.*)$", name)
  1651. if(m):
  1652. g = m.groups()
  1653. uppage = g[0]
  1654. style = ""
  1655. else:
  1656. uppage = ""
  1657. style = "display:none;"
  1658. if(re.search("^분류:", name)):
  1659. curs.execute("select * from cat where title = '" + pymysql.escape_string(name) + "' order by cat asc")
  1660. rows = curs.fetchall()
  1661. if(rows):
  1662. div = ''
  1663. i = 0
  1664. while True:
  1665. try:
  1666. a = rows[i]
  1667. except:
  1668. break
  1669. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['cat']) + "'")
  1670. row = curs.fetchall()
  1671. if(row):
  1672. aa = row[0]['data']
  1673. aa = namumark('', aa)
  1674. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  1675. if(bb):
  1676. cc = bb.groups()
  1677. mm = re.search("^분류:(.*)", name)
  1678. if(mm):
  1679. ee = mm.groups()
  1680. if(re.search("<a href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "\">" + ee[0] + "<\/a>", cc[0])):
  1681. div = div + '<li><a href="/w/' + parse.quote(rows[i]['cat']).replace('/','%2F') + '">' + rows[i]['cat'] + '</a></li>'
  1682. i = i + 1
  1683. else:
  1684. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1685. conn.commit()
  1686. i = i + 1
  1687. else:
  1688. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1689. conn.commit()
  1690. i = i + 1
  1691. else:
  1692. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1693. conn.commit()
  1694. i = i + 1
  1695. else:
  1696. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1697. conn.commit()
  1698. i = i + 1
  1699. div = '<h2>분류</h2>' + div
  1700. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1701. bb = curs.fetchall()
  1702. if(bb):
  1703. if(bb[0]['acl'] == 'admin'):
  1704. acl = '(관리자)'
  1705. elif(bb[0]['acl'] == 'user'):
  1706. acl = '(유저)'
  1707. else:
  1708. if(not acl):
  1709. acl = ''
  1710. enddata = namumark(name, bb[0]['data'])
  1711. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1712. if(m):
  1713. result = m.groups()
  1714. left = result[0]
  1715. else:
  1716. left = ''
  1717. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata + '<br>' + div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic)
  1718. else:
  1719. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic)
  1720. else:
  1721. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '분류 문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic), 404
  1722. else:
  1723. m = re.search("^사용자:(.*)", name)
  1724. if(m):
  1725. g = m.groups()
  1726. curs.execute("select * from user where id = '" + pymysql.escape_string(g[0]) + "'")
  1727. rows = curs.fetchall()
  1728. if(rows):
  1729. if(rows[0]['acl'] == 'owner'):
  1730. acl = '(소유자)'
  1731. elif(rows[0]['acl'] == 'admin'):
  1732. acl = '(관리자)'
  1733. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1734. rows = curs.fetchall()
  1735. if(rows):
  1736. if(rows[0]['acl'] == 'admin'):
  1737. acl = '(관리자)'
  1738. elif(rows[0]['acl'] == 'user'):
  1739. acl = '(유저)'
  1740. else:
  1741. if(not acl):
  1742. acl = ''
  1743. enddata = namumark(name, rows[0]['data'])
  1744. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1745. if(m):
  1746. result = m.groups()
  1747. left = result[0]
  1748. else:
  1749. left = ''
  1750. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, acl = acl, left = left, uppage = uppage, style = style, topic = topic)
  1751. else:
  1752. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic), 404
  1753. @app.route('/w/<path:name>/from/<path:redirect>')
  1754. def redirectw(name = None, redirect = None):
  1755. i = 0
  1756. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  1757. rows = curs.fetchall()
  1758. while True:
  1759. try:
  1760. a = rows[i]
  1761. except:
  1762. topic = ""
  1763. break
  1764. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  1765. row = curs.fetchall()
  1766. if(not row):
  1767. topic = "open"
  1768. break
  1769. else:
  1770. i = i + 1
  1771. acl = ''
  1772. m = re.search("^(.*)\/(.*)$", name)
  1773. if(m):
  1774. g = m.groups()
  1775. uppage = g[0]
  1776. style = ""
  1777. else:
  1778. uppage = ""
  1779. style = "display:none;"
  1780. if(re.search("^분류:", name)):
  1781. curs.execute("select * from cat where title = '" + pymysql.escape_string(name) + "' order by cat asc")
  1782. rows = curs.fetchall()
  1783. if(rows):
  1784. div = ''
  1785. i = 0
  1786. while True:
  1787. try:
  1788. a = rows[i]
  1789. except:
  1790. break
  1791. curs.execute("select * from data where title = '" + pymysql.escape_string(rows[i]['cat']) + "'")
  1792. row = curs.fetchall()
  1793. if(row):
  1794. aa = row[0]['data']
  1795. aa = namumark('', aa)
  1796. bb = re.search('<div style="width:100%;border: 1px solid #777;padding: 5px;margin-top: 1em;">분류:((?:(?!<\/div>).)*)<\/div>', aa)
  1797. if(bb):
  1798. cc = bb.groups()
  1799. mm = re.search("^분류:(.*)", name)
  1800. if(mm):
  1801. ee = mm.groups()
  1802. if(re.search("<a href=\"\/w\/" + parse.quote(name).replace('/','%2F') + "\">" + ee[0] + "<\/a>", cc[0])):
  1803. div = div + '<li><a href="/w/' + parse.quote(rows[i]['cat']).replace('/','%2F') + '">' + rows[i]['cat'] + '</a></li>'
  1804. i = i + 1
  1805. else:
  1806. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1807. conn.commit()
  1808. i = i + 1
  1809. else:
  1810. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1811. conn.commit()
  1812. i = i + 1
  1813. else:
  1814. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1815. conn.commit()
  1816. i = i + 1
  1817. else:
  1818. curs.execute("delete from cat where title = '" + pymysql.escape_string(rows[i]['cat']) + "' and cat = '" + pymysql.escape_string(name) + "'")
  1819. conn.commit()
  1820. i = i + 1
  1821. div = '<h2>분류</h2>' + div
  1822. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1823. bb = curs.fetchall()
  1824. if(bb):
  1825. if(bb[0]['acl'] == 'admin'):
  1826. acl = '(관리자)'
  1827. elif(bb[0]['acl'] == 'user'):
  1828. acl = '(유저)'
  1829. else:
  1830. if(not acl):
  1831. acl = ''
  1832. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', bb[0]['data'])
  1833. enddata = namumark(name, newdata)
  1834. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1835. if(m):
  1836. result = m.groups()
  1837. left = result[0]
  1838. else:
  1839. left = ''
  1840. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata + '<br>' + div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1841. else:
  1842. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = div, license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1843. else:
  1844. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '분류 문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.'), 404
  1845. else:
  1846. m = re.search("^사용자:(.*)", name)
  1847. if(m):
  1848. g = m.groups()
  1849. curs.execute("select * from user where id = '" + pymysql.escape_string(g[0]) + "'")
  1850. rows = curs.fetchall()
  1851. if(rows):
  1852. if(rows[0]['acl'] == 'owner'):
  1853. acl = '(소유자)'
  1854. elif(rows[0]['acl'] == 'admin'):
  1855. acl = '(관리자)'
  1856. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1857. rows = curs.fetchall()
  1858. if(rows):
  1859. if(rows[0]['acl'] == 'admin'):
  1860. acl = '(관리자)'
  1861. elif(rows[0]['acl'] == 'user'):
  1862. acl = '(유저)'
  1863. else:
  1864. if(not acl):
  1865. acl = ''
  1866. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  1867. enddata = namumark(name, newdata)
  1868. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1869. if(m):
  1870. result = m.groups()
  1871. left = result[0]
  1872. else:
  1873. left = ''
  1874. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 1, acl = acl, left = left, uppage = uppage, style = style, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.')
  1875. else:
  1876. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '문서 없음', license = data['license'], tn = 1, uppage = uppage, style = style, acl = acl, topic = topic, redirect = '<a href="/w/' + parse.quote(redirect).replace('/','%2F') + '/from/' + parse.quote(name).replace('/','%2F') + '">' + redirect + '</a>에서 넘어 왔습니다.'), 404
  1877. @app.route('/w/<path:name>/r/<int:number>')
  1878. def rew(name = None, number = None):
  1879. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1880. rows = curs.fetchall()
  1881. if(rows):
  1882. enddata = namumark(name, rows[0]['data'])
  1883. m = re.search('<div id="toc">((?:(?!\/div>).)*)<\/div>', enddata)
  1884. if(m):
  1885. result = m.groups()
  1886. left = result[0]
  1887. else:
  1888. left = ''
  1889. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 6, left = left)
  1890. else:
  1891. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  1892. @app.route('/w/<path:name>/raw/<int:number>')
  1893. def reraw(name = None, number = None):
  1894. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1895. rows = curs.fetchall()
  1896. if(rows):
  1897. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1898. enddata = re.sub('>', '&gt;', enddata)
  1899. enddata = re.sub('"', '&quot;', enddata)
  1900. enddata = re.sub("\n", '<br>', enddata)
  1901. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'])
  1902. else:
  1903. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  1904. @app.route('/raw/<path:name>')
  1905. def raw(name = None):
  1906. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1907. rows = curs.fetchall()
  1908. if(rows):
  1909. enddata = re.sub('<', '&lt;', rows[0]['data'])
  1910. enddata = re.sub('>', '&gt;', enddata)
  1911. enddata = re.sub('"', '&quot;', enddata)
  1912. enddata = re.sub("\n", '<br>', enddata)
  1913. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = enddata, license = data['license'], tn = 7)
  1914. else:
  1915. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1916. @app.route('/revert/<path:name>/r/<int:number>', methods=['POST', 'GET'])
  1917. def revert(name = None, number = None):
  1918. if(request.method == 'POST'):
  1919. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1920. rows = curs.fetchall()
  1921. if(rows):
  1922. ip = getip(request)
  1923. can = getcan(ip, name)
  1924. if(can == 1):
  1925. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1926. else:
  1927. today = getnow()
  1928. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1929. row = curs.fetchall()
  1930. if(row):
  1931. leng = getleng(len(row[0]['data']), len(rows[0]['data']))
  1932. curs.execute("update data set data = '" + pymysql.escape_string(rows[0]['data']) + "' where title = '" + pymysql.escape_string(name) + "'")
  1933. conn.commit()
  1934. else:
  1935. leng = '+' + str(len(rows[0]['data']))
  1936. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(rows[0]['data']) + "', '')")
  1937. conn.commit()
  1938. history(name, rows[0]['data'], today, ip, '문서를 ' + str(number) + '판으로 되돌렸습니다.', leng)
  1939. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1940. else:
  1941. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1942. else:
  1943. ip = getip(request)
  1944. can = getcan(ip, name)
  1945. if(can == 1):
  1946. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1947. else:
  1948. curs.execute("select * from history where title = '" + pymysql.escape_string(name) + "' and id = '" + str(number) + "'")
  1949. rows = curs.fetchall()
  1950. if(rows):
  1951. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), r = parse.quote(str(number)).replace('/','%2F'), tn = 13, plus = '정말 되돌리시겠습니까?')
  1952. else:
  1953. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1954. @app.route('/edit/<path:name>', methods=['POST', 'GET'])
  1955. def edit(name = None):
  1956. if(request.method == 'POST'):
  1957. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["send"])
  1958. if(m):
  1959. return '<meta http-equiv="refresh" content="0;url=/error/17" />'
  1960. else:
  1961. today = getnow()
  1962. content = re.sub("\[date\(now\)\]", today, request.form["content"])
  1963. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  1964. rows = curs.fetchall()
  1965. if(rows):
  1966. if(rows[0]['data'] == content):
  1967. return '<meta http-equiv="refresh" content="0;url=/error/18" />'
  1968. else:
  1969. ip = getip(request)
  1970. can = getcan(ip, name)
  1971. if(can == 1):
  1972. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1973. else:
  1974. leng = getleng(len(rows[0]['data']), len(content))
  1975. history(name, content, today, ip, request.form["send"], leng)
  1976. curs.execute("update data set data = '" + pymysql.escape_string(content) + "' where title = '" + pymysql.escape_string(name) + "'")
  1977. conn.commit()
  1978. else:
  1979. ip = getip(request)
  1980. can = getcan(ip, name)
  1981. if(can == 1):
  1982. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1983. else:
  1984. leng = '+' + str(len(content))
  1985. history(name, content, today, ip, request.form["send"], leng)
  1986. curs.execute("insert into data (title, data, acl) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(content) + "', '')")
  1987. conn.commit()
  1988. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  1989. else:
  1990. ip = getip(request)
  1991. can = getcan(ip, name)
  1992. if(can == 1):
  1993. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  1994. else:
  1995. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  1996. rows = curs.fetchall()
  1997. if(rows):
  1998. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  1999. left = namumark(name, newdata)
  2000. else:
  2001. left = ''
  2002. if(re.search('\.', ip)):
  2003. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2004. else:
  2005. notice = ''
  2006. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2007. rows = curs.fetchall()
  2008. if(rows):
  2009. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = rows[0]['data'], tn = 2, notice = notice, left = left)
  2010. else:
  2011. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = '', tn = 2, notice = notice, left = left)
  2012. @app.route('/edit/<path:name>/section/<int:number>', methods=['POST', 'GET'])
  2013. def secedit(name = None, number = None):
  2014. if(request.method == 'POST'):
  2015. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["send"])
  2016. if(m):
  2017. return '<meta http-equiv="refresh" content="0;url=/error/17" />'
  2018. else:
  2019. today = getnow()
  2020. content = re.sub("\[date\(now\)\]", today, request.form["content"])
  2021. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2022. rows = curs.fetchall()
  2023. if(rows):
  2024. if(request.form["otent"] == content):
  2025. return '<meta http-equiv="refresh" content="0;url=/error/18" />'
  2026. else:
  2027. ip = getip(request)
  2028. can = getcan(ip, name)
  2029. if(can == 1):
  2030. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2031. else:
  2032. leng = getleng(len(request.form['otent']), len(content))
  2033. content = rows[0]['data'].replace(request.form['otent'], content)
  2034. history(name, content, today, ip, request.form["send"], leng)
  2035. curs.execute("update data set data = '" + pymysql.escape_string(content) + "' where title = '" + pymysql.escape_string(name) + "'")
  2036. conn.commit()
  2037. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2038. else:
  2039. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2040. else:
  2041. ip = getip(request)
  2042. can = getcan(ip, name)
  2043. if(can == 1):
  2044. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2045. else:
  2046. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2047. rows = curs.fetchall()
  2048. if(rows):
  2049. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2050. left = namumark(name, newdata)
  2051. else:
  2052. left = ''
  2053. if(re.search('\.', ip)):
  2054. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2055. else:
  2056. notice = ''
  2057. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2058. rows = curs.fetchall()
  2059. if(rows):
  2060. i = 0
  2061. j = 0
  2062. gdata = rows[0]['data'] + '\r\n'
  2063. while True:
  2064. m = re.search("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", gdata)
  2065. if(m):
  2066. if(i == number - 1):
  2067. g = m.groups()
  2068. gdata = re.sub("\r\n$", "", g[0])
  2069. break
  2070. else:
  2071. gdata = re.sub("((?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n(?:(?:(?:(?!(?:={1,6})\s?(?:[^=]*)\s?(?:={1,6})(?:\s+)?\n).)*)(?:\n)?)+)", "", gdata, 1)
  2072. i = i + 1
  2073. else:
  2074. j = 1
  2075. break
  2076. if(j == 0):
  2077. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = gdata, tn = 2, notice = notice, left = left, section = 1, number = number)
  2078. else:
  2079. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2080. else:
  2081. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2082. @app.route('/preview/<path:name>', methods=['POST'])
  2083. def preview(name = None):
  2084. ip = getip(request)
  2085. can = getcan(ip, name)
  2086. if(can == 1):
  2087. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2088. else:
  2089. if(re.search('\.', ip)):
  2090. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2091. else:
  2092. notice = ''
  2093. newdata = request.form["content"]
  2094. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  2095. enddata = namumark(name, newdata)
  2096. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2097. rows = curs.fetchall()
  2098. if(rows):
  2099. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2100. left = namumark(name, newdata)
  2101. else:
  2102. left = ''
  2103. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = request.form["content"], tn = 2, preview = 1, enddata = enddata, left = left, notice = notice)
  2104. @app.route('/preview/<path:name>/section/<int:number>', methods=['POST'])
  2105. def secpreview(name = None, number = None):
  2106. ip = getip(request)
  2107. can = getcan(ip, name)
  2108. if(can == 1):
  2109. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2110. else:
  2111. if(re.search('\.', ip)):
  2112. notice = '비 로그인 상태 입니다. 비 로그인으로 편집시 아이피가 역사에 기록 됩니다. 편집 시 동의 함으로 간주 됩니다.'
  2113. else:
  2114. notice = ''
  2115. newdata = request.form["content"]
  2116. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', newdata)
  2117. enddata = namumark(name, newdata)
  2118. curs.execute("select * from data where title = '" + pymysql.escape_string(data["help"]) + "'")
  2119. rows = curs.fetchall()
  2120. if(rows):
  2121. newdata = re.sub('^#(?:redirect|넘겨주기)\s(?P<in>[^\n]*)', ' * \g<in> 문서로 넘겨주기', rows[0]["data"])
  2122. left = namumark(name, newdata)
  2123. else:
  2124. left = ''
  2125. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), data = request.form["content"], tn = 2, preview = 1, enddata = enddata, left = left, notice = notice, section = 1, number = number, odata = request.form["otent"])
  2126. @app.route('/delete/<path:name>', methods=['POST', 'GET'])
  2127. def delete(name = None):
  2128. if(request.method == 'POST'):
  2129. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2130. rows = curs.fetchall()
  2131. if(rows):
  2132. ip = getip(request)
  2133. can = getcan(ip, name)
  2134. if(can == 1):
  2135. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2136. else:
  2137. today = getnow()
  2138. leng = '-' + str(len(rows[0]['data']))
  2139. history(name, '', today, ip, '문서를 삭제 했습니다.', leng)
  2140. curs.execute("delete from data where title = '" + pymysql.escape_string(name) + "'")
  2141. conn.commit()
  2142. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2143. else:
  2144. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2145. else:
  2146. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2147. rows = curs.fetchall()
  2148. if(rows):
  2149. ip = getip(request)
  2150. can = getcan(ip, name)
  2151. if(can == 1):
  2152. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2153. else:
  2154. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 8, plus = '정말 삭제 하시겠습니까?')
  2155. else:
  2156. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2157. @app.route('/move/<path:name>', methods=['POST', 'GET'])
  2158. def move(name = None):
  2159. if(request.method == 'POST'):
  2160. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2161. rows = curs.fetchall()
  2162. if(rows):
  2163. ip = getip(request)
  2164. can = getcan(ip, name)
  2165. if(can == 1):
  2166. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2167. else:
  2168. today = getnow()
  2169. leng = '0'
  2170. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  2171. row = curs.fetchall()
  2172. if(row):
  2173. return '<meta http-equiv="refresh" content="0;url=/error/19" />'
  2174. else:
  2175. history(name, rows[0]['data'], today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  2176. curs.execute("update data set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2177. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2178. conn.commit()
  2179. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  2180. else:
  2181. ip = getip(request)
  2182. can = getcan(ip, name)
  2183. if(can == 1):
  2184. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2185. else:
  2186. today = getnow()
  2187. leng = '0'
  2188. curs.execute("select * from history where title = '" + pymysql.escape_string(request.form["title"]) + "'")
  2189. row = curs.fetchall()
  2190. if(row):
  2191. return '<meta http-equiv="refresh" content="0;url=/error/19" />'
  2192. else:
  2193. history(name, '', today, ip, '<a href="/w/' + parse.quote(name).replace('/','%2F') + '">' + name + '</a> 문서를 <a href="/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '">' + request.form["title"] + '</a> 문서로 이동 했습니다.', leng)
  2194. curs.execute("update history set title = '" + pymysql.escape_string(request.form["title"]) + "' where title = '" + pymysql.escape_string(name) + "'")
  2195. conn.commit()
  2196. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(request.form["title"]).replace('/','%2F') + '" />'
  2197. else:
  2198. ip = getip(request)
  2199. can = getcan(ip, name)
  2200. if(can == 1):
  2201. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2202. else:
  2203. return render_template('index.html', title = name, logo = data['name'], page = parse.quote(name).replace('/','%2F'), tn = 9, plus = '정말 이동 하시겠습니까?')
  2204. @app.route('/other')
  2205. def other():
  2206. return render_template('index.html', title = '기타 메뉴', logo = data['name'], data = '<li><a href="/titleindex">모든 문서</a></li><li><a href="/blocklog/n/1">유저 차단 기록</a></li><li><a href="/userlog/n/1">유저 가입 기록</a></li><li><a href="/upload">업로드</a></li><li><a href="/manager">관리자 메뉴</a></li><li><a href="/record">유저 기록</a></li><br>이 오픈나무의 버전은 <a href="https://github.com/2DU/openNAMU/blob/master/version.md">1.7.2</a> 입니다.')
  2207. @app.route('/manager')
  2208. def manager():
  2209. return render_template('index.html', title = '관리자 메뉴', logo = data['name'], data = '<li><a href="/acl">문서 ACL</a></li><li><a href="/check">유저 체크</a></li><li><a href="/banget">유저 차단</a></li><li><a href="/admin">관리자 권한 주기</a></li>')
  2210. @app.route('/acl', methods=['POST', 'GET'])
  2211. def aclget():
  2212. if(request.method == 'POST'):
  2213. return '<meta http-equiv="refresh" content="0;url=/acl/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2214. else:
  2215. return render_template('index.html', title = 'ACL 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/acl"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2216. @app.route('/check', methods=['POST', 'GET'])
  2217. def checkget():
  2218. if(request.method == 'POST'):
  2219. return '<meta http-equiv="refresh" content="0;url=/check/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2220. else:
  2221. return render_template('index.html', title = '유저 체크 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/check"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2222. @app.route('/banget', methods=['POST', 'GET'])
  2223. def hebanget():
  2224. if(request.method == 'POST'):
  2225. return '<meta http-equiv="refresh" content="0;url=/ban/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2226. else:
  2227. return render_template('index.html', title = '유저 차단 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/banget"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button><br><br><span>아이피 앞 두자리 (XXX.XXX) 입력하면 대역 차단</span></form>')
  2228. @app.route('/admin', methods=['POST', 'GET'])
  2229. def adminget():
  2230. if(request.method == 'POST'):
  2231. return '<meta http-equiv="refresh" content="0;url=/admin/' + parse.quote(request.form["name"]).replace('/','%2F') + '" />'
  2232. else:
  2233. return render_template('index.html', title = '관리자 권한 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/admin"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2234. @app.route('/record', methods=['POST', 'GET'])
  2235. def recordget():
  2236. if(request.method == 'POST'):
  2237. return '<meta http-equiv="refresh" content="0;url=/record/' + parse.quote(request.form["name"]).replace('/','%2F') + '/n/1" />'
  2238. else:
  2239. return render_template('index.html', title = '유저 기록 이동', logo = data['name'], data = '<form id="usrform" method="POST" action="/record"><input name="name" type="text"><br><br><button class="btn btn-primary" type="submit">이동</button></form>')
  2240. @app.route('/titleindex')
  2241. def titleindex():
  2242. i = 0
  2243. div = '<div>'
  2244. curs.execute("select * from data order by title asc")
  2245. rows = curs.fetchall()
  2246. if(rows):
  2247. while True:
  2248. try:
  2249. a = rows[i]
  2250. except:
  2251. div = div + '</div>'
  2252. break
  2253. div = div + '<li><a href="/w/' + parse.quote(rows[i]['title']).replace('/','%2F') + '">' + rows[i]['title'] + '</a></li>'
  2254. i = i + 1
  2255. return render_template('index.html', logo = data['name'], rows = div + '<br><span>이 위키에는 총 ' + str(i + 1) + '개의 문서가 있습니다.</span>', tn = 4, title = '모든 문서')
  2256. else:
  2257. return render_template('index.html', logo = data['name'], rows = '', tn = 4, title = '모든 문서')
  2258. @app.route('/topic/<path:name>', methods=['POST', 'GET'])
  2259. def topic(name = None):
  2260. if(request.method == 'POST'):
  2261. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  2262. else:
  2263. div = '<div>'
  2264. i = 0
  2265. j = 1
  2266. curs.execute("select * from rd where title = '" + pymysql.escape_string(name) + "' order by date asc")
  2267. rows = curs.fetchall()
  2268. while True:
  2269. try:
  2270. a = rows[i]
  2271. except:
  2272. div = div + '</div>'
  2273. break
  2274. curs.execute("select * from topic where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and id = '1' order by sub asc")
  2275. aa = curs.fetchall()
  2276. indata = namumark(name, aa[0]['data'])
  2277. if(aa[0]['block'] == 'O'):
  2278. indata = '블라인드 되었습니다.'
  2279. block = 'style="background: gainsboro;"'
  2280. else:
  2281. block = ''
  2282. curs.execute("select * from stop where title = '" + pymysql.escape_string(rows[i]['title']) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and close = 'O'")
  2283. row = curs.fetchall()
  2284. if(not row):
  2285. div = div + '<h2><a href="/topic/' + parse.quote(rows[i]['title']).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str(j) + '. ' + rows[i]['sub'] + '</a></h2>'
  2286. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="1">#1</a> ' + aa[0]['ip'] + ' <span style="float:right;">' + aa[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2287. j = j + 1
  2288. i = i + 1
  2289. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10, list = 1)
  2290. @app.route('/topic/<path:name>/close')
  2291. def topicstoplist(name = None):
  2292. if(request.method == 'POST'):
  2293. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(request.form["topic"]).replace('/','%2F') + '" />'
  2294. else:
  2295. div = '<div>'
  2296. i = 0
  2297. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and close = 'O' order by sub asc")
  2298. rows = curs.fetchall()
  2299. while True:
  2300. try:
  2301. a = rows[i]
  2302. except:
  2303. div = div + '</div>'
  2304. break
  2305. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(rows[i]['sub']) + "' and id = '1'")
  2306. row = curs.fetchall()
  2307. if(row):
  2308. j = i + 1
  2309. indata = namumark(name, row[0]['data'])
  2310. if(row[0]['block'] == 'O'):
  2311. indata = '블라인드 되었습니다.'
  2312. block = 'style="background: gainsboro;"'
  2313. else:
  2314. block = ''
  2315. div = div + '<h2><a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(rows[i]['sub']).replace('/','%2F') + '">' + str((i + 1)) + '. ' + rows[i]['sub'] + '</a></h2>'
  2316. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + row[0]['ip'] + ' <span style="float:right;">' + row[0]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2317. i = i + 1
  2318. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], plus = div, tn = 10)
  2319. @app.route('/topic/<path:name>/sub/<path:sub>', methods=['POST', 'GET'])
  2320. def sub(name = None, sub = None):
  2321. if(request.method == 'POST'):
  2322. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2323. rows = curs.fetchall()
  2324. if(rows):
  2325. number = int(rows[0]['id']) + 1
  2326. else:
  2327. number = 1
  2328. ip = getip(request)
  2329. ban = getdiscuss(ip, name, sub)
  2330. if(ban == 1):
  2331. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2332. else:
  2333. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2334. rows = curs.fetchall()
  2335. if(rows):
  2336. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2337. ip = ip + ' - Admin'
  2338. today = getnow()
  2339. discuss(name, sub, today)
  2340. aa = request.form["content"]
  2341. aa = re.sub("\[\[(분류:(?:(?:(?!\]\]).)*))\]\]", "[br]", aa)
  2342. aa = re.sub("\[date\(now\)\]", today, aa)
  2343. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + str(number) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '" + pymysql.escape_string(aa) + "', '" + today + "', '" + ip + "', '')")
  2344. conn.commit()
  2345. return '<meta http-equiv="refresh" content="0;url=/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '" />'
  2346. else:
  2347. ip = getip(request)
  2348. ban = getdiscuss(ip, name, sub)
  2349. admin = admincheck()
  2350. if(admin == 1):
  2351. div = '<div>' + '<a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/close">(토론 닫기 및 열기)</a>' + ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/stop">(토론 정지 및 재개)</a><br><br>'
  2352. else:
  2353. div = '<div>'
  2354. i = 0
  2355. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 asc")
  2356. rows = curs.fetchall()
  2357. while True:
  2358. try:
  2359. a = rows[i]
  2360. except:
  2361. div = div + '</div>'
  2362. break
  2363. if(i == 0):
  2364. start = rows[i]['ip']
  2365. indata = namumark(name, rows[i]['data'])
  2366. if(rows[i]['block'] == 'O'):
  2367. indata = '블라인드 되었습니다.'
  2368. block = 'style="background: gainsboro;"'
  2369. else:
  2370. block = ''
  2371. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart)$", rows[i]['ip'])
  2372. if(m):
  2373. ban = ""
  2374. else:
  2375. if(admin == 1):
  2376. curs.execute("select * from ban where block = '" + pymysql.escape_string(rows[i]['ip']) + "'")
  2377. row = curs.fetchall()
  2378. if(rows[i]['block'] == 'O'):
  2379. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(해제)</a>'
  2380. else:
  2381. isblock = ' <a href="/topic/' + parse.quote(name).replace('/','%2F') + '/sub/' + parse.quote(sub).replace('/','%2F') + '/b/' + str(i + 1) + '">(블라인드)</a>'
  2382. n = re.search("\- (?:Admin)$", rows[i]['ip'])
  2383. if(n):
  2384. ban = isblock
  2385. else:
  2386. if(row):
  2387. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(해제)</a>' + isblock
  2388. else:
  2389. ban = ' <a href="/ban/' + parse.quote(rows[i]['ip']).replace('/','%2F') + '">(차단)</a>' + isblock
  2390. else:
  2391. ban = ""
  2392. m = re.search("([^-]*)\s\-\s(Close|Reopen|Stop|Restart|Admin)$", rows[i]['ip'])
  2393. if(m):
  2394. g = m.groups()
  2395. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(g[0]) + "'")
  2396. row = curs.fetchall()
  2397. if(row):
  2398. ip = '<a href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  2399. else:
  2400. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + g[0]).replace('/','%2F') + '">' + g[0] + '</a> - ' + g[1]
  2401. elif(re.search("\.", rows[i]["ip"])):
  2402. ip = rows[i]["ip"]
  2403. else:
  2404. curs.execute("select * from data where title = '사용자:" + pymysql.escape_string(rows[i]['ip']) + "'")
  2405. row = curs.fetchall()
  2406. if(row):
  2407. ip = '<a href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  2408. else:
  2409. ip = '<a class="not_thing" href="/w/' + parse.quote('사용자:' + rows[i]['ip']).replace('/','%2F') + '">' + rows[i]['ip'] + '</a>'
  2410. if(rows[i]['ip'] == start):
  2411. j = i + 1
  2412. div = div + '<table id="toron"><tbody><tr><td id="toroncolorgreen"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2413. else:
  2414. j = i + 1
  2415. div = div + '<table id="toron"><tbody><tr><td id="toroncolor"><a href="javascript:void(0);" id="' + str(j) + '">#' + str(j) + '</a> ' + ip + ban + ' <span style="float:right;">' + rows[i]['date'] + '</span></td></tr><tr><td ' + block + '>' + indata + '</td></tr></tbody></table><br>'
  2416. i = i + 1
  2417. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), suburl = parse.quote(sub).replace('/','%2F'), sub = sub, logo = data['name'], rows = div, tn = 11, ban = ban)
  2418. @app.route('/topic/<path:name>/sub/<path:sub>/b/<number>')
  2419. def blind(name = None, sub = None, number = None):
  2420. if(session.get('Now') == True):
  2421. ip = getip(request)
  2422. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2423. rows = curs.fetchall()
  2424. if(rows):
  2425. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2426. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2427. row = curs.fetchall()
  2428. if(row):
  2429. if(row[0]['block'] == 'O'):
  2430. curs.execute("update topic set block = '' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2431. else:
  2432. curs.execute("update topic set block = 'O' where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and id = '" + number + "'")
  2433. conn.commit()
  2434. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2435. else:
  2436. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2437. else:
  2438. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2439. else:
  2440. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2441. else:
  2442. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2443. @app.route('/topic/<path:name>/sub/<path:sub>/stop')
  2444. def topicstop(name = None, sub = None):
  2445. if(session.get('Now') == True):
  2446. ip = getip(request)
  2447. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2448. rows = curs.fetchall()
  2449. if(rows):
  2450. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2451. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2452. row = curs.fetchall()
  2453. if(row):
  2454. today = getnow()
  2455. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  2456. rows = curs.fetchall()
  2457. if(rows):
  2458. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Restart', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Restart', '')")
  2459. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = ''")
  2460. else:
  2461. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Stop', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Stop', '')")
  2462. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', '')")
  2463. conn.commit()
  2464. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2465. else:
  2466. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2467. else:
  2468. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2469. else:
  2470. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2471. else:
  2472. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2473. @app.route('/topic/<path:name>/sub/<path:sub>/close')
  2474. def topicclose(name = None, sub = None):
  2475. if(session.get('Now') == True):
  2476. ip = getip(request)
  2477. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2478. rows = curs.fetchall()
  2479. if(rows):
  2480. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2481. curs.execute("select * from topic where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' order by id+0 desc limit 1")
  2482. row = curs.fetchall()
  2483. if(row):
  2484. today = getnow()
  2485. curs.execute("select * from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  2486. rows = curs.fetchall()
  2487. if(rows):
  2488. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Reopen', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Reopen', '')")
  2489. curs.execute("delete from stop where title = '" + pymysql.escape_string(name) + "' and sub = '" + pymysql.escape_string(sub) + "' and close = 'O'")
  2490. else:
  2491. curs.execute("insert into topic (id, title, sub, data, date, ip, block) value ('" + pymysql.escape_string(str(int(row[0]['id']) + 1)) + "', '" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'Close', '" + pymysql.escape_string(today) + "', '" + pymysql.escape_string(ip) + " - Close', '')")
  2492. curs.execute("insert into stop (title, sub, close) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(sub) + "', 'O')")
  2493. conn.commit()
  2494. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2495. else:
  2496. return '<meta http-equiv="refresh" content="0;url=/topic/' + name + '/sub/' + sub + '" />'
  2497. else:
  2498. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2499. else:
  2500. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2501. else:
  2502. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2503. @app.route('/login', methods=['POST', 'GET'])
  2504. def login():
  2505. if(request.method == 'POST'):
  2506. ip = getip(request)
  2507. ban = getban(ip)
  2508. if(ban == 1):
  2509. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2510. else:
  2511. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2512. rows = curs.fetchall()
  2513. if(rows):
  2514. if(session.get('Now') == True):
  2515. return '<meta http-equiv="refresh" content="0;url=/error/11" />'
  2516. elif(bcrypt.checkpw(bytes(request.form["pw"], 'utf-8'), bytes(rows[0]['pw'], 'utf-8'))):
  2517. session['Now'] = True
  2518. session['DREAMER'] = request.form["id"]
  2519. curs.execute("insert into login (user, ip, today) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(ip) + "', '" + pymysql.escape_string(getnow()) + "')")
  2520. conn.commit()
  2521. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2522. else:
  2523. return '<meta http-equiv="refresh" content="0;url=/error/13" />'
  2524. else:
  2525. return '<meta http-equiv="refresh" content="0;url=/error/12" />'
  2526. else:
  2527. ip = getip(request)
  2528. ban = getban(ip)
  2529. if(ban == 1):
  2530. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2531. else:
  2532. if(session.get('Now') == True):
  2533. return '<meta http-equiv="refresh" content="0;url=/error/11" />'
  2534. else:
  2535. return render_template('index.html', title = '로그인', enter = '로그인', logo = data['name'], tn = 15)
  2536. @app.route('/change', methods=['POST', 'GET'])
  2537. def change():
  2538. if(request.method == 'POST'):
  2539. ip = getip(request)
  2540. ban = getban(ip)
  2541. if(ban == 1):
  2542. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2543. else:
  2544. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2545. rows = curs.fetchall()
  2546. if(rows):
  2547. if(session.get('Now') == True):
  2548. return '<meta http-equiv="refresh" content="0;url=/logout" />'
  2549. elif(bcrypt.checkpw(bytes(request.form["pw"], 'utf-8'), bytes(rows[0]['pw'], 'utf-8'))):
  2550. hashed = bcrypt.hashpw(bytes(request.form["pw2"], 'utf-8'), bcrypt.gensalt())
  2551. curs.execute("update user set pw = '" + pymysql.escape_string(hashed.decode()) + "' where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2552. conn.commit()
  2553. return '<meta http-equiv="refresh" content="0;url=/login" />'
  2554. else:
  2555. return '<meta http-equiv="refresh" content="0;url=/error/10" />'
  2556. else:
  2557. return '<meta http-equiv="refresh" content="0;url=/error/9" />'
  2558. else:
  2559. ip = getip(request)
  2560. ban = getban(ip)
  2561. if(ban == 1):
  2562. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2563. else:
  2564. if(session.get('Now') == True):
  2565. return '<meta http-equiv="refresh" content="0;url=/logout" />'
  2566. else:
  2567. return render_template('index.html', title = '비밀번호 변경', enter = '변경', logo = data['name'], tn = 15)
  2568. @app.route('/check/<name>')
  2569. def check(name = None, sub = None, number = None):
  2570. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2571. rows = curs.fetchall()
  2572. if(rows and rows[0]['acl'] == 'owner' or rows and rows[0]['acl'] == 'admin'):
  2573. return '<meta http-equiv="refresh" content="0;url=/error/4" />'
  2574. else:
  2575. if(admincheck() == 1):
  2576. m = re.search('(?:[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?\.[0-9](?:[0-9][0-9])?)', name)
  2577. if(m):
  2578. curs.execute("select * from login where ip = '" + pymysql.escape_string(name) + "' order by today desc")
  2579. row = curs.fetchall()
  2580. if(row):
  2581. i = 0
  2582. c = ''
  2583. while True:
  2584. try:
  2585. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  2586. except:
  2587. break
  2588. i = i + 1
  2589. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  2590. else:
  2591. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  2592. else:
  2593. curs.execute("select * from login where user = '" + pymysql.escape_string(name) + "' order by today desc")
  2594. row = curs.fetchall()
  2595. if(row):
  2596. i = 0
  2597. c = ''
  2598. while True:
  2599. try:
  2600. c = c + '<table style="width: 100%;"><tbody><tr><td style="text-align: center;width:33.33%;">' + row[i]['user'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['ip'] + '</td><td style="text-align: center;width:33.33%;">' + row[i]['today'] + '</td></tr></tbody></table>'
  2601. except:
  2602. break
  2603. i = i + 1
  2604. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = c)
  2605. else:
  2606. return render_template('index.html', title = '다중 검사', logo = data['name'], tn = 22, rows = '')
  2607. else:
  2608. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2609. @app.route('/register', methods=['POST', 'GET'])
  2610. def register():
  2611. if(request.method == 'POST'):
  2612. ip = getip(request)
  2613. ban = getban(ip)
  2614. if(ban == 1):
  2615. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2616. else:
  2617. m = re.search('(?:[^A-Za-zㄱ-힣0-9 ])', request.form["id"])
  2618. if(m):
  2619. return '<meta http-equiv="refresh" content="0;url=/error/8" />'
  2620. else:
  2621. if(len(request.form["id"]) > 20):
  2622. return '<meta http-equiv="refresh" content="0;url=/error/7" />'
  2623. else:
  2624. curs.execute("select * from user where id = '" + pymysql.escape_string(request.form["id"]) + "'")
  2625. rows = curs.fetchall()
  2626. if(rows):
  2627. return '<meta http-equiv="refresh" content="0;url=/error/6" />'
  2628. else:
  2629. hashed = bcrypt.hashpw(bytes(request.form["pw"], 'utf-8'), bcrypt.gensalt())
  2630. if(request.form["id"] == data['owner']):
  2631. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'owner')")
  2632. else:
  2633. curs.execute("insert into user (id, pw, acl) value ('" + pymysql.escape_string(request.form["id"]) + "', '" + pymysql.escape_string(hashed.decode()) + "', 'user')")
  2634. conn.commit()
  2635. return '<meta http-equiv="refresh" content="0;url=/login" />'
  2636. else:
  2637. ip = getip(request)
  2638. ban = getban(ip)
  2639. if(ban == 1):
  2640. return '<meta http-equiv="refresh" content="0;url=/ban" />'
  2641. else:
  2642. return render_template('index.html', title = '회원가입', enter = '회원가입', logo = data['name'], tn = 15)
  2643. @app.route('/logout')
  2644. def logout():
  2645. session['Now'] = False
  2646. session.pop('DREAMER', None)
  2647. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2648. @app.route('/ban/<name>', methods=['POST', 'GET'])
  2649. def ban(name = None):
  2650. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2651. rows = curs.fetchall()
  2652. if(rows and rows[0]['acl'] == 'owner' or rows and rows[0]['acl'] == 'admin'):
  2653. return '<meta http-equiv="refresh" content="0;url=/error/4" />'
  2654. else:
  2655. if(request.method == 'POST'):
  2656. if(admincheck() == 1):
  2657. ip = getip(request)
  2658. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  2659. row = curs.fetchall()
  2660. if(row):
  2661. block(name, '해제', getnow(), ip, '')
  2662. curs.execute("delete from ban where block = '" + pymysql.escape_string(name) + "'")
  2663. else:
  2664. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", name)
  2665. if(b):
  2666. block(name, request.form["end"], getnow(), ip, request.form["why"])
  2667. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', 'O')")
  2668. else:
  2669. block(name, request.form["end"], getnow(), ip, request.form["why"])
  2670. curs.execute("insert into ban (block, end, why, band) value ('" + pymysql.escape_string(name) + "', '" + pymysql.escape_string(request.form["end"]) + "', '" + pymysql.escape_string(request.form["why"]) + "', '')")
  2671. conn.commit()
  2672. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2673. else:
  2674. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2675. else:
  2676. if(admincheck() == 1):
  2677. curs.execute("select * from ban where block = '" + pymysql.escape_string(name) + "'")
  2678. row = curs.fetchall()
  2679. if(row):
  2680. now = '차단 해제'
  2681. else:
  2682. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))$", name)
  2683. if(b):
  2684. now = '대역 차단'
  2685. else:
  2686. now = '차단'
  2687. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 16, now = now, today = getnow())
  2688. else:
  2689. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2690. @app.route('/acl/<path:name>', methods=['POST', 'GET'])
  2691. def acl(name = None):
  2692. if(request.method == 'POST'):
  2693. if(admincheck() == 1):
  2694. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2695. row = curs.fetchall()
  2696. if(row):
  2697. if(request.form["select"] == 'admin'):
  2698. curs.execute("update data set acl = 'admin' where title = '" + pymysql.escape_string(name) + "'")
  2699. elif(request.form["select"] == 'user'):
  2700. curs.execute("update data set acl = 'user' where title = '" + pymysql.escape_string(name) + "'")
  2701. else:
  2702. curs.execute("update data set acl = '' where title = '" + pymysql.escape_string(name) + "'")
  2703. conn.commit()
  2704. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2705. else:
  2706. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2707. else:
  2708. if(admincheck() == 1):
  2709. curs.execute("select * from data where title = '" + pymysql.escape_string(name) + "'")
  2710. row = curs.fetchall()
  2711. if(row):
  2712. if(row[0]['acl'] == 'admin'):
  2713. now = '관리자만'
  2714. elif(row[0]['acl'] == 'user'):
  2715. now = '유저 이상'
  2716. else:
  2717. now = '일반'
  2718. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 19, now = '현재 ACL 상태는 ' + now)
  2719. else:
  2720. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(name).replace('/','%2F') + '" />'
  2721. else:
  2722. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2723. @app.route('/admin/<name>', methods=['POST', 'GET'])
  2724. def admin(name = None):
  2725. if(request.method == 'POST'):
  2726. if(session.get('Now') == True):
  2727. ip = getip(request)
  2728. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2729. rows = curs.fetchall()
  2730. if(rows):
  2731. if(rows[0]['acl'] == 'owner' or rows[0]['acl'] == 'admin'):
  2732. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2733. row = curs.fetchall()
  2734. if(row):
  2735. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2736. curs.execute("update user set acl = 'user' where id = '" + pymysql.escape_string(name) + "'")
  2737. else:
  2738. curs.execute("update user set acl = '" + pymysql.escape_string(request.form["select"]) + "' where id = '" + pymysql.escape_string(name) + "'")
  2739. conn.commit()
  2740. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2741. else:
  2742. return '<meta http-equiv="refresh" content="0;url=/error/5" />'
  2743. else:
  2744. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2745. else:
  2746. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2747. else:
  2748. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2749. else:
  2750. if(session.get('Now') == True):
  2751. ip = getip(request)
  2752. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2753. rows = curs.fetchall()
  2754. if(rows):
  2755. if(rows[0]['acl'] == 'owner'):
  2756. curs.execute("select * from user where id = '" + pymysql.escape_string(name) + "'")
  2757. row = curs.fetchall()
  2758. if(row):
  2759. if(row[0]['acl'] == 'admin' or row[0]['acl'] == 'owner'):
  2760. now = '권한 해제'
  2761. else:
  2762. now = '권한 부여'
  2763. return render_template('index.html', title = name, page = parse.quote(name).replace('/','%2F'), logo = data['name'], tn = 18, now = now)
  2764. else:
  2765. return '<meta http-equiv="refresh" content="0;url=/error/5" />'
  2766. else:
  2767. return '<meta http-equiv="refresh" content="0;url=/error/3" />'
  2768. else:
  2769. return '<meta http-equiv="refresh" content="0;url=/error/2" />'
  2770. else:
  2771. return '<meta http-equiv="refresh" content="0;url=/error/1" />'
  2772. @app.route('/ban')
  2773. def aban():
  2774. ip = getip(request)
  2775. if(getban(ip) == 1):
  2776. curs.execute("select * from ban where block = '" + pymysql.escape_string(ip) + "'")
  2777. rows = curs.fetchall()
  2778. if(rows):
  2779. if(rows[0]['end']):
  2780. end = rows[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2781. now = getnow()
  2782. now = re.sub(':', '', now)
  2783. now = re.sub('\-', '', now)
  2784. now = re.sub(' ', '', now)
  2785. now = int(now)
  2786. day = rows[0]['end']
  2787. day = re.sub('\-', '', day)
  2788. if(now >= int(day + '000000')):
  2789. curs.execute("delete from ban where block = '" + pymysql.escape_string(ip) + "'")
  2790. conn.commit()
  2791. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2792. else:
  2793. end = '영구 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2794. else:
  2795. b = re.search("^([0-9](?:[0-9]?[0-9]?)\.[0-9](?:[0-9]?[0-9]?))", ip)
  2796. if(b):
  2797. results = b.groups()
  2798. curs.execute("select * from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2799. row = curs.fetchall()
  2800. if(row):
  2801. if(row[0]['end']):
  2802. end = row[0]['end'] + ' 까지 차단 상태 입니다. / 사유 : ' + rows[0]['why']
  2803. now = getnow()
  2804. now = re.sub(':', '', now)
  2805. now = re.sub('\-', '', now)
  2806. now = re.sub(' ', '', now)
  2807. now = int(now)
  2808. day = row[0]['end']
  2809. day = re.sub('\-', '', day)
  2810. if(now >= int(day + '000000')):
  2811. curs.execute("delete from ban where block = '" + pymysql.escape_string(results[0]) + "' and band = 'O'")
  2812. conn.commit()
  2813. end = '차단이 풀렸습니다. 다시 시도 해 보세요.'
  2814. else:
  2815. end = '영구 차단 상태 입니다. / 사유 : ' + row[0]['why']
  2816. else:
  2817. end = '권한이 맞지 않는 상태 입니다.'
  2818. return render_template('index.html', title = '권한 오류', logo = data['name'], data = end), 401
  2819. @app.route('/w/<path:name>/r/<int:a>/diff/<int:b>')
  2820. def diff(name = None, a = None, b = None):
  2821. curs.execute("select * from history where id = '" + pymysql.escape_string(str(a)) + "' and title = '" + pymysql.escape_string(name) + "'")
  2822. rows = curs.fetchall()
  2823. if(rows):
  2824. curs.execute("select * from history where id = '" + pymysql.escape_string(str(b)) + "' and title = '" + pymysql.escape_string(name) + "'")
  2825. row = curs.fetchall()
  2826. if(row):
  2827. indata = re.sub('<', '&lt;', rows[0]['data'])
  2828. indata = re.sub('>', '&gt;', indata)
  2829. indata = re.sub('"', '&quot;', indata)
  2830. indata = re.sub('\n', '<br>', indata)
  2831. enddata = re.sub('<', '&lt;', row[0]['data'])
  2832. enddata = re.sub('>', '&gt;', enddata)
  2833. enddata = re.sub('"', '&quot;', enddata)
  2834. enddata = re.sub('\n', '<br>', enddata)
  2835. sm = difflib.SequenceMatcher(None, indata, enddata)
  2836. c = show_diff(sm)
  2837. return render_template('index.html', title = name, logo = data['name'], data = c, plus = '(비교)')
  2838. else:
  2839. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  2840. else:
  2841. return '<meta http-equiv="refresh" content="0;url=/history/' + parse.quote(name).replace('/','%2F') + '" />'
  2842. @app.route('/user')
  2843. def user():
  2844. ip = getip(request)
  2845. curs.execute("select * from user where id = '" + pymysql.escape_string(ip) + "'")
  2846. rows = curs.fetchall()
  2847. if(getban(ip) == 0):
  2848. if(rows):
  2849. if(rows[0]['acl'] == 'admin' or rows[0]['acl'] == 'owner'):
  2850. if(rows[0]['acl'] == 'admin'):
  2851. acl = '관리자'
  2852. else:
  2853. acl = '소유자'
  2854. else:
  2855. acl = '유저'
  2856. else:
  2857. acl = '일반'
  2858. else:
  2859. acl = '차단'
  2860. return render_template('index.html', title = '유저 메뉴', logo = data['name'], data = ip + '<br><br><span>권한 상태 : ' + acl + '<br><br><li><a href="/login">로그인</a></li><li><a href="/logout">로그아웃</a></li><li><a href="/register">회원가입</a></li><li><a href="/change">비밀번호 변경</a></li>')
  2861. @app.route('/random')
  2862. def random():
  2863. curs.execute("select * from data order by rand() limit 1")
  2864. rows = curs.fetchall()
  2865. if(rows):
  2866. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(rows[0]['title']).replace('/','%2F') + '" />'
  2867. else:
  2868. return '<meta http-equiv="refresh" content="0;url=/" />'
  2869. @app.route('/error/<int:num>')
  2870. def error(num = None):
  2871. if(num == 1):
  2872. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '비 로그인 상태 입니다.'), 401
  2873. elif(num == 2):
  2874. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '이 계정이 없습니다.'), 401
  2875. elif(num == 3):
  2876. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '권한이 모자랍니다.'), 401
  2877. elif(num == 4):
  2878. return render_template('index.html', title = '권한 오류', logo = data['name'], data = '관리자는 차단, 검사 할 수 없습니다.'), 401
  2879. elif(num == 5):
  2880. return render_template('index.html', title = '유저 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2881. elif(num == 6):
  2882. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '동일한 아이디의 유저가 있습니다.'), 401
  2883. elif(num == 7):
  2884. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '아이디는 20글자보다 짧아야 합니다.'), 401
  2885. elif(num == 8):
  2886. return render_template('index.html', title = '가입 오류', logo = data['name'], data = '아이디에는 한글과 알파벳과 공백만 허용 됩니다.'), 401
  2887. elif(num == 9):
  2888. return render_template('index.html', title = '변경 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2889. elif(num == 10):
  2890. return render_template('index.html', title = '변경 오류', logo = data['name'], data = '비밀번호가 다릅니다.'), 401
  2891. elif(num == 11):
  2892. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '이미 로그인 되어 있습니다.'), 401
  2893. elif(num == 12):
  2894. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '그런 계정이 없습니다.'), 401
  2895. elif(num == 13):
  2896. return render_template('index.html', title = '로그인 오류', logo = data['name'], data = '비밀번호가 다릅니다.'), 401
  2897. elif(num == 14):
  2898. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = 'jpg, gif, jpeg, png만 가능 합니다.'), 401
  2899. elif(num == 15):
  2900. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = '파일 명에 . / \ * < > | : ? 가 들어 갈 수 없습니다.'), 401
  2901. elif(num == 16):
  2902. return render_template('index.html', title = '업로드 오류', logo = data['name'], data = '동일한 이름의 파일이 있습니다.'), 401
  2903. elif(num == 17):
  2904. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '편집 내용 기록에는 한글과 영어와 숫자, 공백만 허용 됩니다.'), 401
  2905. elif(num == 18):
  2906. return render_template('index.html', title = '편집 오류', logo = data['name'], data = '내용이 원래 문서와 동일 합니다.'), 401
  2907. elif(num == 19):
  2908. return render_template('index.html', title = '이동 오류', logo = data['name'], data = '이동 하려는 곳에 문서가 이미 있습니다.'), 401
  2909. else:
  2910. return '<meta http-equiv="refresh" content="0;url=/" />'
  2911. @app.errorhandler(404)
  2912. def uncaughtError(error):
  2913. return '<meta http-equiv="refresh" content="0;url=/w/' + parse.quote(data['frontpage']).replace('/','%2F') + '" />'
  2914. if __name__ == '__main__':
  2915. app.run(host = '0.0.0.0', port = int(data['port']), threaded = True)