2
0

register.py 4.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114
  1. from .tool.func import *
  2. def register_2(conn):
  3. curs = conn.cursor()
  4. if ban_check() == 1:
  5. return re_error('/ban')
  6. if custom()[2] != 0:
  7. return redirect('/user')
  8. if not admin_check() == 1:
  9. curs.execute('select data from other where name = "reg"')
  10. set_d = curs.fetchall()
  11. if set_d and set_d[0][0] == 'on':
  12. return re_error('/ban')
  13. if flask.request.method == 'POST':
  14. if captcha_post(flask.request.form.get('g-recaptcha-response', '')) == 1:
  15. return re_error('/error/13')
  16. else:
  17. captcha_post('', 0)
  18. if flask.request.form.get('pw', None) != flask.request.form.get('pw2', None):
  19. return re_error('/error/20')
  20. if re.search('(?:[^A-Za-zㄱ-힣0-9 ])', flask.request.form.get('id', None)):
  21. return re_error('/error/8')
  22. curs.execute('select html from html_filter where kind = "name"')
  23. set_d = curs.fetchall()
  24. for i in set_d:
  25. check_r = re.compile(i[0], re.I)
  26. if check_r.search(flask.request.form.get('id', None)):
  27. return re_error('/error/8')
  28. if len(flask.request.form.get('id', None)) > 32:
  29. return re_error('/error/7')
  30. curs.execute("select id from user where id = ?", [flask.request.form.get('id', None)])
  31. if curs.fetchall():
  32. return re_error('/error/6')
  33. hashed = pw_encode(flask.request.form.get('pw', None))
  34. curs.execute('select data from other where name = "email_have"')
  35. sql_data = curs.fetchall()
  36. if sql_data and sql_data[0][0] != '':
  37. flask.session['c_id'] = flask.request.form.get('id', None)
  38. flask.session['c_pw'] = hashed
  39. flask.session['c_key'] = ''.join(random.choice("0123456789abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ") for i in range(16))
  40. return redirect('/need_email')
  41. else:
  42. curs.execute('select data from other where name = "encode"')
  43. db_data = curs.fetchall()
  44. curs.execute("select id from user limit 1")
  45. if not curs.fetchall():
  46. curs.execute("insert into user (id, pw, acl, date, encode) values (?, ?, 'owner', ?, ?)", [flask.request.form.get('id', None), hashed, get_time(), db_data[0][0]])
  47. first = 1
  48. else:
  49. curs.execute("insert into user (id, pw, acl, date, encode) values (?, ?, 'user', ?, ?)", [flask.request.form.get('id', None), hashed, get_time(), db_data[0][0]])
  50. first = 0
  51. ip = ip_check()
  52. agent = flask.request.headers.get('User-Agent')
  53. curs.execute("insert into ua_d (name, ip, ua, today, sub) values (?, ?, ?, ?, '')", [flask.request.form.get('id', None), ip, agent, get_time()])
  54. flask.session['state'] = 1
  55. flask.session['id'] = flask.request.form.get('id', None)
  56. flask.session['head'] = ''
  57. conn.commit()
  58. if first == 0:
  59. return redirect('/change')
  60. else:
  61. return redirect('/setting')
  62. else:
  63. contract = ''
  64. curs.execute('select data from other where name = "contract"')
  65. data = curs.fetchall()
  66. if data and data[0][0] != '':
  67. contract = data[0][0] + '<hr class=\"main_hr\">'
  68. forwarded_protocol = flask.request.headers.get('X-Forwarded-Proto', None)
  69. if forwarded_protocol == 'http':
  70. http_warring = '<hr class=\"main_hr\"><span>' + load_lang('http_warring') + '</span>'
  71. else:
  72. http_warring = ''
  73. return easy_minify(flask.render_template(skin_check(),
  74. imp = [load_lang('register'), wiki_set(), custom(), other2([0, 0])],
  75. data = '''
  76. <form method="post">
  77. ''' + contract + '''
  78. <input placeholder="''' + load_lang('id') + '''" name="id" type="text">
  79. <hr class=\"main_hr\">
  80. <input placeholder="''' + load_lang('password') + '''" name="pw" type="password">
  81. <hr class=\"main_hr\">
  82. <input placeholder="''' + load_lang('password_confirm') + '''" name="pw2" type="password">
  83. <hr class=\"main_hr\">
  84. ''' + captcha_get() + '''
  85. <button type="submit">''' + load_lang('save') + '''</button>
  86. ''' + http_warring + '''
  87. </form>
  88. ''',
  89. menu = [['user', load_lang('return')]]
  90. ))