Skip to content


2017/11/27 created by zsion
Browse files Browse the repository at this point in the history
  • Loading branch information
lizhuosheng committed Nov 27, 2017
0 parents commit 93c9b28
Show file tree
Hide file tree
Showing 157 changed files with 5,445 additions and 0 deletions.
220 changes: 220 additions & 0 deletions admin.automsg.php
Original file line number Diff line number Diff line change
@@ -0,0 +1,220 @@

// +---------------------------------------------+
// | Copyright 2010 - 2028 WeLive |
// | |
// | This file may not be redistributed. |
// +---------------------------------------------+

define('AUTH', true);

include(BASEPATH . 'includes/welive.Admin.php');

if($userinfo['usergroupid'] != 1) exit();

$action = ForceIncomingString('action', 'default');
if(IsPost('updatemsgs')) $action= 'updatemsgs';
if(IsPost('deletemsgs')) $action= 'deletemsgs';

PrintHeader($userinfo['username'], 'automsg');

//########### UPDATE MESSAGES ###########

if($action == 'updatemsgs'){
$msgids = $_POST['msgids'];
$ordernums = $_POST['ordernums'];
$activateds = $_POST['activateds'];
$msgs = $_POST['msgs'];

$page = ForceIncomingInt('p');

for($i = 0; $i < count($msgids); $i++){
$DB->exe("UPDATE " . TABLE_PREFIX . "automsg SET ordernum = '".ForceInt($ordernums[$i])."',
activated = '".ForceInt($activateds[$i])."',
msg = '".ForceString($msgs[$i])."'
WHERE msgid = '".ForceInt($msgids[$i])."'");


GotoPage('admin.automsg.php'.Iif($page, '?p='.$page), 1);

//########### DELETE MESSAGES ###########

if($action == 'deletemsgs'){
$deletemsgids = $_POST['deletemsgids'];
$page = ForceIncomingInt('p');

for($i = 0; $i < count($deletemsgids); $i++){
$DB->exe("DELETE FROM " . TABLE_PREFIX . "automsg WHERE msgid = '".ForceInt($deletemsgids[$i])."'");

GotoPage('admin.automsg.php'.Iif($page, '?p='.$page), 1);

//########### UPDATE OR ADD MSG ###########
if($action == 'insertmsg' OR $action == 'updatemsg'){
$msgid = ForceIncomingInt('msgid');
$activated = ForceIncomingInt('activated');
$ordernum = ForceIncomingInt('ordernum');
$msg = ForceIncomingString('msg');

$deletemsg = ForceIncomingInt('deletemsg');

$DB->exe("DELETE FROM " . TABLE_PREFIX . "automsg WHERE msgid = '$msgid'");
GotoPage('admin.automsg.php', 1);

if(strlen($msg) == 0){
$errors = '请输入短语内容!';

$errortitle = Iif($msgid, '编辑短语错误', '添加短语错误');
$action = Iif($msgid, 'editmsg', 'addmsg');
if($action == 'updatemsg'){
$DB->exe("UPDATE " . TABLE_PREFIX . "automsg SET ordernum = '$ordernum',
activated = '$activated',
msg = '$msg'
WHERE msgid = '$msgid'");
$DB->exe("INSERT INTO " . TABLE_PREFIX . "automsg (ordernum, activated, msg) VALUES (0, 1, '$msg')");

$newmsgid = $DB->insert_id();
$DB->exe("UPDATE " . TABLE_PREFIX . "automsg SET ordernum = '$newmsgid' WHERE msgid = '$newmsgid'");

GotoPage('admin.automsg.php', 1);

//########### ADD OR EDIT MESSAGE ###########

if($action == 'editmsg' OR $action == 'addmsg'){

$msgid = ForceIncomingInt('msgid');

PrintErrors($errors, $errortitle);

$msg = array('msgid' => $msgid,
'activated' => $activated,
'ordernum' => $ordernum,
'msg' => $_POST['msg']);

} else if($msgid) {
$msg = $DB->getOne("SELECT * FROM " . TABLE_PREFIX . "automsg WHERE msgid = '$msgid'");
$msg = array('msgid' => 0, 'activated' => 1);

echo '<form method="post" action="admin.automsg.php">
<input type="hidden" name="action" value="' . Iif($msgid, 'updatemsg', 'insertmsg') . '">
<input type="hidden" name="msgid" value="' . $msg['msgid'] . '">
<table id="welive_list" border="0" cellpadding="0" cellspacing="0" class="maintable">
<th colspan="2">添加短语</th>
<td>短语内容:<br><br><span class=note>说明:</span> <br>1. 允许使用HTML代码, 如换行可输入&lt;br&gt;<br>2. 插入链接, 必须在新窗口打开, 否则在当前窗口打开链接将导致离线<br>如: &lt;a href="链接地址" target="_blank"&gt;链接文字&lt;/a&gt;</td>
<td><textarea name="msg" rows="6" style="width:460px;">'.$msg['msg'].'</textarea> <font class=red>* 必填项</font></td>
</tr> ';

echo '<tr>
<td><input type="checkbox" name="activated" value="1" ' . Iif($msg['activated'] == 1, 'checked="checked"') .'></td>
<td><input type="checkbox" name="deletemsg" value="1"></td>
</tr> ';

echo '</tbody></table>';

PrintSubmit(Iif($msgid, '保存更新', '添加短语'));

//########### PRINT DEFAULT ###########

if($action == 'default'){
$NumPerPage =10;
$page = ForceIncomingInt('p', 1);
$start = $NumPerPage * ($page-1);
$search = ForceIncomingString('s');
$search = urldecode($search);

$searchsql = Iif($search, "WHERE msg like '%".$search."%'", "");

$getmessages = $DB->query("SELECT * FROM " . TABLE_PREFIX . "automsg ".$searchsql." ORDER BY ordernum ASC LIMIT $start,$NumPerPage");

$maxrows = $DB->getOne("SELECT COUNT(msgid) AS value FROM " . TABLE_PREFIX . "automsg ".$searchsql);

echo '<table border="0" cellpadding="0" cellspacing="0" width="100%">
<td>&nbsp;&nbsp;&nbsp;共有: <span class=note>'.$maxrows['value'].'</span> 条短语&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href="admin.automsg.php?action=addmsg">添加短语</a></td>
<form method="post" action="admin.automsg.php" name="searchform">
关键字:&nbsp;<input type="text" name="s" size="22">&nbsp;&nbsp;&nbsp;&nbsp;<input type="submit" name="search" value=" 搜索短语 " />
<form method="post" action="admin.automsg.php" name="messagesform">
<input type="hidden" name="action" value="deletemessages">
<input type="hidden" name="p" value="'.$page.'">
<table id="welive_list" border="0" cellpadding="0" cellspacing="0" class="moreinfo">
<th><input type="checkbox" checkall="group" onclick="select_deselectAll (\'messagesform\', this, \'group\');"> 删除</th>

if($maxrows['value'] < 1){
echo '<tr><td colspan="5"><center><span class=red>暂无任何短语!</span></center></td></tr></tbody></table></form>';
while($message = $DB->fetch($getmessages)){
echo '<tr>
<td><input type="hidden" name="msgids[]" value="'.$message['msgid'].'" /><input type="text" name="ordernums[]" value="' . $message['ordernum'] . '" size="4" /></td>
<td><select name="activateds[]"><option value="1">显示</option><option style="color:red;" value="0" ' . Iif(!$message['activated'], 'SELECTED', '') . '>隐藏</option></select></td>
<td><textarea name="msgs[]" style="height:32px;width:360px;">'.$message['msg'].'</textarea></td>
<td><a href="admin.automsg.php?action=editmsg&msgid='.$message['msgid'].'">'.Iif($message['activated'], '编辑', '<span class=red>编辑</span>').'</a></td>
<td><input type="checkbox" name="deletemsgids[]" value="' . $message['msgid'] . '" checkme="group"></td>

$totalpages = ceil($maxrows['value'] / $NumPerPage);
if($totalpages > 1){
echo '<tr><th colspan="5" class="last">'.GetPageList('admin.automsg.php', $totalpages, $page, 10, 's', urlencode($search)).'</th></tr>';

echo '</tbody>
<div style="margin-top:20px;text-align:center;">
<input type="submit" name="updatemsgs" value=" 保存更新 " />&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<input type="submit" name="deletemsgs" onclick="return confirm(\'确定删除所选短语吗?\');" value=" 删除短语 " />



139 changes: 139 additions & 0 deletions admin.comments.php
Original file line number Diff line number Diff line change
@@ -0,0 +1,139 @@

// +---------------------------------------------+
// | Copyright 2010 - 2028 WeLive |
// | |
// | This file may not be redistributed. |
// +---------------------------------------------+

define('AUTH', true);

include(BASEPATH . 'includes/welive.Admin.php');

if($userinfo['usergroupid'] != 1) exit();

$action = ForceIncomingString('action', 'default');

$uid = $userinfo['userid'];
$ajaxpending = 'uid=' . $uid; //需要动态变化, 用于将客服ID附加到AJAX URL

PrintHeader($userinfo['username'], 'comments');

echo '<script type="text/javascript">var ajaxpending = "'. $ajaxpending .'";</script>'; //用于AJAX

//########### DELETE COMMENTS ###########

if($action == 'deletecomments'){
$deletecommentids = $_POST['deletecommentids'];
$page = ForceIncomingInt('p');
$uid = ForceIncomingInt('u');

for($i = 0; $i < count($deletecommentids); $i++){
$DB->exe("DELETE FROM " . TABLE_PREFIX . "comment WHERE commentid = '".ForceInt($deletecommentids[$i])."'");

GotoPage('admin.comments.php'.Iif($page, '?p='.$page.Iif($uid, '&u='.$uid), Iif($uid, '?u='.$uid)), 1);

//########### FAST DELETE COMMENTS ###########

if($action == 'fastdelete'){
$days = ForceIncomingInt('days');
$uid = ForceIncomingInt('u');
$realtime = time();

$searchsql = Iif($uid, " WHERE touserid ='$uid' ", "");
$searchsql .= Iif($searchsql, Iif($days, " AND created < " .$realtime - 3600*24*$days), Iif($days, " WHERE created < " .$realtime - 3600*24*$days));

$DB->exe("DELETE FROM " . TABLE_PREFIX . "comment ". $searchsql);

GotoPage('admin.comments.php'.Iif($uid, '?u='.$uid), 1);

//########### PRINT DEFAULT ###########

if($action == 'default'){
$NumPerPage =20;
$page = ForceIncomingInt('p', 1);
$start = $NumPerPage * ($page-1);
$uid = ForceIncomingInt('u');

$searchsql = Iif($uid, "WHERE touserid ='$uid' ", "");

$getusers = $DB->query("SELECT userid, userfrontname FROM " . TABLE_PREFIX . "user WHERE usergroupid <>1 ORDER BY userid");
while($user = $DB->fetch($getusers)) {
$users[$user['userid']] = $user['userfrontname'];
$useroptions .= '<option value="' . $user['userid'] . '" ' . Iif($uid == $user['userid'], 'SELECTED', '') . '>' . $user['userfrontname'] . '</option>';

$getcomments = $DB->query("SELECT * FROM " . TABLE_PREFIX . "comment ".$searchsql." ORDER BY commentid DESC LIMIT $start,$NumPerPage");

$maxrows = $DB->getOne("SELECT COUNT(commentid) AS value FROM " . TABLE_PREFIX . "comment ".$searchsql);

echo '<table border="0" cellpadding="0" cellspacing="0" width="100%">
<td>&nbsp;&nbsp;&nbsp;共有: <span class=note>'.$maxrows['value'].'</span> 条留言</td>
<form method="post" action="admin.comments.php" name="searchform">
选择:&nbsp;<select name="u"><option value="0">全部客服</option>'. $useroptions .'</select>&nbsp;&nbsp;&nbsp;&nbsp;<input type="submit" name="search" value=" 搜索留言 " />
<form method="post" action="admin.comments.php" name="deleteform">
<input type="hidden" name="action" value="fastdelete">
选择:&nbsp;<select name="u"><option value="0">全部客服</option>'. $useroptions .'</select>&nbsp;&nbsp;<select name="days"><option value="0">全部留言</option><option value="1">1 天前</option><option value="5">5 天前</option><option value="10">10 天前</option><option value="30">30 天前</option><option value="60">60 天前</option><option value="90">90 天前</option></select>&nbsp;&nbsp;&nbsp;&nbsp;<input type="submit" name="delete" onclick="return confirm(\'确定删除所选留言吗?\');" value=" 快速删除 " />
<form method="post" action="admin.comments.php" name="commentsform">
<input type="hidden" name="action" value="deletecomments">
<input type="hidden" name="p" value="'.$page.'">
<input type="hidden" name="u" value="'.$uid.'">
<table id="welive_list" border="0" cellpadding="0" cellspacing="0" class="moreinfo">
<th><input type="checkbox" checkall="group" onclick="select_deselectAll (\'commentsform\', this, \'group\');"> 删除</th>

if($maxrows['value'] < 1){
echo '<tr><td colspan="6"><center><span class=red>暂无任何留言!</span></center></td></tr></tbody></table></form>';
while($comment = $DB->fetch($getcomments)){
echo '<tr>
<td>' . $comment['username'] . '</td>
<td>' . Iif($comment['userip'], '<a href="javascript:;" hidefocus="true" onclick="iplocation(\'' . $comment['commentid'] . '\', \'' . $comment['userip'] . '\');return false;" title="查看IP归属地">' . $comment['userip'] . '</a><br><span id="ip_' . $comment['commentid'] . '"></span>', '&nbsp;') . '</td>
<td>'.nl2br($comment['content']). '</a></td>
<td>'.Iif($users[$comment['touserid']], '<a href="admin.users.php?action=edituser&userid='.$comment['touserid'].'">' . $users[$comment['touserid']] . '</a>', '已删除').'</td>
<td>' . DisplayDate($comment['created'], 0, 1) . '</td>
<td><input type="checkbox" name="deletecommentids[]" value="' . $comment['commentid'] . '" checkme="group"></td>

$totalpages = ceil($maxrows['value'] / $NumPerPage);
if($totalpages > 1){
echo '<tr><th colspan="6" class="last">'.GetPageList('admin.comments.php', $totalpages, $page, 10, 'u', $uid).'</th></tr>';

echo '</tbody>
<div style="margin-top:20px;text-align:center;">
<input type="submit" onclick="return confirm(\'确定删除所选留言吗?\');" value=" 删除留言 " />




0 comments on commit 93c9b28

Please sign in to comment.