article.ctrl.php 9.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247
  1. <?php
  2. /**
  3. * [WeEngine System] Copyright (c) 2014 WE7.CC
  4. * WeEngine is NOT a free software, it under the license terms, visited http://www.we7.cc/ for more details.
  5. */
  6. defined('IN_IA') or exit('Access Denied');
  7. load()->func('file');
  8. $dos = array('display', 'post', 'del');
  9. $do = in_array($do, $dos) ? $do : 'display';
  10. permission_check_account_user('platform_site');
  11. $_W['page']['title'] = '文章管理 - 微官网';
  12. $category = pdo_fetchall("SELECT id,parentid,name FROM ".tablename('site_category')." WHERE uniacid = '{$_W['uniacid']}' ORDER BY parentid ASC, displayorder ASC, id ASC ", array(), 'id');
  13. $parent = array();
  14. $children = array();
  15. if (!empty($category)) {
  16. foreach ($category as $cid => $cate) {
  17. if (!empty($cate['parentid'])) {
  18. $children[$cate['parentid']][] = $cate;
  19. } else {
  20. $parent[$cate['id']] = $cate;
  21. }
  22. }
  23. }
  24. if ($do == 'display') {
  25. $pindex = max(1, intval($_GPC['page']));
  26. $psize = 20;
  27. $condition = '';
  28. $params = array();
  29. if (!empty($_GPC['keyword'])) {
  30. $condition .= " AND `title` LIKE :keyword";
  31. $params[':keyword'] = "%{$_GPC['keyword']}%";
  32. }
  33. if (!empty($_GPC['category']['childid'])) {
  34. $cid = intval($_GPC['category']['childid']);
  35. $condition .= " AND ccate = '{$cid}'";
  36. } elseif (!empty($_GPC['category']['parentid'])) {
  37. $cid = intval($_GPC['category']['parentid']);
  38. $condition .= " AND pcate = '{$cid}'";
  39. }
  40. $list = pdo_fetchall("SELECT * FROM ".tablename('site_article')." WHERE uniacid = '{$_W['uniacid']}' $condition ORDER BY displayorder DESC, edittime DESC, id DESC LIMIT ".($pindex - 1) * $psize.','.$psize, $params);
  41. $total = pdo_fetchcolumn('SELECT COUNT(*) FROM ' . tablename('site_article') . " WHERE uniacid = '{$_W['uniacid']}'".$condition, $params);
  42. $pager = pagination($total, $pindex, $psize);
  43. template('site/article-display');
  44. } elseif ($do == 'post') {
  45. $id = intval($_GPC['id']);
  46. $template = uni_templates();
  47. $pcate = intval($_GPC['pcate']);
  48. $ccate = intval($_GPC['ccate']);
  49. if (!empty($id)) {
  50. $item = pdo_fetch("SELECT * FROM ".tablename('site_article')." WHERE id = :id" , array(':id' => $id));
  51. $item['type'] = explode(',', $item['type']);
  52. $pcate = $item['pcate'];
  53. $ccate = $item['ccate'];
  54. if (empty($item)) {
  55. itoast('抱歉,文章不存在或是已经删除!', '', 'error');
  56. }
  57. $key = pdo_fetchall('SELECT content FROM ' . tablename('rule_keyword') . ' WHERE rid = :rid AND uniacid = :uniacid', array(':rid' => $item['rid'], ':uniacid' => $_W['uniacid']));
  58. if (!empty($key)) {
  59. $keywords = array();
  60. foreach ($key as $row) {
  61. $keywords[] = $row['content'];
  62. }
  63. $keywords = implode(',', array_values($keywords));
  64. }
  65. $item['credit'] = iunserializer($item['credit']) ? iunserializer($item['credit']) : array();
  66. if (!empty($item['credit']['limit'])) {
  67. $credit_num = pdo_fetchcolumn('SELECT SUM(credit_value) FROM ' . tablename('mc_handsel') . ' WHERE uniacid = :uniacid AND module = :module AND sign = :sign', array(':uniacid' => $_W['uniacid'], ':module' => 'article', ':sign' => md5(iserializer(array('id' => $id)))));
  68. if (is_null($credit_num)) {
  69. $credit_num = 0;
  70. }
  71. $credit_yu = (($item['credit']['limit'] - $credit_num) < 0) ? 0 : $item['credit']['limit'] - $credit_num;
  72. }
  73. } else {
  74. $item['credit'] = array();
  75. $keywords = '';
  76. }
  77. if (checksubmit('submit')) {
  78. if (empty($_GPC['title'])) {
  79. itoast('标题不能为空,请输入标题!', '', '');
  80. }
  81. $sensitive_title = detect_sensitive_word($_GPC['title']);
  82. if (!empty($sensitive_title)) {
  83. itoast('不能使用敏感词:' . $sensitive_title, '', '');
  84. }
  85. $sensitive_content = detect_sensitive_word($_GPC['content']);
  86. if (!empty($sensitive_content)) {
  87. itoast('不能使用敏感词:' . $sensitive_content, '', '');
  88. }
  89. $data = array(
  90. 'uniacid' => $_W['uniacid'],
  91. 'iscommend' => intval($_GPC['option']['commend']),
  92. 'ishot' => intval($_GPC['option']['hot']),
  93. 'pcate' => intval($_GPC['category']['parentid']),
  94. 'ccate' => intval($_GPC['category']['childid']),
  95. 'template' => addslashes($_GPC['template']),
  96. 'title' => addslashes($_GPC['title']),
  97. 'description' => addslashes($_GPC['description']),
  98. 'content' => safe_gpc_html(htmlspecialchars_decode($_GPC['content'], ENT_QUOTES)),
  99. 'incontent' => intval($_GPC['incontent']),
  100. 'source' => addslashes($_GPC['source']),
  101. 'author' => addslashes($_GPC['author']),
  102. 'displayorder' => intval($_GPC['displayorder']),
  103. 'linkurl' => addslashes($_GPC['linkurl']),
  104. 'createtime' => TIMESTAMP,
  105. 'edittime' => TIMESTAMP,
  106. 'click' => intval($_GPC['click'])
  107. );
  108. if (!empty($_GPC['thumb'])) {
  109. if (file_is_image($_GPC['thumb'])) {
  110. $data['thumb'] = $_GPC['thumb'];
  111. }
  112. } elseif (!empty($_GPC['autolitpic'])) {
  113. $match = array();
  114. preg_match('/&lt;img.*?src=&quot;?(.+\.(jpg|jpeg|gif|bmp|png))&quot;/', $_GPC['content'], $match);
  115. if (!empty($match[1])) {
  116. $url = $match[1];
  117. $file = file_remote_attach_fetch($url);
  118. if (!is_error($file)) {
  119. $data['thumb'] = $file;
  120. file_remote_upload($file);
  121. }
  122. }
  123. } else {
  124. $data['thumb'] = '';
  125. }
  126. $keyword = str_replace(',', ',', trim($_GPC['keyword']));
  127. $keyword = explode(',', $keyword);
  128. if (!empty($keyword)) {
  129. $rule['uniacid'] = $_W['uniacid'];
  130. $rule['name'] = '文章:' . $_GPC['title'] . ' 触发规则';
  131. $rule['module'] = 'news';
  132. $rule['status'] = 1;
  133. $keywords = array();
  134. foreach ($keyword as $key) {
  135. $key = trim($key);
  136. if (empty($key)) continue;
  137. $keywords[] = array(
  138. 'uniacid' => $_W['uniacid'],
  139. 'module' => 'news',
  140. 'content' => $key,
  141. 'status' => 1,
  142. 'type' => 1,
  143. 'displayorder' => 1,
  144. );
  145. }
  146. $reply['title'] = $_GPC['title'];
  147. $reply['description'] = $_GPC['description'];
  148. $reply['thumb'] = $data['thumb'];
  149. $reply['url'] = murl('site/site/detail', array('id' => $id));
  150. }
  151. if (!empty($_GPC['credit']['status'])) {
  152. $credit['status'] = intval($_GPC['credit']['status']);
  153. $credit['limit'] = intval($_GPC['credit']['limit']) ? intval($_GPC['credit']['limit']) : itoast('请设置积分上限', '', '');
  154. $credit['share'] = intval($_GPC['credit']['share']) ? intval($_GPC['credit']['share']) : itoast('请设置分享时赠送积分多少', '', '');
  155. $credit['click'] = intval($_GPC['credit']['click']) ? intval($_GPC['credit']['click']) : itoast('请设置阅读时赠送积分多少', '', '');
  156. $data['credit'] = iserializer($credit);
  157. } else {
  158. $data['credit'] = iserializer(array('status' => 0, 'limit' => 0, 'share' => 0, 'click' => 0));
  159. }
  160. if (empty($id)) {
  161. unset($data['edittime']);
  162. if (!empty($keywords)) {
  163. pdo_insert('rule', $rule);
  164. $rid = pdo_insertid();
  165. foreach ($keywords as $li) {
  166. $li['rid'] = $rid;
  167. pdo_insert('rule_keyword', $li);
  168. }
  169. $reply['rid'] = $rid;
  170. pdo_insert('news_reply', $reply);
  171. $data['rid'] = $rid;
  172. }
  173. pdo_insert('site_article', $data);
  174. $aid = pdo_insertid();
  175. pdo_update('news_reply', array('url' => murl('site/site/detail', array('id' => $aid))), array('rid' => $rid));
  176. } else {
  177. unset($data['createtime']);
  178. pdo_delete('rule', array('id' => $item['rid'], 'uniacid' => $_W['uniacid']));
  179. pdo_delete('rule_keyword', array('rid' => $item['rid'], 'uniacid' => $_W['uniacid']));
  180. pdo_delete('news_reply', array('rid' => $item['rid']));
  181. if (!empty($keywords)) {
  182. pdo_insert('rule', $rule);
  183. $rid = pdo_insertid();
  184. foreach ($keywords as $li) {
  185. $li['rid'] = $rid;
  186. pdo_insert('rule_keyword', $li);
  187. }
  188. $reply['rid'] = $rid;
  189. pdo_insert('news_reply', $reply);
  190. $data['rid'] = $rid;
  191. } else {
  192. $data['rid'] = 0;
  193. $data['kid'] = 0;
  194. }
  195. pdo_update('site_article', $data, array('id' => $id));
  196. }
  197. itoast('文章更新成功!', url('site/article/display'), 'success');
  198. } else {
  199. template('site/article-post');
  200. }
  201. } elseif($do == 'del') {
  202. if (checksubmit('submit')) {
  203. foreach ($_GPC['rid'] as $key => $id) {
  204. $id = intval($id);
  205. $row = pdo_get('site_article', array('id' => $id, 'uniacid' => $_W['uniacid']));
  206. if (empty($row)) {
  207. itoast('抱歉,文章不存在或是已经被删除!', '', '');
  208. }
  209. if (!empty($row['rid'])) {
  210. pdo_delete('rule', array('id' => $row['rid'], 'uniacid' => $_W['uniacid']));
  211. pdo_delete('rule_keyword', array('rid' => $row['rid'], 'uniacid' => $_W['uniacid']));
  212. pdo_delete('news_reply', array('rid' => $row['rid']));
  213. }
  214. pdo_delete('site_article', array('id' => $id, 'uniacid'=>$_W['uniacid']));
  215. }
  216. itoast('批量删除成功!', referer(), 'success');
  217. } else {
  218. $id = intval($_GPC['id']);
  219. $row = pdo_fetch("SELECT id,rid,kid,thumb FROM ".tablename('site_article')." WHERE id = :id", array(':id' => $id));
  220. if (empty($row)) {
  221. itoast('抱歉,文章不存在或是已经被删除!', '', '');
  222. }
  223. if (!empty($row['rid'])) {
  224. pdo_delete('rule', array('id' => $row['rid'], 'uniacid' => $_W['uniacid']));
  225. pdo_delete('rule_keyword', array('rid' => $row['rid'], 'uniacid' => $_W['uniacid']));
  226. pdo_delete('news_reply', array('rid' => $row['rid']));
  227. }
  228. if (pdo_delete('site_article', array('id' => $id,'uniacid'=>$_W['uniacid']))){
  229. itoast('删除成功!', referer(), 'success');
  230. } else {
  231. itoast('删除失败!', referer(), 'error');
  232. }
  233. }
  234. }