Remove cp1251. Я сильно недооценивал трудолюбие неизвестного кодера.
This commit is contained in:
+4
-4
@@ -37,7 +37,7 @@ if( $url[2] == 'upload' && $u->info['admin'] > 0 ) {
|
||||
}
|
||||
$usrs[$pl['uid']] = $usrs[$pl['uid']]['login'];
|
||||
}
|
||||
$html .= '<a title="'.$usrs[$pl['uid']]."\n".date('d.m.Y H:i',$pl['time']).'" oncontextmenu="if(confirm(\'Вы уверены?\')){ top.location=\'https://new-combats.com/library/upload/'.htmlspecialchars($url[3],NULL,'cp1251').'/delete/'.$pl['id'].'/\'; }return false;" target="_blank" href="https://new-combats.com/ui/'.$pl['img'].'.'.$pl['type'].'"><img src="https://new-combats.com/ui/'.$pl['img'].'.'.$pl['type'].'" class="imgo"></a>';
|
||||
$html .= '<a title="'.$usrs[$pl['uid']]."\n".date('d.m.Y H:i',$pl['time']).'" oncontextmenu="if(confirm(\'Вы уверены?\')){ top.location=\'https://new-combats.com/library/upload/'.htmlspecialchars($url[3],NULL).'/delete/'.$pl['id'].'/\'; }return false;" target="_blank" href="https://new-combats.com/ui/'.$pl['img'].'.'.$pl['type'].'"><img src="https://new-combats.com/ui/'.$pl['img'].'.'.$pl['type'].'" class="imgo"></a>';
|
||||
}
|
||||
$i++;
|
||||
}
|
||||
@@ -140,7 +140,7 @@ if( $url[2] == 'upload' && $u->info['admin'] > 0 ) {
|
||||
<div class="lib-txt">
|
||||
<?
|
||||
if(isset($_POST['save']) && isset($u->info['id'])) {
|
||||
$_POST['lib_title'] = htmlspecialchars($_POST['lib_title'],NULL,'cp1251');
|
||||
$_POST['lib_title'] = htmlspecialchars($_POST['lib_title'],NULL);
|
||||
$mbpage_last = mysql_fetch_array(mysql_query('SELECT `time` FROM `library_content` WHERE `uid` = "'.$u->info['id'].'" ORDER BY `id` DESC LIMIT 1'));
|
||||
|
||||
if( $u->info['molch1'] > time() ) {
|
||||
@@ -225,7 +225,7 @@ if( isset($mbpage['id']) ) {
|
||||
$red500 = false;
|
||||
if( isset($_POST['lib_urlname']) && $_POST['lib_urlname'] != '' && $_POST['lib_urlname'] != $mbpage['url_name'] ) {
|
||||
mysql_query('UPDATE `library_content` SET `delete` = "'.time().'" WHERE `url_name` = "'.$mbpage['url_name'].'" AND `id` != "'.$mbpage['id'].'"');
|
||||
$mbpage['url_name'] = htmlspecialchars($_POST['lib_urlname'],NULL,'cp1251');
|
||||
$mbpage['url_name'] = htmlspecialchars($_POST['lib_urlname'],NULL);
|
||||
mysql_query('UPDATE `library_content` SET `url_name` = "'.mysql_real_escape_string($mbpage['url_name']).'" WHERE `id` = "'.$mbpage['id'].'" LIMIT 1');
|
||||
$red500 = true;
|
||||
}
|
||||
@@ -248,7 +248,7 @@ if( isset($mbpage['id']) ) {
|
||||
$mbpage['title'] = $_POST['lib_title'];
|
||||
$mbpage['text'] = $_POST['con_text'];
|
||||
$mbpage['time'] = time();
|
||||
mysql_query('UPDATE `library_content` SET `time` = "'.time().'",`title` = "'.mysql_real_escape_string(htmlspecialchars($mbpage['title'],NULL,'cp1251')).'",`text` = "'.mysql_real_escape_string($mbpage['text']).'" WHERE `id` = "'.$mbpage['id'].'" LIMIT 1');
|
||||
mysql_query('UPDATE `library_content` SET `time` = "'.time().'",`title` = "'.mysql_real_escape_string(htmlspecialchars($mbpage['title'],NULL)).'",`text` = "'.mysql_real_escape_string($mbpage['text']).'" WHERE `id` = "'.$mbpage['id'].'" LIMIT 1');
|
||||
}
|
||||
}
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user