2 /************************************************************************
3 * MXChange v0.2.1 Start: 09/28/2003 *
4 * =============== Last change: 07/13/2004 *
6 * -------------------------------------------------------------------- *
7 * File : what-unlock_emails.php *
8 * -------------------------------------------------------------------- *
9 * Short description : Unlock ordered emails *
10 * -------------------------------------------------------------------- *
11 * Kurzbeschreibung : Werbebuchungen freigeben *
12 * -------------------------------------------------------------------- *
14 * -------------------------------------------------------------------- *
15 * Copyright (c) 2003 - 2008 by Roland Haeder *
16 * For more information visit: http://www.mxchange.org *
18 * This program is free software; you can redistribute it and/or modify *
19 * it under the terms of the GNU General Public License as published by *
20 * the Free Software Foundation; either version 2 of the License, or *
21 * (at your option) any later version. *
23 * This program is distributed in the hope that it will be useful, *
24 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
25 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
26 * GNU General Public License for more details. *
28 * You should have received a copy of the GNU General Public License *
29 * along with this program; if not, write to the Free Software *
30 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, *
32 ************************************************************************/
34 // Some security stuff...
35 if ((ereg(basename(__FILE__), $_SERVER['PHP_SELF'])) || (!IS_ADMIN())) {
36 $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php";
40 // Add description as navigation point
41 ADD_DESCR("admin", basename(__FILE__));
43 // Define some variables
47 $result_main = SQL_QUERY("SELECT id, sender, subject, payment_id, timestamp, url, target_send, cat_id FROM "._MYSQL_PREFIX."_pool WHERE data_type='ADMIN' ORDER BY timestamp", __FILE__, __LINE__);
49 OPEN_TABLE("100%", "admin_content admin_content_align", "");
50 if ((SQL_NUMROWS($result_main) > 0) || (isset($_POST['lock']))) {
51 // Count checked checkboxes
53 if (isset($_POST['sel'])) {
54 // Are there checked boxes?
55 if (count($_POST['sel']) > 0) {
56 // Count now... We use an own function for now
57 $SEL = SELECTION_COUNT($_POST['sel']);
61 if (isset($_POST['accept'])) {
64 foreach ($_POST['sel'] as $id => $value) {
68 // Unlock selected email
69 $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_pool SET data_type='NEW' WHERE id=%s AND data_type='ADMIN' LIMIT 1",
70 array($id), __FILE__, __LINE__);
73 if (SQL_AFFECTEDROWS($link, __FILE__, __LINE__) == 1) {
74 // Order placed in queue... 0 1 2 3 4
75 $result = SQL_QUERY_ESC("SELECT po.url, po.subject, po.sender, pay.payment, po.payment_id
76 FROM "._MYSQL_PREFIX."_pool AS po
77 INNER JOIN "._MYSQL_PREFIX."_payments AS pay
78 ON po.payment_id=pay.id
81 array($id), __FILE__, __LINE__);
84 $DATA = SQL_FETCHARRAY($result);
87 SQL_FREERESULT($result);
89 // Check for bonus extension version >= 0.4.4 for the order bonus
90 if ((GET_EXT_VERSION("bonus") >= "0.4.4") && ($_CONFIG['bonus_active'] == "Y")) {
91 // Add points directly
92 $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_data SET bonus_order=bonus_order+".$_CONFIG['bonus_order']." WHERE userid=%s LIMIT 1",
93 array(bigintval($DATA['sender'])), __FILE__, __LINE__);
95 // Subtract bonus points from system
96 BONUS_POINTS_HANDLER($_CONFIG['bonus_order']);
99 // Check for surfbar extension
100 $msg_user = "MISSING";
101 if (EXT_IS_ACTIVE("surfbar")) {
103 $insertId = SURFBAR_ADMIN_ADD_URL($DATA['url'], $DATA['sender'], $DATA['payment'], $DATA['payment_id']);
105 // Load email template
106 $msg_user = LOAD_EMAIL_TEMPLATE("order_accept_sb", $insertId, $DATA['sender']);
108 // Load email template
109 $msg_user = LOAD_EMAIL_TEMPLATE("order-accept", "", $DATA['sender']);
113 SEND_EMAIL($DATA['sender'], MEMBER_ORDER_ACCEPTED, $msg_user);
118 $MSG = ADMIN_MAILS_ACTIVATED;
121 $MSG = ADMIN_MAILS_NOTHING_CHECKED;
124 // Mails unlocked for mail delivery
125 LOAD_TEMPLATE("admin_settings_saved", false, $MSG);
126 } elseif (isset($_POST['reject'])) {
128 // Reject mail orders
130 foreach ($_POST['sel'] as $id=>$value) {
132 $id = bigintval($id);
134 // Load URL and subject from pool
135 $result = SQL_QUERY_ESC("SELECT url, subject, sender FROM "._MYSQL_PREFIX."_pool WHERE id=%s LIMIT 1",
136 array($id), __FILE__, __LINE__);
139 $DATA = SQL_FETCHARRAY($result);
142 SQL_FREERESULT($result);
144 // Load email template and send it away
145 $msg_user = LOAD_EMAIL_TEMPLATE("order-reject", "", $DATA['sender']);
146 SEND_EMAIL($DATA['sender'], MEMBER_ORDER_REJECTED, $msg_user);
148 // If you do not enter an URL to redirect to, your URL will be set!
149 if ((empty($_POST['redirect'])) || ($_POST['redirect'] == "http://")) $_POST['redirect'] = URL;
152 $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_pool SET url='%s', data_type='NEW' WHERE id=%s LIMIT 1",
153 array($_POST['redirect'], $id),__FILE__, __LINE__);
155 // Prepare data for the row template
159 'url' => $_POST['url'][$id],
162 // Load row template and switch colors
163 $OUT .= LOAD_TEMPLATE("admin_unlock_emails_redir_row", true, $content);
166 define('__URL_ROWS', $OUT);
168 // Load main template
169 LOAD_TEMPLATE("admin_unlock_emails_redir");
172 LOAD_TEMPLATE("admin_settings_saved", false, ADMIN_MAILS_NOTHING_CHECKED);
174 } elseif ((isset($_POST['lock'])) || ($SEL > 0)) {
177 foreach ($_POST['sel'] as $id=>$url) {
178 // Lookup in blacklist
179 $result = SQL_QUERY_ESC("SELECT id FROM "._MYSQL_PREFIX."_url_blist WHERE url='%s' LIMIT 1",
180 array($url), __FILE__, __LINE__);
181 if (SQL_NUMROWS($result) == 0) {
182 // Did not find a record so we can add it... :)
183 $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_url_blist (url, timestamp) VALUES ('%s', UNIX_TIMESTAMP())",
184 array($url), __FILE__, __LINE__);
187 SQL_FREERESULT($result);
192 $MSG = ADMIN_URLS_BLOCKED;
195 $MSG = ADMIN_MAILS_NOTHING_CHECKED;
197 LOAD_TEMPLATE("admin_settings_saved", false, $MSG);
198 } elseif ((empty($_POST['lock'])) && (empty($_POST['accept'])) && (empty($_POST['reject']))) {
199 // Mail orders are in pool so we can display them
201 while (list($id, $sender, $subj, $pay, $time, $url, $tsend, $cat) = SQL_FETCHROW($result_main))
203 // Prepare data for the template
208 'u_link' => ADMIN_USER_PROFILE_LINK($sender),
209 'subj' => COMPILE_CODE($subj),
210 'tester' => FRAMETESTER($url),
212 'cat_title' => str_replace("\"", """, GET_CATEGORY($cat)),
214 'pay_title' => str_replace("\"", """, GET_PAYMENT($pay, true)),
216 'ordered' => MAKE_DATETIME($time, "2"),
220 // Load row template and switch colors
221 $OUT .= LOAD_TEMPLATE("admin_unlock_emails_row", true, $content);
226 SQL_FREERESULT($result);
227 define('__UNLOCK_ROWS', $OUT);
229 // Prepare rejection URL
231 if (GET_EXT_VERSION("other") >= "0.1.6") $REJECT = $_CONFIG['reject_url'];
232 define('__REJECT_URL', $REJECT);
234 // Load main template
235 LOAD_TEMPLATE("admin_unlock_emails");
238 LOAD_TEMPLATE("admin_settings_saved", false, ADMIN_WRONG_CALL);
241 // No mail orders fond
242 LOAD_TEMPLATE("admin_settings_saved", false, ADMIN_NO_MAILS_IN_POOL);