2 /************************************************************************
3 * Mailer v0.2.1-FINAL Start: 11/14/2003 *
4 * =================== Last change: 11/13/2004 *
6 * -------------------------------------------------------------------- *
7 * File : mailid_top.php *
8 * -------------------------------------------------------------------- *
9 * Short description : Confirmation file for emails *
10 * -------------------------------------------------------------------- *
11 * Kurzbeschreibung : Bestaetigung von Mails *
12 * -------------------------------------------------------------------- *
15 * $Tag:: 0.2.1-FINAL $ *
17 * -------------------------------------------------------------------- *
18 * @TODO Merge this script with mailid.php *
19 * -------------------------------------------------------------------- *
20 * Copyright (c) 2003 - 2009 by Roland Haeder *
21 * Copyright (c) 2009 - 2012 by Mailer Developer Team *
22 * For more information visit: http://mxchange.org *
24 * This program is free software; you can redistribute it and/or modify *
25 * it under the terms of the GNU General Public License as published by *
26 * the Free Software Foundation; either version 2 of the License, or *
27 * (at your option) any later version. *
29 * This program is distributed in the hope that it will be useful, *
30 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
31 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
32 * GNU General Public License for more details. *
34 * You should have received a copy of the GNU General Public License *
35 * along with this program; if not, write to the Free Software *
36 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, *
38 ************************************************************************/
40 // Load security stuff here
41 require('inc/libs/security_functions.php');
44 $GLOBALS['__start_time'] = microtime(true);
46 // Tell everyone we are in this module
47 $GLOBALS['__module'] = 'mailid';
48 $GLOBALS['__output_mode'] = '0';
50 // Disable copyright footer which would be to large for the upper frame
51 $GLOBALS['__copyright_enabled'] = 'N';
53 // Load the required file(s)
54 require('inc/config-global.php');
56 // Set content type and HTTP status
57 setContentType('text/html');
58 setHttpStatus('404 Not Found');
60 // Is the extension mailid active?
61 redirectOnUninstalledExtension('mailid');
63 // Is the extension other active?
64 redirectOnUninstalledExtension('other');
74 if (isGetRequestElementSet('userid')) $userId = bigintval(getRequestElement('userid'));
75 if (isGetRequestElementSet('mailid')) $mailId = bigintval(getRequestElement('mailid'));
76 if (isGetRequestElementSet('bonusid')) $bonusId = bigintval(getRequestElement('bonusid'));
77 if (isGetRequestElementSet('code')) $code = bigintval(getRequestElement('code'));
78 if (isGetRequestElementSet('do')) $do = getRequestElement('do');
80 // 01 2 21 12 2 2 21 1 2210
81 if ((isValidUserId($userId)) && (($mailId > 0) || ($bonusId > 0)) && (!ifFatalErrorsDetected())) {
84 // ... then output header
85 loadIncludeOnce('inc/header.php');
88 // Maybe he wants to confirm an email?
90 $result_main = SQL_QUERY_ESC("SELECT `id`,`link_type` FROM `{?_MYSQL_PREFIX?}_user_links` WHERE `stats_id`=%s AND `userid`=%s LIMIT 1",
91 array($mailId, $userId), __FILE__, __LINE__);
94 } elseif ($bonusId > 0) {
95 $result_main = SQL_QUERY_ESC("SELECT `id`,`link_type` FROM `{?_MYSQL_PREFIX?}_user_links` WHERE `bonus_id`=%s AND `userid`=%s LIMIT 1",
96 array($bonusId, $userId), __FILE__, __LINE__);
101 if (SQL_NUMROWS($result_main) == 1) {
102 // Is the stats id valid?
103 list($lid, $ltype) = SQL_FETCHROW($result_main);
105 // Init result here with invalid to avoid possible missing variable
106 $result_mailid = false;
108 // @TODO Rewrite this to a filter
111 $result_mailid = SQL_QUERY_ESC("SELECT `pool_id`,`userid`,`id` FROM `{?_MYSQL_PREFIX?}_user_stats` WHERE `id`=%s LIMIT 1",
112 array($mailId), __FILE__, __LINE__);
116 $result_mailid = SQL_QUERY_ESC("SELECT `id`,`id`,`is_notify` FROM `{?_MYSQL_PREFIX?}_bonus` WHERE `id`=%s LIMIT 1",
117 array($bonusId), __FILE__, __LINE__);
120 default: // Unknown type
121 reportBug(__FILE__, __LINE__, 'Unknown mail type ' . $ltype . ' detected.');
126 if (SQL_NUMROWS($result_mailid) == 1) {
128 list($pool, $sender, $notify) = SQL_FETCHROW($result_mailid);
130 // Correct notification switch in non-bonus mails
131 if (!in_array($notify, array('Y', 'N'))) {
135 // Set sender to 0 when we have a bonus mail
136 if ($ltype == 'BONUS') {
140 // Is the user id valid?
141 if (fetchUserData($userId) === true) {
142 // Is the user status CONFIRMED?
143 if (getUserData('status') == 'CONFIRMED') {
144 // User has confirmed his account so we can procede...
145 // @TODO Rewrite this to a filter
148 $result = SQL_QUERY_ESC("SELECT `payment_id` FROM `{?_MYSQL_PREFIX?}_user_stats` WHERE `pool_id`=%s LIMIT 1",
149 array(bigintval($pool)), __FILE__, __LINE__);
152 if (SQL_NUMROWS($result) == 1) {
153 list($pay) = SQL_FETCHROW($result);
154 $time = getPaymentData($pay, 'time');
155 $payment = getPaymentData($pay, 'payment');
160 SQL_FREERESULT($result);
164 $result = SQL_QUERY_ESC("SELECT `time`,`points` FROM `{?_MYSQL_PREFIX?}_bonus` WHERE `id`=%s LIMIT 1",
165 array(bigintval($pool)), __FILE__, __LINE__);
168 if (SQL_NUMROWS($result) == 1) {
169 list($time, $payment) = SQL_FETCHROW($result);
174 SQL_FREERESULT($result);
177 default: // Unknown type
178 reportBug(__FILE__, __LINE__, 'Unknown mail type ' . $ltype . ' detected.');
182 // Is this entry valid?
183 if ($isValid === true) {
184 if (($time == '0') && ($payment > 0)) $time = 1;
185 if (($time > 0) && ($payment > 0)) {
188 // Generate code (the user sees in the CAPTCHA)
189 $realCode = generateRandomCode(getCodeLength(), $code, $userId, $urlId);
192 // @TODO Rewrite this to a filter
199 // @TODO Rewrite this to a filter
202 SQL_QUERY_ESC("UPDATE `{?_MYSQL_PREFIX?}_user_stats` SET `clicks`=`clicks`+1 WHERE `id`=%s LIMIT 1",
203 array($mailId), __FILE__, __LINE__);
205 // Update mediadata as well
206 if (isExtensionInstalledAndNewer('mediadata', '0.0.4')) {
208 updateMediadataEntry(array('total_clicks', 'normal_clicks'), 'add', 1);
210 $stats_data = $mailId;
214 SQL_QUERY_ESC("UPDATE `{?_MYSQL_PREFIX?}_bonus` SET `clicks`=`clicks`+1 WHERE `id`=%s LIMIT 1",
215 array($bonusId), __FILE__, __LINE__);
217 // Update mediadata as well
218 if (isExtensionInstalledAndNewer('mediadata', '0.0.4')) {
220 updateMediadataEntry(array('total_clicks', 'bonus_clicks'), 'add', 1);
222 $stats_data = $bonusId;
225 default: // Unknown type
226 reportBug(__FILE__, __LINE__, 'Unknown mail type ' . $ltype . ' detected.');
230 // Export data into constants for the template
231 $content['banner'] = loadTemplate('mailid_banner', true);
233 // Only when user extension = v0.1.2: Update mails-confirmed counter
234 // @TODO Rewrite these blocks to filter
235 if (isExtensionInstalledAndNewer('user', '0.1.2')) {
237 SQL_QUERY_ESC("UPDATE `{?_MYSQL_PREFIX?}_user_data` SET `mails_confirmed`=`mails_confirmed`+1 WHERE `userid`=%s LIMIT 1",
238 array($userId), __FILE__, __LINE__);
240 // Update random confirmed as well?
241 if ((isExtensionInstalledAndNewer('user', '0.3.4')) && (isRandomReferralIdEnabled())) {
242 // Update second counter
243 SQL_QUERY_ESC("UPDATE `{?_MYSQL_PREFIX?}_user_data` SET `rand_confirmed`=`rand_confirmed` + 1 WHERE `userid`=%s LIMIT 1",
244 array($userId), __FILE__, __LINE__);
248 // Insert stats record
249 insertUserStatsRecord($userId, $type, $stats_data);
251 // Right code entered?
252 if (bigintval(postRequestElement('gfx_check')) == $realCode) {
253 // Set HTTP status to okay
254 setHttpStatus('200 OK');
256 // Add points over referral system is the default
257 $template = 'mailid_points_done';
259 // Right code entered add points and remove entry
260 if (ifUserPointsLocked($userId)) {
261 // Don't add points over the referral system
262 $template = 'mailid_points_locked';
265 // Count down ref_payout value
266 SQL_QUERY_ESC("UPDATE `{?_MYSQL_PREFIX?}_user_data` SET `ref_payout`=`ref_payout`-1 WHERE `userid`=%s AND `ref_payout` > 0 LIMIT 1",
267 array($userId), __FILE__, __LINE__);
270 initReferralSystem();
271 addPointsThroughReferralSystem('mailid_okay', $userId, $payment);
273 // Shall I add bonus points for "turbo clickers" ?
274 if (isExtensionInstalledAndNewer('bonus', '0.2.2')) {
275 // Is an active-rallye running and this is not a notification mail?
276 if ((isBonusRallyeActive()) && ($notify != 'Y')) {
277 // Shall I exclude the webmaster's own userid from the active-rallye?
278 if ((((getBonusUserid() == $userId) && (getConfig('bonus_include_own') == 'Y')) || (getBonusUserid() != $userId)) && (getDefRefid() != $userId)) {
279 // Add points and remember ranking are done in this function....
280 addTurboBonus($urlId, $userId, $type);
282 // Set template to mailid_points_done2 which contains a link to the ranking list
283 $template = 'mailid_points_done2';
285 // Different template if user has some mails to confirm
286 if (ifUserPointsLocked($userId)) {
287 $template = 'mailid_points_locked2';
290 // Assign more data for the template
291 $content['userid'] = $userId;
292 $content['type'] = $type;
293 $content['data'] = $urlId;
299 $content['total_points'] = getTotalPoints($userId);
301 // Add payment points
302 $content['points'] = $payment;
305 loadTemplate($template, false, $content);
306 } elseif (isValidUserId($sender)) {
307 // Wrong image code! So add points to sender's account
308 initReferralSystem();
309 addPointsThroughReferralSystem('mailid_payback', $sender, $payment);
311 // Add payment points
312 $content['points'] = $payment;
315 loadTemplate('mailid_points_failed', false, $content);
317 // Add payment points (again)
318 $content['points'] = $payment;
321 loadTemplate('mailid_points_failed2', false, $content);
324 // Remove link from table
325 SQL_QUERY_ESC("DELETE LOW_PRIORITY FROM `{?_MYSQL_PREFIX?}_user_links` WHERE `id`=%s LIMIT 1",
326 array(bigintval($lid)), __FILE__, __LINE__);
330 generateImageOrCode($realCode);
335 // Export data into constants for the template
336 $content['code'] = $code;
337 $content['userid'] = $userId;
338 $content['type'] = $type;
339 $content['data'] = $urlId;
340 $content['banner'] = loadTemplate('mailid_banner', true);
341 if (getCodeLength() > 0) {
343 $content['image'] = generateCaptchaCode($code, $type, $urlId, $userId);
344 $templ = 'mailid_enter_code';
347 $content['gfx'] = $realCode;
348 $templ = 'mailid_confirm_buttom';
352 loadTemplate($templ, false, $content);
355 reportBug(__FILE__, __LINE__, 'No code given.');
360 // Ok, all data is valid and loaded. Finally let's output the timer... :-)
361 // Export data into constants for the template
362 $content['time'] = $time;
363 $content['tim2'] = strlen($time);
364 $content['userid'] = $userId;
365 $content['type'] = $type;
366 $content['data'] = $urlId;
367 $content['rand'] = getRandomTan();
368 $content['banner'] = loadTemplate('mailid_banner', true);
371 loadTemplate('mailid_timer', false, $content);
374 default: // Unknown mode
375 reportBug(__FILE__, __LINE__, 'Unknown mode ' . $do . ' detected.');
379 loadTemplate('admin_settings_unsaved', false, '{--MAIL_ALREADY_CONFIRMED--} (6)');
383 loadTemplate('admin_settings_unsaved', false, '{--MAIL_ALREADY_CONFIRMED--} (5)');
387 loadTemplate('admin_settings_unsaved', false, '{--MAIL_ALREADY_CONFIRMED--} (4)');
391 loadTemplate('admin_settings_unsaved', false, '{--MAIL_ALREADY_CONFIRMED--} (3)');
395 loadTemplate('admin_settings_unsaved', false, '{--MAIL_ALREADY_CONFIRMED--} (2)');
400 SQL_FREERESULT($result_mailid);
402 loadTemplate('admin_settings_unsaved', false, '{--MAIL_ALREADY_CONFIRMED--} (1)');
407 SQL_FREERESULT($result_main);
409 // Insert footer if no image
412 loadIncludeOnce('inc/footer.php');
416 // Really all done here... ;-)