Reset rewritten, SQL fixed, zeros are now numeric
[mailer.git] / inc / mysql-connect.php
1 <?php
2 /************************************************************************
3  * MXChange v0.2.1                                    Start: 11/16/2003 *
4  * ===============                              Last change: 12/13/2004 *
5  *                                                                      *
6  * -------------------------------------------------------------------- *
7  * File              : mysql-connect.php                                *
8  * -------------------------------------------------------------------- *
9  * Short description : Connects to your database                        *
10  * -------------------------------------------------------------------- *
11  * Kurzbeschreibung  : Verbindet zu Ihrer Datenbank                     *
12  * -------------------------------------------------------------------- *
13  *                                                                      *
14  * -------------------------------------------------------------------- *
15  * Copyright (c) 2003 - 2008 by Roland Haeder                           *
16  * For more information visit: http://www.mxchange.org                  *
17  *                                                                      *
18  * This program is free software; you can redistribute it and/or modify *
19  * it under the terms of the GNU General Public License as published by *
20  * the Free Software Foundation; either version 2 of the License, or    *
21  * (at your option) any later version.                                  *
22  *                                                                      *
23  * This program is distributed in the hope that it will be useful,      *
24  * but WITHOUT ANY WARRANTY; without even the implied warranty of       *
25  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the        *
26  * GNU General Public License for more details.                         *
27  *                                                                      *
28  * You should have received a copy of the GNU General Public License    *
29  * along with this program; if not, write to the Free Software          *
30  * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston,               *
31  * MA  02110-1301  USA                                                  *
32  ************************************************************************/
33
34 // Some security stuff...
35 if (ereg(basename(__FILE__), $_SERVER['PHP_SELF'])) {
36         $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php";
37         require($INC);
38 }
39
40 // CFG: DEBUG-SQL (if enabled and DEBUG_MODE is enabled all SQL queries will be logged to debug.log)
41 define('DEBUG_SQL', false);
42
43 // Default is not a frameset
44 global $isFrameset;
45 $isFrameset = false;
46
47 // Load library
48 require_once(PATH."inc/db/lib.php");
49
50 // Load general functions
51 require_once(PATH."inc/functions.php");  // Non-database functions
52 require_once(PATH."inc/extensions.php");
53 require_once(PATH."inc/language.php");
54
55 // Check if the user setups his MySQL stuff...
56 if ((empty($MySQL['login'])) && (!isBooleanConstantAndTrue('mxchange_installing')) && (!isset($_GET['installing'])) && (isBooleanConstantAndTrue('mxchange_installed'))) {
57         // No login entered and outside installation mode
58         echo "<STRONG>".LANG_WARNING.":</STRONG> ";
59         if (isBooleanConstantAndTrue('mxchange_installed')) {
60                 // You have changed my configuration file!
61                 die(DIE_CONFIG_CHANGED_YOU);
62         } else {
63                 // Please run the installation script (maybe again)
64                 die(DIE_RUN_INSTALL_MYSQL);
65         }
66 } elseif ((!isBooleanConstantAndTrue('mxchange_installing')) && (!isset($_GET['installing'])) && (empty($MySQL['password'])) && (isBooleanConstantAndTrue('warn_no_pass'))) {
67         // No database password entered!!!
68         echo "<STRONG>".LANG_WARNING.":</STRONG> ".WARN_NULL_PASSWORD;
69 }
70
71 // Check if this file is writeable or read-only and warn the user
72 if ((!isBooleanConstantAndTrue('mxchange_installing')) && (isBooleanConstantAndTrue('mxchange_installed'))) {
73         // Check for write-permission for config.php and inc directory
74         if (empty($GLOBALS['module'])) $GLOBALS['module'] = "index";
75         if (($GLOBALS['module'] != "admin") && (isBooleanConstantAndTrue('admin_registered')) && (!isset($_SERVER['WINDIR']))) {
76                 if (is_INCWritable("config"))     ADD_FATAL(FATAL_CONFIG_WRITABLE);
77                 if (is_INCWritable("dummy"))      ADD_FATAL(FATAL_INC_WRITABLE);
78         }
79         $EXT_CSS_FILES = array();
80
81         if ((!empty($MySQL['host'])) && (!empty($MySQL['login'])) && (!empty($MySQL['password'])) && (!empty($MySQL['dbase']))) {
82                 // Connect to DB
83                 global $link;
84                 $link = SQL_CONNECT($MySQL['host'], $MySQL['login'], $MySQL['password'], __FILE__, __LINE__);
85
86                 // Is the link valid?
87                 if (is_resource($link)) {
88                         // Choose the database
89                         global $db;
90                         $db = SQL_SELECT_DB($MySQL['dbase'], $link, __FILE__, __LINE__);
91
92                         // Is it a valid resource?
93                         if ($db === true) {
94                                 // Load more include files
95                                 require_once(PATH."inc/mysql-manager.php"); // Functions which interact with the database
96
97                                 // Load configuration stuff
98                                 $result = SQL_QUERY("SELECT pass_len, points_register, points_ref, least_cats, check_double_email, check_double_pass, admin_notify, url_tlock, test_text, max_tlength, test_subj, autosend_active, max_send, url_blacklist, auto_purge, auto_purge_active, last_update, unconfirmed, profile_lock, online_timeout, mad_timestamp, mad_count, profile_update, send_prof_update, resend_profile_update, code_length, patch_level, patch_ctime, guest_stats, ref_payout, activate_xchange, order_multi_page, display_refid, ip_timeout, allow_direct_pay, config
99 FROM "._MYSQL_PREFIX."_config
100 WHERE config=0
101 LIMIT 1", __FILE__, __LINE__);
102
103                                 if (SQL_NUMROWS($result) == 1) {
104                                         // Load data when previous SQL query did not fail
105                                         if (!is_resource($result)) {
106                                                 // Something went wrong
107                                                 ADD_FATAL(FATAL_CANNOT_LOAD_CONFIG);
108                                                 return;
109                                         } // END - if
110
111                                         // Load the configuration
112                                         $_CONFIG = array_merge($_CONFIG, SQL_FETCHARRAY($result));
113
114                                         // Initialize include-file-pool
115                                         $INC_POOL = array();
116
117                                         // Load "databases" aka static arrays
118                                         require_once(PATH."inc/databases.php");
119
120                                         // Loading patching system is required here...
121                                         require_once(PATH."inc/patch-system.php"); // Initialize patch system
122
123                                         // Functions which are related to themes
124                                         require_once(PATH."inc/theme-manager.php");
125
126                                         // Run daily reset
127                                         require_once(PATH."inc/check-reset.php");
128
129                                         // Load admin include file if he is admin
130                                         if (IS_ADMIN()) {
131                                                 // Administrative functions
132                                                 require_once(PATH."inc/modules/admin/admin-inc.php");
133                                         } // END - if
134
135                                         // Get all values
136                                         if (($CSS != 1) && ($CSS != -1)) {
137                                                 if (empty($GLOBALS['module']))  $GLOBALS['module'] = "empty";
138                                                 if (empty($GLOBALS['what']))    $GLOBALS['what']   = GET_WHAT($GLOBALS['module']);
139                                                 if (empty($GLOBALS['action']))  $GLOBALS['action'] = GET_ACTION($GLOBALS['module'], $GLOBALS['what']);
140                                         } else {
141                                                 // Set action/what to empty
142                                                 $GLOBALS['action'] = "";
143                                                 $GLOBALS['what']   = "";
144                                         }
145
146                                         // Secure and validate user ID from cookie
147                                         UPDATE_LOGIN_DATA();
148
149                                         // Update online list
150                                         UPDATE_ONLINE_LIST($PHPSESSID, $GLOBALS['module'], $GLOBALS['action'], $GLOBALS['what']);
151
152                                         // Load theme name
153                                         $currTheme = GET_CURR_THEME();
154
155                                         // Set default 'what' value
156                                         //* DEBUG */ echo "-".$GLOBALS['module']."/".$GLOBALS['what']."-<br />\n";
157                                         if ((empty($GLOBALS['what'])) && (empty($GLOBALS['action'])) && ($CSS != 1) && ($CSS != -1)) {
158                                                 if ($GLOBALS['module'] == "admin") {
159                                                         // Set 'action' value to 'login' in admin menu
160                                                         $GLOBALS['action'] = GET_ACTION($GLOBALS['module'], $GLOBALS['what']);
161                                                 } elseif (($GLOBALS['module'] == "index") || ($GLOBALS['module'] == "login")) {
162                                                         // Set 'what' value to 'welcome' in guest and member menu
163                                                         $GLOBALS['what'] = "welcome";
164                                                         if (!empty($_CONFIG['index_home'])) $GLOBALS['what'] = $_CONFIG['index_home'];
165                                                 } else {
166                                                         // Anything else like begging link
167                                                         $GLOBALS['what'] = "";
168                                                 }
169                                         } // END - if
170
171                                         // Update sending pool
172                                         if (($CSS != "1") && ($CSS != "-1")) require_once(PATH."inc/pool-update.php"); // Sends out mails in configureable steps
173
174                                         // Load all active extension including language files when not upgrading.
175                                         // Check module for testing and count one click
176                                         $dummy = CHECK_MODULE($GLOBALS['module']);
177                                         if ($dummy == "done") COUNT_MODULE($GLOBALS['module']);
178                                         unset($dummy);
179
180                                         // Shall we activate the exchange?
181                                         if ($_CONFIG['activate_xchange'] > 0) activateExchange();
182                                 } else {
183                                         // If you will read following error message you probably need to contact me (webmaster@mxchange.org)
184                                         // and download the sql-upgrades extension from my server. Please ask me which SQL file(s) you need to
185                                         // import *BEFORE* you import them!
186                                         ADD_FATAL(FATAL_CANNOT_LOAD_CONFIG);
187
188                                         // Reset link and db here, close database first
189                                         SQL_CLOSE($link, __FILE__, __LINE__);
190                                         $link = false; $db = false;
191                                 }
192
193                                 // Free memory
194                                 SQL_FREERESULT($result);
195
196                                 // Generate random number
197                                 if (isset($GLOBALS['userid'])) {
198                                         define('RAND_NUMBER', GEN_RANDOM_CODE(10, mt_rand(10000,32766), $GLOBALS['userid'], ""));
199                                 } else {
200                                         define('RAND_NUMBER', GEN_RANDOM_CODE(10, mt_rand(10000,32766), 0, ""));
201                                 }
202                         } else {
203                                 // Wrong database?
204                                 ADD_FATAL(WRONG_DB_SELECTED);
205                         }
206                 } else {
207                         // No link to database!
208                         ADD_FATAL(NO_DB_LINK);
209                         $db = false;
210                 }
211         } else {
212                 // Maybe you forgot to enter your MySQL data?
213                 ADD_FATAL(MYSQL_DATA_MISSING);
214         }
215 } else {
216         ///////////////////////////////////////////////////
217         // Include neccessary functions for installation //
218         ///////////////////////////////////////////////////
219
220         // Set CONFIG array
221         $_CONFIG = array(
222                 'code_length' => 0
223         );
224
225         // Set other missing variables
226         $link = false; // No database link by default
227
228         // Include required files
229         require_once(PATH."inc/databases.php");
230         require_once(PATH."inc/theme-manager.php");
231
232         // Check if we are in installation routine
233         $installPhp = basename($_SERVER['PHP_SELF']);
234         if (($installPhp != "install.php") && ($CSS != "1") && ($CSS != -1)) {
235                 // Redirect to the installation system
236                 LOAD_URL("install.php");
237         }
238
239         // Double-check installation mode
240         if ((!isBooleanConstantAndTrue('mxchange_installed')) || (!isBooleanConstantAndTrue('admin_registered'))) {
241                 // Check for file permissions
242                 if (!is_INCWritable("config")) {
243                         ADD_FATAL(CONFIG_IS_WRITE_PROTECTED);
244                 }
245                 if (!is_INCWritable("dummy")) {
246                         ADD_FATAL(DUMMY_IS_WRITE_PROTECTED);
247                 }
248                 if (!is_INCWritable(".secret/dummy")) {
249                         ADD_FATAL(SECRET_IS_WRITE_PROTECTED);
250                 }
251         }
252 }
253
254 // Any fatal messages?
255 if (!is_array($FATAL)) $FATAL = array();
256 if (((sizeof($FATAL) > 0) || (!empty($FATAL[0]))) && (isBooleanConstantAndTrue('mxchange_installed')) && (!isBooleanConstantAndTrue('mxchange_installing')) && ($CSS != "1"))
257 {
258         // One or more fatal error(s) occur during connect...
259         include (PATH."inc/header.php");
260         include (PATH."inc/fatal_errors.php");
261         unset($FATAL);
262         include (PATH."inc/footer.php");
263         exit;
264 }
265
266 //
267 ?>