Viewing file: addingNews.inc.php3 (3.49 KB) -rwxr-xr-x Select action/file-type: (+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?
if(checkSuperSession($superSession, $REMOTE_ADDR))
{
include("include/rootGui.inc.php3");
require("$mysqlCall");
$userId = getUserSUId($superSession);
$userInfo = getUserInfo($userId);
if(($userInfo[SuperUser] == 1) && ($userInfo[addNews]==1) && ($userInfo[active]==1))
{
if(strlen($title)==0)
{
print("ERROR <br>Nijeste unijeli naslov.<br><br>");
}
else if(strlen($details)==0)
{
print("ERROR <br>Nijeste unijeli tekst<br><br>");
}
else if($function=="preview")
{
require("$mysqlCall");
if($itemID != 0)
{
require("$mysqlCall");
$query = "SELECT * FROM $topics where Id=\"$itemID\"";
$mysql_result2 = mysql_query($query, $mysql_link);
if($row = mysql_fetch_row($mysql_result2))
{
$imageId = $row[3];
$getImage=1;
}
else
{
print("Something wrong: get image data<br>");
}
}
print("Pregled");
print("<table width=70% border=0 cellpadding=3 cellspacing=0 >");
print("<tr><td bgcolor=$border_colour align=center>");
print("<table width=100% border=0 cellpadding=5 cellspacing=0 >");
printf("<tr>\n");
$prazno=nl2br($details);
print("<td bgcolor=$bgcolour>\n");
print("<h1><u>$title</u></h1>\n");
print("<div align=\"justify\"><p>$slag\n</p></div>");
print("<div align=\"justify\"><p>$prazno\n</p></div>");
print("</td>\n");
print("<td bgcolor=$bgcolour>\n");
/* print("item = $itemID"); */
if($getImage==1)
{
print("<img src=\"imageShow.php3?id=$imageId\">");
}
else
{
print("Nema rubrike");
}
print("</td>\n");
print("</tr>\n");
print("</table>");
print("<tr><td>");
print("</table><br><br>");
include("addNewsTemp.inc.php3");
}
else
{
printf("unosim vijest....");
$details = eregi_replace("'","#",$details);
$insert = "insert into $news values('', '$title', '$details', '$date', '$itemID', '$userId', '$slag')";
print "<br>";
$result = MYSQL_QUERY($insert);
if($result)
{
$extra_headers1 = "From: MINA <mnnews@mnnews.net> \n";
$extra_headers1 .= "MIME-Version: 1.0\n";
$extra_headers1 .= "Content-Type: text/plain; \n";
$extra_headers1 .= " charset=windows-1250";
$body = "<START>\n\n";
$body .= "$date\n\n";
$body .= "*";
$body .= "$slag\n";
$body .= "$title * \n\n";
$body .= "$details\n\n";
$body .= "<END>";
$message = "$body";
include("/home/mnnews/public_html/login/adresefax.inc");
$adresa1 ="$adresa";
$extra_headers = "$extra_headers1";
mail("agencija@mnnews.net", "MINA $date", "$message", "$extra_headers" );
print("That worked :)");
print("<META HTTP-EQUIV=\"Refresh\" CONTENT=\"1; URL=index.php3?mode=listNews&superSession=$superSession\">");
}
else
{
print("Nesto nije u redu");
}
}
}
else
{
print("You do not have access to this function<br><br>");
}
include("include/guiBase.inc.php3");
}
else
{
//session is bad
print("Bad Session ID ($superSession)!<BR>\n");
$superSession = "";
}
?>
|