PageRenderTime 47ms CodeModel.GetById 17ms RepoModel.GetById 0ms app.codeStats 1ms

/source/admincp/admincp_cloudaddons.php

https://github.com/kuaileshike/upload
PHP | 186 lines | 171 code | 9 blank | 6 comment | 54 complexity | 8cae58cb81ba8b3a6c0e8873d5e6f914 MD5 | raw file
  1. <?php
  2. /**
  3. * [Discuz!] (C)2001-2099 Comsenz Inc.
  4. * This is NOT a freeware, use is subject to license terms
  5. *
  6. * $Id: admincp_cloudaddons.php 31997 2012-10-30 06:58:12Z monkey $
  7. */
  8. if(!defined('IN_DISCUZ') || !defined('IN_ADMINCP')) {
  9. exit('Access Denied');
  10. }
  11. require_once libfile('function/cloudaddons');
  12. cpheader();
  13. if(!$admincp->isfounder) {
  14. cpmsg('noaccess_isfounder', '', 'error');
  15. }
  16. if(!$operation) {
  17. cloudaddons_check();
  18. shownav('cloudaddons');
  19. $extra = '';
  20. if(!empty($_GET['id'])) {
  21. $extra .= '&mod=app&ac=item&id='.rawurlencode($_GET['id']);
  22. }
  23. if(!empty($_GET['extra'])) {
  24. $extra .= '&'.$_GET['extra'];
  25. }
  26. $url = cloudaddons_url($extra);
  27. echo '<script type="text/javascript">location.href=\''.$url.'\';</script>';
  28. } elseif($operation == 'download') {
  29. $step = intval($_GET['step']);
  30. $addoni = intval($_GET['i']);
  31. $uniqueid = $_G['setting']['siteuniqueid'] ? $_G['setting']['siteuniqueid'] : C::t('common_setting')->fetch('siteuniqueid');
  32. if(!$_GET['md5hash'] || md5($_GET['addonids'].md5($uniqueid.$_GET['timestamp'])) != $_GET['md5hash']) {
  33. cpmsg('cloudaddons_validator_error', '', 'error');
  34. }
  35. $addonids = explode(',', $_GET['addonids']);
  36. list($_GET['key'], $_GET['type'], $_GET['rid']) = explode('.', isset($addonids[$addoni]) ? $addonids[$addoni] : $addonids[0]);
  37. if($step == 0) {
  38. cpmsg('cloudaddons_downloading', "action=cloudaddons&operation=download&addonids=$_GET[addonids]&i=$addoni&step=1&md5hash=".$_GET['md5hash'].'&timestamp='.$_GET['timestamp'], 'loading', array('addonid' => $_GET['key'].'.'.$_GET['type']), FALSE);
  39. } elseif($step == 1) {
  40. $packnum = 0;
  41. $tmpdir = DISCUZ_ROOT.'./data/download/'.$_GET['rid'];
  42. dir_clear($tmpdir);
  43. dmkdir($tmpdir, 0777, false);
  44. $end = '';
  45. $md5total = '';
  46. $md5s = array();
  47. do {
  48. $data = cloudaddons_open('&mod=app&ac=download&rid='.$_GET['rid'].'&packnum='.$packnum);
  49. $_GET['importtxt'] = $data;
  50. $array = getimportdata('Discuz! File Pack');
  51. if(!$array['Status']) {
  52. if($array['type'] != $_GET['type'] || $array['key'] != $_GET['key'] || !$array['files']) {
  53. dir_clear($tmpdir);
  54. cloudaddons_faillog($_GET['rid'], 100);
  55. cpmsg('cloudaddons_download_error', '', 'error', array('ErrorCode' => 100));
  56. }
  57. foreach($array['files'] as $file => $data) {
  58. $filename = $tmpdir.'/'.$file.'._addons_';
  59. $dirname = dirname($filename);
  60. dmkdir($dirname, 0777, false);
  61. $fp = fopen($filename, !$data['Part'] ? 'w' : 'a');
  62. if(!$fp) {
  63. cloudaddons_faillog($_GET['rid'], 101);
  64. cpmsg('cloudaddons_download_write_error', '', 'error');
  65. }
  66. fwrite($fp, gzuncompress(base64_decode($data['Data'])));
  67. fclose($fp);
  68. if($data['MD5']) {
  69. $md5total .= $data['MD5'];
  70. $md5s[$filename] = $data['MD5'];
  71. }
  72. }
  73. } elseif($array['Status'] == 'Error') {
  74. dir_clear($tmpdir);
  75. cloudaddons_faillog($_GET['rid'], $array['ErrorCode']);
  76. cpmsg('cloudaddons_install_error', '', 'error', array('ErrorCode' => $array['ErrorCode']));
  77. } else {
  78. foreach($md5s as $file => $md5) {
  79. if($md5 != md5_file($file)) {
  80. dir_clear($tmpdir);
  81. cloudaddons_faillog($_GET['rid'], 102);
  82. cpmsg('cloudaddons_download_error', '', 'error', array('ErrorCode' => 102));
  83. }
  84. }
  85. $end = rawurlencode(cloudaddons_http_build_query($array));
  86. }
  87. $packnum++;
  88. } while(!$end);
  89. if($md5total !== '' && md5($md5total) !== cloudaddons_md5($_GET['key'].'_'.$_GET['rid'])) {
  90. dir_clear($tmpdir);
  91. cloudaddons_faillog($_GET['rid'], 105);
  92. cpmsg('cloudaddons_download_error', '', 'error', array('ErrorCode' => 105));
  93. }
  94. cpmsg('cloudaddons_installing', "action=cloudaddons&operation=download&addonids=$_GET[addonids]&i=$addoni&end=$end&step=2&md5hash=".$_GET['md5hash'].'&timestamp='.$_GET['timestamp'], 'loading', array('addonid' => $_GET['key'].'.'.$_GET['type']), FALSE);
  95. } elseif($step == 2) {
  96. $tmpdir = DISCUZ_ROOT.'./data/download/'.$_GET['rid'];
  97. if(!file_exists($tmpdir)) {
  98. cloudaddons_faillog($_GET['rid'], 103);
  99. cpmsg('cloudaddons_download_error', '', 'error', array('ErrorCode' => 103));
  100. }
  101. $typedir = array(
  102. 'plugin' => 'source/plugin',
  103. 'template' => 'template',
  104. 'pack' => '.',
  105. );
  106. if(!$typedir[$_GET['type']]) {
  107. cloudaddons_faillog($_GET['rid'], 104);
  108. cpmsg('cloudaddons_download_error', '', 'error', array('ErrorCode' => 104));
  109. }
  110. if($_GET['type'] != 'pack') {
  111. $descdir = DISCUZ_ROOT.$typedir[$_GET['type']].'/';
  112. $subdir = $_GET['key'];
  113. } else {
  114. $descdir = DISCUZ_ROOT;
  115. $subdir = '';
  116. }
  117. $unwriteabledirs = cloudaddons_dirwriteable($descdir, $subdir, $tmpdir);
  118. if($unwriteabledirs) {
  119. if(!submitcheck('settingsubmit')) {
  120. showtips(cplang('cloudaddons_unwriteabledirs', array('basedir' => $typedir[$_GET['type']] != '.' ? $typedir[$_GET['type']] : '/', 'unwriteabledirs' => implode(', ', $unwriteabledirs))));
  121. siteftp_form("cloudaddons&operation=download&addonids=$_GET[addonids]&i=$addoni&end=".rawurlencode($_GET['end'])."&step=2&md5hash=".$_GET['md5hash'].'&timestamp='.$_GET['timestamp']);
  122. exit;
  123. } else {
  124. siteftp_check($_GET['siteftp'], $typedir[$_GET['type']]);
  125. }
  126. }
  127. $descdir .= $subdir;
  128. cloudaddons_comparetree($tmpdir, $descdir, $tmpdir, $_GET['key'].'.'.$_GET['type'], 1);
  129. if(!empty($_G['treeop']['oldchange']) && empty($_GET['confirmed'])) {
  130. cpmsg('cloudaddons_install_files_changed', '', 'form', array('files' => implode('<br />', $_G['treeop']['oldchange'])));
  131. }
  132. cloudaddons_copytree($tmpdir, $descdir);
  133. cloudaddons_savemd5($_GET['key'].'.'.$_GET['type'], $_GET['end'], $_G['treeop']['md5']);
  134. cloudaddons_deltree($tmpdir);
  135. if(count($addonids) - 1 > $addoni) {
  136. $addoni++;
  137. cpmsg('cloudaddons_downloading', "action=cloudaddons&operation=download&addonids=$_GET[addonids]&i=$addoni&step=1&md5hash=".$_GET['md5hash'].'&timestamp='.$_GET['timestamp'], 'loading', array('addonid' => $_GET['key'].'.'.$_GET['type']), FALSE);
  138. }
  139. list($_GET['key'], $_GET['type'], $_GET['rid']) = explode('.', $addonids[0]);
  140. cloudaddons_downloadlog($_GET['key'].'.'.$_GET['type']);
  141. if($_GET['type'] == 'plugin') {
  142. $plugin = C::t('common_plugin')->fetch_by_identifier($_GET['key']);
  143. if(!$plugin['pluginid']) {
  144. dheader('location: '.ADMINSCRIPT.'?action=plugins&operation=import&dir='.$_GET['key']);
  145. } else {
  146. dheader('location: '.ADMINSCRIPT.'?action=plugins&operation=upgrade&pluginid='.$plugin['pluginid']);
  147. }
  148. } elseif($_GET['type'] == 'template') {
  149. dheader('location: '.ADMINSCRIPT.'?action=styles&operation=import&dir='.$_GET['key']);
  150. } else {
  151. cloudaddons_validator($_GET['key'].'.pack');
  152. cloudaddons_installlog($_GET['key'].'.pack');
  153. if(file_exists(DISCUZ_ROOT.'./data/addonpack/'.$_GET['key'].'.php')) {
  154. dheader('location: '.$_G['siteurl'].'data/addonpack/'.$_GET['key'].'.php');
  155. }
  156. cpmsg('cloudaddons_pack_installed', '', 'succeed');
  157. }
  158. }
  159. }
  160. function dir_clear($dir) {
  161. if($directory = @dir($dir)) {
  162. while($entry = $directory->read()) {
  163. if($entry == '.' || $entry == '..') {
  164. continue;
  165. }
  166. $filename = $dir.'/'.$entry;
  167. if(is_file($filename)) {
  168. @unlink($filename);
  169. } else {
  170. dir_clear($filename);
  171. }
  172. }
  173. $directory->close();
  174. @rmdir($dir);
  175. }
  176. }
  177. ?>