Changeset 140
- Timestamp:
- 09/07/05 20:34:14 (4 years ago)
- Files:
-
- admin.lib.php (modified) (2 diffs)
- admin.php (modified) (2 diffs)
- blog.lib.php (modified) (2 diffs)
Legend:
- Unmodified
- Added
- Removed
- Modified
- Copied
- Moved
admin.lib.php
r139 r140 209 209 //sanitise body 210 210 if (isset($_POST['body']) && trim($_POST['body']) != "") { 211 $body = addslashes(nl2br(trim($_POST['body']))); 211 $body = trim($_POST['body']); 212 if (!$admin->blog->editor) $body = nl2br($body); 213 $body = addslashes($body); 212 214 } else { 213 215 $this->inputError = _("No entry body!"); … … 273 275 //sanitise body 274 276 if (isset($_POST['body']) && trim($_POST['body']) != "") { 275 $body = addslashes(nl2br(trim($_POST['body']))); 277 $body = trim($_POST['body']); 278 if (!$admin->blog->editor) $body = nl2br($body); 279 $body = addslashes($body); 276 280 } else { 277 281 $this->inputError = _("No entry body!"); admin.php
r138 r140 24 24 <title>Blog Admin</title> 25 25 <link rel="stylesheet" href="<? echo $admin->httpPath; ?>blog.css" type="text/css" /> 26 <?php 27 if ($admin->blog->editor) { 28 ?> 26 29 <script language="javascript" type="text/javascript" src="<?php echo $admin->httpPath; ?>tinymce/jscripts/tiny_mce/tiny_mce.js"></script> 27 30 <script language="javascript" type="text/javascript" src="<?php echo $admin->httpPath; ?>tinymce-config.js"></script> 31 <?php 32 } 33 ?> 28 34 </head> 29 35 <body> … … 47 53 $_SESSION[debug] = $request[1]; 48 54 } 49 //if log ed in55 //if logged in 50 56 if($_SESSION['userName']) { 51 57 echo "<div class=\"login\"><h3>"._("Hello")." {$admin->realName} (<a href=\"{$admin->adminPath}logout\">"._("Log out")."</a>)</h3></div>"; blog.lib.php
r138 r140 52 52 error(1,"Bad Username"); 53 53 } 54 $sql = db_query("SELECT id, name, title, description, css, moderate from users where username = '".$user."' and enabled = true;");54 $sql = db_query("SELECT id, name, title, description, css, moderate, editor from users where username = '".$user."' and enabled = true;"); 55 55 $sqlNum = db_num_rows($sql); 56 56 if ($sqlNum != 1) { … … 82 82 $this->entryError = ''; 83 83 $this->comment_moderation = ($sqlRow['moderate']=='t') ? TRUE : FALSE; 84 $this->editor = ($sqlRow['editor']=='t') ? TRUE : FALSE; 84 85 $this->entryTags = array('<b>','<i>','<strong>','<em>','<p>','<a>','<img>','<hr>','<br>'); 85 86 $this->currentEntry = "";
