Code:<?php
/**********************************************/
/* RN Video by Dawg
/* Version 1.2 Beta
/* This should NOT be used in Production Sites
/*Help and Support at http://www.ravenphpscripts.com
/**********************************************/
if (!eregi("admin.php", $_SERVER['PHP_SELF'])) { die ("Access Denied"); }
// $hideleft= "1";
include_once("header.php");
$querystr = "SELECT radminsuper, admlanguage FROM ".$prefix."_authors where aid='$aid'";
$result = $db->sql_query($querystr, $db) or die ("invalied query");
list($radminsuper) = $db->sql_fetchrow($result);
if ($radminsuper==1)
{
switch($op) {
case "admin_video_main":
admin_video_main();
break;
case "add_video_nav":
add_video_nav();
break;
case "edit_bottom_nav":
edit_bottom_nav();
break;
case "Sanitizer":
Sanitizer();
break;
case "add_video":
add_video();
break;
case "add_video2":
add_video2();
break;
case "edit_video":
edit_video();
break;
case "edit_video2":
edit_video2();
break;
case "edit_video3":
edit_video3();
break;
case "admin_category_display":
admin_category_display();
break;
case "admin_category_delete":
admin_category_delete();
break;
case "admin_category_edit":
admin_category_edit();
break;
case "admin_category_edit2":
admin_category_edit2();
break;
case "admin_category_add":
admin_category_add();
break;
case "admin_category_add2":
admin_category_add2();
break;
}
}
else {
OpenTable();
echo "<center>
<font size='3'>Sorry Dude, You Do NOT have Permission to use this feature</font>
<br /><br />
<font size='3'>Contact your Site Admin to be included in this Group</font>
<br /><br />
<a href='modules.php?name=RN_Video'><font size='3'>RN Video Main Page</font></a>
</center>";
CloseTable();
include('footer.php');
}
admin_video_main();
function test()
{
global $admin, $bgcolor2, $prefix, $db,$user,$cookie,$nukeuser;
include_once("header.php");
OpenTable();
?>
<br /><hr width='80%' />
<div align="center">
<p><strong><font size="5"><br />
<font color="#0000FF">Howdy </font></font></strong></p>
<p><img src="modules/RN_Video/images/RN_Video.png" width="400" height="294" /></p>
<p><strong><font color="#0000FF" size="5">Pick a Link above to get started </font></strong><br />
</p>
</div>
<?
CloseTable();
include('footer.php');
}
///////////////// Sanitizer Start ////////////////
function Sanitizer($variable)
{
$variable=trim($variable);
$variable=strip_tags($variable);
$variable=htmlentities($variable);
$variable=addslashes($variable);
return $variable;
}
///////////////// Sanitizer Finish ////////////////
////////////////////////// Admin Nav /////////////////
function add_video_nav() {
?>
<center>
<a href='admin.php?op=admin_video_main'><font size='3'>Video Admin Home</font></a>
|
<a href='admin.php?op=add_video'><font size='3'>Add Video</font></a>
|
<a href='admin.php?op=edit_video'><font size='3'>Edit Videos</font></a>
|
<a href='admin.php?op=edit_video'><font size='3' color='#ff0000'>Delete Videos</font></a>
<br /><br />
<a href='admin.php?op=admin_category_display'><font size='3'>Display Category</font></a>
|
<a href='admin.php?op=admin_category_add'><font size='3'>Add Category</font></a>
|
<a href='admin.php?op=admin_category_display'><font size='3'>Edit Category</font></a>
|
<a href='admin.php?op=admin_category_display'><font size='3' color='#ff0000'>Delete Category</font></a>
</center>
<?
}
////////////////////////// Edit Bottom Nav /////////////////
function edit_bottom_nav() {
echo "<center>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_video_main'><font color='#ff0000'><b>Video Home</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_video_main&op=add_video'><font color='#ff0000'><b>Add A Video</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_video_main&op=edit_video'><font color='#ff0000'><b>Edit A Video</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_video_main&op=user_edit_video'><font color='#ff0000'><b>Return to Main Admin Page</b></font></a>";
echo "<br /><br />";
echo "</center>";
}
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
// ADMIN VIDEO MAIN //
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
function admin_video_main() {
global $admin, $bgcolor2, $prefix, $db,$user,$cookie,$nukeuser;
include_once("header.php");
OpenTable();
?>
<br /><hr width='80%' />
<?
add_video_nav();
?>
<div align="center">
<p><strong><font size="5"><br />
<font color="#0000FF">Welcome to the Video Admin Area </font></font></strong></p>
<p><img src="modules/RN_Video/images/RN_Video.png" width="400" height="294" /></p>
<p><strong><font color="#0000FF" size="5">Pick a Link above to get started </font></strong><br />
</p>
</div>
<hr width='80%' /><br />
<center>
<font size='1'>Page generated in <? $end=microtime();$lapsus=($end-$start); echo $lapsus; ?> seconds
<br />
</center>
</td>
</tr>
</table>
<?
CloseTable();
include('footer.php');
}
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
// Add Video //
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
function add_video() {
global $user,$cookie,$prefix,$nukeuser,$db,$prefix;
cookiedecode($user);
$username = $cookie[1];
list($uid, $username) = explode(":", $nukeuser);
OpenTable();
?>
<br /><hr width='80%' />
<?
add_video_nav();
?>
<table width="100%" style="border-collapse:collapse;">
<tr>
<td width="70%" valign="top">
<center><br />
<?
// echo "Username = $username";
// echo "UID = $uid";
$user_id = $uid;
echo "<font size='3' color='#0000ff'><b>Add New Video</b></font>";
echo "<form action='admin.php?op=add_video2' method='post'>";
echo "<font size='3'>TITLE</font>";
echo "<br />";;
echo "<input type='text' name='title' size='50' maxlength='50' />";
echo " <font color='#ff0000'>";
echo "<br />";
echo "50 char max</font>";
echo "<br /><br />";
echo "<font size='3'>YOUTUBE EMBED CODE</font>";
echo "<br />";
echo "<textarea cols='60' rows='7' name='code'></textarea>";
echo "<br /><br />";
echo "<font size='3'>Insert this video into category</font>";
echo "<br />";
$query="SELECT * FROM ".$prefix."_rnvideo_category ORDER BY catid DESC";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
$category=$row['category'];
$or=1;
for($i=0; $i < count($category); $i++)
{
if($or > 6){echo "<br /><br />";$or=1;}
echo "<input type='radio' name='category' value='$category' />$category";
//echo "<input type='radio' name='category' value='$category[$i]'> ".strtoupper($category[$i])."";
echo " ";
$or++;
}
}
echo "<br />";
echo "<input type='hidden' name='user_id' value='$user_id' />";
echo "<input type='hidden' name='action' value='Insert_Video' />";
echo "<br />";
echo "<center><input type='submit' value='Insert Video' /></center>";
echo "</form>";
?>
</center> </td>
</tr>
</table>
<br /><hr width='80%' /><br />
<center>
<font size='1'>Page generated in <? $end=microtime();$lapsus=($end-$start); echo $lapsus; ?> seconds
<br />
<font color='#ff0000'><? $time=date("D, d M Y - H:i");echo $time; ?> Server Time</font>
</center>
</td>
</tr>
</table>
<?
CloseTable();
include('footer.php');
}
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
// Add Video 2 //
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
function add_video2() {
global $gid, $admingid,$db,$prefix;
include_once("header.php");
OpenTable();
$action=Sanitizer($_POST['action']);
if($action=="Insert_Video")
{
echo "<center>";
echo "<font size='3' color='#0000ff'><b>Attemping to Insert Video</b></font>";
echo "<br />";
echo "<br />";
$title=Sanitizer($_POST['title']);
echo "<font size='3' color='#0000ff'><b>$title</b></font>";
echo "<br />";
echo "<br />";
if(empty($title))
{
echo "<center><font size='3' color='#0000ff'>You Forgot to add a Title</font><br /><br /><font size='3' color='#ff0000'><b>So Sorry...Try Again</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
if(strlen($title) > 50 )
{
echo "<center>TITLE SIZE TOO LARGE ( only titles of 50 chars. max. allowed )<br /><font color='#ff0000'><b>TRY AGAIN, PLEASE</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
$censored_word= array('f***', 'bitch', 'whore', 'suck', 'harlot', 'cock', 'boobs', 'teats', 'ass', 'cunt');
if(in_array($title, $censored_word))
{
echo "<center><font size='3' color='#0000ff'>Censored word<br />Play Nice Please!</font><br /><br /><font size='3' color='#ff0000'><b>So Sorry...Try Again</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
for ($i = 0; $i < strlen($title); $i++)
{
if (!eregi("[- _ . a-zA-Z0-9]" , $title[$i] ) )
{
echo "<center>";
echo "<font color='#ff0000'>WARNING !! INCORRECT TITLE</font>";
echo "<br />";
echo "<font size='3' color='#0000ff'>That is an Invalid symbol";
echo "<br />";
echo "<font size='4' color='#ff0000'><b>$title[$i]</b></font>";
echo " <br />";
echo "Only Letters and Numbers are allowed";
echo "<br /></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
}
}
////////////////////////////// ADD VIDEO ERRORS ///////////////////////////////////////////
$code=$_POST['code'];
$code= stristr($code, "http://www.youtube.com/v/");
// echo "<br />";
// echo "Code 2 = $code";
// echo "<br />";
$code= str_replace("http://www.youtube.com/v/","",$code);
$code= str_replace("&hl","",$code);
// echo "<br />";
// echo "Code 3 = $code";
// echo "<br />";
$code= explode('&',$code);
// echo "<br />";
// echo "Code 4 = $code";
// echo "<br />";
$code=Sanitizer($code['0']);
$code2=Sanitizer($code['1']);
$category=Sanitizer($_POST['category']);
$video=Sanitizer($_POST['video']);
// echo "<br />";
// echo "Code 5-0 = $code";
// echo "<br />";
// echo "Code 5-1 = $code2";
// echo "<br />";
//edit_bottom_nav();
////////////////////////////// NO VIDEO SUBMITTED ///////////////////////////////////////////
if(empty($code))
{
echo "<center><font size='3' color='#0000ff'>You Forgot Something...<br />The Embed Code</font><br /><br /><font size='3' color='#ff0000'><b>So Sorry...Try Again</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
////////////////////////////// VIDEO ALREADY EXISTS ///////////////////////////////////////////
$query="SELECT video FROM ".$prefix."_rnvideo WHERE code='$code'";
$result=$db->sql_query($query);
if($db->sql_numrows($result)==1)
{
echo "<br /><br />";
echo "<center><font size='3' color='#0000ff'>Video Already Exists<br />Sorry Dude</font><br /><br /><font size='3' color='#ff0000'><b>Please Try Again</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
////////////////////////////// NO CATEGORY ///////////////////////////////////////////
$category=Sanitizer($_POST['category']);
if(empty($category))
{
echo "<center><font size='3' color='#0000ff'>No Category Selected<br />You MUST pick a Category</font><br /><br /><font size='3' color='#ff0000'><b>So Sorry...Try Again</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
////////////////////////////// NO CATEGORY ///////////////////////////////////////////
$query="SELECT * FROM ".$prefix."_rnvideo_category WHERE category='$category'";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
//$category=$row['category'];
}
// echo "Category =$category";
// echo "<br /><br />";
// echo "Title = $title";
// echo "<br /><br />";
// echo "Code = $code";
// echo "<br /><br />";
$query="SELECT * FROM ".$prefix."_rnvideo_category WHERE category='$category'";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
$category=$row['category'];
}
$now = time();
$user_id=Sanitizer($_POST['user_id']);
// echo "User_Id = $user_id";
// echo "CatID = $catid";
// echo "<br /><br />";
// echo "Category = $category";
// echo "<br /><br />";
$queryup="INSERT INTO ".$prefix."_rnvideo SET category='$catid',title='$title',code='$code',time='$now',aut='1',user_id='$user_id'";
$resultup=$db->sql_query($queryup) or die(mysql_error());
echo "<br /><br />";
echo "<center><font size='3' color='#0000ff'>WOOT WOOT<br />New Video Inserted</font><br /><br /><font size='3' color='#ff0000'><b>Thank You for Sharing</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
// Edit VIDEO //
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
function edit_video() {
global $gid, $admingid,$db,$prefix,$uid,$username;
include_once("header.php");
OpenTable();
?>
<br /><hr width='80%' />
<?
// echo "User ID = $uid";
// $user_id = $uid;
add_video_nav();
$action=Sanitizer($_POST['action']);
$action= $_POST['action'];
if($action=="Disallow")
{
$video=$_POST['video'];
$query="UPDATE ".$prefix."_rnvideo SET aut='0' WHERE video='$video'";
$result=$db->sql_query($query) or die(mysql_error());
echo "<center>";
echo "<br /><br />";
echo "<font size='3'>Video number <b>$video</b> Has been Suspended</font>";
echo "<br /><br />";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
if($action=="Readmit")
{
$video=$_POST['video'];
$query="UPDATE ".$prefix."_rnvideo SET aut='1' WHERE video='$video'";
$result=$db->sql_query($query) or die(mysql_error());
echo "<center>";
echo "<br /><br />";
echo "<font size='3'>Video number <b>$video</b> Has been Readmited</font>";
echo "<br /><br />";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
if($action=="Delete_Video")
{
$video=$_POST['video'];
$query="DELETE FROM ".$prefix."_rnvideo WHERE video='$video'";
$result=$db->sql_query($query) or die(mysql_error());
echo "<br /><br />";
echo "<center><font size='3'>Video number <b>$video</b> Has been Deleted</font></center>";
echo "<br /><br />";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
////////////////////// End Delete Video Video ///////////////////////////
////////////////////// Start Edit Video ///////////////////////////
if($action=="edit")
{
$video=$_POST['video'];
//echo $video;
?>
<br /><br />
<CENTER>
<TABLE width="100%" style="border-collapse:collapse;">
<TR>
<TD width="70%" valign="top">
<center>
<?
$query="SELECT * FROM ".$prefix."_rnvideo WHERE video=$video";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$video=$row['video'];
$category=$row['category'];
$title=$row['title'];
$code=$row['code'];
$counter=$row['counter'];
$aut=$row['aut'];
}
//echo $code;
echo "<font size='3' color='#0000ff'><b>Editing Video #$video<br />$title</b></font>";
echo "<br />";
//echo "<font size='3'><b>Category $category</b></font>";
//echo "<br />";
echo "<form action='modules.php?name=RN_Video&file=user_admin&op=user_edit_video3' method='post'>";
echo "<font size='3'>Title</font><br />";
echo "<input type='hidden' name='video' value='$video'";
echo "TITLE";
echo "<br />";
echo "<input type='text' name='title' size='30' maxlength='50' value='$title' />";
echo " <font color='#ff0000'>";
echo "<br />";
echo "50 char max</font>";
echo "<br /><br />";
echo "<font size='3'>Paste YouTube Embed Code Below</font>";
echo "<br />";
echo "<textarea cols='60' rows='7' name='code'>$code</textarea>";
echo "<br /><br />";
echo " <font size='3'>Insert this video into category</font>";
echo "<br />";
$category2=$category;
//echo "Category 2_1 = $category";
$query="SELECT * FROM ".$prefix."_rnvideo_category ORDER BY catid DESC";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
$category=$row['category'];
$or=1;
for($i=0; $i < count($category); $i++)
{
if($or > 6){echo "<br /><br />";$or=1;}
echo "<input type='radio' name='category' value='$category' />";
if ($category2==$catid){
echo "checked";
}
echo "><font size='3'>$category</font>";
echo " ";
$or++;
}
}
echo "<br />";
//echo $video;
echo "<input type='hidden' name='video' value='$video' />";
echo "<input type='hidden' name='action' value='Insert_Video' />";
echo "<br />";
echo "<center><input type='submit' value='Edit Video' /></center>";
echo "</form>";
?>
</center>
</TD>
</TR>
</TABLE>
</CENTER>
<br /><hr width='80%' /><br />
</td>
</tr>
</table>
<?
edit_bottom_nav();
CloseTable();
include('footer.php');
}
////////////////////// Start Edit Video ///////////////////////////
// echo "User ID = $uid";
$user_id = $uid;
// echo "User ID = $user_id";
$query="SELECT video FROM ".$prefix."_rnvideo ORDER BY video DESC";
$result= $db->sql_query($query);
$rows=$db->sql_numrows($result);
$ppp=10;
$nop= ceil($rows / $ppp);
echo "<p><font size='2'>Page : </font>";
for ($i = 1 ; $i <= $nop ; $i++)
{
echo " <a href='./admin.php?op=admin_video_main&op=edit_video&page=$i'><font size=2> $i </font></a> ";
}
echo "</p>";
if (isset($_GET['page'])){$page = $_GET['page'];}else{$page = 1;}
$start= ($page - 1) * $ppp;
$query="SELECT * FROM ".$prefix."_rnvideo ORDER BY video DESC LIMIT $start,$ppp";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$video=$row['video'];
$category=$row['category'];
$title=$row['title'];
$code=$row['code'];
$counter=$row['counter'];
$aut=$row['aut'];
$query2="SELECT * FROM ".$prefix."_rnvideo_category WHERE catid='$category'";
$result2=$db->sql_query($query2);
while($row2=$db->sql_fetchrow($result2))
{
$category2=$row2['category'];
}
?>
<div align="center">
<TABLE width='90%' border='1' bordercolor='#0000ff' style='border-collapse:collapse;' cellpadding='5'>
<TR>
<TD width='20%' valign='middle'>
<center>
<a href="modules.php?name=RN_Video&file=most_player&video=<? echo $video; ?>" rel="gb_page_center[640, 425]" title="<? echo $title; ?>" rev="width: 700px; height: 410px; scrolling: no;">Video ID<font color='#ff0000'><? echo $video; ?></a>
</TD>
<TD width='70%' valign='middle'>
<center>
<table border='0' bordercolor='#0000ff' style='border-collapse:collapse;'>
<tr>
<td valign="middle">
<center>
<a href="modules.php?name=RN_Video&file=most_player&video=<? echo $video; ?>" rel="gb_page_center[640, 425]" title="<? echo $title; ?>" rev="width: 700px; height: 410px; scrolling: no;">
<?
echo "Title = ".strtoupper($title)."";
echo "<br />";
echo "<br />";
for($i=1;$i < 5;$i++)
{
if(file_get_contents("http://i$i.ytimg.com/vi/$code/default.jpg"))
{
?>
<a href="modules.php?name=RN_Video&file=most_player&video=<? echo $video; ?>" rel="gb_page_center[640, 425]" title="<? echo $title; ?>" rev="width: 700px; height: 410px; scrolling: no;"><img src='http://i<? echo $i; ?>.ytimg.com/vi/<? echo $code; ?>/default.jpg' width='175' /></a>
<?
echo "<br />";
echo "<br />";
echo "CatID= $category";
echo "<br />";
echo "Category = $category2";
echo "<br />";
Break;
}
}
?>
<br />
<font size='2' color='#ff0000'><b><? echo $counter; ?></b></font> <font size='2'>Views
</a>
</td></tr></table>
</TD>
<?if($aut==1){?>
<TD>
<center>
<form action='admin.php?op=edit_video&action=Disallow' method='post'>
<input type='hidden' name='action' value='Disallow' />
<input type='hidden' name='video' value='<? echo $video; ?>' />
<input type='submit' name='submit' value='Disallow' />
</form>
</center>
</TD>
<?}else{?>
<TD>
<center>
<form action='admin.php?op=edit_video&action=Readmit' method='post'>
<input type='hidden' name='action' value='Readmit' />
<input type='hidden' name='video' value='<? echo $video; ?>' />
<input type='submit' name='submit' value='Readmit' />
</form>
</center>
</TD>
<?}?>
<TD>
<center>
<form action='admin.php?op=edit_video&action=edit' method='post'>
<input type='hidden' name='action' value='edit' />
<input type='hidden' name='video' value='<? echo $video; ?>' />
<input type='submit' name='submit' value='edit' />
</form>
</center>
</TD>
<TD>
<center>
<form action='admin.php?op=edit_video&action=Delete' method='post'>
<input type='hidden' name='action' value='Delete_Video' />
<input type='hidden' name='video' value='<? echo $video; ?>' />
<input type='submit' name='submit' value='Delete' />
</form>
</center>
</TD>
</TR>
</TABLE>
</div>
<br />
<?
}
echo "<p>";
echo "Page ";
for ($i = 1 ; $i <= $nop ; $i++)
{
echo " <a href='./admin_edit_videos.php?page=$i'><font size=2> $i </font></a> ";
}
echo "</p>";
?>
<br /><hr width='80%' /><br />
<center>
<font size='1'>Page generated in <? $end=microtime();$lapsus=($end-$start); echo $lapsus; ?> seconds
<br />
<font color='#ff0000'><? $time=date("D, d M Y - H:i");echo $time; ?> Server Time</font>
</center>
<?
CloseTable();
include('footer.php');
}
////////////////////// End Edit Video ///////////////////////////
////////////////////// End Edit Video 2///////////////////////////
function edit_video2() {
global $user,$cookie,$prefix,$nukeuser,$db,$prefix;
cookiedecode($user);
$username = $cookie[1];
list($uid, $username) = explode(":", $nukeuser);
?>
<br /><hr width='80%' />
<?
user_add_video_nav();
?>
<table width="100%" style="border-collapse:collapse;">
<tr>
<td width="70%" valign="top">
<center><br />
<?
echo "Username = $username";
echo "UID = $uid";
$user_id = $uid;
echo "<form action='modules.php?name=RN_Video&file=user_admin&op=user_edit_video3' method='post'>";
echo "<font size='3'>TITLE</font>";
echo "<br />";;
echo "<input type='text' name='title' size='50' maxlength='50' />";
echo " <font color='#ff0000'>";
echo "<br />";
echo "50 char max</font>";
echo "<br /><br />";
echo "<font size='3'>YOUTUBE EMBED CODE</font>";
echo "<br />";
echo "<textarea cols='60' rows='7' name='code'></textarea>";
echo "<br /><br />";
echo "<font size='3'>Insert this video into category</font>";
echo "<br />";
$query="SELECT * FROM ".$prefix."_rnvideo_category ORDER BY catid DESC";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
$category=$row['category'];
$or=1;
for($i=0; $i < count($category); $i++)
{
if($or > 6){echo "<br /><br />";$or=1;}
echo "<input type='radio' name='category' value='$category'>$category";
//echo "<input type='radio' name='category' value='$category[$i]'> ".strtoupper($category[$i])."";
echo " ";
$or++;
}
}
echo "<br />";
echo "<input type='hidden' name='user_id' value='$user_id' />";
echo "<input type='hidden' name='action' value='Insert_Video' />";
echo "<br />";
echo "<center><input type='submit' value='Insert Video' /></center>";
echo "</form>";
?>
</center> </td>
</tr>
</table>
<br /><hr width='80%' /><br />
<center>
<font size='1'>Page generated in <? $end=microtime();$lapsus=($end-$start); echo $lapsus; ?> seconds
<br />
<font color='#ff0000'><? $time=date("D, d M Y - H:i");echo $time; ?> Server Time</font>
</center>
</td>
</tr>
</table>
<?
CloseTable();
include('footer.php');
}
////////////////////// End Edit Video 2///////////////////////////
////////////////////// End Edit Video 3///////////////////////////
function edit_video3() {
global $user,$cookie,$prefix,$nukeuser,$db,$prefix;
cookiedecode($user);
$username = $cookie[1];
list($uid, $username) = explode(":", $nukeuser);
include_once("header.php");
$code=$_POST['code'];
// $code=Sanitizer($code);
$title=$_POST['title'];
$title=Sanitizer($title);
$catid=$_POST['catid'];
$catid=Sanitizer($catid);
$video=$_POST['video'];
$video=Sanitizer($video);
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////// This needs to be looked at. Running strister on Code before sanitizer has been through it
if(stristr($code, 'http://www.youtube.com/v/') === FALSE) {
// $code=$_POST['code'];
//$code=Sanitizer($code);
//echo "Code1= $code";
$query="SELECT video FROM ".$prefix."_rnvideo WHERE code='$code'";
$result=$db->sql_query($query);
if(mysql_numrows($result)==1)
{
$catid=Sanitizer($_POST['catid']);
$category=Sanitizer($_POST['category']);
$video=Sanitizer($_POST['video']);
$query="SELECT * FROM ".$prefix."_rnvideo_category WHERE category='$category'";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
$category=$row['category'];
}
$now = time();
// echo "Time = $now";
$queryup="UPDATE ".$prefix."_rnvideo SET category='$catid', title='$title', code='$code', time='$now' WHERE video='$video'";
$resultup=$db->sql_query($queryup) or die(mysql_error());
echo "<center>";
echo "<br /><br />";
echo "<center><font size='3' color='#0000ff'><b>VIDEO $title Edited</b></font><br /><br /><font size='3' color='#ff0000'><b>Thank you for sharing</b></font></center>";
edit_bottom_nav();
CloseTable();
include('footer.php');
}
}
///////////////////////////////////////////////////////// END IF /////////////////////////////////////////////////////
$code=$_POST['code'];
$code= stristr($code, "http://www.youtube.com/v/");
// echo "<br />";
// echo "Code 2 = $code";
// echo "<br />";
$code= str_replace("http://www.youtube.com/v/","",$code);
echo "<br />";
echo "Code 3 = $code";
echo "<br />";
$code= explode('&',$code);
echo "<br />";
echo "Code 4 = $code";
echo "<br />";
$code=Sanitizer($code['0']);
// echo "Code = $code";
///////////////////////////////////////////////////////// END IF /////////////////////////////////////////////////////
$category=Sanitizer($_POST['category']);
echo "Category =$category";
echo "<br /><br />";
echo "Title = $title";
echo "<br /><br />";
echo "Code = $code";
echo "<br /><br />";
echo "Category = $category";
echo "<br /><br />";
echo "Line 160 Code= $code";
echo "<br /><br />";
echo "video = $video";
$query="SELECT video FROM ".$prefix."_rnvideo WHERE video='$video'";
$result=$db->sql_query($query);
if($db->sql_numrows($result)==1)
{
echo "<br /><br />";
echo "CatID = $cat_table";
echo "<br /><br />";
echo "CatID = $category";
echo "<br /><br />";
$query="SELECT * FROM ".$prefix."_rnvideo_category WHERE category='$category'";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
//$category=$row['category'];
}
echo "<br /><br />";
echo "CatID = $catid";
echo "<br /><br />";
echo "Category = $category";
$now = time();
// echo "Time = $now";
$queryup="UPDATE ".$prefix."_rnvideo SET category='$catid', title='$title', code='$code',time='$now' WHERE video='$video'";
$resultup=$db->sql_query($queryup) or die(mysql_error());
echo "<br /><br />";
echo "<a href='admin_add_video.php'><font color='#ff0000'><b>Add A Video</b></font></a>";
echo "<br /><br />";
echo "<a href='admin_edit_videos.php'><font color='#ff0000'><b>Edit A Video</b></font></a>";
echo "<br /><br />";
echo "<a href='admin_main.php'><font color='#ff0000'><b>Return to Main Admin Page</b></font></a>";
echo "</center>";
}
CloseTable();
include('footer.php');
}
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
// Category Admin //
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
function admin_category_display() {
global $gid, $admingid,$db,$prefix;
include_once("header.php");
OpenTable();
?>
<center>
<br />
<font size="3" color = "#0000ff"><b>Edit Categories Administration Page</b></font>
<br /><br />
</center>
<?
add_video_nav();
?>
<br /><hr width='80%' /><br />
<?
$query="SELECT category FROM ".$prefix."_rnvideo_category ORDER BY catid DESC";
$result= $db->sql_query($query);
$rows=$db->sql_numrows($result);
$query="SELECT * FROM ".$prefix."_rnvideo_category ORDER BY catid DESC";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$video=$row['catid'];
$category=$row['category'];
?>
<TABLE width='90%' align = 'center' border='1' bordercolor='#0000ff' style='border-collapse:collapse;' cellpadding='5'>
<TR>
<TD width='20%' valign='middle'>
<center>
<font size="3" color = "#0000ff"><b><? echo $category; ?></b></font>
<br /><font size="1"><b>Category #
<? echo $video; ?></b></font>
</TD>
<TD width='20%' valign='middle'>
<center>
<form action='admin.php?op=admin_category_edit' method='post'>
<input type='hidden' name='action' value='edit_category' />
<input type='hidden' name='category' value='<? echo $category; ?>' />
<input type='submit' name='submit' value='edit' />
</form>
</center>
</TD>
<TD width='20%' valign='middle'>
<center>
<form action='admin.php?op=admin_category_delete' method='post'>
<input type='hidden' name='action' value='Delete_category' />
<input type='hidden' name='category' value='<? echo $category; ?>' />
<input type='submit' name='submit' value='Delete' />
</form>
</center>
</TD>
</TR>
</TABLE>
</CENTER>
<br />
<?
}
?>
<br /><hr width='80%' /><br />
<center>
<font size='1'>Page generated in <? $end=microtime();$lapsus=($end-$start); echo $lapsus; ?> seconds
<br />
<font color='#ff0000'><? $time=date("D, d M Y - H:i");echo $time; ?> Server Time</font>
</center>
<?
CloseTable();
include('footer.php');
}
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
// Category Admin Edit //
/////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
///////////////////////////FUNCTION DELETE CATEGORY////////////////////////////////////////////////////////
function admin_category_delete()
{
global $admin, $bgcolor2, $prefix, $db,$user,$cookie,$nukeuser;
include_once("header.php");
OpenTable();
?>
<center>
<br />
<font size="3" color = "#0000ff"><b>Delete Category Administration Page</b></font>
<br /><br />
</center>
<?
add_video_nav();
$action=Sanitizer($_POST['action']);
if($action=="Delete_category")
{
$category=$_POST['category'];
//echo $category;
$query="DELETE FROM ".$prefix."_rnvideo_category WHERE category='$category'";
$result=$db->sql_query($query) or die(mysql_error());
echo "<center>";
echo "<br /><br />";
echo "<font size='3' color='#0000ff'>Category <b>$category</b> Has been Deleted</font>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_add'><font color='#ff0000'><b>Add a Category</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_display'><font color='#ff0000'><b>Edit Categories</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_display'><font color='#ff0000'><b>Category Admin Page</b></font></a>";
echo "</center>";
}
CloseTable();
include('footer.php');
}
///////////////////////////FUNCTION Edit Categories////////////////////////////////////////////////////////
function admin_category_edit()
{
global $admin, $bgcolor2, $prefix, $db,$user,$cookie,$nukeuser;
include_once("header.php");
OpenTable();
?>
<center>
<br />
<font size="3" color = "#0000ff"><b>Edit Category Administration Page</b></font>
<br /><br />
</center>
<?
add_video_nav();
echo "<br /><hr color='#0000ff' width='80%'><br />";
$action=Sanitizer($_POST['action']);
if($action=="edit_category")
{
$category=$_POST['category'];
$query="SELECT * FROM ".$prefix."_rnvideo_category WHERE category='$category'";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
$category=$row['category'];
}
//echo $catid;
echo "<form action='admin.php?op=admin_category_edit2' method='post'><center>";
echo "<font size='3' color='#0000ff'><b>Edit Category</b></font>";
echo "<br /><br />";
echo "<input type='text' name='category' size='50' maxlength='50' value='$category' />";
echo "<br /><font size='2' color='#ff0000'><b>50 char max</b></font><br />";
echo "<input type='hidden' name='action' value='Edit_Category2' />";
echo "<input type='hidden' name='catid' value='$catid' />";
echo "<br />";
echo "<center><input type='submit' value='Edit Category' /></center>";
echo "</form>";
echo "<br /><hr color='#0000ff' width='80%'><br />";
}
CloseTable();
include('footer.php');
}
///////////////////////////FUNCTION Edit Category2////////////////////////////////////////////////////////
function admin_category_edit2()
{
global $admin, $bgcolor2, $prefix, $db,$user,$cookie,$nukeuser;
include_once("header.php");
OpenTable();
?>
<center>
<br />
<font size="3" color = "#0000ff"><b>Edit Category Administration Page</b></font>
<br /><br />
</center>
<?
add_video_nav();
echo "<br /><hr color='#0000ff' width='80%'><br />";
$action=Sanitizer($_POST['action']);
if($action=="Edit_Category2")
{
//echo $action;
$category=$_POST['category'];
$catid=$_POST['catid'];
// echo "<br />";
// echo "Category = $category";
// echo "<br />";
// echo "CatID = $catid";
// echo "<br />";
$query="UPDATE ".$prefix."_rnvideo_category SET `category` = '$category' WHERE `catid` =$catid";
$result=$db->sql_query($query);
while($row=$db->sql_fetchrow($result))
{
$catid=$row['catid'];
$category=$row['category'];
}
echo "<center>";
echo "<font size='3' color='#0000ff'>Category <b>$category</b> Has been Edited</font>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_add'><font color='#ff0000'><b>Add a Category</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_display'><font color='#ff0000'><b>Edit Categories</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_display'><font color='#ff0000'><b>Category Admin Page</b></font></a>";
echo "</center>";
echo "<br /><hr color='#0000ff' width='80%'><br />";
}
CloseTable();
include('footer.php');
}
///////////////////////////Function ADD Category////////////////////////////////////////////////////////
function admin_category_add()
{
global $admin, $bgcolor2, $prefix, $db,$user,$cookie,$nukeuser;
include_once("header.php");
OpenTable();
?>
<center>
<br />
<font size="3" color = "#0000ff"><b>Add Category Administration Page</b></font>
<br /><br />
</center>
<?
add_video_nav();
?>
<br /><hr width='80%' /><br />
<TABLE width="100%" style="border-collapse:collapse;">
<TR>
<TD width="70%" valign="top">
<center>
<?
echo "<form action='admin.php?op=admin_category_add2' method='post'>";
echo "<font size='3' color='#0000ff'><b>Add Category</b></font>";
echo "<br />";;
echo "<input type='text' name='category' size='50' maxlength='50' />";
echo "<br /><font size='2' color='#ff0000'><b>50 char max</b></font><br />";
echo "<input type='hidden' name='action' value='Insert_Category' />";
echo "<br />";
echo "<center><input type='submit' value='Insert Category' /></center>";
echo "</form>";
?>
</center>
</TD>
</TR>
</TABLE>
<br /><hr width='80%' /><br />
<?
CloseTable();
include('footer.php');
}
///////////////////////////Function ADD Category2////////////////////////////////////////////////////////
function admin_category_add2()
{
global $admin, $bgcolor2, $prefix, $db,$user,$cookie,$nukeuser;
include_once("header.php");
OpenTable();
?>
<center>
<br />
<font size="3" color = "#0000ff"><b>Insert Category Administration Page</b></font>
<br /><br />
</center>
<?
add_video_nav();
?>
<br /><hr width='80%' /><br />
<?
$action=Sanitizer($_POST['action']);
$category=Sanitizer($_POST['category']);
//echo $action;
if($action=="Insert_Category")
{
echo "<center>";
echo "<font size='3' color='#0000ff'><b>$action</b></font>";
echo "<br />";
echo "<br />";
echo "<font size='3' color='#0000ff'><b>$category</b></font>";
echo "<br />";
echo "<br />";
if(empty($category))
{
echo "<font size='3' color='#0000ff'><b>NO TITLE SUBMITTED.<br />";
echo "<a href='admin.php?op=admin_category_add'><font size='3' color='#ff0000'><b>TRY AGAIN, PLEASE</b></font></a>";
echo "</center>";
CloseTable();
include('footer.php');
}
if(strlen($category) > 50 )
{
echo "<font size='3' color='#0000ff'><b>Catregory SIZE TOO LARGE ( only titles of 50 chars. max. allowed )</b></font><br />";
echo "<a href='admin.php?op=admin_category_add'><font size='3' color='#ff0000'><b>TRY AGAIN, PLEASE</b></font></a>";
echo "</center>";
CloseTable();
include('footer.php');
}
$censored_word= array('f***', 'bitch', 'whore', 'suck', 'harlot', 'cock', 'boobs', 'teats', 'ass', 'cunt');
if(in_array($category, $censored_word))
{
echo "<font size='3' color='#0000ff'><b>Censored word.</b></font><br />";
echo "<a href='admin.php?op=admin_category_add'><font size='3' color='#ff0000'><b>TRY AGAIN, PLEASE</b></font></a>";
echo "</center>";
CloseTable();
include('footer.php');
}
for ($i = 0; $i < strlen($category); $i++)
{
if (!eregi("[- _ . a-zA-Z0-9]" , $category[$i] ) )
{
echo "<center>";
echo "<font size='3' color='#0000ff'><b>WARNING !! INCORRECT TITLE</b></font>";
echo "<br />";
echo "<font size='3' color='#0000ff'><b>That is an Invalid symbol</b></font>";
echo "<br />";
echo "<font size='3' color='#0000ff'><b>$category[$i]</b></font>";
echo " <br />";
echo "<font size='3' color='#0000ff'><b>Only Letters and Numbers are allowed</b></font>";
echo "<br />";
echo "<a href='admin.php?op=admin_category_add'><font size='3' color='#ff0000'>TRY AGAIN PLEASE</font></a></font>";
echo "</center>";
CloseTable();
include('footer.php');
}
}
//Insertimg cat into database
$queryup="INSERT INTO ".$prefix."_rnvideo_category VALUES('null', '$category')";
$resultup=$db->sql_query($queryup) or die(mysql_error());
echo "<font size='3' color='#0000ff'><b>Category $category INSERTED</b></font><br /><br />";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_add'><font color='#ff0000'><b>Add a Category</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_display'><font color='#ff0000'><b>Edit Categories</b></font></a>";
echo "<br /><br />";
echo "<a href='admin.php?op=admin_category_display'><font color='#ff0000'><b>Category Admin Page</b></font></a>";
echo "</center>";
CloseTable();
include('footer.php');
}
}
?>
|