Файл: InstantSocial/uploud/plugins/p_graffiti/load.php
Строк: 34
<?php
session_start();
define("VALID_CMS", 1);
define('PATH', $_SERVER['DOCUMENT_ROOT']);
define('HOST', 'http://' . $_SERVER['HTTP_HOST']);
include(PATH.'/core/cms.php');
$inCore = cmsCore::getInstance();
$inCore->loadClass('config');
$inCore->loadClass('db');
$inDB = cmsDatabase::getInstance();
$place = $inCore->request('place', 'str');
$ran=$inCore->request('ran','str');
if (!$place) {die();}
if(isset($_FILES['attach_img'])) {
$uploaddir = PATH.'/upload/'.$place.'/';
$realfile = $_FILES['attach_img']['name'];
$path_parts = pathinfo($realfile);
$ext = strtolower($path_parts['extension']);
if ($ext == 'png'){
$filename = $ran.'.'.$ext;
$uploadfile = $uploaddir . $realfile;
$uploadphoto = $uploaddir . $filename;
if (@move_uploaded_file($_FILES['attach_img']['tmp_name'], $uploadphoto)) {
$sql = "INSERT INTO cms_upload_images (post_id, session_id, fileurl, target)
VALUES ('0', '".session_id()."', '/upload/".$place."/$filename', '$place')";
$inDB->query($sql);
$filepath = PATH."/upload/".$place."/".$filename;
$filedir = PATH."/upload/".$place;
@chmod(dirname($filedir), 0755);
}
}
}
?>