Merge remote-tracking branch 'origin/master'
[phpmyadmin.git] / pmd_pdf.php
blob725d44c20239e034df01ce0f3aff46bb76a923b5
1 <?php
2 /* vim: set expandtab sw=4 ts=4 sts=4: */
3 /**
5 * @package PhpMyAdmin-Designer
6 */
8 require_once './libraries/common.inc.php';
9 require_once 'libraries/pmd_common.php';
11 /**
12 * Validate vulnerable POST parameters
14 if (isset($_POST['scale']) && ! PMA_isValid($_POST['scale'], 'numeric')) {
15 die('Attack stopped');
18 /**
19 * Sets globals from $_POST
21 $post_params = array(
22 'db',
23 'mode',
24 'newpage',
25 'pdf_page_number',
26 'scale'
29 foreach ($post_params as $one_post_param) {
30 if (isset($_POST[$one_post_param])) {
31 $GLOBALS[$one_post_param] = $_POST[$one_post_param];
35 /**
36 * If called directly from the designer, first save the positions
38 if (! isset($scale)) {
39 include_once 'pmd_save_pos.php';
42 if (isset($mode)) {
43 if ('create_export' != $mode && empty($pdf_page_number)) {
44 die("<script>alert('Pages not found!');history.go(-2);</script>");
47 $pmd_table = PMA_Util::backquote($GLOBALS['cfgRelation']['db']) . '.'
48 . PMA_Util::backquote($GLOBALS['cfgRelation']['designer_coords']);
49 $pma_table = PMA_Util::backquote($GLOBALS['cfgRelation']['db']) . '.'
50 . PMA_Util::backquote($cfgRelation['table_coords']);
51 $scale_q = PMA_Util::sqlAddSlashes($scale);
53 if ('create_export' == $mode) {
54 $pdf_page_number = PMA_REL_createPage($newpage, $cfgRelation, $db);
55 if ($pdf_page_number > 0) {
56 $message = PMA_Message::success(__('Page has been created'));
57 $mode = 'export';
58 } else {
59 $message = PMA_Message::error(__('Page creation failed'));
63 $pdf_page_number_q = PMA_Util::sqlAddSlashes($pdf_page_number);
65 if ('export' == $mode) {
66 $sql = "REPLACE INTO " . $pma_table
67 . " (db_name, table_name, pdf_page_number, x, y)"
68 . " SELECT db_name, table_name, " . $pdf_page_number_q . ","
69 . " ROUND(x/" . $scale_q . ") , ROUND(y/" . $scale_q . ") y"
70 . " FROM " . $pmd_table
71 . " WHERE db_name = '" . PMA_Util::sqlAddSlashes($db) . "'";
73 PMA_queryAsControlUser($sql, true, PMA_DatabaseInterface::QUERY_STORE);
76 if ('import' == $mode) {
77 PMA_queryAsControlUser(
78 'UPDATE ' . $pma_table . ',' . $pmd_table .
79 ' SET ' . $pmd_table . '.`x`= ' . $pma_table . '.`x` * '. $scale_q . ',
80 ' . $pmd_table . '.`y`= ' . $pma_table . '.`y` * '. $scale_q .'
81 WHERE
82 ' . $pmd_table . '.`db_name`=' . $pma_table . '.`db_name`
83 AND
84 ' . $pmd_table . '.`table_name` = ' . $pma_table . '.`table_name`
85 AND
86 ' . $pmd_table . '.`db_name`=\''. PMA_Util::sqlAddSlashes($db) . '\'
87 AND pdf_page_number = ' . $pdf_page_number_q . ';',
88 true, PMA_DatabaseInterface::QUERY_STORE
93 $response = PMA_Response::getInstance();
94 $response->getFooter()->setMinimal();
97 <br/>
98 <div>
99 <?php
100 if (! empty($message)) {
101 $message->display();
104 <form name="form1" method="post" action="pmd_pdf.php">
105 <?php
106 echo PMA_generate_common_hidden_inputs($db);
107 echo '<div>';
108 echo '<fieldset><legend>' . __('Import/Export coordinates for PDF schema') . '</legend>';
110 $choices = array();
112 $table_info_result = PMA_queryAsControlUser(
113 'SELECT * FROM ' . PMA_Util::backquote($GLOBALS['cfgRelation']['db'])
114 . '.' . PMA_Util::backquote($cfgRelation['pdf_pages'])
115 . ' WHERE db_name = \'' . PMA_Util::sqlAddSlashes($db) . '\''
118 if ($GLOBALS['dbi']->numRows($table_info_result) > 0) {
119 echo '<p>' . __('Page:');
120 echo '<select name="pdf_page_number">';
122 while ($page = $GLOBALS['dbi']->fetchAssoc($table_info_result)) {
123 echo '<option value="' . $page['page_nr'] . '">';
124 echo htmlspecialchars($page['page_descr']);
125 echo '</option>';
127 echo '</select>';
128 echo '</p>';
129 $choices['import'] = __('Import from selected page');
130 $choices['export'] = __('Export to selected page');
132 $choices['create_export'] = __('Create a page and export to it');
134 if (1 == count($choices)) {
135 echo $choices['create_export'];
136 echo '<input type="hidden" name="mode" value="create_export" />';
137 } else {
138 echo PMA_Util::getRadioFields(
139 'mode', $choices, $checked_choice = '', $line_break = true,
140 $escape_label = false, $class = ''
143 echo '<br />';
144 echo '<label for="newpage">' . __('New page name: ') . '</label>';
145 echo '<input id="newpage" type="text" name="newpage" />';
147 echo '<p>' . __('Export/Import to scale:');
149 <select name="scale">
150 <option value="1">1:1</option>
151 <option value="2">1:2</option>
152 <option value="3" selected="selected">1:3 (<?php echo __('recommended'); ?>)</option>
153 <option value="4">1:4</option>
154 <option value="5">1:5</option>
155 </select>
156 </p>
157 <input type="submit" value="<?php echo __('Go'); ?>"/>
158 </fieldset>
159 </div>
160 </form>
161 </div>