lang
[phpmyadmin/crack.git] / tbl_alter.php3
blob6d04b9005a3e25aa8b7eadba5ad87aada4e00303
1 <?php
2 /* $Id$ */
3 // vim: expandtab sw=4 ts=4 sts=4:
6 /**
7 * Gets some core libraries
8 */
9 require('./libraries/grab_globals.lib.php3');
10 if (!isset($submit_mult)) {
11 $js_to_run = 'functions.js';
12 include('./header.inc.php3');
16 /**
17 * Defines the url to return to in case of error in a sql statement
19 $err_url = 'tbl_properties_structure.php3?' . PMA_generate_common_url($db, $table);
22 /**
23 * Modifications have been submitted -> updates the table
25 if (isset($submit)) {
26 $field_cnt = count($field_orig);
27 for ($i = 0; $i < $field_cnt; $i++) {
28 if (get_magic_quotes_gpc()) {
29 $field_name[$i] = stripslashes($field_name[$i]);
30 $field_default[$i] = stripslashes($field_default[$i]);
31 $field_length[$i] = stripslashes($field_length[$i]);
34 if (PMA_MYSQL_INT_VERSION < 32306) {
35 PMA_checkReservedWords($field_name[$i], $err_url);
38 // Some fields have been urlencoded or double quotes have been translated
39 // to "&quot;" in tbl_properties.php3
40 $field_orig[$i] = urldecode($field_orig[$i]);
41 if (strcmp(str_replace('"', '&quot;', $field_orig[$i]), $field_name[$i]) == 0) {
42 $field_name[$i] = $field_orig[$i];
44 $field_default_orig[$i] = urldecode($field_default_orig[$i]);
45 if (strcmp(str_replace('"', '&quot;', $field_default_orig[$i]), $field_default[$i]) == 0) {
46 $field_default[$i] = $field_default_orig[$i];
48 $field_length_orig[$i] = urldecode($field_length_orig[$i]);
49 if (strcmp(str_replace('"', '&quot;', $field_length_orig[$i]), $field_length[$i]) == 0) {
50 $field_length[$i] = $field_length_orig[$i];
52 if (!isset($query)) {
53 $query = '';
54 } else {
55 $query .= ', CHANGE ';
57 $query .= PMA_backquote($field_orig[$i]) . ' ' . PMA_backquote($field_name[$i]) . ' ' . $field_type[$i];
58 // Some field types shouldn't have lengths
59 if ($field_length[$i] != ''
60 && !eregi('^(DATE|DATETIME|TIME|TINYBLOB|TINYTEXT|BLOB|TEXT|MEDIUMBLOB|MEDIUMTEXT|LONGBLOB|LONGTEXT)$', $field_type[$i])) {
61 $query .= '(' . $field_length[$i] . ')';
63 if ($field_attribute[$i] != '') {
64 $query .= ' ' . $field_attribute[$i];
66 if ($field_default[$i] != '') {
67 if (strtoupper($field_default[$i]) == 'NULL') {
68 $query .= ' DEFAULT NULL';
69 } else {
70 $query .= ' DEFAULT \'' . PMA_sqlAddslashes($field_default[$i]) . '\'';
73 if ($field_null[$i] != '') {
74 $query .= ' ' . $field_null[$i];
76 if ($field_extra[$i] != '') {
77 $query .= ' ' . $field_extra[$i];
79 } // end for
81 // To allow replication, we first select the db to use and then run queries
82 // on this db.
83 $sql_query = 'USE ' . PMA_backquote($db);
84 $result = PMA_mysql_query($sql_query) or PMA_mysqlDie('', '', '', $err_url);
85 // Optimization fix - 2 May 2001 - Robbat2
86 $sql_query = 'ALTER TABLE ' . PMA_backquote($table) . ' CHANGE ' . $query;
87 $result = PMA_mysql_query($sql_query) or PMA_mysqlDie('', '', '', $err_url);
88 $message = $strTable . ' ' . htmlspecialchars($table) . ' ' . $strHasBeenAltered;
89 $btnDrop = 'Fake';
90 include('./tbl_properties_structure.php3');
91 exit();
95 /**
96 * No modifications yet required -> displays the table fields
98 else {
99 if (!isset($selected)) {
100 $selected[] = $field;
101 $selected_cnt = 1;
102 } else { // from a multiple submit
103 $selected_cnt = count($selected);
106 // TODO: optimize in case of multiple fields to modify
107 for ($i = 0; $i < $selected_cnt; $i++) {
108 if (!empty($submit_mult)) {
109 $field = PMA_sqlAddslashes(urldecode($selected[$i]), TRUE);
111 else if (get_magic_quotes_gpc()) {
112 $field = PMA_sqlAddslashes(stripslashes($selected[$i]), TRUE);
114 else {
115 $field = PMA_sqlAddslashes($selected[$i], TRUE);
117 $local_query = 'SHOW FIELDS FROM ' . PMA_backquote($table) . ' FROM ' . PMA_backquote($db) . " LIKE '$field'";
118 $result = PMA_mysql_query($local_query) or PMA_mysqlDie('', $local_query, '', $err_url);
119 $fields_meta[] = PMA_mysql_fetch_array($result);
120 mysql_free_result($result);
123 $num_fields = count($fields_meta);
124 $action = 'tbl_alter.php3';
125 include('./tbl_properties.inc.php3');
130 * Displays the footer
132 require('./footer.inc.php3');