bug #3123433 [interface] Avoid double escaping of MySQL errors.
[phpmyadmin/crack.git] / tbl_change.php
blobbee7017c834d33e82b0ee3655cec0600d91230f2
1 <?php
2 /* vim: set expandtab sw=4 ts=4 sts=4: */
3 /**
4 * Displays form for editing and inserting new table rows
6 * register_globals_save (mark this file save for disabling register globals)
8 * @package phpMyAdmin
9 */
11 /**
12 * Gets the variables sent or posted to this script and displays the header
14 require_once './libraries/common.inc.php';
16 /**
17 * Ensures db and table are valid, else moves to the "parent" script
19 require_once './libraries/db_table_exists.lib.php';
21 /**
22 * Sets global variables.
23 * Here it's better to use a if, instead of the '?' operator
24 * to avoid setting a variable to '' when it's not present in $_REQUEST
26 if (isset($_REQUEST['where_clause'])) {
27 $where_clause = $_REQUEST['where_clause'];
29 if (isset($_REQUEST['clause_is_unique'])) {
30 $clause_is_unique = $_REQUEST['clause_is_unique'];
32 if (isset($_SESSION['edit_next'])) {
33 $where_clause = $_SESSION['edit_next'];
34 unset($_SESSION['edit_next']);
35 $after_insert = 'edit_next';
37 if (isset($_REQUEST['sql_query'])) {
38 $sql_query = $_REQUEST['sql_query'];
40 if (isset($_REQUEST['ShowFunctionFields'])) {
41 $cfg['ShowFunctionFields'] = $_REQUEST['ShowFunctionFields'];
43 if (isset($_REQUEST['ShowFieldTypesInDataEditView'])) {
44 $cfg['ShowFieldTypesInDataEditView'] = $_REQUEST['ShowFieldTypesInDataEditView'];
47 /**
48 * file listing
50 require_once './libraries/file_listing.php';
53 /**
54 * Defines the url to return to in case of error in a sql statement
55 * (at this point, $GLOBALS['goto'] will be set but could be empty)
57 if (empty($GLOBALS['goto'])) {
58 if (strlen($table)) {
59 // avoid a problem (see bug #2202709)
60 $GLOBALS['goto'] = 'tbl_sql.php';
61 } else {
62 $GLOBALS['goto'] = 'db_sql.php';
65 /**
66 * @todo check if we could replace by "db_|tbl_" - please clarify!?
68 $_url_params = array(
69 'db' => $db,
70 'sql_query' => $sql_query
73 if (preg_match('@^tbl_@', $GLOBALS['goto'])) {
74 $_url_params['table'] = $table;
77 $err_url = $GLOBALS['goto'] . PMA_generate_common_url($_url_params);
78 unset($_url_params);
81 /**
82 * Sets parameters for links
83 * where is this variable used?
84 * replace by PMA_generate_common_url($url_params);
86 $url_query = PMA_generate_common_url($url_params, 'html', '');
88 /**
89 * get table information
90 * @todo should be done by a Table object
92 require_once './libraries/tbl_info.inc.php';
94 /**
95 * Get comments for table fileds/columns
97 $comments_map = array();
99 if ($GLOBALS['cfg']['ShowPropertyComments']) {
100 $comments_map = PMA_getComments($db, $table);
104 * START REGULAR OUTPUT
108 * used in ./libraries/header.inc.php to load JavaScript library file
110 $GLOBALS['js_include'][] = 'functions.js';
111 $GLOBALS['js_include'][] = 'tbl_change.js';
112 $GLOBALS['js_include'][] = 'jquery/jquery-ui-1.8.custom.js';
113 $GLOBALS['js_include'][] = 'jquery/timepicker.js';
115 * HTTP and HTML headers
117 require_once './libraries/header.inc.php';
120 * Displays the query submitted and its result
122 * @todo where does $disp_message and $disp_query come from???
124 if (! empty($disp_message)) {
125 if (! isset($disp_query)) {
126 $disp_query = null;
128 PMA_showMessage($disp_message, $disp_query);
132 * Displays top menu links
134 require_once './libraries/tbl_links.inc.php';
138 * Get the analysis of SHOW CREATE TABLE for this table
139 * @todo should be handled by class Table
141 $show_create_table = PMA_DBI_fetch_value(
142 'SHOW CREATE TABLE ' . PMA_backquote($db) . '.' . PMA_backquote($table),
143 0, 1);
144 $analyzed_sql = PMA_SQP_analyze(PMA_SQP_parse($show_create_table));
145 unset($show_create_table);
148 * Get the list of the fields of the current table
150 PMA_DBI_select_db($db);
151 $table_fields = PMA_DBI_fetch_result('SHOW FIELDS FROM ' . PMA_backquote($table) . ';',
152 null, null, null, PMA_DBI_QUERY_STORE);
153 $rows = array();
154 if (isset($where_clause)) {
155 // when in edit mode load all selected rows from table
156 $insert_mode = false;
157 if (is_array($where_clause)) {
158 $where_clause_array = $where_clause;
159 } else {
160 $where_clause_array = array(0 => $where_clause);
163 $result = array();
164 $found_unique_key = false;
165 $where_clauses = array();
167 foreach ($where_clause_array as $key_id => $where_clause) {
168 $local_query = 'SELECT * FROM ' . PMA_backquote($db) . '.' . PMA_backquote($table) . ' WHERE ' . $where_clause . ';';
169 $result[$key_id] = PMA_DBI_query($local_query, null, PMA_DBI_QUERY_STORE);
170 $rows[$key_id] = PMA_DBI_fetch_assoc($result[$key_id]);
171 $where_clauses[$key_id] = str_replace('\\', '\\\\', $where_clause);
173 // No row returned
174 if (! $rows[$key_id]) {
175 unset($rows[$key_id], $where_clause_array[$key_id]);
176 PMA_showMessage(__('MySQL returned an empty result set (i.e. zero rows).'), $local_query);
177 echo "\n";
178 require './libraries/footer.inc.php';
179 } else { // end if (no row returned)
180 $meta = PMA_DBI_get_fields_meta($result[$key_id]);
181 list($unique_condition, $tmp_clause_is_unique) = PMA_getUniqueCondition($result[$key_id], count($meta), $meta, $rows[$key_id], true);
182 if (! empty($unique_condition)) {
183 $found_unique_key = true;
185 unset($unique_condition, $tmp_clause_is_unique);
188 } else {
189 // no primary key given, just load first row - but what happens if table is empty?
190 $insert_mode = true;
191 $result = PMA_DBI_query('SELECT * FROM ' . PMA_backquote($db) . '.' . PMA_backquote($table) . ' LIMIT 1;', null, PMA_DBI_QUERY_STORE);
192 $rows = array_fill(0, $cfg['InsertRows'], false);
195 // retrieve keys into foreign fields, if any
196 $foreigners = PMA_getForeigners($db, $table);
200 * Displays the form
202 // autocomplete feature of IE kills the "onchange" event handler and it
203 // must be replaced by the "onpropertychange" one in this case
204 $chg_evt_handler = (PMA_USR_BROWSER_AGENT == 'IE' && PMA_USR_BROWSER_VER >= 5 && PMA_USR_BROWSER_VER < 7)
205 ? 'onpropertychange'
206 : 'onchange';
207 // Had to put the URI because when hosted on an https server,
208 // some browsers send wrongly this form to the http server.
211 <!-- Set on key handler for moving using by Ctrl+arrows -->
212 <script src="./js/keyhandler.js" type="text/javascript"></script>
213 <script type="text/javascript">
214 //<![CDATA[
215 var switch_movement = 0;
216 document.onkeydown = onKeyDownArrowsHandler;
217 //]]>
218 </script>
219 <?php
221 $_form_params = array(
222 'db' => $db,
223 'table' => $table,
224 'goto' => $GLOBALS['goto'],
225 'err_url' => $err_url,
226 'sql_query' => $sql_query,
228 if (isset($where_clauses)) {
229 foreach ($where_clause_array as $key_id => $where_clause) {
230 $_form_params['where_clause[' . $key_id . ']'] = trim($where_clause);
233 if (isset($clause_is_unique)) {
234 $_form_params['clause_is_unique'] = $clause_is_unique;
239 <!-- Insert/Edit form -->
240 <form id="insertForm" method="post" action="tbl_replace.php" name="insertForm" <?php if ($is_upload) { echo ' enctype="multipart/form-data"'; } ?>>
241 <?php
242 echo PMA_generate_common_hidden_inputs($_form_params);
244 $titles['Browse'] = PMA_getIcon('b_browse.png', __('Browse foreign values'));
246 // Set if we passed the first timestamp field
247 $timestamp_seen = 0;
248 $fields_cnt = count($table_fields);
250 $tabindex = 0;
251 $tabindex_for_function = +3000;
252 $tabindex_for_null = +6000;
253 $tabindex_for_value = 0;
254 $o_rows = 0;
255 $biggest_max_file_size = 0;
257 // user can toggle the display of Function column
258 // (currently does not work for multi-edits)
259 $url_params['db'] = $db;
260 $url_params['table'] = $table;
261 if (isset($where_clause)) {
262 $url_params['where_clause'] = trim($where_clause);
264 if (! empty($sql_query)) {
265 $url_params['sql_query'] = $sql_query;
268 if (! $cfg['ShowFunctionFields'] || ! $cfg['ShowFieldTypesInDataEditView']) {
269 echo __('Show');
271 if (! $cfg['ShowFunctionFields']) {
272 $this_url_params = array_merge($url_params,
273 array('ShowFunctionFields' => 1, 'ShowFieldTypesInDataEditView' => $cfg['ShowFieldTypesInDataEditView'], 'goto' => 'sql.php'));
274 echo ' : <a href="tbl_change.php' . PMA_generate_common_url($this_url_params) . '">' . __('Function') . '</a>' . "\n";
276 if (! $cfg['ShowFieldTypesInDataEditView']) {
277 $this_other_url_params = array_merge($url_params,
278 array('ShowFieldTypesInDataEditView' => 1, 'ShowFunctionFields' => $cfg['ShowFunctionFields'], 'goto' => 'sql.php'));
279 echo ' : <a href="tbl_change.php' . PMA_generate_common_url($this_other_url_params) . '">' . __('Type') . '</a>' . "\n";
282 foreach ($rows as $row_id => $vrow) {
283 if ($vrow === false) {
284 unset($vrow);
287 $jsvkey = $row_id;
288 $browse_foreigners_uri = '&amp;pk=' . $row_id;
289 $vkey = '[multi_edit][' . $jsvkey . ']';
291 $vresult = (isset($result) && is_array($result) && isset($result[$row_id]) ? $result[$row_id] : $result);
292 if ($insert_mode && $row_id > 0) {
293 echo '<input type="checkbox" checked="checked" name="insert_ignore_' . $row_id . '" id="insert_ignore_' . $row_id . '" />';
294 echo '<label for="insert_ignore_' . $row_id . '">' . __('Ignore') . '</label><br />' . "\n";
297 <table class="insertRowTable">
298 <thead>
299 <tr>
300 <th><?php echo __('Column'); ?></th>
302 <?php
303 if ($cfg['ShowFieldTypesInDataEditView']) {
304 $this_url_params = array_merge($url_params,
305 array('ShowFieldTypesInDataEditView' => 0, 'ShowFunctionFields' => $cfg['ShowFunctionFields'], 'goto' => 'sql.php'));
306 echo ' <th><a href="tbl_change.php' . PMA_generate_common_url($this_url_params) . '" title="' . __('Hide') . '">' . __('Type') . '</a></th>' . "\n";
309 if ($cfg['ShowFunctionFields']) {
310 $this_url_params = array_merge($url_params,
311 array('ShowFunctionFields' => 0, 'ShowFieldTypesInDataEditView' => $cfg['ShowFieldTypesInDataEditView'], 'goto' => 'sql.php'));
312 echo ' <th><a href="tbl_change.php' . PMA_generate_common_url($this_url_params) . '" title="' . __('Hide') . '">' . __('Function') . '</a></th>' . "\n";
315 <th><?php echo __('Null'); ?></th>
316 <th><?php echo __('Value'); ?></th>
317 </tr>
318 </thead>
319 <tfoot>
320 <tr>
321 <th colspan="5" align="right" class="tblFooters">
322 <input type="submit" value="<?php echo __('Go'); ?>" />
323 </th>
324 </tr>
325 </tfoot>
326 <tbody>
327 <?php
328 // Sets a multiplier used for input-field counts (as zero cannot be used, advance the counter plus one)
329 $m_rows = $o_rows + 1;
331 $odd_row = true;
332 for ($i = 0; $i < $fields_cnt; $i++) {
333 if (! isset($table_fields[$i]['processed'])) {
334 $table_fields[$i]['Field_html'] = htmlspecialchars($table_fields[$i]['Field']);
335 $table_fields[$i]['Field_md5'] = md5($table_fields[$i]['Field']);
336 // True_Type contains only the type (stops at first bracket)
337 $table_fields[$i]['True_Type'] = preg_replace('@\(.*@s', '', $table_fields[$i]['Type']);
339 // d a t e t i m e
341 // Current date should not be set as default if the field is NULL
342 // for the current row, but do not put here the current datetime
343 // if there is a default value (the real default value will be set
344 // in the Default value logic below)
346 // Note: (tested in MySQL 4.0.16): when lang is some UTF-8,
347 // $field['Default'] is not set if it contains NULL:
348 // Array ([Field] => d [Type] => datetime [Null] => YES [Key] => [Extra] => [True_Type] => datetime)
349 // but, look what we get if we switch to iso: (Default is NULL)
350 // Array ([Field] => d [Type] => datetime [Null] => YES [Key] => [Default] => [Extra] => [True_Type] => datetime)
351 // so I force a NULL into it (I don't think it's possible
352 // to have an empty default value for DATETIME)
353 // then, the "if" after this one will work
354 if ($table_fields[$i]['Type'] == 'datetime'
355 && ! isset($table_fields[$i]['Default'])
356 && isset($table_fields[$i]['Null'])
357 && $table_fields[$i]['Null'] == 'YES') {
358 $table_fields[$i]['Default'] = null;
361 $table_fields[$i]['len'] =
362 preg_match('@float|double@', $table_fields[$i]['Type']) ? 100 : -1;
365 if (isset($comments_map[$table_fields[$i]['Field']])) {
366 $table_fields[$i]['Field_title'] = '<span style="border-bottom: 1px dashed black;" title="'
367 . htmlspecialchars($comments_map[$table_fields[$i]['Field']]) . '">'
368 . $table_fields[$i]['Field_html'] . '</span>';
369 } else {
370 $table_fields[$i]['Field_title'] = $table_fields[$i]['Field_html'];
373 // The type column
374 $table_fields[$i]['is_binary'] = stristr($table_fields[$i]['Type'], 'binary');
375 $table_fields[$i]['is_blob'] = stristr($table_fields[$i]['Type'], 'blob');
376 $table_fields[$i]['is_char'] = stristr($table_fields[$i]['Type'], 'char');
377 $table_fields[$i]['first_timestamp'] = false;
378 switch ($table_fields[$i]['True_Type']) {
379 case 'set':
380 $table_fields[$i]['pma_type'] = 'set';
381 $table_fields[$i]['wrap'] = '';
382 break;
383 case 'enum':
384 $table_fields[$i]['pma_type'] = 'enum';
385 $table_fields[$i]['wrap'] = '';
386 break;
387 case 'timestamp':
388 if (!$timestamp_seen) { // can only occur once per table
389 $timestamp_seen = 1;
390 $table_fields[$i]['first_timestamp'] = true;
392 $table_fields[$i]['pma_type'] = $table_fields[$i]['Type'];
393 $table_fields[$i]['wrap'] = ' nowrap="nowrap"';
394 break;
396 default:
397 $table_fields[$i]['pma_type'] = $table_fields[$i]['Type'];
398 $table_fields[$i]['wrap'] = ' nowrap="nowrap"';
399 break;
402 $field = $table_fields[$i];
403 $extracted_fieldspec = PMA_extractFieldSpec($field['Type']);
405 if (-1 === $field['len']) {
406 $field['len'] = PMA_DBI_field_len($vresult, $i);
408 //Call validation when the form submited...
409 $unnullify_trigger = $chg_evt_handler . "=\"return Validator('". PMA_escapeJsString($field['Field_md5']) . "', '"
410 . PMA_escapeJsString($jsvkey) . "','".$field['pma_type']."')\"";
412 // Use an MD5 as an array index to avoid having special characters in the name atttibute (see bug #1746964 )
413 $field_name_appendix = $vkey . '[' . $field['Field_md5'] . ']';
414 $field_name_appendix_md5 = $field['Field_md5'] . $vkey . '[]';
417 if ($field['Type'] == 'datetime'
418 && ! isset($field['Default'])
419 && ! is_null($field['Default'])
420 && ($insert_mode || ! isset($vrow[$field['Field']]))) {
421 // INSERT case or
422 // UPDATE case with an NULL value
423 $vrow[$field['Field']] = date('Y-m-d H:i:s', time());
426 <tr class="<?php echo $odd_row ? 'odd' : 'even'; ?>">
427 <td <?php echo ($cfg['LongtextDoubleTextarea'] && strstr($field['True_Type'], 'longtext') ? 'rowspan="2"' : ''); ?> align="center">
428 <?php echo $field['Field_title']; ?>
429 <input type="hidden" name="fields_name<?php echo $field_name_appendix; ?>" value="<?php echo $field['Field_html']; ?>"/>
430 </td>
431 <?php if ($cfg['ShowFieldTypesInDataEditView']) { ?>
432 <td align="center"<?php echo $field['wrap']; ?>><span class="column_type">
433 <?php echo $field['pma_type']; ?></span>
434 </td>
436 <?php } //End if
438 // Prepares the field value
439 $real_null_value = FALSE;
440 $special_chars_encoded = '';
441 if (isset($vrow)) {
442 // (we are editing)
443 if (is_null($vrow[$field['Field']])) {
444 $real_null_value = TRUE;
445 $vrow[$field['Field']] = '';
446 $special_chars = '';
447 $data = $vrow[$field['Field']];
448 } elseif ($field['True_Type'] == 'bit') {
449 $special_chars = PMA_printable_bit_value($vrow[$field['Field']], $extracted_fieldspec['spec_in_brackets']);
450 } else {
451 // special binary "characters"
452 if ($field['is_binary'] || ($field['is_blob'] && ! $cfg['ProtectBinary'])) {
453 if ($_SESSION['tmp_user_values']['display_binary_as_hex'] && $cfg['ShowFunctionFields']) {
454 $vrow[$field['Field']] = bin2hex($vrow[$field['Field']]);
455 $field['display_binary_as_hex'] = true;
456 } else {
457 $vrow[$field['Field']] = PMA_replace_binary_contents($vrow[$field['Field']]);
459 } // end if
460 $special_chars = htmlspecialchars($vrow[$field['Field']]);
462 //We need to duplicate the first \n or otherwise we will lose the first newline entered in a VARCHAR or TEXT column
463 $special_chars_encoded = PMA_duplicateFirstNewline($special_chars);
465 $data = $vrow[$field['Field']];
466 } // end if... else...
467 // If a timestamp field value is not included in an update
468 // statement MySQL auto-update it to the current timestamp;
469 // however, things have changed since MySQL 4.1, so
470 // it's better to set a fields_prev in this situation
471 $backup_field = '<input type="hidden" name="fields_prev'
472 . $field_name_appendix . '" value="'
473 . htmlspecialchars($vrow[$field['Field']]) . '" />';
474 } else {
475 // (we are inserting)
476 // display default values
477 if (!isset($field['Default'])) {
478 $field['Default'] = '';
479 $real_null_value = TRUE;
480 $data = '';
481 } else {
482 $data = $field['Default'];
484 if ($field['True_Type'] == 'bit') {
485 $special_chars = PMA_convert_bit_default_value($field['Default']);
486 } else {
487 $special_chars = htmlspecialchars($field['Default']);
489 $backup_field = '';
490 $special_chars_encoded = PMA_duplicateFirstNewline($special_chars);
491 // this will select the UNHEX function while inserting
492 if (($field['is_binary'] || ($field['is_blob'] && ! $cfg['ProtectBinary'])) && $_SESSION['tmp_user_values']['display_binary_as_hex'] && $cfg['ShowFunctionFields']) {
493 $field['display_binary_as_hex'] = true;
497 $idindex = ($o_rows * $fields_cnt) + $i + 1;
498 $tabindex = $idindex;
500 // The function column
501 // -------------------
502 // We don't want binary data to be destroyed
503 // Note: from the MySQL manual: "BINARY doesn't affect how the column is
504 // stored or retrieved" so it does not mean that the contents is
505 // binary
506 if ($cfg['ShowFunctionFields']) {
507 if (($cfg['ProtectBinary'] && $field['is_blob'] && !$is_upload)
508 || ($cfg['ProtectBinary'] == 'all' && $field['is_binary'])) {
509 echo ' <td align="center">' . __('Binary') . '</td>' . "\n";
510 } elseif (strstr($field['True_Type'], 'enum') || strstr($field['True_Type'], 'set') || 'geometry' == $field['pma_type']) {
511 echo ' <td align="center">--</td>' . "\n";
512 } else {
514 <td>
515 <select name="funcs<?php echo $field_name_appendix; ?>" <?php echo $unnullify_trigger; ?> tabindex="<?php echo ($tabindex + $tabindex_for_function); ?>" id="field_<?php echo $idindex; ?>_1">
516 <option></option>
517 <?php
518 $selected = '';
520 // Find the current type in the RestrictColumnTypes. Will result in 'FUNC_CHAR'
521 // or something similar. Then directly look up the entry in the RestrictFunctions array,
522 // which will then reveal the available dropdown options
523 if (isset($cfg['RestrictColumnTypes'][strtoupper($field['True_Type'])])
524 && isset($cfg['RestrictFunctions'][$cfg['RestrictColumnTypes'][strtoupper($field['True_Type'])]])) {
525 $current_func_type = $cfg['RestrictColumnTypes'][strtoupper($field['True_Type'])];
526 $dropdown = $cfg['RestrictFunctions'][$current_func_type];
527 $default_function = $cfg['DefaultFunctions'][$current_func_type];
528 } else {
529 $dropdown = array();
530 $default_function = '';
533 $dropdown_built = array();
534 $op_spacing_needed = FALSE;
536 // what function defined as default?
537 // for the first timestamp we don't set the default function
538 // if there is a default value for the timestamp
539 // (not including CURRENT_TIMESTAMP)
540 // and the column does not have the
541 // ON UPDATE DEFAULT TIMESTAMP attribute.
543 if ($field['True_Type'] == 'timestamp'
544 && empty($field['Default'])
545 && empty($data)
546 && ! isset($analyzed_sql[0]['create_table_fields'][$field['Field']]['on_update_current_timestamp'])) {
547 $default_function = $cfg['DefaultFunctions']['first_timestamp'];
550 // For primary keys of type char(36) or varchar(36) UUID if the default function
551 // Only applies to insert mode, as it would silently trash data on updates.
552 if ($insert_mode
553 && $field['Key'] == 'PRI'
554 && ($field['Type'] == 'char(36)' || $field['Type'] == 'varchar(36)')
556 $default_function = $cfg['DefaultFunctions']['pk_char36'];
559 // this is set only when appropriate and is always true
560 if (isset($field['display_binary_as_hex'])) {
561 $default_function = 'UNHEX';
564 // loop on the dropdown array and print all available options for that field.
565 foreach ($dropdown as $each_dropdown){
566 echo '<option';
567 if ($default_function === $each_dropdown) {
568 echo ' selected="selected"';
570 echo '>' . $each_dropdown . '</option>' . "\n";
571 $dropdown_built[$each_dropdown] = 'TRUE';
572 $op_spacing_needed = TRUE;
575 // For compatibility's sake, do not let out all other functions. Instead
576 // print a separator (blank) and then show ALL functions which weren't shown
577 // yet.
578 $cnt_functions = count($cfg['Functions']);
579 for ($j = 0; $j < $cnt_functions; $j++) {
580 if (!isset($dropdown_built[$cfg['Functions'][$j]]) || $dropdown_built[$cfg['Functions'][$j]] != 'TRUE') {
581 // Is current function defined as default?
582 $selected = ($field['first_timestamp'] && $cfg['Functions'][$j] == $cfg['DefaultFunctions']['first_timestamp'])
583 || (!$field['first_timestamp'] && $cfg['Functions'][$j] == $default_function)
584 ? ' selected="selected"'
585 : '';
586 if ($op_spacing_needed == TRUE) {
587 echo ' ';
588 echo '<option value="">--------</option>' . "\n";
589 $op_spacing_needed = FALSE;
592 echo ' ';
593 echo '<option' . $selected . '>' . $cfg['Functions'][$j] . '</option>' . "\n";
595 } // end for
596 unset($selected);
598 </select>
599 </td>
600 <?php
602 } // end if ($cfg['ShowFunctionFields'])
605 // The null column
606 // ---------------
607 $foreignData = PMA_getForeignData($foreigners, $field['Field'], false, '', '');
608 echo ' <td>' . "\n";
609 if ($field['Null'] == 'YES') {
610 echo ' <input type="hidden" name="fields_null_prev' . $field_name_appendix . '"';
611 if ($real_null_value && !$field['first_timestamp']) {
612 echo ' value="on"';
614 echo ' />' . "\n";
616 echo ' <input type="checkbox" class="checkbox_null" tabindex="' . ($tabindex + $tabindex_for_null) . '"'
617 . ' name="fields_null' . $field_name_appendix . '"';
618 if ($real_null_value && !$field['first_timestamp']) {
619 echo ' checked="checked"';
621 echo ' id="field_' . ($idindex) . '_2" />';
623 // nullify_code is needed by the js nullify() function
624 if (strstr($field['True_Type'], 'enum')) {
625 if (strlen($field['Type']) > 20) {
626 $nullify_code = '1';
627 } else {
628 $nullify_code = '2';
630 } elseif (strstr($field['True_Type'], 'set')) {
631 $nullify_code = '3';
632 } elseif ($foreigners && isset($foreigners[$field['Field']]) && $foreignData['foreign_link'] == false) {
633 // foreign key in a drop-down
634 $nullify_code = '4';
635 } elseif ($foreigners && isset($foreigners[$field['Field']]) && $foreignData['foreign_link'] == true) {
636 // foreign key with a browsing icon
637 $nullify_code = '6';
638 } else {
639 $nullify_code = '5';
641 // to be able to generate calls to nullify() in jQuery
642 echo '<input type="hidden" class="nullify_code" name="nullify_code' . $field_name_appendix . '" value="' . $nullify_code . '" />';
643 echo '<input type="hidden" class="hashed_field" name="hashed_field' . $field_name_appendix . '" value="' . $field['Field_md5'] . '" />';
644 echo '<input type="hidden" class="multi_edit" name="multi_edit' . $field_name_appendix . '" value="' . PMA_escapeJsString($vkey) . '" />';
646 echo ' </td>' . "\n";
648 // The value column (depends on type)
649 // ----------------
650 // See bug #1667887 for the reason why we don't use the maxlength
651 // HTML attribute
653 echo ' <td>' . "\n";
654 if ($foreignData['foreign_link'] == true) {
655 echo $backup_field . "\n";
657 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>"
658 value="foreign" />
659 <input type="hidden" name="fields<?php echo $field_name_appendix; ?>"
660 value="" id="field_<?php echo ($idindex); ?>_3A" />
661 <input type="text" name="field_<?php echo $field_name_appendix_md5; ?>"
662 class="textfield" <?php echo $unnullify_trigger; ?>
663 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
664 id="field_<?php echo ($idindex); ?>_3"
665 value="<?php echo htmlspecialchars($data); ?>" />
666 <script type="text/javascript">
667 //<![CDATA[
668 document.writeln('<a target="_blank" onclick="window.open(this.href, \'foreigners\', \'width=640,height=240,scrollbars=yes,resizable=yes\'); return false"');
669 document.write(' href="browse_foreigners.php?');
670 document.write('<?php echo PMA_generate_common_url($db, $table); ?>');
671 document.writeln('&amp;field=<?php echo PMA_escapeJsString(urlencode($field['Field']) . $browse_foreigners_uri); ?>">');
672 document.writeln('<?php echo str_replace("'", "\'", $titles['Browse']); ?></a>');
673 //]]>
674 </script>
675 <?php
676 } elseif (is_array($foreignData['disp_row'])) {
677 echo $backup_field . "\n";
679 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>"
680 value="foreign" />
681 <input type="hidden" name="fields<?php echo $field_name_appendix; ?>"
682 value="" id="field_<?php echo $idindex; ?>_3A" />
683 <select name="field_<?php echo $field_name_appendix_md5; ?>"
684 <?php echo $unnullify_trigger; ?>
685 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
686 id="field_<?php echo ($idindex); ?>_3">
687 <?php echo PMA_foreignDropdown($foreignData['disp_row'], $foreignData['foreign_field'], $foreignData['foreign_display'], $data, $cfg['ForeignKeyMaxLimit']); ?>
688 </select>
689 <?php
690 // still needed? :
691 unset($foreignData['disp_row']);
692 } elseif ($cfg['LongtextDoubleTextarea'] && strstr($field['pma_type'], 'longtext')) {
694 &nbsp;</td>
695 </tr>
696 <tr class="<?php echo $odd_row ? 'odd' : 'even'; ?>">
697 <td colspan="5" align="right">
698 <?php echo $backup_field . "\n"; ?>
699 <textarea name="fields<?php echo $field_name_appendix; ?>"
700 rows="<?php echo ($cfg['TextareaRows']*2); ?>"
701 cols="<?php echo ($cfg['TextareaCols']*2); ?>"
702 dir="<?php echo $text_dir; ?>"
703 id="field_<?php echo ($idindex); ?>_3"
704 <?php echo $unnullify_trigger; ?>
705 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
706 ><?php echo $special_chars_encoded; ?></textarea>
707 <?php
708 } elseif (strstr($field['pma_type'], 'text')) {
709 echo $backup_field . "\n";
711 <textarea name="fields<?php echo $field_name_appendix; ?>"
712 rows="<?php echo $cfg['TextareaRows']; ?>"
713 cols="<?php echo $cfg['TextareaCols']; ?>"
714 dir="<?php echo $text_dir; ?>"
715 id="field_<?php echo ($idindex); ?>_3"
716 <?php echo $unnullify_trigger; ?>
717 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
718 ><?php echo $special_chars_encoded; ?></textarea>
719 <?php
720 echo "\n";
721 if (strlen($special_chars) > 32000) {
722 echo " </td>\n";
723 echo ' <td>' . __(' Because of its length,<br /> this column might not be editable ');
725 } elseif ($field['pma_type'] == 'enum') {
726 if (! isset($table_fields[$i]['values'])) {
727 $table_fields[$i]['values'] = array();
728 foreach ($extracted_fieldspec['enum_set_values'] as $val) {
729 // Removes automatic MySQL escape format
730 $val = str_replace('\'\'', '\'', str_replace('\\\\', '\\', $val));
731 $table_fields[$i]['values'][] = array(
732 'plain' => $val,
733 'html' => htmlspecialchars($val),
737 $field_enum_values = $table_fields[$i]['values'];
739 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>" value="enum" />
740 <input type="hidden" name="fields<?php echo $field_name_appendix; ?>" value="" />
741 <?php
742 echo "\n" . ' ' . $backup_field . "\n";
744 // show dropdown or radio depend on length
745 if (strlen($field['Type']) > 20) {
747 <select name="field_<?php echo $field_name_appendix_md5; ?>"
748 <?php echo $unnullify_trigger; ?>
749 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
750 id="field_<?php echo ($idindex); ?>_3">
751 <option value="">&nbsp;</option>
752 <?php
753 echo "\n";
755 foreach ($field_enum_values as $enum_value) {
756 echo ' ';
757 echo '<option value="' . $enum_value['html'] . '"';
758 if ($data == $enum_value['plain']
759 || ($data == ''
760 && (! isset($where_clause) || $field['Null'] != 'YES')
761 && isset($field['Default'])
762 && $enum_value['plain'] == $field['Default'])) {
763 echo ' selected="selected"';
765 echo '>' . $enum_value['html'] . '</option>' . "\n";
766 } // end for
769 </select>
770 <?php
771 } else {
772 $j = 0;
773 foreach ($field_enum_values as $enum_value) {
774 echo ' ';
775 echo '<input type="radio" name="field_' . $field_name_appendix_md5 . '"';
776 echo ' value="' . $enum_value['html'] . '"';
777 echo ' id="field_' . ($idindex) . '_3_' . $j . '"';
778 echo $unnullify_trigger;
779 if ($data == $enum_value['plain']
780 || ($data == ''
781 && (! isset($where_clause) || $field['Null'] != 'YES')
782 && isset($field['Default'])
783 && $enum_value['plain'] == $field['Default'])) {
784 echo ' checked="checked"';
786 echo ' tabindex="' . ($tabindex + $tabindex_for_value) . '" />';
787 echo '<label for="field_' . $idindex . '_3_' . $j . '">'
788 . $enum_value['html'] . '</label>' . "\n";
789 $j++;
790 } // end for
791 } // end else
792 } elseif ($field['pma_type'] == 'set') {
793 if (! isset($table_fields[$i]['values'])) {
794 $table_fields[$i]['values'] = array();
795 foreach ($extracted_fieldspec['enum_set_values'] as $val) {
796 $table_fields[$i]['values'][] = array(
797 'plain' => $val,
798 'html' => htmlspecialchars($val),
801 $table_fields[$i]['select_size'] = min(4, count($table_fields[$i]['values']));
803 $field_set_values = $table_fields[$i]['values'];
804 $select_size = $table_fields[$i]['select_size'];
806 $vset = array_flip(explode(',', $data));
807 echo $backup_field . "\n";
809 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>" value="set" />
810 <input type="hidden" name="fields<?php echo $field_name_appendix; ?>" value="" />
811 <select name="field_<?php echo $field_name_appendix_md5; ?>"
812 size="<?php echo $select_size; ?>"
813 multiple="multiple" <?php echo $unnullify_trigger; ?>
814 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
815 id="field_<?php echo ($idindex); ?>_3">
816 <?php
817 foreach ($field_set_values as $field_set_value) {
818 echo ' ';
819 echo '<option value="' . $field_set_value['html'] . '"';
820 if (isset($vset[$field_set_value['plain']])) {
821 echo ' selected="selected"';
823 echo '>' . $field_set_value['html'] . '</option>' . "\n";
824 } // end for
826 </select>
827 <?php
829 // We don't want binary data destroyed
830 elseif ($field['is_binary'] || $field['is_blob']) {
831 if (($cfg['ProtectBinary'] && $field['is_blob'])
832 || ($cfg['ProtectBinary'] == 'all' && $field['is_binary'])) {
833 echo "\n";
834 // for blobstreaming
835 if (PMA_BS_IsTablePBMSEnabled($db, $table, $tbl_type) && PMA_BS_IsPBMSReference($data, $db))
837 echo '<input type="hidden" name="remove_blob_ref_' . $field['Field_md5'] . $vkey . '" value="' . $data . '" />';
838 echo '<input type="checkbox" name="remove_blob_repo_' . $field['Field_md5'] . $vkey . '" /> ' . __('Remove BLOB Repository Reference') . "<br />";
839 echo PMA_BS_CreateReferenceLink($data, $db);
840 echo "<br />";
842 else
844 echo __('Binary - do not edit');
845 if (isset($data)) {
846 $data_size = PMA_formatByteDown(strlen(stripslashes($data)), 3, 1);
847 echo ' ('. $data_size [0] . ' ' . $data_size[1] . ')';
848 unset($data_size);
850 echo "\n";
851 } // end if (PMA_BS_IsTablePBMSEnabled($db, $table, $tbl_type) && PMA_BS_IsPBMSReference($data, $db))
853 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>" value="protected" />
854 <input type="hidden" name="fields<?php echo $field_name_appendix; ?>" value="" />
855 <?php
856 } elseif ($field['is_blob']) {
857 echo "\n";
858 echo $backup_field . "\n";
860 <textarea name="fields<?php echo $field_name_appendix; ?>"
861 rows="<?php echo $cfg['TextareaRows']; ?>"
862 cols="<?php echo $cfg['TextareaCols']; ?>"
863 dir="<?php echo $text_dir; ?>"
864 id="field_<?php echo ($idindex); ?>_3"
865 <?php echo $unnullify_trigger; ?>
866 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
867 ><?php echo $special_chars_encoded; ?></textarea>
868 <?php
870 } else {
871 // field size should be at least 4 and max 40
872 $fieldsize = min(max($field['len'], 4), 40);
873 echo "\n";
874 echo $backup_field . "\n";
876 <input type="text" name="fields<?php echo $field_name_appendix; ?>"
877 value="<?php echo $special_chars; ?>" size="<?php echo $fieldsize; ?>"
878 class="textfield" <?php echo $unnullify_trigger; ?>
879 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
880 id="field_<?php echo ($idindex); ?>_3" />
881 <?php
882 } // end if...elseif...else
884 // Upload choice (only for BLOBs because the binary
885 // attribute does not imply binary contents)
886 // (displayed whatever value the ProtectBinary has)
888 if ($is_upload && $field['is_blob']) {
889 // check if field type is of longblob and if the table is PBMS enabled.
890 if (($field['pma_type'] == "longblob") && PMA_BS_IsTablePBMSEnabled($db, $table, $tbl_type)) {
891 echo '<br />';
892 echo '<input type="checkbox" name="upload_blob_repo_' . $field['Field_md5'] . $vkey . '" /> ' . __('Upload to BLOB repository');
895 echo '<br />';
896 echo '<input type="file" name="fields_upload_' . $field['Field_md5'] . $vkey . '" class="textfield" id="field_' . $idindex . '_3" size="10" ' . $unnullify_trigger . '/>&nbsp;';
898 // find maximum upload size, based on field type
900 * @todo with functions this is not so easy, as you can basically
901 * process any data with function like MD5
903 $max_field_sizes = array(
904 'tinyblob' => '256',
905 'blob' => '65536',
906 'mediumblob' => '16777216',
907 'longblob' => '4294967296'); // yeah, really
909 $this_field_max_size = $max_upload_size; // from PHP max
910 if ($this_field_max_size > $max_field_sizes[$field['pma_type']]) {
911 $this_field_max_size = $max_field_sizes[$field['pma_type']];
913 echo PMA_displayMaximumUploadSize($this_field_max_size) . "\n";
914 // do not generate here the MAX_FILE_SIZE, because we should
915 // put only one in the form to accommodate the biggest field
916 if ($this_field_max_size > $biggest_max_file_size) {
917 $biggest_max_file_size = $this_field_max_size;
921 if (!empty($cfg['UploadDir'])) {
922 $files = PMA_getFileSelectOptions(PMA_userDir($cfg['UploadDir']));
923 if ($files === FALSE) {
924 echo ' <font color="red">' . __('Error') . '</font><br />' . "\n";
925 echo ' ' . __('The directory you set for upload work cannot be reached') . "\n";
926 } elseif (!empty($files)) {
927 echo "<br />\n";
928 echo ' <i>' . __('Or') . '</i>' . ' ' . __('web server upload directory') . ':<br />' . "\n";
929 echo ' <select size="1" name="fields_uploadlocal_' . $field['Field_md5'] . $vkey . '">' . "\n";
930 echo ' <option value="" selected="selected"></option>' . "\n";
931 echo $files;
932 echo ' </select>' . "\n";
934 } // end if (web-server upload directory)
935 } // end elseif (binary or blob)
937 elseif ('geometry' == $field['pma_type']) {
938 // ignore this column to avoid changing it
940 else {
941 // field size should be at least 4 and max 40
942 $fieldsize = min(max($field['len'], 4), 40);
943 echo $backup_field . "\n";
944 if ($field['is_char'] && ($cfg['CharEditing'] == 'textarea' || strpos($data, "\n") !== FALSE)) {
945 echo "\n";
947 <textarea name="fields<?php echo $field_name_appendix; ?>"
948 rows="<?php echo $cfg['CharTextareaRows']; ?>"
949 cols="<?php echo $cfg['CharTextareaCols']; ?>"
950 dir="<?php echo $text_dir; ?>"
951 id="field_<?php echo ($idindex); ?>_3"
952 <?php echo $unnullify_trigger; ?>
953 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
954 ><?php echo $special_chars_encoded; ?></textarea>
955 <?php
956 } else {
958 <input type="text" name="fields<?php echo $field_name_appendix; ?>"
959 value="<?php echo $special_chars; ?>" size="<?php echo $fieldsize; ?>"
960 class="textfield" <?php echo $unnullify_trigger; ?>
961 tabindex="<?php echo ($tabindex + $tabindex_for_value); ?>"
962 id="field_<?php echo ($idindex); ?>_3" />
963 <?php
964 if ($field['Extra'] == 'auto_increment') {
966 <input type="hidden" name="auto_increment<?php echo $field_name_appendix; ?>" value="1" />
967 <?php
968 } // end if
969 if (substr($field['pma_type'], 0, 9) == 'timestamp') {
971 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>" value="timestamp" />
972 <?php
974 if (substr($field['pma_type'], 0, 8) == 'datetime') {
976 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>" value="datetime" />
977 <?php
979 if ($field['True_Type'] == 'bit') {
981 <input type="hidden" name="fields_type<?php echo $field_name_appendix; ?>" value="bit" />
982 <?php
984 if ($field['pma_type'] == 'date' || $field['pma_type'] == 'datetime' || substr($field['pma_type'], 0, 9) == 'timestamp') {
985 // the _3 suffix points to the date field
986 // the _2 suffix points to the corresponding NULL checkbox
987 // in dateFormat, 'yy' means the year with 4 digits
989 <script type="text/javascript">
990 //<![CDATA[
991 $(function() {
992 $('#field_<?php echo ($idindex); ?>_3').datepicker({
993 duration: '',
994 time24h: true,
995 stepMinutes: 1,
996 stepHours: 1,
997 <?php echo ($field['pma_type'] == 'date' ? "showTime: false,":"showTime: true,"); ?>
998 dateFormat: 'yy-mm-dd',
999 altTimeField: '',
1000 constrainInput: false
1003 //]]>
1004 </script>
1005 <?php
1010 </td>
1011 </tr>
1012 <?php
1013 $odd_row = !$odd_row;
1014 } // end for
1015 $o_rows++;
1016 echo ' </tbody></table><br />';
1017 } // end foreach on multi-edit
1019 <br />
1021 <fieldset>
1022 <table border="0" cellpadding="5" cellspacing="0">
1023 <tr>
1024 <td valign="middle" nowrap="nowrap">
1025 <select name="submit_type" class="control_at_footer" tabindex="<?php echo ($tabindex + $tabindex_for_value + 1); ?>">
1026 <?php
1027 if (isset($where_clause)) {
1029 <option value="save"><?php echo __('Save'); ?></option>
1030 <?php
1033 <option value="insert"><?php echo __('Insert as new row'); ?></option>
1034 <option value="insertignore"><?php echo __('Insert as new row and ignore errors'); ?></option>
1035 <option value="showinsert"><?php echo __('Show insert query'); ?></option>
1036 </select>
1037 <?php
1038 echo "\n";
1040 if (!isset($after_insert)) {
1041 $after_insert = 'back';
1044 </td>
1045 <td valign="middle">
1046 &nbsp;&nbsp;&nbsp;<strong><?php echo __('and then'); ?></strong>&nbsp;&nbsp;&nbsp;
1047 </td>
1048 <td valign="middle" nowrap="nowrap">
1049 <select name="after_insert">
1050 <option value="back" <?php echo ($after_insert == 'back' ? 'selected="selected"' : ''); ?>><?php echo __('Go back to previous page'); ?></option>
1051 <option value="new_insert" <?php echo ($after_insert == 'new_insert' ? 'selected="selected"' : ''); ?>><?php echo __('Insert another new row'); ?></option>
1052 <?php
1053 if (isset($where_clause)) {
1055 <option value="same_insert" <?php echo ($after_insert == 'same_insert' ? 'selected="selected"' : ''); ?>><?php echo __('Go back to this page'); ?></option>
1056 <?php
1057 // If we have just numeric primary key, we can also edit next
1058 // in 2.8.2, we were looking for `field_name` = numeric_value
1059 //if (preg_match('@^[\s]*`[^`]*` = [0-9]+@', $where_clause)) {
1060 // in 2.9.0, we are looking for `table_name`.`field_name` = numeric_value
1061 if ($found_unique_key && preg_match('@^[\s]*`[^`]*`[\.]`[^`]*` = [0-9]+@', $where_clause)) {
1063 <option value="edit_next" <?php echo ($after_insert == 'edit_next' ? 'selected="selected"' : ''); ?>><?php echo __('Edit next row'); ?></option>
1064 <?php
1068 </select>
1069 </td>
1070 </tr>
1072 <tr>
1073 <td>
1074 <?php echo PMA_showHint(__('Use TAB key to move from value to value, or CTRL+arrows to move anywhere')); ?>
1075 </td>
1076 <td colspan="3" align="right" valign="middle">
1077 <input type="submit" class="control_at_footer" value="<?php echo __('Go'); ?>" tabindex="<?php echo ($tabindex + $tabindex_for_value + 6); ?>" id="buttonYes" />
1078 <input type="reset" class="control_at_footer" value="<?php echo __('Reset'); ?>" tabindex="<?php echo ($tabindex + $tabindex_for_value + 7); ?>" />
1079 </td>
1080 </tr>
1081 </table>
1082 </fieldset>
1083 <?php if ($biggest_max_file_size > 0) {
1084 echo ' ' . PMA_generateHiddenMaxFileSize($biggest_max_file_size) . "\n";
1085 } ?>
1086 </form>
1087 <?php
1088 if ($insert_mode) {
1090 <!-- Continue insertion form -->
1091 <form id="continueForm" method="post" action="tbl_replace.php" name="continueForm" >
1092 <?php echo PMA_generate_common_hidden_inputs($db, $table); ?>
1093 <input type="hidden" name="goto" value="<?php echo htmlspecialchars($GLOBALS['goto']); ?>" />
1094 <input type="hidden" name="err_url" value="<?php echo htmlspecialchars($err_url); ?>" />
1095 <input type="hidden" name="sql_query" value="<?php echo htmlspecialchars($sql_query); ?>" />
1096 <?php
1097 if (isset($where_clauses)) {
1098 foreach ($where_clause_array as $key_id => $where_clause) {
1099 echo '<input type="hidden" name="where_clause[' . $key_id . ']" value="' . htmlspecialchars(trim($where_clause)) . '" />'. "\n";
1102 $tmp = '<select name="insert_rows" id="insert_rows">' . "\n";
1103 $option_values = array(1,2,5,10,15,20,30,40);
1104 foreach ($option_values as $value) {
1105 $tmp .= '<option value="' . $value . '"';
1106 if ($value == $cfg['InsertRows']) {
1107 $tmp .= ' selected="selected"';
1109 $tmp .= '>' . $value . '</option>' . "\n";
1111 $tmp .= '</select>' . "\n";
1112 echo "\n" . sprintf(__('Continue insertion with %s rows'), $tmp);
1113 unset($tmp);
1114 echo '<noscript><input type="submit" value="' . __('Go') . '" /></noscript>' . "\n";
1115 echo '</form>' . "\n";
1119 * Displays the footer
1121 require './libraries/footer.inc.php';