for Loic
[phpmyadmin/crack.git] / tbl_alter.php3
blob9ea146ae332e377ee5ba6a910ffbdeccd84a77df
1 <?php
2 /* $Id$ */
5 /**
6 * Gets some core libraries
7 */
8 require('./libraries/grab_globals.lib.php3');
9 if (!isset($submit_mult)) {
10 if (isset($submit)) {
11 $js_to_run = 'functions.js';
13 include('./header.inc.php3');
17 /**
18 * Defines the url to return to in case of error in a sql statement
20 $err_url = 'tbl_properties_structure.php3'
21 . '?lang=' . $lang
22 . '&amp;convcharset=' . $convcharset
23 . '&amp;server=' . $server
24 . '&amp;db=' . urlencode($db)
25 . '&amp;table=' . urlencode($table);
28 /**
29 * Modifications have been submitted -> updates the table
31 if (isset($submit)) {
32 $field_cnt = count($field_orig);
33 for ($i = 0; $i < $field_cnt; $i++) {
34 if (get_magic_quotes_gpc()) {
35 $field_name[$i] = stripslashes($field_name[$i]);
36 $field_default[$i] = stripslashes($field_default[$i]);
37 $field_length[$i] = stripslashes($field_length[$i]);
40 if (PMA_MYSQL_INT_VERSION < 32306) {
41 PMA_checkReservedWords($field_name[$i], $err_url);
44 // Some fields have been urlencoded or double quotes have been translated
45 // to "&quot;" in tbl_properties.php3
46 $field_orig[$i] = urldecode($field_orig[$i]);
47 if (str_replace('"', '&quot;', $field_orig[$i]) == $field_name[$i]) {
48 $field_name[$i] = $field_orig[$i];
50 $field_default_orig[$i] = urldecode($field_default_orig[$i]);
51 if (str_replace('"', '&quot;', $field_default_orig[$i]) == $field_default[$i]) {
52 $field_default[$i] = $field_default_orig[$i];
54 $field_length_orig[$i] = urldecode($field_length_orig[$i]);
55 if (str_replace('"', '&quot;', $field_length_orig[$i]) == $field_length[$i]) {
56 $field_length[$i] = $field_length_orig[$i];
58 if (!isset($query)) {
59 $query = '';
60 } else {
61 $query .= ', CHANGE ';
63 $query .= PMA_backquote($field_orig[$i]) . ' ' . PMA_backquote($field_name[$i]) . ' ' . $field_type[$i];
64 // Some field types shouldn't have lengths
65 if ($field_length[$i] != ''
66 && !eregi('^(DATE|DATETIME|TIME|TINYBLOB|TINYTEXT|BLOB|TEXT|MEDIUMBLOB|MEDIUMTEXT|LONGBLOB|LONGTEXT)$', $field_type[$i])) {
67 $query .= '(' . $field_length[$i] . ')';
69 if ($field_attribute[$i] != '') {
70 $query .= ' ' . $field_attribute[$i];
72 if ($field_default[$i] != '') {
73 if (strtoupper($field_default[$i]) == 'NULL') {
74 $query .= ' DEFAULT NULL';
75 } else {
76 $query .= ' DEFAULT \'' . PMA_sqlAddslashes($field_default[$i]) . '\'';
79 if ($field_null[$i] != '') {
80 $query .= ' ' . $field_null[$i];
82 if ($field_extra[$i] != '') {
83 $query .= ' ' . $field_extra[$i];
85 } // end for
87 // To allow replication, we first select the db to use and then run queries
88 // on this db.
89 $sql_query = 'USE ' . PMA_backquote($db);
90 $result = PMA_mysql_query($sql_query) or PMA_mysqlDie('', '', '', $err_url);
91 // Optimization fix - 2 May 2001 - Robbat2
92 $sql_query = 'ALTER TABLE ' . PMA_backquote($table) . ' CHANGE ' . $query;
93 $result = PMA_mysql_query($sql_query) or PMA_mysqlDie('', '', '', $err_url);
94 $message = $strTable . ' ' . htmlspecialchars($table) . ' ' . $strHasBeenAltered;
95 $btnDrop = 'Fake';
96 include('./tbl_properties_structure.php3');
97 exit();
102 * No modifications yet required -> displays the table fields
104 else {
105 if (!isset($selected)) {
106 $selected[] = $field;
107 $selected_cnt = 1;
108 } else { // from a multiple submit
109 $selected_cnt = count($selected);
112 // TODO: optimize in case of multiple fields to modify
113 for ($i = 0; $i < $selected_cnt; $i++) {
114 if (!empty($submit_mult)) {
115 $field = PMA_sqlAddslashes(urldecode($selected[$i]), TRUE);
117 else if (get_magic_quotes_gpc()) {
118 $field = PMA_sqlAddslashes(stripslashes($selected[$i]), TRUE);
120 else {
121 $field = PMA_sqlAddslashes($selected[$i], TRUE);
123 $local_query = 'SHOW FIELDS FROM ' . PMA_backquote($db) . '.' . PMA_backquote($table) . " LIKE '$field'";
124 $result = PMA_mysql_query($local_query) or PMA_mysqlDie('', $local_query, '', $err_url);
125 $fields_meta[] = PMA_mysql_fetch_array($result);
126 mysql_free_result($result);
129 $num_fields = count($fields_meta);
130 $action = 'tbl_alter.php3';
131 include('./tbl_properties.inc.php3');
136 * Displays the footer
138 require('./footer.inc.php3');