confirmation requests
[phpmyadmin/crack.git] / tbl_alter.php3
blob5f839555c8e8bf71ccdc40a3166f7679263edfa0
1 <?php
2 /* $Id$ */
3 // vim: expandtab sw=4 ts=4 sts=4:
6 /**
7 * Gets some core libraries
8 */
9 require('./libraries/grab_globals.lib.php3');
10 if (!isset($submit_mult)) {
11 if (isset($submit)) {
12 $js_to_run = 'functions.js';
14 include('./header.inc.php3');
18 /**
19 * Defines the url to return to in case of error in a sql statement
21 $err_url = 'tbl_properties_structure.php3?' . PMA_generate_common_url($db, $table);
24 /**
25 * Modifications have been submitted -> updates the table
27 if (isset($submit)) {
28 $field_cnt = count($field_orig);
29 for ($i = 0; $i < $field_cnt; $i++) {
30 if (get_magic_quotes_gpc()) {
31 $field_name[$i] = stripslashes($field_name[$i]);
32 $field_default[$i] = stripslashes($field_default[$i]);
33 $field_length[$i] = stripslashes($field_length[$i]);
36 if (PMA_MYSQL_INT_VERSION < 32306) {
37 PMA_checkReservedWords($field_name[$i], $err_url);
40 // Some fields have been urlencoded or double quotes have been translated
41 // to "&quot;" in tbl_properties.php3
42 $field_orig[$i] = urldecode($field_orig[$i]);
43 if (strcmp(str_replace('"', '&quot;', $field_orig[$i]), $field_name[$i]) == 0) {
44 $field_name[$i] = $field_orig[$i];
46 $field_default_orig[$i] = urldecode($field_default_orig[$i]);
47 if (strcmp(str_replace('"', '&quot;', $field_default_orig[$i]), $field_default[$i]) == 0) {
48 $field_default[$i] = $field_default_orig[$i];
50 $field_length_orig[$i] = urldecode($field_length_orig[$i]);
51 if (strcmp(str_replace('"', '&quot;', $field_length_orig[$i]), $field_length[$i]) == 0) {
52 $field_length[$i] = $field_length_orig[$i];
54 if (!isset($query)) {
55 $query = '';
56 } else {
57 $query .= ', CHANGE ';
59 $query .= PMA_backquote($field_orig[$i]) . ' ' . PMA_backquote($field_name[$i]) . ' ' . $field_type[$i];
60 // Some field types shouldn't have lengths
61 if ($field_length[$i] != ''
62 && !eregi('^(DATE|DATETIME|TIME|TINYBLOB|TINYTEXT|BLOB|TEXT|MEDIUMBLOB|MEDIUMTEXT|LONGBLOB|LONGTEXT)$', $field_type[$i])) {
63 $query .= '(' . $field_length[$i] . ')';
65 if ($field_attribute[$i] != '') {
66 $query .= ' ' . $field_attribute[$i];
68 if ($field_default[$i] != '') {
69 if (strtoupper($field_default[$i]) == 'NULL') {
70 $query .= ' DEFAULT NULL';
71 } else {
72 $query .= ' DEFAULT \'' . PMA_sqlAddslashes($field_default[$i]) . '\'';
75 if ($field_null[$i] != '') {
76 $query .= ' ' . $field_null[$i];
78 if ($field_extra[$i] != '') {
79 $query .= ' ' . $field_extra[$i];
81 } // end for
83 // To allow replication, we first select the db to use and then run queries
84 // on this db.
85 $sql_query = 'USE ' . PMA_backquote($db);
86 $result = PMA_mysql_query($sql_query) or PMA_mysqlDie('', '', '', $err_url);
87 // Optimization fix - 2 May 2001 - Robbat2
88 $sql_query = 'ALTER TABLE ' . PMA_backquote($table) . ' CHANGE ' . $query;
89 $result = PMA_mysql_query($sql_query) or PMA_mysqlDie('', '', '', $err_url);
90 $message = $strTable . ' ' . htmlspecialchars($table) . ' ' . $strHasBeenAltered;
91 $btnDrop = 'Fake';
92 include('./tbl_properties_structure.php3');
93 exit();
97 /**
98 * No modifications yet required -> displays the table fields
100 else {
101 if (!isset($selected)) {
102 $selected[] = $field;
103 $selected_cnt = 1;
104 } else { // from a multiple submit
105 $selected_cnt = count($selected);
108 // TODO: optimize in case of multiple fields to modify
109 for ($i = 0; $i < $selected_cnt; $i++) {
110 if (!empty($submit_mult)) {
111 $field = PMA_sqlAddslashes(urldecode($selected[$i]), TRUE);
113 else if (get_magic_quotes_gpc()) {
114 $field = PMA_sqlAddslashes(stripslashes($selected[$i]), TRUE);
116 else {
117 $field = PMA_sqlAddslashes($selected[$i], TRUE);
119 $local_query = 'SHOW FIELDS FROM ' . PMA_backquote($table) . ' FROM ' . PMA_backquote($db) . " LIKE '$field'";
120 $result = PMA_mysql_query($local_query) or PMA_mysqlDie('', $local_query, '', $err_url);
121 $fields_meta[] = PMA_mysql_fetch_array($result);
122 mysql_free_result($result);
125 $num_fields = count($fields_meta);
126 $action = 'tbl_alter.php3';
127 include('./tbl_properties.inc.php3');
132 * Displays the footer
134 require('./footer.inc.php3');