Bravo List

Bravo List (http://www.bvlist.com/index.php)
-   BT.Manager (phpMyBitTorrent) (http://www.bvlist.com/forumdisplay.php?f=23)
-   -   youtube.php bug (http://www.bvlist.com/showthread.php?t=4268)

wMan 16th January 2010 20:47

youtube.php bug
 
wtf ? and video still got added :lol:
http://bildites.lv/images/tahkuq4qv8o4a029jtjr.png

joeroberts 16th January 2010 23:32

replace youtube.php with
Code:


include("header.php");
if ($_GET["id"] != ""){
$id = $_GET["id"];
if (checkaccess('can_add_uttube')){
mysql_query("DELETE FROM ".$db_prefix."_youtubevideo WHERE id= $id") or sqlerr(__FILE__, __LINE__);
}
else{
bterror("not authorized!","Sorry");
                die();
}
}
if ($_SERVER["REQUEST_METHOD"] == "POST")
{
if ($link == "" || $name == "")bterror("missing form data.","Sorry");
if(!checkaccess('can_add_uttube')){
        bterror("You do not have these Privelages.","Sorry");
                die();
}
    $name = $_POST["name"];
    $user = $user->name;
    $link = "http://youtube.com/v/".$_POST[link]."";
    mysql_query("INSERT INTO ".$db_prefix."_youtubevideo (link, name, addedby, addtime) VALUES('$link', '$name', '$user',NOW())") or sqlerr(__FILE__, __LINE__);
                        echo "";
  }
if (checkaccess('can_view_utube')){
$showvid = "";
if ($op == "show"){
//$showvid = $video;
$showvid = "";
}else{
$showvid = "";
}

print("\n\n\n\n");
print("
\n");
print("\n");
Opentable("Vidoe Clip");
?>

Please Choose A Video From The Right.






CloseTable();
print("
");
OpenTable("List");
?>

Have Fun



$query = "SELECT * FROM ".$db_prefix."_youtubevideo ORDER BY name";
$sql = $db->sql_query($query);
while ($row = $db->sql_fetchrow($sql)) {
$link = $row['link'];
$name = $row['name'];
print("");
}
CloseTable();
print("
  ".$name."
");
if (checkaccess('can_add_uttube')){
OpenTable("Add New Clip");
echo "";
?>


For URL: "http://youtube.com/watch?v=qppuuQrklHg"just put: qppuuQrklHg in link






echo "
Link:
Name:
";
CloseTable();
OpenTable("Clips Info");
echo "";
?>

 
 
 
 
 
 


$query = "SELECT * FROM ".$db_prefix."_youtubevideo ORDER BY id";
$sql = mysql_query($query);
    while ($row2 = mysql_fetch_array($sql)){
    $link = str_replace("http://youtube.com/v/","",$row2["link"]);
    $name = $row2["name"];
    $id = $row2["id"];
    $addedby = $row2["addedby"];
    $addtime = $row2["addtime"];
?>

 
 
 
 
 
 

$nr = $nr+1;
}
echo "
ID
Name
Link
Added by
Added
Delete
";
CloseTable();
}
}
include ("footer.php");
?>


All times are GMT +2. The time now is 00:40.

Powered by vBulletin® Version 3.8.11 Beta 3
Copyright ©2000 - 2024, vBulletin Solutions Inc.