]/"; // 특수문자 $patn2 = "/[`~!@#$%^*\\\'\";:\/^+_()<>]/"; // 특수문자 $patn3 = "/[`~!@#$%^*\\\'\";:^+()<>]/"; // 특수문자 if(strlen($basename2) != 0){ if($tools->paramChk($patn3, $basename2) == 1){ $tools->errMsg('잘못된 접근입니다.'); } } //파일 다운로드 취약점 방지 2020.10.6 $mv_data = $_GET[bbs_data]; $bbs_data1 = $tools->decode( $_GET[bbs_data] ); $bbs_data = $tools->RemoveXSS($bbs_data1); if( $_GET[idx] ) { $idx1 = $_GET[idx]; $idx = $tools->RemoveXSS($idx1);} else { $idx = $bbs_data[idx]; } if( $_GET[code] ) { $code1 = $_GET[code]; $code = $tools->RemoveXSS($code1);} else { $code = $bbs_data[code]; } if( $_GET[listNo] ) { $listNo1 = $_GET[listNo]; $listNo = $tools->RemoveXSS($listNo1);} else { $listNo = $bbs_data[listNo]; } if( $_GET[startPage] ) { $startPage1 = $_GET[startPage]; $startPage = $tools->RemoveXSS($startPage1);} else { $startPage = $bbs_data[startPage]; } if( $_POST[search_item] ) { $search_item1 = $_POST[search_item]; $search_item = $tools->RemoveXSS($search_item1);} else { $search_item = $bbs_data[search_item]; } if( $_POST[search_order] ) { $search_order1 = $_POST[search_order]; $search_order = $tools->RemoveXSS($search_order1);} else { $search_order= $bbs_data[search_order]; } if( $_POST[url] ) { $url1 = $_POST[url]; $url = $tools->RemoveXSS($url1); } elseif($_GET[url]) { $url1 = $_GET[url]; $url = $tools->RemoveXSS($url1); } else { $url = $bbs_data[url]; } if( $_POST[keyvalue] ) { $keyvalue1 = $_POST[keyvalue]; $keyvalue = $tools->RemoveXSS($keyvalue1); } elseif($_GET[keyvalue]) { $keyvalue1 = $_GET[keyvalue]; $keyvalue = $tools->RemoveXSS($keyvalue1); } else { $keyvalue = $bbs_data[keyvalue];} if(!$code) { $tools->errMsg("잘못된 접근입니다");} $bbs_admin_stat = $db->object("cs_bbs", "where code='$code'"); // 게시판 접근 권한 설정 if( $bbs_admin_stat->bbs_access == 1 ) { if( !$_SESSION[LEVEL] ) { $tools->errMsg('회원 전용입니다.\n\n로그인을 해주세요');} } $menu = $db->object("cs_menu","where keyvalue='$keyvalue'"); $header_title = $menu->name; /* if($keyvalue =='sub01') { $header_title = '전공소개'; $key_url = 'sub01a'; } elseif($keyvalue =='sub02') { $header_title = '연구분야';$key_url = 'sub02a'; } elseif($keyvalue =='sub03') { $header_title = '교육과정';$key_url = 'sub03a'; } elseif($keyvalue =='sub04') { $header_title = '입학안내';$key_url = 'sub04a'; } elseif($keyvalue =='sub07') { $header_title = '커뮤니티';$key_url = 'sub07a'; } elseif($keyvalue =='sub08') { $header_title = '개인정보처리방침';$key_url = 'sub08a';} */ if($keyvalue=='sub07') { // 공지사항,강의자료실, 취업정보,각종서식,장학안내 구분자 $key_gubun = ""; } else { $key_gubun = " and youtube='$keyvalue'"; } if($tools->MobileCheck() == "Mobile"){ $class_code1 =""; $class_code2 =""; $textarea_id = "";} else { $class_code1 ="pull-left"; $class_code2 ="pull-right";$textarea_id = "content";}?>

object("cs_banner","where status=9 and title='$keyvalue'");?>

bbs_type==1 || $bbs_admin_stat->bbs_type==2) {?>
bbs_pds ) {?> select( $table, "where code='$code' and notice > 0 $key_gubun order by reg_date desc,idx desc" ); while( $bbs_stat = mysql_fetch_object($notice_result) ) { $new_check = $bbs_admin_stat->new_check; if($tools->MobileCheck() == "Mobile"){ $subject = $tools->utf8_strcut($db->stripSlash($bbs_stat->subject), 60); } else { $subject = $tools->utf8_strcut($db->stripSlash($bbs_stat->subject), 60); } // $subject = $tools->strHtmlNo($subject); $name = $bbs_stat->name; $read_cnt = $bbs_stat->read_cnt; $reg_date = $tools->strDateCut( $bbs_stat->reg_date ); $coment_cnt = $db->cnt("cs_bbs_coment", "where link=$bbs_stat->idx"); $key_gubun_name = $bbs_stat->youtube; if( $new_check ) { $new_img = $page->bbsNewImg( $bbs_stat->reg_date, $bbs_admin_stat->new_mark, "" ); } $bbs_data = $tools->encode("idx=".$bbs_stat->idx."&startPage=".$startPage."&listNo=".$listNo."&table=".$table."&code=".$code."&search_item=".$search_item."&search_order=".$search_order."&url=".$code."&keyvalue=".$keyvalue); ?> bbs_pds ) {?> list_height; // 페이지 갯수 $pageScale = $bbs_admin_stat->list_page; // 스타트 페이지 if( !$startPage ) { $startPage = 0; } // 토탈페이지 $totalPage = floor($startPage / ($listScale * $pageScale)); // 검색 if( empty($search_item) || $search_item == 0 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun" ); $result = $db->select( $table, "where code='$code' and notice < 1 $key_gubun order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } else if( $search_item == 1 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun and subject like '%$search_order%'" ); $result = $db->select( $table, "where code='$code' and notice < 1 $key_gubun and subject like '%$search_order%' order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } else if( $search_item == 2 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun and content like '%$search_order%'" ); $result = $db->select( $table, "where code='$code' and notice < 1 and content like '%$search_order%' order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } else if( $search_item == 4 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun and name like '%$search_order%'" ); $result = $db->select( $table, "where code='$code' and notice < 1 $key_gubun and name like '%$search_order%' order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } else if( $search_item == 3 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun and (subject like '%$search_order%' or content like '%$search_order%')" ); $result = $db->select( $table, "where code='$code' and notice < 1 $key_gubun and (subject like '%$search_order%' or content like '%$search_order%') order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } else if( $search_item == 6 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun and (content like '%$search_order%' or name like '%$search_order%')" ); $result = $db->select( $table, "where code='$code' and notice < 1 $key_gubun and (content like '%$search_order%' or name like '%$search_order%') order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } else if( $search_item == 5 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun and (name like '%$search_order%' or subject like '%$search_order%')" ); $result = $db->select( $table, "where code='$code' and notice < 1 $key_gubun and (name like '%$search_order%' or subject like '%$search_order%') order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } else if( $search_item == 7 ) { $totalList = $db->cnt( $table, "where code='$code' and notice < 1 $key_gubun and (content like '%$search_order%' or name like '%$search_order%' or subject like '%$search_order%')" ); $result = $db->select( $table, "where code='$code' and notice < 1 $key_gubun and (content like '%$search_order%' or name like '%$search_order%' or subject like '%$search_order%') order by reg_date desc,ref desc, re_step ASC LIMIT $startPage, $listScale" ); } // 페이지넘버 if( $startPage ) { $listNo = $totalList - $startPage; } else { $listNo = $totalList; } // 라인색상 초기화 $colorIndex=0; // 답변 화살표 $arowImage="┗"; // 루프 시작 while( $bbs_stat = mysql_fetch_object($result)) { //라인색상 초기화 if($colorIndex%2) $bgColor=$bbs_admin_stat->list_line1; else $bgColor=$bbs_admin_stat->list_line2; // 마우스 오버 색상 $mouseColor = $bbs_admin_stat->mouse_over; $new_check = $bbs_admin_stat->new_check; $cool_check = $bbs_admin_stat->cool_check; if($tools->MobileCheck() == "Mobile"){ $subject = $tools->utf8_strcut($bbs_stat->subject, 36); } else { $subject = $tools->utf8_strcut($bbs_stat->subject, 60); } // $subject = $tools->strHtmlNo($subject); $name = $bbs_stat->name; $read_cnt = $bbs_stat->read_cnt; $reg_date = $tools->strDateCut( $bbs_stat->reg_date ); $coment_cnt = $db->cnt("cs_bbs_coment", "where link=$bbs_stat->idx"); $key_gubun_name = $bbs_stat->youtube; //new IMG if( $new_check ) { $new_img = $page->bbsNewImg( $bbs_stat->reg_date, $bbs_admin_stat->new_mark, "" ); } // hit IMG if( $cool_check ) { $cool_img = $page->bbsCoolImg( $bbs_admin_stat->cool_mark, $read_cnt, "" ); } // 답변 re image view if($bbs_stat->re_level > 0){ $wid = 7 * $bbs_stat->re_level; $level_img="$arowImage"." "; } else $level_img=""; $bbs_data = $tools->encode("idx=".$bbs_stat->idx."&startPage=".$startPage."&listNo=".$listNo."&table=".$table."&code=".$code."&search_item=".$search_item."&search_order=".$search_order."&url=".$code."&keyvalue=".$keyvalue); ?>
 ()