czyli skad kod Wam pokazać ? wydaje mi się że chodzi o kod z pliku `view` z systemu newsów. ..
jestli tak to oto on
PLIK VIEW <?php
#
# STOPKA
ale co będę kolegę reklamował #
}
#if(!isset($_GET["news"])) {
# header("Location: ".$_SERVER["REQUEST_URI"]."news=view&p=1");
# exit();
#}
#if(!isset($_GET["p"])) {
# header("Location: ".$_SERVER["REQUEST_URI"]."&p=1");
# exit();
#}
$q = "SELECT * FROM ".DbPrefix."news";
if(isset($_GET["cat"])) { $qc = "SELECT CategoryId FROM ".DbPrefix."category WHERE CategoryId = '".$_GET["cat"]."'";
if($nc == 1) {
$q .= " WHERE NewCategory = '".$_GET["cat"]."'";
} else {
echo "Wybrana kategoria nie istnieje!"; }
}
$q .= " ORDER BY NewDate DESC LIMIT ".($_GET["p"]-1)*ConfigPage.",".ConfigPage;
if($n == 0) {
} else {
$i = 0;
$i++;
if(ConfigSize != NULL) {
if(strlen($r["NewValue"]) >= ConfigSize
) { $NewValue = substr($r["NewValue"], 0, ConfigSize
) ."... [<a href=\"".ConfigInclude
."news=comment&id=".$r["NewId"]."\">więcej</a>]\n";
} else {
$NewValue = $r["NewValue"];
}
} else {
$NewValue = $r["NewValue"];
}
$qc = "SELECT * FROM ".DbPrefix."category WHERE CategoryId = '".$r["NewCategory"]."'";
$qu = "SELECT UserName, UserContact FROM ".DbPrefix."users WHERE UserId = '".$r["NewUser"]."'";
if($r["NewCategory"] == 0) {
$rc["CategoryTpl"] = ConfigTpl;
$rc["CategoryId"] = null;
$rc["CategoryName"] = null;
}
"#{KATEGORIA}#is",
"#{TYTUL}#is",
"#{DATA}#is",
"#{TRESC}#is",
"#{ZDJECIE}#is",
"#{AUTOR}#is",
"#{DRUKUJ}#is",
"#{KOMENTUJ}#is",
"#{KOMENTARZY}#is",
"#{ZRODLO}#is",
""#{ID}#is
"<a href=\"".ConfigInclude."news=view&cat=".$rc["CategoryId"]."\">".$rc["CategoryName"]."</a>\n",
$r["NewTitle"],
date("d.m.Y H:i:s", $r["NewDate"]), $NewValue,
"<img border=\"0\" align=\"".$r["NewImgp"]."\" src=\"images/".$r["NewImage"]."\">",
"<a href=\"".$ru["UserContact"]."\">".$ru["UserName"]."</a>",
"<a href=\"print.php?id=".$r["NewId"]."\" target=\"_blank\">Drukuj</a>",
"<a href=\"".ConfigInclude."news=comment&id=".$r["NewId"]."\">Komentarze</a>",
$r["NewComments"],
$r["NewInfo"],
$r["NewId"]
), $rc["CategoryTpl"]);
$dt1 = date("m", $r["NewDate"]); $dt2 = date("Y", $r["NewDate"]); if(($_GET["mc"] == $dt1) && ($_GET["rok"] == $dt2)) {
}
} else {
}
if($n != $i) {
}
}
$qp = "SELECT NewId FROM ".DbPrefix."news";
if(isset($_GET["cat"])) { $qp .= " WHERE NewCategory = '".$_GET["cat"]."'";
}
if($np > ConfigPage) {
$s = ceil($np/ConfigPage
); echo "<br /><br />Strony:"; for($d = 1; $d <= $s; $d++) {
echo " [<a href=\"".preg_replace("#p=".$_GET["p"]."#is", "p=".$d, $_SERVER["REQUEST_URI"])."\">$d</a>]"; }
}
}
?>
PLIK INDEX (nie mojej strony, tylko skryptu)
<?php
require_once("includes/config.php");
$q = "SELECT * FROM ".DbPrefix."config";
define("Config".$r["ConfigName"], $r["ConfigValue"]); }
$q = "SELECT * FROM ".DbPrefix."banlist WHERE BanIp = '".$_SERVER["REMOTE_ADDR"]."'";
if($n == 1) {
exit("Zostałe¶ zbanowany!"); }
if(!isset($_GET["news"]) || $_GET["news"] == "view") { require_once("includes/view.php");
} elseif(!isset($_GET["news"]) || $_GET["news"] == "admin") { require_once("admin/index.php");
} elseif(isset($_GET["news"]) && $_GET["news"] != "admin" && $_GET["news"] != "view") { require_once("includes/".$_GET["news"].".php");
} else {
require_once("includes/view.php");
}
?>