* Fixed bug #0000527: Title tag is added even if the page title was empty. Thanks...
[Packages/TYPO3.CMS.git] / typo3 / wizard_rte.php
index e0bd429..2063b89 100755 (executable)
@@ -1,22 +1,22 @@
 <?php
 /***************************************************************
 *  Copyright notice
-*  
-*  (c) 1999-2003 Kasper Skaarhoj (kasper@typo3.com)
+*
+*  (c) 1999-2004 Kasper Skaarhoj (kasperYYYY@typo3.com)
 *  All rights reserved
 *
-*  This script is part of the TYPO3 project. The TYPO3 project is 
+*  This script is part of the TYPO3 project. The TYPO3 project is
 *  free software; you can redistribute it and/or modify
 *  it under the terms of the GNU General Public License as published by
 *  the Free Software Foundation; either version 2 of the License, or
 *  (at your option) any later version.
-* 
+*
 *  The GNU General Public License can be found at
 *  http://www.gnu.org/copyleft/gpl.html.
-*  A copy is found in the textfile GPL.txt and important notices to the license 
+*  A copy is found in the textfile GPL.txt and important notices to the license
 *  from the author is found in LICENSE.txt distributed with these scripts.
 *
-* 
+*
 *  This script is distributed in the hope that it will be useful,
 *  but WITHOUT ANY WARRANTY; without even the implied warranty of
 *  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 *
 *  This copyright notice MUST APPEAR in all copies of the script!
 ***************************************************************/
-/** 
+/**
  * Wizard to display the RTE in "full screen" mode
  *
  * $Id$
  * Revised for TYPO3 3.6 November/2003 by Kasper Skaarhoj
  * XHTML compliant
- * 
- * @author     Kasper Skaarhoj <kasper@typo3.com>
+ *
+ * @author     Kasper Skaarhoj <kasperYYYY@typo3.com>
  */
 /**
  * [CLASS/FUNCTION INDEX of SCRIPT]
  *
  *
  *
- *   80: class SC_wizard_rte 
- *   98:     function init()   
- *  122:     function main()   
- *  273:     function printContent()   
+ *   81: class SC_wizard_rte
+ *   99:     function init()
+ *  123:     function main()
+ *  279:     function printContent()
+ *  290:     function checkEditAccess($table,$uid)
  *
- * TOTAL FUNCTIONS: 3
+ * TOTAL FUNCTIONS: 4
  * (This index is automatically created/updated by the extension "extdeveval")
  *
  */
 
+
 
 $BACK_PATH='';
 require ('init.php');
 require ('template.php');
-include ('sysext/lang/locallang_wizards.php');
+$LANG->includeLLFile('EXT:lang/locallang_wizards.xml');
 require_once (PATH_t3lib.'class.t3lib_tceforms.php');
 require_once (PATH_t3lib.'class.t3lib_loaddbgroup.php');
 require_once (PATH_t3lib.'class.t3lib_transferdata.php');
@@ -72,13 +73,13 @@ t3lib_BEfunc::lockRecords();
 
 /**
  * Script Class for rendering the full screen RTE display
- * 
- * @author     Kasper Skaarhoj <kasper@typo3.com>
+ *
+ * @author     Kasper Skaarhoj <kasperYYYY@typo3.com>
  * @package TYPO3
  * @subpackage core
  */
 class SC_wizard_rte {
-       
+
                // Internal, dynamic:
        var $doc;                                       // Document template object
        var $content;                           // Content accumulation for the module.
@@ -86,25 +87,25 @@ class SC_wizard_rte {
                // Internal, static: GPvars
        var $P;                                         // Wizard parameters, coming from TCEforms linking to the wizard.
        var $popView;                           // If set, launch a new window with the current records pid.
-       
-       
+
+
 
 
        /**
         * Initialization of the class
-        * 
-        * @return      void            
+        *
+        * @return      void
         */
        function init() {
                global $BACK_PATH;
 
                        // Setting GPvars:
-               $this->P = t3lib_div::GPvar('P',1);
-               $this->popView = t3lib_div::GPVar('popView');
+               $this->P = t3lib_div::_GP('P');
+               $this->popView = t3lib_div::_GP('popView');
 
                        // "Module name":
-               $this->MCONF['name']='xMOD_wizard_rte.php';             
-               
+               $this->MCONF['name']='xMOD_wizard_rte.php';
+
                        // Starting the document template object:
                $this->doc = t3lib_div::makeInstance('mediumDoc');
                $this->doc->docType = 'xhtml_trans';
@@ -116,18 +117,18 @@ class SC_wizard_rte {
 
        /**
         * Main function, rendering the document with the iframe with the RTE in.
-        * 
-        * @return      void            
+        *
+        * @return      void
         */
        function main() {
                global $BE_USER,$LANG;
 
                        // If all parameters are available:
-               if ($this->P['table'] && $this->P['field'] && $this->P['uid'])  {
+               if ($this->P['table'] && $this->P['field'] && $this->P['uid'] && $this->checkEditAccess($this->P['table'],$this->P['uid']))     {
 
                                // Getting the raw record (we need only the pid-value from here...)
                        $rawRec = t3lib_BEfunc::getRecord($this->P['table'],$this->P['uid']);
-                       
+
                                // Setting JavaScript, including the pid value for viewing:
                        $this->doc->JScode = $this->doc->wrapScriptTags('
                                        function jumpToUrl(URL,formEl)  {       //
@@ -139,9 +140,9 @@ class SC_wizard_rte {
                                                        }
                                                } else document.location = URL;
                                        }
-                               '.($this->popView ? t3lib_BEfunc::viewOnClick($rawRec['pid'],'',t3lib_BEfunc::BEgetRootLine($rawRec['pid'])) : '').'            
+                               '.($this->popView ? t3lib_BEfunc::viewOnClick($rawRec['pid'],'',t3lib_BEfunc::BEgetRootLine($rawRec['pid'])) : '').'
                        ');
-                       
+
                                // Create page HTML header:
                        $this->content.=$this->doc->startPage('');
 
@@ -150,40 +151,45 @@ class SC_wizard_rte {
                        $tceforms = t3lib_div::makeInstance('t3lib_TCEforms');
                        $tceforms->initDefaultBEMode(); // Init...
                        $tceforms->disableWizards = 1;  // SPECIAL: Disables all wizards - we are NOT going to need them.
-                       $tceforms->RTEdivStyle = 'position:relative; left:0px; top:0px; height:100%; width:100%; border:solid 0px;';    // SPECIAL: Setting style for the RTE <DIV> layer containing the IFRAME
                        $tceforms->colorScheme[0]=$this->doc->bgColor;  // SPECIAL: Setting background color of the RTE to ordinary background
-               
+
+                               // Initialize style for RTE object:
+                       $RTEobj = &t3lib_BEfunc::RTEgetObj();   // Getting reference to the RTE object used to render the field!
+                       if ($RTEobj->ID == 'rte')       {
+                               $RTEobj->RTEdivStyle = 'position:relative; left:0px; top:0px; height:100%; width:100%; border:solid 0px;';      // SPECIAL: Setting style for the RTE <DIV> layer containing the IFRAME
+       #                       $RTEobj->RTEdivStyle = 'position:relative; left:0px; top:0px; height:600px; width:100%; border:solid 0px;';     // SPECIAL: Setting style for the RTE <DIV> layer containing the IFRAME
+                       }
+
                                // Fetching content of record:
                        $trData = t3lib_div::makeInstance('t3lib_transferData');
                        $trData->lockRecords=1;
                        $trData->fetchRecord($this->P['table'],$this->P['uid'],'');
-               
+
                                // Getting the processed record content out:
                        reset($trData->regTableItems_data);
                        $rec = current($trData->regTableItems_data);
                        $rec['uid'] = $this->P['uid'];
                        $rec['pid'] = $rawRec['pid'];
-               
+
                                // Making the toolbar:
                        $closeUrl = $this->P['returnUrl'];
                        $R_URI=t3lib_div::linkThisScript(array('popView'=>''));
-               
+
                                // Getting settings for the undo button:
-                       $undoButton=0;
-                       $undoQuery='SELECT tstamp FROM sys_history WHERE tablename="'.addslashes($this->P['table']).'" AND recuid="'.addslashes($this->P['uid']).'" ORDER BY tstamp DESC LIMIT 1';
-                       $undoRes = mysql(TYPO3_db,$undoQuery);
-                       if ($undoButtonR = mysql_fetch_assoc($undoRes)) {
-                               $undoButton=1;
+                       $undoButton = 0;
+                       $undoRes = $GLOBALS['TYPO3_DB']->exec_SELECTquery('tstamp', 'sys_history', 'tablename="'.$GLOBALS['TYPO3_DB']->quoteStr($this->P['table'], 'sys_history').'" AND recuid="'.$GLOBALS['TYPO3_DB']->quoteStr($this->P['uid'], 'sys_history').'"', '', 'tstamp DESC', '1');
+                       if ($undoButtonR = $GLOBALS['TYPO3_DB']->sql_fetch_assoc($undoRes))     {
+                               $undoButton = 1;
                        }
-               
+
                                // ShortCut
                        if ($BE_USER->mayMakeShortcut())        {
                                $sCut = $this->doc->makeShortcutIcon('P','',$this->MCONF['name'],1);
                        } else {
                                $sCut ='';
                        }
-               
-               
+
+
                                // Make Toolbar of buttons:
                        $toolBarButtons=array();
 
@@ -198,14 +204,14 @@ class SC_wizard_rte {
                                $toolBarButtons[]=
                                        '<a href="#" onclick="'.htmlspecialchars('document.editform.redirect.value+=\'&popView=1\'; TBE_EDITOR_checkAndDoSubmit(1); return false;').'">'.
                                        '<img'.t3lib_iconWorks::skinImg($this->doc->backPath,'gfx/savedokshow.gif','width="21" height="16"').' class="c-inputButton" title="'.$LANG->sL('LLL:EXT:lang/locallang_core.php:rm.saveDocShow',1).'" alt="" />'.
-                                       '</a>'; 
+                                       '</a>';
                        }
                                // Close:
                        $toolBarButtons[]=
                                        '<a href="#" onclick="'.htmlspecialchars('jumpToUrl(unescape(\''.rawurlencode($closeUrl).'\')); return false;').'">'.
                                        '<img'.t3lib_iconWorks::skinImg($this->doc->backPath,'gfx/closedok.gif','width="21" height="16"').' class="c-inputButton" title="'.$LANG->sL('LLL:EXT:lang/locallang_core.php:rm.closeDoc',1).'" alt="" />'.
                                        '</a>';
-                       
+
                                // Undo/Revert:
                        if ($undoButton)        {
                                $toolBarButtons[]=
@@ -216,7 +222,7 @@ class SC_wizard_rte {
 
                        $panel = '<span class="c-saveButtons">'.implode('',$toolBarButtons).'</span>';
 
-                                               
+
                                // TSconfig, setting width:
                        $fieldTSConfig = $tceforms->setTSconfig($this->P['table'],$rec,$this->P['field']);
                        if (strcmp($fieldTSConfig['RTEfullScreenWidth'],''))    {
@@ -224,31 +230,31 @@ class SC_wizard_rte {
                        } else {
                                $width='500';
                        }
-               
+
                                // Get the form field and wrap it in the table with the buttons:
                        $formContent = $tceforms->getSoloField($this->P['table'],$rec,$this->P['field']);
                        $formContent = '
 
-               
+
                        <!--
                                RTE wizard:
                        -->
-                               <table border="0" cellpadding="0" cellspacing="0" width="'.$width.'" height="98%" id="typo3-rtewizard">
+                               <table border="0" cellpadding="0" cellspacing="0" width="'.$width.'" id="typo3-rtewizard">
                                        <tr>
                                                <td>'.$panel.'</td>
                                                <td align="right">'.$sCut.'</td>
                                                <td></td>
                                        </tr>
-                                       <tr height="98%">
-                                               <td width="'.$width.'" colspan="2">'.$formContent.'</td>
+                                       <tr>
+                                               <td width="'.$width.'" colspan="2" id="c-formContent">'.$formContent.'</td>
                                                <td></td>
                                        </tr>
                                </table>';
-               
+
                                // Adding hidden fields:
                        $formContent.= '<input type="hidden" name="redirect" value="'.htmlspecialchars($R_URI).'" />
                                                <input type="hidden" name="_serialNumber" value="'.md5(microtime()).'" />';
-                       
+
 
                                // Finally, add the whole setup:
                        $this->content.=
@@ -267,12 +273,42 @@ class SC_wizard_rte {
 
        /**
         * Outputting the accumulated content to screen
-        * 
-        * @return      void            
+        *
+        * @return      void
         */
        function printContent() {
                echo $this->content;
        }
+
+       /**
+        * Checks access for element
+        *
+        * @param       string          Table name
+        * @param       integer         Record uid
+        * @return      void
+        */
+       function checkEditAccess($table,$uid)   {
+               global $BE_USER;
+
+               $calcPRec = t3lib_BEfunc::getRecord($table,$uid);
+               t3lib_BEfunc::fixVersioningPid($table,$uid);
+               if (is_array($calcPRec))        {
+                       if ($table=='pages')    {       // If pages:
+                               $CALC_PERMS = $BE_USER->calcPerms($calcPRec);
+                               $hasAccess = $CALC_PERMS&2 ? TRUE : FALSE;
+                       } else {
+                               $CALC_PERMS = $BE_USER->calcPerms(t3lib_BEfunc::getRecord('pages',$calcPRec['pid']));   // Fetching pid-record first.
+                               $hasAccess = $CALC_PERMS&16 ? TRUE : FALSE;
+                       }
+
+                               // Check internals regarding access:
+                       if ($hasAccess) {
+                               $hasAccess = $BE_USER->recordEditAccessInternals($table, $calcPRec);
+                       }
+               } else $hasAccess = FALSE;
+
+               return $hasAccess;
+       }
 }
 
 // Include extension?
@@ -296,4 +332,4 @@ $SOBE = t3lib_div::makeInstance('SC_wizard_rte');
 $SOBE->init();
 $SOBE->main();
 $SOBE->printContent();
-?>
\ No newline at end of file
+?>