mirror of
https://github.com/vichan-devel/vichan.git
synced 2024-12-18 10:25:55 +01:00
86 lines
2.0 KiB
PHP
86 lines
2.0 KiB
PHP
|
<?php
|
||
|
$mode = @$_GET['mode'];
|
||
|
|
||
|
require_once("captcha.php");
|
||
|
|
||
|
function rand_string($length, $charset) {
|
||
|
$ret = "";
|
||
|
while ($length--) {
|
||
|
$ret .= mb_substr($charset, rand(0, mb_strlen($charset, 'utf-8')-1), 1, 'utf-8');
|
||
|
}
|
||
|
return $ret;
|
||
|
}
|
||
|
|
||
|
function cleanup ($pdo, $expires_in) {
|
||
|
$pdo->prepare("DELETE FROM `captchas` WHERE `created_at` < ?")->execute([time() - $expires_in]);
|
||
|
}
|
||
|
|
||
|
switch ($mode) {
|
||
|
// Request: GET entrypoint.php?mode=get&extra=1234567890
|
||
|
// Response: JSON: cookie => "generatedcookie", captchahtml => "captchahtml", expires_in => 120
|
||
|
case "get":
|
||
|
if (!isset ($_GET['extra'])) {
|
||
|
die();
|
||
|
}
|
||
|
|
||
|
header("Content-type: application/json");
|
||
|
|
||
|
$extra = $_GET['extra'];
|
||
|
|
||
|
require_once("config.php");
|
||
|
|
||
|
$text = rand_string($length, $extra);
|
||
|
|
||
|
$captcha = new CzaksCaptcha($text, $width, $height, $extra);
|
||
|
|
||
|
$cookie = rand_string(20, "abcdefghijklmnopqrstuvwxyz");
|
||
|
|
||
|
ob_start();
|
||
|
$captcha->to_html();
|
||
|
$html = ob_get_contents();
|
||
|
ob_end_clean();
|
||
|
|
||
|
$query = $pdo->prepare("INSERT INTO `captchas` (`cookie`, `extra`, `text`, `created_at`) VALUES (?, ?, ?, ?)");
|
||
|
$query->execute( [$cookie, $extra, $text, time()]);
|
||
|
|
||
|
echo json_encode(["cookie" => $cookie, "captchahtml" => $html, "expires_in" => $expires_in]);
|
||
|
|
||
|
break;
|
||
|
|
||
|
// Request: GET entrypoint.php?mode=check&cookie=generatedcookie&extra=1234567890&text=captcha
|
||
|
// Response: 0 OR 1
|
||
|
case "check":
|
||
|
if (!isset ($_GET['mode'])
|
||
|
|| !isset ($_GET['cookie'])
|
||
|
|| !isset ($_GET['extra'])
|
||
|
|| !isset ($_GET['text'])) {
|
||
|
die();
|
||
|
}
|
||
|
|
||
|
require_once("config.php");
|
||
|
|
||
|
cleanup($pdo, $expires_in);
|
||
|
|
||
|
$query = $pdo->prepare("SELECT * FROM `captchas` WHERE `cookie` = ? AND `extra` = ?");
|
||
|
$query->execute([$_GET['cookie'], $_GET['extra']]);
|
||
|
|
||
|
$ary = $query->fetchAll();
|
||
|
|
||
|
if (!$ary) {
|
||
|
echo "0";
|
||
|
}
|
||
|
else {
|
||
|
$query = $pdo->prepare("DELETE FROM `captchas` WHERE `cookie` = ? AND `extra` = ?");
|
||
|
$query->execute([$_GET['cookie'], $_GET['extra']]);
|
||
|
|
||
|
if ($ary[0]['text'] !== $_GET['text']) {
|
||
|
echo "0";
|
||
|
}
|
||
|
else {
|
||
|
echo "1";
|
||
|
}
|
||
|
}
|
||
|
|
||
|
break;
|
||
|
}
|