* Removed warning messages
[squirrelmail.git] / src / compose.php
1 <?php
2 /**
3 ** compose.php
4 **
5 ** Copyright (c) 1999-2000 The SquirrelMail development team
6 ** Licensed under the GNU GPL. For full terms see the file COPYING.
7 **
8 ** This code sends a mail.
9 **
10 ** There are 3 modes of operation:
11 ** - Start new mail
12 ** - Add an attachment
13 ** - Send mail
14 **
15 ** $Id$
16 **/
17
18 session_start();
19
20 if (!isset($strings_php))
21 include("../functions/strings.php");
22 if (!isset($config_php))
23 include("../config/config.php");
24 if (!isset($page_header_php))
25 include("../functions/page_header.php");
26 if (!isset($imap_php))
27 include("../functions/imap.php");
28 if (!isset($date_php))
29 include("../functions/date.php");
30 if (!isset($mime_php))
31 include("../functions/mime.php");
32 if (!isset($smtp_php))
33 include("../functions/smtp.php");
34 if (!isset($display_messages_php))
35 include("../functions/display_messages.php");
36 if (!isset($auth_php))
37 include ("../functions/auth.php");
38 if (!isset($plugin_php))
39 include ("../functions/plugin.php");
40
41 include("../src/load_prefs.php");
42
43 if (!isset($attachments))
44 {
45 $attachments = array();
46 session_register('attachments');
47 }
48
49 // This function is used when not sending or adding attachments
50 function newMail () {
51 global $forward_id, $imapConnection, $msg, $ent_num, $body_ary, $body,
52 $reply_id, $send_to, $send_to_cc, $mailbox, $send_to_bcc, $editor_size;
53
54 $send_to = decodeHeader($send_to);
55 $send_to_cc = decodeHeader($send_to_cc);
56 $send_to_bcc = decodeHeader($send_to_bcc);
57
58 if ($forward_id)
59 $id = $forward_id;
60 elseif ($reply_id)
61 $id = $reply_id;
62
63
64 if (isset($id)) {
65 sqimap_mailbox_select($imapConnection, $mailbox);
66 $message = sqimap_get_message($imapConnection, $id, $mailbox);
67 $orig_header = $message->header;
68 if ($ent_num)
69 $message = getEntity($message, $ent_num);
70
71 if ($message->header->type0 == "text" || $message->header->type1 == "message") {
72 if ($ent_num)
73 $body = decodeBody(mime_fetch_body($imapConnection, $id, $ent_num), $message->header->encoding);
74 else
75 $body = decodeBody(mime_fetch_body($imapConnection, $id, 1), $message->header->encoding);
76 } else {
77 $body = "";
78 }
79
80 if ($message->header->type1 == "html")
81 $body = strip_tags($body);
82
83 sqUnWordWrap($body);
84 $body_ary = explode("\n", $body);
85 $i = count($body_ary) - 1;
86 while ($i >= 0 && ereg("^[>\\s]*$", $body_ary[$i])) {
87 unset($body_ary[$i]);
88 $i --;
89 }
90 $body = "";
91 for ($i=0; isset($body_ary[$i]); $i++) {
92 if (! $forward_id)
93 {
94 if (ereg('^[\\s>]+', $body_ary[$i]))
95 {
96 $body_ary[$i] = '>' . $body_ary[$i];
97 }
98 else
99 {
100 $body_ary[$i] = '> ' . $body_ary[$i];
101 }
102 }
103 sqWordWrap($body_ary[$i], $editor_size - 1);
104 $body .= $body_ary[$i] . "\n";
105 unset($body_ary[$i]);
106 }
107 if ($forward_id)
108 {
109 $bodyTop = "-------- " . _("Original Message") . " --------\n";
110 $bodyTop .= _("Subject") . ": " . $orig_header->subject . "\n";
111 $bodyTop .= _("From") . ": " . $orig_header->from . "\n";
112 $bodyTop .= _("To") . ": " . $orig_header->to[0] . "\n";
113 if (count($orig_header->to) > 1) {
114 for ($x=1; $x < count($orig_header->to); $x++) {
115 $bodyTop .= " " . $orig_header->to[$x] . "\n";
116 }
117 }
118 $bodyTop .= "\n";
119 $body = $bodyTop . $body;
120 }
121
122 return;
123 }
124
125 if (!$send_to) {
126 $send_to = sqimap_find_email($send_to);
127 }
128
129 /** This formats a CC string if they hit "reply all" **/
130 if ($send_to_cc != "") {
131 $send_to_cc = ereg_replace( '"[^"]*"', "", $send_to_cc);
132 $send_to_cc = ereg_replace(";", ",", $send_to_cc);
133 $sendcc = explode(",", $send_to_cc);
134 $send_to_cc = "";
135
136 for ($i = 0; $i < count($sendcc); $i++) {
137 $sendcc[$i] = trim($sendcc[$i]);
138 if ($sendcc[$i] == "")
139 continue;
140
141 $sendcc[$i] = sqimap_find_email($sendcc[$i]);
142 $whofrom = sqimap_find_displayable_name($msg["HEADER"]["FROM"]);
143 $whoreplyto = sqimap_find_email($msg["HEADER"]["REPLYTO"]);
144
145 if ((strtolower(trim($sendcc[$i])) != strtolower(trim($whofrom))) &&
146 (strtolower(trim($sendcc[$i])) != strtolower(trim($whoreplyto))) &&
147 (trim($sendcc[$i]) != "")) {
148 $send_to_cc .= trim($sendcc[$i]) . ", ";
149 }
150 }
151 $send_to_cc = trim($send_to_cc);
152 if (substr($send_to_cc, -1) == ",") {
153 $send_to_cc = substr($send_to_cc, 0, strlen($send_to_cc) - 1);
154 }
155 }
156 } // function newMail()
157
158 function getAttachments($message) {
159 global $mailbox, $attachments, $attachment_dir, $imapConnection,
160 $ent_num, $forward_id;
161
162 if (!$message) {
163 sqimap_mailbox_select($imapConnection, $mailbox);
164 $message = sqimap_get_message($imapConnection, $forward_id,
165 $mailbox);
166 }
167
168 if (count($message->entities) == 0) {
169 if ($message->header->entity_id != $ent_num) {
170 $filename = decodeHeader($message->header->filename);
171
172 if ($filename == "")
173 $filename = "untitled-".$message->header->entity_id;
174
175 $localfilename = GenerateRandomString(32, '', 7);
176 while (file_exists($attachment_dir . $localfilename))
177 $localfilename = GenerateRandomString(32, '', 7);
178
179 $newAttachment['localfilename'] = $localfilename;
180 $newAttachment['remotefilename'] = $filename;
181 $newAttachment['type0'] = strtolower($message->header->type0 .
182 '/' . $message->header->type1);
183
184 // Write Attachment to file
185 $fp = fopen ($attachment_dir.$localfilename, 'w');
186 fputs ($fp, decodeBody(mime_fetch_body($imapConnection,
187 $forward_id, $message->header->entity_id),
188 $message->header->encoding));
189 fclose ($fp);
190
191 $attachments[] = $newAttachment;
192 }
193 } else {
194 for ($i = 0; $i < count($message->entities); $i++) {
195 getAttachments($message->entities[$i]);
196 }
197 }
198 return;
199 }
200
201 function showInputForm () {
202 global $send_to, $send_to_cc, $reply_subj, $forward_subj, $body,
203 $passed_body, $color, $use_signature, $signature, $prefix_sig,
204 $editor_size, $attachments, $subject, $newmail,
205 $use_javascript_addr_book, $send_to_bcc, $reply_id, $mailbox,
206 $from_htmladdr_search, $location_of_buttons;
207
208 $subject = decodeHeader($subject);
209 $reply_subj = decodeHeader($reply_subj);
210 $forward_subj = decodeHeader($forward_subj);
211
212 if ($use_javascript_addr_book) {
213 echo "\n<SCRIPT LANGUAGE=JavaScript><!--\n";
214 echo "function open_abook() { \n";
215 echo " var nwin = window.open(\"addrbook_popup.php\",\"abookpopup\",";
216 echo "\"width=670,height=300,resizable=yes,scrollbars=yes\");\n";
217 echo " if((!nwin.opener) && (document.windows != null))\n";
218 echo " nwin.opener = document.windows;\n";
219 echo "}\n";
220 echo "// --></SCRIPT>\n\n";
221 }
222
223 echo "\n<FORM name=compose action=\"compose.php\" METHOD=POST ENCTYPE=\"multipart/form-data\"";
224 do_hook("compose_form");
225 echo ">\n";
226 if ($reply_id) {
227 echo "<input type=hidden name=reply_id value=$reply_id>\n";
228 }
229 printf("<INPUT TYPE=hidden NAME=mailbox VALUE=\"%s\">\n", htmlspecialchars($mailbox));
230 echo "<TABLE WIDTH=\"100%\" ALIGN=center CELLSPACING=0 BORDER=0>\n";
231
232 if ($location_of_buttons == 'top') showComposeButtonRow();
233
234 echo " <TR>\n";
235 echo " <TD BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
236 echo _("To:");
237 echo " </TD><TD BGCOLOR=\"$color[4]\">\n";
238 printf(" <INPUT TYPE=text NAME=\"send_to\" VALUE=\"%s\" SIZE=60><BR>\n",
239 htmlspecialchars($send_to));
240 echo " </TD>\n";
241 echo " </TR>\n";
242 echo " <TR>\n";
243 echo " <TD BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
244 echo _("CC:");
245 echo " </TD><TD BGCOLOR=\"$color[4]\" ALIGN=LEFT>\n";
246 printf(" <INPUT TYPE=text NAME=\"send_to_cc\" SIZE=60 VALUE=\"%s\"><BR>\n",
247 htmlspecialchars($send_to_cc));
248 echo " </TD>\n";
249 echo " </TR>\n";
250 echo " <TR>\n";
251 echo " <TD BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
252 echo _("BCC:");
253 echo " </TD><TD BGCOLOR=\"$color[4]\" ALIGN=LEFT>\n";
254 printf(" <INPUT TYPE=text NAME=\"send_to_bcc\" VALUE=\"%s\" SIZE=60><BR>\n",
255 htmlspecialchars($send_to_bcc));
256 echo "</TD></TR>\n";
257
258 echo " <TR>\n";
259 echo " <TD BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
260 echo _("Subject:");
261 echo " </TD><TD BGCOLOR=\"$color[4]\" ALIGN=LEFT>\n";
262 if ($reply_subj) {
263 $reply_subj = str_replace("\"", "'", $reply_subj);
264 $reply_subj = trim($reply_subj);
265 if (substr(strtolower($reply_subj), 0, 3) != "re:")
266 $reply_subj = "Re: $reply_subj";
267 printf(" <INPUT TYPE=text NAME=subject SIZE=60 VALUE=\"%s\">",
268 htmlspecialchars($reply_subj));
269 } else if ($forward_subj) {
270 $forward_subj = trim($forward_subj);
271 if ((substr(strtolower($forward_subj), 0, 4) != 'fwd:') &&
272 (substr(strtolower($forward_subj), 0, 5) != '[fwd:') &&
273 (substr(strtolower($forward_subj), 0, 6) != '[ fwd:'))
274 $forward_subj = "[Fwd: $forward_subj]";
275 printf(" <INPUT TYPE=text NAME=subject SIZE=60 VALUE=\"%s\">",
276 htmlspecialchars($forward_subj));
277 } else {
278 printf(" <INPUT TYPE=text NAME=subject SIZE=60 VALUE=\"%s\">",
279 htmlspecialchars($subject));
280 }
281 echo "</td></tr>\n\n";
282
283 if ($location_of_buttons == 'between') showComposeButtonRow();
284
285 echo " <TR>\n";
286 echo " <TD BGCOLOR=\"$color[4]\" COLSPAN=2>\n";
287 echo " &nbsp;&nbsp;<TEXTAREA NAME=body ROWS=20 COLS=\"$editor_size\" WRAP=HARD>";
288 echo htmlspecialchars($body);
289 if ($use_signature == true && $newmail == true && !isset($from_htmladdr_search)) {
290 if ( $prefix_sig == true )
291 echo "\n\n-- \n" . htmlspecialchars($signature);
292 else
293 echo "\n\n" . htmlspecialchars($signature);
294 }
295 echo "</TEXTAREA><BR>\n";
296 echo " </TD>\n";
297 echo " </TR>\n";
298
299 if ($location_of_buttons == 'bottom')
300 showComposeButtonRow();
301 else {
302 echo " <TR><TD>&nbsp;</TD><TD ALIGN=LEFT><INPUT TYPE=SUBMIT NAME=send VALUE=\""._("Send")."\"></TD></TR>\n";
303 }
304
305 // This code is for attachments
306 echo " <tr>\n";
307 echo " <TD BGCOLOR=\"$color[0]\" VALIGN=TOP ALIGN=RIGHT>\n";
308 echo " <SMALL><BR></SMALL>"._("Attach:");
309 echo " </td><td ALIGN=left BGCOLOR=\"$color[0]\">\n";
310 echo " <INPUT NAME=\"attachfile\" SIZE=48 TYPE=\"file\">\n";
311 echo " &nbsp;&nbsp;<input type=\"submit\" name=\"attach\"";
312 echo " value=\"" . _("Add") ."\">\n";
313 echo " </td>\n";
314 echo " </tr>\n";
315 if (count($attachments))
316 {
317 echo "<tr><td bgcolor=\"$color[0]\" align=right>\n";
318 echo "&nbsp;";
319 echo "</td><td align=left bgcolor=\"$color[0]\">";
320 foreach ($attachments as $key => $info) {
321 echo "<input type=\"checkbox\" name=\"delete[]\" value=\"$key\">\n";
322 echo $info['remotefilename'] . "<br>\n";
323 }
324
325 echo "<input type=\"submit\" name=\"do_delete\" value=\""._("Delete selected attachments")."\">\n";
326 echo "</td></tr>";
327 }
328 // End of attachment code
329
330 echo "</TABLE>\n";
331 echo "</FORM>";
332 do_hook("compose_bottom");
333 }
334
335 function showComposeButtonRow() {
336 global $use_javascript_addr_book;
337
338 echo " <TR><td>\n </td><td>\n";
339 if ($use_javascript_addr_book) {
340 echo " <SCRIPT LANGUAGE=JavaScript><!--\n document.write(\"";
341 echo " <input type=button value=\\\""._("Addresses")."\\\" onclick='javascript:open_abook();'>\");";
342 echo " // --></SCRIPT><NOSCRIPT>\n";
343 echo " <input type=submit name=\"html_addr_search\" value=\""._("Addresses")."\">";
344 echo " </NOSCRIPT>\n";
345 } else {
346 echo " <input type=submit name=\"html_addr_search\" value=\""._("Addresses")."\">";
347 }
348 echo "\n <INPUT TYPE=SUBMIT NAME=send VALUE=\"". _("Send") . "\">\n";
349
350 do_hook("compose_button_row");
351
352 echo " </TD>\n";
353 echo " </TR>\n\n";
354 }
355
356 function checkInput ($show) {
357 /** I implemented the $show variable because the error messages
358 were getting sent before the page header. So, I check once
359 using $show=false, and then when i'm ready to display the
360 error message, show=true **/
361 global $body, $send_to, $subject, $color;
362
363 if ($send_to == "") {
364 if ($show)
365 plain_error_message(_("You have not filled in the \"To:\" field."), $color);
366 return false;
367 }
368 return true;
369 } // function checkInput()
370
371
372 // True if FAILURE
373 function saveAttachedFiles() {
374 global $HTTP_POST_FILES, $attachment_dir, $attachments;
375
376 is_logged_in();
377 $localfilename = GenerateRandomString(32, '', 7);
378 while (file_exists($attachment_dir . $localfilename))
379 $localfilename = GenerateRandomString(32, '', 7);
380
381 if (!@rename($HTTP_POST_FILES['attachfile']['tmp_name'], $attachment_dir.$localfilename)) {
382 if (!@copy($HTTP_POST_FILES['attachfile']['tmp_name'], $attachment_dir.$localfilename)) {
383 return true;
384 }
385 }
386
387 $newAttachment['localfilename'] = $localfilename;
388 $newAttachment['remotefilename'] = $HTTP_POST_FILES['attachfile']['name'];
389 $newAttachment['type'] =
390 strtolower($HTTP_POST_FILES['attachfile']['type']);
391
392 $attachments[] = $newAttachment;
393 }
394
395 function SqConvertRussianCharsets(){
396 //
397 // This function is here because Russian Apache is a bastard when it comes to
398 // attachments. The solution is to turn off attachment recoding for multipart
399 // forms and do it manually.
400 // See graf@relhum.org for support.
401 //
402 global $CHARSET, $SOURCE_CHARSET, $send_to, $send_to_cc, $send_to_bcc, $subject, $body;
403 $charset_ary = array("koi8-r" => "k",
404 "windows-1251" => "w",
405 "ibm866" => "a",
406 "ISO-8859-5" => "i");
407 $body = convert_cyr_string($body, $charset_ary[$CHARSET], $charset_ary[$SOURCE_CHARSET]);
408 $send_to = convert_cyr_string($send_to, $charset_ary[$CHARSET], $charset_ary[$SOURCE_CHARSET]);
409 $send_to_cc = convert_cyr_string($send_to_cc, $charset_ary[$CHARSET], $charset_ary[$SOURCE_CHARSET]);
410 $send_to_bcc = convert_cyr_string($send_to_bcc, $charset_ary[$CHARSET], $charset_ary[$SOURCE_CHARSET]);
411 $subject = convert_cyr_string($subject, $charset_ary[$CHARSET], $charset_ary[$SOURCE_CHARSET]);
412 } // end SqConvertRussianCharsets()
413
414 // Russian Apache sets $CHARSET. See if this is Russian Apache.
415 // If so, check if the source charset (koi8-r) is different from the
416 // one submitted by the browser. If so, recode the parts of the form
417 // to the needed format so SM can proceed and not mangle the cyrillic
418 // input.
419 // See graf@relhum.org for support.
420 //
421 if (isset($CHARSET) && $CHARSET != $SOURCE_CHARSET) SqConvertRussianCharsets();
422
423 if (!isset($mailbox) || $mailbox == "" || ($mailbox == "None"))
424 $mailbox = "INBOX";
425
426 if (isset($send)) {
427 if (isset($HTTP_POST_FILES['attachfile']) &&
428 $HTTP_POST_FILES['attachfile']['tmp_name'] &&
429 $HTTP_POST_FILES['attachfile']['tmp_name'] != 'none')
430 $AttachFailure = saveAttachedFiles();
431 if (checkInput(false) && !isset($AttachFailure)) {
432 $urlMailbox = urlencode (trim($mailbox));
433 if (! isset($reply_id))
434 $reply_id = 0;
435 // Set $default_charset to correspond with the user's selection
436 // of language interface.
437 set_my_charset();
438 sendMessage($send_to, $send_to_cc, $send_to_bcc, $subject, $body, $reply_id);
439 header ("Location: right_main.php?mailbox=$urlMailbox&sort=$sort&startMessage=1");
440 } else {
441 //$imapConnection = sqimap_login($username, $key, $imapServerAddress, $imapPort, 0);
442 displayPageHeader($color, $mailbox);
443
444 if ($AttachFailure)
445 plain_error_message(_("Could not move/copy file. File not attached"), $color);
446
447 checkInput(true);
448
449 showInputForm();
450 //sqimap_logout($imapConnection);
451 }
452 } else if (isset($html_addr_search_done)) {
453 is_logged_in();
454 displayPageHeader($color, $mailbox);
455
456 if (isset($send_to_search) && is_array($send_to_search))
457 {
458 for ($i=0; $i < count($send_to_search); $i++) {
459 if ($send_to)
460 $send_to .= ", ";
461 $send_to .= $send_to_search[$i];
462 }
463 }
464
465 if (isset($send_to_cc_search) && is_array($send_to_cc_search))
466 {
467 for ($i=0; $i < count($send_to_cc_search); $i++) {
468 if ($send_to_cc)
469 $send_to_cc .= ", ";
470 $send_to_cc .= $send_to_cc_search[$i];
471 }
472 }
473
474 if (isset($send_to_bcc_search) && is_array($send_to_bcc_search))
475 {
476 for ($i=0; $i < count($send_to_bcc_search); $i++) {
477 if ($send_to_bcc)
478 $send_to_bcc .= ", ";
479 $send_to_bcc .= $send_to_bcc_search[$i];
480 }
481 }
482
483 showInputForm();
484 } else if (isset($html_addr_search)) {
485 // I am using an include so as to elminiate an extra unnecessary click. If you
486 // can think of a better way, please implement it.
487 include ("./addrbook_search_html.php");
488 } else if (isset($attach)) {
489 if (saveAttachedFiles())
490 plain_error_message(_("Could not move/copy file. File not attached"), $color);
491 displayPageHeader($color, $mailbox);
492 showInputForm();
493 } else if (isset($do_delete)) {
494 is_logged_in();
495 displayPageHeader($color, $mailbox);
496
497 if (isset($delete) && is_array($delete))
498 {
499 foreach($delete as $index)
500 {
501 unlink ($attachment_dir.$attachments[$index]['localfilename']);
502 unset ($attachments[$index]);
503 }
504 }
505
506 showInputForm();
507 } else {
508 // This handles the default case as well as the error case
509 // (they had the same code) --> if (isset($smtpErrors))
510 $imapConnection = sqimap_login($username, $key, $imapServerAddress,
511 $imapPort, 0);
512 displayPageHeader($color, $mailbox);
513
514 $newmail = true;
515
516 ClearAttachments();
517
518 if (isset($forward_id) && $forward_id && isset($ent_num) && $ent_num)
519 getAttachments(0);
520
521 newMail();
522 showInputForm();
523 sqimap_logout($imapConnection);
524 }
525
526
527
528
529 function ClearAttachments()
530 {
531 global $attachments, $attachment_dir;
532
533 foreach ($attachments as $info)
534 {
535 if (file_exists($attachment_dir . $info['localfilename']))
536 {
537 unlink($attachment_dir . $info['localfilename']);
538 }
539 }
540
541 $attachments = array();
542 }
543
544 ?>