- fixed some more HTML bugs
[squirrelmail.git] / src / compose.php
CommitLineData
59177427 1<?php
ef870322 2 /**
3 ** compose.php
4 **
5 ** Copyright (c) 1999-2000 The SquirrelMail development team
6 ** Licensed under the GNU GPL. For full terms see the file COPYING.
7 **
8 ** This code sends a mail.
df15de21 9 **
10 ** There are 3 modes of operation:
11 ** - Start new mail
12 ** - Add an attachment
13 ** - Send mail
14 **/
15
2a32fc83 16 session_start();
17
d068c0ec 18 if (!isset($config_php))
19 include("../config/config.php");
20 if (!isset($strings_php))
21 include("../functions/strings.php");
22 if (!isset($page_header_php))
23 include("../functions/page_header.php");
24 if (!isset($imap_php))
25 include("../functions/imap.php");
26 if (!isset($date_php))
27 include("../functions/date.php");
28 if (!isset($mime_php))
29 include("../functions/mime.php");
30 if (!isset($smtp_php))
31 include("../functions/smtp.php");
32 if (!isset($display_messages_php))
33 include("../functions/display_messages.php");
3c13b9fb 34 if (!isset($auth_php))
35 include ("../functions/auth.php");
15bfc1bc 36 if (!isset($plugin_php))
37 include ("../functions/plugin.php");
f7fb20fe 38
d3cdb279 39 include("../src/load_prefs.php");
8467bf00 40
4ba45d11 41 // This function is used when not sending or adding attachments
df15de21 42 function newMail () {
43 global $forward_id, $imapConnection, $msg, $ent_num, $body_ary, $body,
3806fa52 44 $reply_id, $send_to, $send_to_cc, $mailbox, $send_to_bcc;
e39d73e5 45
95de6c91 46 $send_to = stripslashes(decodeHeader($send_to));
47 $send_to_cc = stripslashes(decodeHeader($send_to_cc));
a53e5469 48
429f8906 49 if ($forward_id)
50 $id = $forward_id;
51 else if ($reply_id)
52 $id = $reply_id;
53
1195c340 54
429f8906 55 if ($id) {
813eba2f 56 sqimap_mailbox_select($imapConnection, $mailbox);
429f8906 57 $message = sqimap_get_message($imapConnection, $id, $mailbox);
8d8ab69a 58 $orig_header = $message->header;
1195c340 59 if ($ent_num)
60 $message = getEntity($message, $ent_num);
429f8906 61
62 if ($message->header->type0 == "text" || $message->header->type1 == "message") {
1195c340 63 if ($ent_num)
64 $body = decodeBody(mime_fetch_body($imapConnection, $id, $ent_num), $message->header->encoding);
65 else
66 $body = decodeBody(mime_fetch_body($imapConnection, $id, 1), $message->header->encoding);
429f8906 67 } else {
68 $body = "";
df15de21 69 }
70
429f8906 71 if ($message->header->type1 == "html")
72 $body = strip_tags($body);
73
df15de21 74 $body_ary = explode("\n", $body);
75 $body = "";
429f8906 76 for ($i=0; $i < count($body_ary); $i++) {
8d8ab69a 77 if ($i==0 && $forward_id) {
d68a3926 78 $tmp = "-------- " . _("Original Message") . " --------\n";
8d8ab69a 79 $tmp .= _("Subject") . ": " . $orig_header->subject . "\n";
80 $tmp .= " " . _("From") . ": " . $orig_header->from . "\n";
81 $tmp .= " " . _("To") . ": " . $orig_header->to[0] . "\n";
82 if (count($orig_header->to) > 1) {
83 for ($x=1; $x < count($orig_header->to); $x++) {
84 $tmp .= " " . $orig_header->to[$x] . "\n";
85 }
86 }
87 $tmp .= "\n" . $body_ary[$i];
88 } else {
1195c340 89 $tmp = $body_ary[$i];
8d8ab69a 90 }
429f8906 91 if ($forward_id)
8d8ab69a 92 $body = "$body$tmp\n";
df15de21 93 else
8d8ab69a 94 $body = "$body> $tmp\n";
78509c54 95 }
1195c340 96 return $body;
78509c54 97 }
429f8906 98
95de6c91 99 $send_to = stripslashes($send_to);
100
29d08a52 101 if (!$send_to) {
102 $send_to = sqimap_find_email($send_to);
103 }
104
df15de21 105 /** This formats a CC string if they hit "reply all" **/
106 if ($send_to_cc != "") {
a48fbf9b 107 $send_to_cc = ereg_replace( '"[^"]*"', "", $send_to_cc);
df15de21 108 $send_to_cc = ereg_replace(";", ",", $send_to_cc);
109 $sendcc = explode(",", $send_to_cc);
110 $send_to_cc = "";
111
112 for ($i = 0; $i < count($sendcc); $i++) {
113 $sendcc[$i] = trim($sendcc[$i]);
114 if ($sendcc[$i] == "")
115 continue;
116
a53e5469 117 $sendcc[$i] = sqimap_find_email($sendcc[$i]);
813eba2f 118 $whofrom = sqimap_find_displayable_name($msg["HEADER"]["FROM"]);
119 $whoreplyto = sqimap_find_email($msg["HEADER"]["REPLYTO"]);
df15de21 120
121 if ((strtolower(trim($sendcc[$i])) != strtolower(trim($whofrom))) &&
122 (strtolower(trim($sendcc[$i])) != strtolower(trim($whoreplyto))) &&
123 (trim($sendcc[$i]) != "")) {
124 $send_to_cc .= trim($sendcc[$i]) . ", ";
125 }
126 }
127 $send_to_cc = trim($send_to_cc);
128 if (substr($send_to_cc, -1) == ",") {
129 $send_to_cc = substr($send_to_cc, 0, strlen($send_to_cc) - 1);
130 }
131 }
132 } // function newMail()
78509c54 133
df15de21 134 function showInputForm () {
135 global $send_to, $send_to_cc, $reply_subj, $forward_subj, $body,
4ba45d11 136 $passed_body, $color, $use_signature, $signature, $editor_size,
3806fa52 137 $attachments, $subject, $newmail, $use_javascript_addr_book,
966286ae 138 $send_to_bcc, $reply_id, $mailbox;
78509c54 139
2e434774 140 $subject = decodeHeader($subject);
141 $reply_subj = decodeHeader($reply_subj);
142 $forward_subj = decodeHeader($forward_subj);
a53e5469 143
3806fa52 144 if ($use_javascript_addr_book) {
145 echo "\n<SCRIPT LANGUAGE=JavaScript><!--\n";
146 echo "function open_abook() { \n";
147 echo " var nwin = window.open(\"addrbook_popup.php\",\"abookpopup\",";
148 echo "\"width=670,height=300,resizable=yes,scrollbars=yes\");\n";
149 echo " if((!nwin.opener) && (document.windows != null))\n";
150 echo " nwin.opener = document.windows;\n";
151 echo "}\n";
152 echo "// --></SCRIPT>\n\n";
153 }
5100704d 154
a037624d 155 echo "\n<FORM name=compose action=\"compose.php\" METHOD=POST ENCTYPE=\"multipart/form-data\">\n";
156 //echo "\n<FORM name=compose action=\"compose.php\" METHOD=POST>\n";
966286ae 157 if ($reply_id) {
158 echo "<input type=hidden name=reply_id value=$reply_id>\n";
159 }
cf8758c7 160 printf("<INPUT TYPE=hidden NAME=mailbox VALUE=\"%s\">\n", htmlspecialchars($mailbox));
761d149e 161 echo "<TABLE WIDTH=50 ALIGN=center CELLSPACING=0 BORDER=0>\n";
df15de21 162 echo " <TR>\n";
163 echo " <TD WIDTH=50 BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
df15de21 164 echo _("To:");
761d149e 165 echo " </TD><TD colspan=2 WIDTH=\"100%\" BGCOLOR=\"$color[4]\" ALIGN=LEFT>\n";
cf8758c7 166 printf(" <INPUT TYPE=text NAME=\"send_to\" VALUE=\"%s\" SIZE=60><BR>\n",
167 htmlspecialchars($send_to));
df15de21 168 echo " </TD>\n";
169 echo " </TR>\n";
170 echo " <TR>\n";
171 echo " <TD WIDTH=50 BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
aae41ae9 172 echo _("CC:");
761d149e 173 echo " </TD><TD colspan=2 BGCOLOR=\"$color[4]\" ALIGN=LEFT>\n";
cf8758c7 174 printf(" <INPUT TYPE=text NAME=\"send_to_cc\" SIZE=60 VALUE=\"%s\"><BR>\n",
175 htmlspecialchars($send_to_cc));
df15de21 176 echo " </TD>\n";
177 echo " </TR>\n";
178 echo " <TR>\n";
179 echo " <TD WIDTH=50 BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
aae41ae9 180 echo _("BCC:");
761d149e 181 echo " </TD><TD BGCOLOR=\"$color[4]\" ALIGN=LEFT>\n";
cf8758c7 182 printf(" <INPUT TYPE=text NAME=\"send_to_bcc\" VALUE=\"%s\" SIZE=60><BR>\n",
183 htmlspecialchars($send_to_bcc));
3806fa52 184 echo "</TD></TR>\n";
5100704d 185
df15de21 186 echo " <TR>\n";
187 echo " <TD WIDTH=50 BGCOLOR=\"$color[4]\" ALIGN=RIGHT>\n";
df15de21 188 echo _("Subject:");
761d149e 189 echo " </TD><TD BGCOLOR=\"$color[4]\" ALIGN=LEFT>\n";
df15de21 190 if ($reply_subj) {
191 $reply_subj = str_replace("\"", "'", $reply_subj);
192 $reply_subj = stripslashes($reply_subj);
193 $reply_subj = trim($reply_subj);
194 if (substr(strtolower($reply_subj), 0, 3) != "re:")
195 $reply_subj = "Re: $reply_subj";
cf8758c7 196 printf(" <INPUT TYPE=text NAME=subject SIZE=60 VALUE=\"%s\">",
197 htmlspecialchars($reply_subj));
df15de21 198 } else if ($forward_subj) {
199 $forward_subj = str_replace("\"", "'", $forward_subj);
200 $forward_subj = stripslashes($forward_subj);
201 $forward_subj = trim($forward_subj);
202 if ((substr(strtolower($forward_subj), 0, 4) != "fwd:") &&
203 (substr(strtolower($forward_subj), 0, 5) != "[fwd:") &&
204 (substr(strtolower($forward_subj), 0, 6) != "[ fwd:"))
205 $forward_subj = "[Fwd: $forward_subj]";
cf8758c7 206 printf(" <INPUT TYPE=text NAME=subject SIZE=60 VALUE=\"%s\">",
207 htmlspecialchars($forward_subj));
df15de21 208 } else {
cf8758c7 209 printf(" <INPUT TYPE=text NAME=subject SIZE=60 VALUE=\"%s\">",
210 htmlspecialchars($subject));
31f3d7c0 211 }
480feea7 212 echo "</td></tr>\n\n";
213
214 echo " <TR><td>\n </td><td>\n";
215 if ($use_javascript_addr_book) {
216 echo " <SCRIPT LANGUAGE=JavaScript><!--\n document.write(\"";
217 echo " <input type=button value=\\\""._("Addresses")."\\\" onclick='javascript:open_abook();'>\");";
218 echo " // --></SCRIPT><NOSCRIPT>\n";
219 echo " <input type=submit name=\"html_addr_search\" value=\""._("Addresses")."\">";
220 echo " </NOSCRIPT>\n";
221 } else {
222 echo " <input type=submit name=\"html_addr_search\" value=\""._("Addresses")."\">";
223 }
224 echo "\n <INPUT TYPE=SUBMIT NAME=send VALUE=\"". _("Send") . "\">\n";
15bfc1bc 225
226 do_hook("compose_button_row");
227
480feea7 228 echo " </TD>\n";
229 echo " </TR>\n\n";
230
4ba45d11 231
e5b23ff2 232 echo " <TR>\n";
3806fa52 233 echo " <TD BGCOLOR=\"$color[4]\" COLSPAN=3>\n";
cf8758c7 234 echo " &nbsp;&nbsp;<TEXTAREA NAME=body ROWS=20 COLS=\"$editor_size\" WRAP=HARD>";
235 if ($use_signature == true && $newmail == true) {
236 echo htmlspecialchars($body) . "\n\n-- \n" . htmlspecialchars($signature);
237 } else {
238 echo htmlspecialchars($body);
239 }
240 echo "</TEXTAREA><BR>\n";
e5b23ff2 241 echo " </TD>\n";
242 echo " </TR>\n";
6c7fd6ca 243 echo " <TR><TD COLSPAN=3 ALIGN=CENTER><INPUT TYPE=SUBMIT NAME=send VALUE=\"";
e5b23ff2 244 echo _("Send");
245 echo "\"></TD></TR>\n";
246
4ba45d11 247 // This code is for attachments
248 echo " <tr>\n";
e5b23ff2 249 echo " <TD WIDTH=50 BGCOLOR=\"$color[0]\" VALIGN=TOP ALIGN=RIGHT>\n";
aae41ae9 250 echo " <SMALL><BR></SMALL>"._("Attach:");
761d149e 251 echo " </td><td colspan=2 ALIGN=left BGCOLOR=\"$color[0]\">\n";
4ba45d11 252 // echo " <INPUT TYPE=\"hidden\" name=\"MAX_FILE_SIZE\"\n";
253 // echo " value=\"10000\">\n";
254 echo " <INPUT NAME=\"attachfile\" TYPE=\"file\">\n";
95de6c91 255 echo " &nbsp;&nbsp;<input type=\"submit\" name=\"attach\"";
256 echo " value=\"" . _("Add") ."\">\n";
469eb37b 257 echo " </td>\n";
469eb37b 258 echo " </tr>\n";
4ba45d11 259 if (isset($attachments) && count($attachments)>0) {
e5b23ff2 260 echo "</tr><tr><td width=50 bgcolor=\"$color[0]\" align=right>\n";
261 echo "&nbsp;";
761d149e 262 echo "</td><td align=left colspan=2 bgcolor=\"$color[0]\">";
4ba45d11 263 while (list($localname, $remotename) = each($attachments)) {
264 echo "<input type=\"checkbox\" name=\"delete[]\" value=\"$localname\">\n";
265 echo "$remotename <input type=\"hidden\" name=\"attachments[$localname]\" value=\"$remotename\"><br>\n";
266 }
267
268 echo "<input type=\"submit\" name=\"do_delete\" value=\""._("Delete selected attachments")."\">\n";
469eb37b 269 echo "</td></tr>";
4ba45d11 270 }
4ba45d11 271 // End of attachment code
272
ffc2ccbc 273 echo "</TABLE>\n";
df15de21 274 echo "</FORM>";
31f3d7c0 275 }
8467bf00 276
df15de21 277 function showSentForm () {
df15de21 278 echo "<BR><BR><BR><CENTER><B>Message Sent!</B><BR><BR>";
9f2215a1 279 echo "You will be automatically forwarded.<BR>If not, <A HREF=\"right_main.php\">click here</A>";
aae41ae9 280 echo "</CENTER>";
df15de21 281 }
b278172f 282
0ad7dbda 283 function checkInput ($show) {
284 /** I implemented the $show variable because the error messages
285 were getting sent before the page header. So, I check once
286 using $show=false, and then when i'm ready to display the
287 error message, show=true **/
288 global $body, $send_to, $subject, $color;
b278172f 289
99fa2b21 290 if ($send_to == "") {
0ad7dbda 291 if ($show)
292 plain_error_message(_("You have not filled in the \"To:\" field."), $color);
df15de21 293 return false;
b278172f 294 }
df15de21 295 return true;
296 } // function checkInput()
297
3806fa52 298
ecf51658 299 if (($mailbox == "") || ($mailbox == "None"))
dcb7f454 300 $mailbox = "INBOX";
3806fa52 301
4ba45d11 302 if(isset($send)) {
0ad7dbda 303 if (checkInput(false)) {
966286ae 304 $urlMailbox = urlencode ($mailbox);
305 sendMessage($send_to, $send_to_cc, $send_to_bcc, $subject, $body, $reply_id);
306 header ("Location: right_main.php?mailbox=$urlMailbox&sort=$sort&startMessage=1");
df15de21 307 } else {
e1469126 308 $imapConnection = sqimap_login($username, $key, $imapServerAddress, $imapPort, 0);
dcb7f454 309 displayPageHeader($color, $mailbox);
0ad7dbda 310 checkInput(true);
311
df15de21 312 showInputForm();
1195c340 313 sqimap_logout($imapConnection);
7c6cb7ca 314 }
3806fa52 315 } else if ($html_addr_search_done) {
3c13b9fb 316 is_logged_in();
dcb7f454 317 displayPageHeader($color, $mailbox);
3806fa52 318
319 $body = stripslashes($body);
320 $send_to = stripslashes($send_to);
321 $send_to_cc = stripslashes($send_to_cc);
322 $send_to_bcc = stripslashes($send_to_bcc);
323 $subject = stripslashes($subject);
324
6c7fd6ca 325 for ($i=0; $i < count($send_to_search); $i++) {
326 if ($send_to)
327 $send_to .= ", ";
328 $send_to .= $send_to_search[$i];
329 }
330
331 for ($i=0; $i < count($send_to_cc_search); $i++) {
332 if ($send_to_cc)
333 $send_to_cc .= ", ";
334 $send_to_cc .= $send_to_cc_search[$i];
335 }
336
3806fa52 337 showInputForm();
6c7fd6ca 338 } else if ($html_addr_search) {
591d2a88 339 // I am using an include so as to elminiate an extra unnecessary click. If you
340 // can think of a better way, please implement it.
6c7fd6ca 341 include ("addrbook_search_html.php");
4ba45d11 342 } else if (isset($attach)) {
3c13b9fb 343 is_logged_in();
dcb7f454 344 displayPageHeader($color, $mailbox);
fc3348ac 345
4ba45d11 346 $localfilename = md5("$attachfile, $attachfile_name, $REMOTE_IP, $REMOTE_PORT, $UNIQUE_ID, and everything else that may add entropy");
c3c37167 347 $localfilename = $localfilename;
4ba45d11 348
349 // Put the file in a better place
350 error_reporting(0); // Rename will produce error output if it fails
c3c37167 351 if (!rename($attachfile, $attachment_dir.$localfilename)) {
352 if (!copy($attachfile, $attachment_dir.$localfilename)) {
4ba45d11 353 plain_error_message(_("Could not move/copy file. File not attached"));
c3c37167 354 $failed = true;
4ba45d11 355 }
356 }
357 // If it still exists, PHP will remove the original file
358
c3c37167 359 if (!$failed) {
360 // Write information about the file
361 $fp = fopen ($attachment_dir.$localfilename.".info", "w");
362 fputs ($fp, "$attachfile_type\n$attachfile_name\n");
363 fclose ($fp);
4ba45d11 364
c3c37167 365 $attachments[$localfilename] = $attachfile_name;
366 }
4ba45d11 367
368 showInputForm();
369 } else if (isset($do_delete)) {
3c13b9fb 370 is_logged_in();
dcb7f454 371 displayPageHeader($color, $mailbox);
fc3348ac 372
4ba45d11 373 while (list($key, $localname) = each($delete)) {
a53e5469 374 array_splice ($attachments, $key, 1);
c3c37167 375 unlink ($attachment_dir.$localname);
376 unlink ($attachment_dir.$localname.".info");
4ba45d11 377 }
4bfed9f3 378
4ba45d11 379 showInputForm();
380 } else {
a60b9989 381 $imapConnection = sqimap_login($username, $key, $imapServerAddress, $imapPort, 0);
dcb7f454 382 displayPageHeader($color, $mailbox);
fc3348ac 383
b57c4e63 384 $newmail = true;
1220e677 385 newMail();
4ba45d11 386 showInputForm();
1195c340 387 sqimap_logout($imapConnection);
4ba45d11 388 }
da79853a 389?>