Allow plugins to submit security token via GET request
[squirrelmail.git] / src / compose.php
1 <?php
2 /**
3 * compose.php
4 *
5 * This code sends a mail.
6 *
7 * There are 4 modes of operation:
8 * - Start new mail
9 * - Add an attachment
10 * - Send mail
11 * - Save As Draft
12 *
13 * @copyright &copy; 1999-2009 The SquirrelMail Project Team
14 * @license http://opensource.org/licenses/gpl-license.php GNU Public License
15 * @version $Id$
16 * @package squirrelmail
17 */
18
19 /** This is the compose page */
20 define('PAGE_NAME', 'compose');
21
22 /**
23 * Include the SquirrelMail initialization file.
24 */
25 require('../include/init.php');
26
27 /* If email_address not set and admin wants us to ask user for it,
28 * redirect to options page. */
29 if ( $ask_user_info && getPref($data_dir, $username,'email_address') == "" ) {
30 header("Location: " . get_location() . "/options.php?optpage=personal");
31 exit;
32 }
33
34 /* SquirrelMail required files. */
35 require_once(SM_PATH . 'functions/imap_general.php');
36 require_once(SM_PATH . 'functions/imap_messages.php');
37 require_once(SM_PATH . 'functions/date.php');
38 require_once(SM_PATH . 'functions/mime.php');
39 require_once(SM_PATH . 'functions/compose.php');
40 require_once(SM_PATH . 'class/deliver/Deliver.class.php');
41 require_once(SM_PATH . 'functions/addressbook.php');
42 require_once(SM_PATH . 'functions/forms.php');
43 require_once(SM_PATH . 'functions/identity.php');
44
45 /* --------------------- Get globals ------------------------------------- */
46
47 /** SESSION VARS */
48 sqgetGlobalVar('delimiter', $delimiter, SQ_SESSION);
49
50 sqgetGlobalVar('delayed_errors', $delayed_errors, SQ_SESSION);
51 sqgetGlobalVar('composesession', $composesession, SQ_SESSION);
52 sqgetGlobalVar('compose_messages', $compose_messages, SQ_SESSION);
53
54 // compose_messages only useful in SESSION when a forward-as-attachment
55 // has been preconstructed for us and passed in via that mechanism; once
56 // we have it, we can clear it from the SESSION
57 sqsession_unregister('compose_messages');
58
59 // Turn on delayed error handling in case we wind up redirecting below
60 $oErrorHandler->setDelayedErrors(true);
61
62 /** SESSION/POST/GET VARS */
63 sqgetGlobalVar('send_button_count', $send_button_count, SQ_POST, 1, SQ_TYPE_INT);
64 for ($i = 1; $i <= $send_button_count; $i++)
65 if (sqgetGlobalVar('send' . $i, $send, SQ_POST)) break;
66 // Send can only be achieved by setting $_POST var. If Send = true then
67 // retrieve other form fields from $_POST
68 if (isset($send) && $send) {
69 $SQ_GLOBAL = SQ_POST;
70 } else {
71 $SQ_GLOBAL = SQ_FORM;
72 }
73 sqgetGlobalVar('session',$session, $SQ_GLOBAL);
74 sqgetGlobalVar('mailbox',$mailbox, $SQ_GLOBAL);
75 if(!sqgetGlobalVar('identity',$identity, $SQ_GLOBAL)) {
76 $identity=0;
77 }
78 sqgetGlobalVar('send_to',$send_to, $SQ_GLOBAL);
79 sqgetGlobalVar('send_to_cc',$send_to_cc, $SQ_GLOBAL);
80 sqgetGlobalVar('send_to_bcc',$send_to_bcc, $SQ_GLOBAL);
81 sqgetGlobalVar('subject',$subject, $SQ_GLOBAL);
82 sqgetGlobalVar('body',$body, $SQ_GLOBAL);
83 sqgetGlobalVar('mailprio',$mailprio, $SQ_GLOBAL);
84 sqgetGlobalVar('request_mdn',$request_mdn, $SQ_GLOBAL);
85 sqgetGlobalVar('request_dr',$request_dr, $SQ_GLOBAL);
86 sqgetGlobalVar('html_addr_search',$html_addr_search, $SQ_GLOBAL);
87 sqgetGlobalVar('mail_sent',$mail_sent, $SQ_GLOBAL);
88 sqgetGlobalVar('passed_id',$passed_id, $SQ_GLOBAL, NULL, SQ_TYPE_BIGINT);
89 sqgetGlobalVar('passed_ent_id',$passed_ent_id, $SQ_GLOBAL);
90 sqgetGlobalVar('fwduid',$fwduid, $SQ_GLOBAL, '');
91
92 sqgetGlobalVar('attach',$attach, SQ_POST);
93 sqgetGlobalVar('draft',$draft, SQ_POST);
94 sqgetGlobalVar('draft_id',$draft_id, $SQ_GLOBAL);
95 sqgetGlobalVar('ent_num',$ent_num, $SQ_GLOBAL);
96 sqgetGlobalVar('saved_draft',$saved_draft, SQ_FORM);
97
98 if ( sqgetGlobalVar('delete_draft',$delete_draft) ) {
99 $delete_draft = (int)$delete_draft;
100 }
101
102 if ( sqgetGlobalVar('startMessage',$startMessage) ) {
103 $startMessage = (int)$startMessage;
104 } else {
105 $startMessage = 1;
106 }
107
108
109 /** POST VARS */
110 sqgetGlobalVar('sigappend', $sigappend, SQ_POST);
111 sqgetGlobalVar('from_htmladdr_search', $from_htmladdr_search, SQ_POST);
112 sqgetGlobalVar('addr_search_done', $html_addr_search_done, SQ_POST);
113 sqgetGlobalVar('addr_search_cancel', $html_addr_search_cancel, SQ_POST);
114 sqgetGlobalVar('send_to_search', $send_to_search, SQ_POST);
115 sqgetGlobalVar('do_delete', $do_delete, SQ_POST);
116 sqgetGlobalVar('delete', $delete, SQ_POST);
117 sqgetGlobalVar('attachments', $attachments, SQ_POST);
118 if ( sqgetGlobalVar('return', $temp, SQ_POST) ) {
119 $html_addr_search_done = 'Use Addresses';
120 }
121
122 /** GET VARS */
123 if ( sqgetGlobalVar('account', $temp, SQ_GET) ) {
124 $iAccount = (int) $temp;
125 } else {
126 $iAccount = 0;
127 }
128
129
130 /** get smaction */
131 if ( !sqgetGlobalVar('smaction',$action) )
132 {
133 if ( sqgetGlobalVar('smaction_reply',$tmp) ) $action = 'reply';
134 if ( sqgetGlobalVar('smaction_reply_all',$tmp) ) $action = 'reply_all';
135 if ( sqgetGlobalVar('smaction_forward',$tmp) ) $action = 'forward';
136 if ( sqgetGlobalVar('smaction_attache',$tmp) ) $action = 'forward_as_attachment';
137 if ( sqgetGlobalVar('smaction_draft',$tmp) ) $action = 'draft';
138 if ( sqgetGlobalVar('smaction_edit_new',$tmp) ) $action = 'edit_as_new';
139 }
140
141 sqgetGlobalVar('smtoken', $submitted_token, $SQ_GLOBAL, '');
142
143 /**
144 * Here we decode the data passed in from mailto.php.
145 */
146 if ( sqgetGlobalVar('mailtodata', $mailtodata, SQ_GET) ) {
147 $trtable = array('to' => 'send_to',
148 'cc' => 'send_to_cc',
149 'bcc' => 'send_to_bcc',
150 'body' => 'body',
151 'subject' => 'subject');
152 $mtdata = unserialize($mailtodata);
153
154 foreach ($trtable as $f => $t) {
155 if ( !empty($mtdata[$f]) ) {
156 $$t = $mtdata[$f];
157 }
158 }
159 unset($mailtodata,$mtdata, $trtable);
160 }
161
162 /* Location (For HTTP 1.1 header("Location: ...") redirects) */
163 $location = get_location();
164 /* Identities (fetch only once) */
165 $idents = get_identities();
166
167 /* --------------------- Specific Functions ------------------------------ */
168
169 function replyAllString($header) {
170 global $include_self_reply_all, $idents;
171 $excl_ar = array();
172 /**
173 * 1) Remove the addresses we'll be sending the message 'to'
174 */
175 if (isset($header->reply_to)) {
176 $excl_ar = $header->getAddr_a('reply_to');
177 }
178 /**
179 * 2) Remove our identities from the CC list (they still can be in the
180 * TO list) only if $include_self_reply_all is turned off
181 */
182 if (!$include_self_reply_all) {
183 foreach($idents as $id) {
184 $excl_ar[strtolower(trim($id['email_address']))] = '';
185 }
186 }
187
188 /**
189 * 3) get the addresses.
190 */
191 $url_replytoall_ar = $header->getAddr_a(array('to','cc'), $excl_ar);
192
193 /**
194 * 4) generate the string.
195 */
196 $url_replytoallcc = '';
197 foreach( $url_replytoall_ar as $email => $personal) {
198 if ($personal) {
199 // if personal name contains address separator then surround
200 // the personal name with double quotes.
201 if (strpos($personal,',') !== false) {
202 $personal = '"'.$personal.'"';
203 }
204 $url_replytoallcc .= ", $personal <$email>";
205 } else {
206 $url_replytoallcc .= ', '. $email;
207 }
208 }
209 $url_replytoallcc = substr($url_replytoallcc,2);
210
211 return $url_replytoallcc;
212 }
213
214 /**
215 * creates top line in reply citations
216 *
217 * Line style depends on user preferences.
218 * $orig_date argument is available only from 1.4.3 and 1.5.1 version.
219 * @param object $orig_from From: header object.
220 * @param integer $orig_date email's timestamp
221 * @return string reply citation
222 */
223 function getReplyCitation($orig_from, $orig_date) {
224 global $reply_citation_style, $reply_citation_start, $reply_citation_end;
225
226 if (!is_object($orig_from)) {
227 $sOrig_from = '';
228 } else {
229 $sOrig_from = decodeHeader($orig_from->getAddress(false),false,false,true);
230 }
231
232 /* First, return an empty string when no citation style selected. */
233 if (($reply_citation_style == '') || ($reply_citation_style == 'none')) {
234 return '';
235 }
236
237 /* Make sure our final value isn't an empty string. */
238 if ($sOrig_from == '') {
239 return '';
240 }
241
242 /* Otherwise, try to select the desired citation style. */
243 switch ($reply_citation_style) {
244 case 'author_said':
245 // i18n: %s is for author's name
246 $full_reply_citation = sprintf(_("%s wrote:"),$sOrig_from);
247 break;
248 case 'quote_who':
249 $start = '<quote who="';
250 $end = '">';
251 $full_reply_citation = $start . $sOrig_from . $end;
252 break;
253 case 'date_time_author':
254 // i18n:
255 // The first %s is for date string, the second %s is for author's name.
256 // The date uses formating from "D, F j, Y g:i a" and "D, F j, Y H:i"
257 // translations.
258 // Example string:
259 // "On Sat, December 24, 2004 23:59, Santa wrote:"
260 // If you have to put author's name in front of date string, check comments about
261 // argument swapping at http://php.net/sprintf
262 $full_reply_citation = sprintf(_("On %s, %s wrote:"), getLongDateString($orig_date), $sOrig_from);
263 break;
264 case 'user-defined':
265 $start = $reply_citation_start .
266 ($reply_citation_start == '' ? '' : ' ');
267 $end = $reply_citation_end;
268 $full_reply_citation = $start . $sOrig_from . $end;
269 break;
270 default:
271 return '';
272 }
273
274 /* Add line feed and return the citation string. */
275 return ($full_reply_citation . "\n");
276 }
277
278 /**
279 * Creates header fields in forwarded email body
280 *
281 * $default_charset global must be set correctly before you call this function.
282 * @param object $orig_header
283 * @return $string
284 */
285 function getforwardHeader($orig_header) {
286 global $editor_size, $default_charset;
287
288 // using own strlen function in order to detect correct string length
289 $display = array( _("Subject") => sq_strlen(_("Subject"),$default_charset),
290 _("From") => sq_strlen(_("From"),$default_charset),
291 _("Date") => sq_strlen(_("Date"),$default_charset),
292 _("To") => sq_strlen(_("To"),$default_charset),
293 _("Cc") => sq_strlen(_("Cc"),$default_charset) );
294 $maxsize = max($display);
295 $indent = str_pad('',$maxsize+2);
296 foreach($display as $key => $val) {
297 $display[$key] = $key .': '. str_pad('', $maxsize - $val);
298 }
299 $from = decodeHeader($orig_header->getAddr_s('from',"\n$indent"),false,false,true);
300 $from = str_replace('&nbsp;',' ',$from);
301 $to = decodeHeader($orig_header->getAddr_s('to',"\n$indent"),false,false,true);
302 $to = str_replace('&nbsp;',' ',$to);
303 $subject = decodeHeader($orig_header->subject,false,false,true);
304 $subject = str_replace('&nbsp;',' ',$subject);
305
306 // using own str_pad function in order to create correct string pad
307 $bodyTop = sq_str_pad(' '._("Original Message").' ',$editor_size -2,'-',STR_PAD_BOTH,$default_charset) .
308 "\n". $display[_("Subject")] . $subject . "\n" .
309 $display[_("From")] . $from . "\n" .
310 $display[_("Date")] . getLongDateString( $orig_header->date, $orig_header->date_unparsed ). "\n" .
311 $display[_("To")] . $to . "\n";
312 if ($orig_header->cc != array() && $orig_header->cc !='') {
313 $cc = decodeHeader($orig_header->getAddr_s('cc',"\n$indent"),false,false,true);
314 $cc = str_replace('&nbsp;',' ',$cc);
315 $bodyTop .= $display[_("Cc")] .$cc . "\n";
316 }
317 $bodyTop .= str_pad('', $editor_size -2 , '-') .
318 "\n\n";
319 return $bodyTop;
320 }
321 /* ----------------------------------------------------------------------- */
322
323 /*
324 * If the session is expired during a post this restores the compose session
325 * vars.
326 */
327 $session_expired = false;
328 if (sqsession_is_registered('session_expired_post')) {
329 sqgetGlobalVar('session_expired_post', $session_expired_post, SQ_SESSION);
330 /*
331 * extra check for username so we don't display previous post data from
332 * another user during this session.
333 */
334 if (!empty($session_expired_post['username'])
335 && $session_expired_post['username'] == $username) {
336 // these are the vars that we can set from the expired composed session
337 $compo_var_list = array ('send_to', 'send_to_cc', 'body',
338 'startMessage', 'passed_body', 'use_signature', 'signature',
339 'subject', 'newmail', 'send_to_bcc', 'passed_id', 'mailbox',
340 'from_htmladdr_search', 'identity', 'draft_id', 'delete_draft',
341 'mailprio', 'edit_as_new', 'attachments', 'composesession',
342 'request_mdn', 'request_dr', 'fwduid');
343
344 foreach ($compo_var_list as $var) {
345 if ( isset($session_expired_post[$var]) && !isset($$var) ) {
346 $$var = $session_expired_post[$var];
347 }
348 }
349
350 if (!empty($attachments))
351 $attachments = unserialize(urldecode($attachments));
352
353 sqsession_register($composesession,'composesession');
354
355 if (isset($send)) {
356 unset($send);
357 }
358 $session_expired = true;
359 }
360 unset($session_expired_post);
361 sqsession_unregister('session_expired_post');
362 session_write_close();
363 if (!isset($mailbox)) {
364 $mailbox = '';
365 }
366 if ($compose_new_win == '1') {
367 compose_Header($color, $mailbox);
368 } else {
369 $sHeaderJs = (isset($sHeaderJs)) ? $sHeaderJs : '';
370 if (strpos($action, 'reply') !== false && $reply_focus) {
371 $sOnload = 'checkForm(\''.$replyfocus.'\');';
372 } else {
373 $sOnload = 'checkForm();';
374 }
375 displayPageHeader($color, $mailbox,$sHeaderJs,$sOnload);
376 }
377 showInputForm($session, false);
378 exit();
379 }
380
381 if (!isset($composesession)) {
382 $composesession = 0;
383 sqsession_register(0,'composesession');
384 } else {
385 $composesession = (int)$composesession;
386 }
387
388 if (!isset($session) || (isset($newmessage) && $newmessage)) {
389 sqsession_unregister('composesession');
390 $session = "$composesession" +1;
391 $composesession = $session;
392 sqsession_register($composesession,'composesession');
393 }
394 if (!empty($compose_messages[$session])) {
395 $composeMessage = $compose_messages[$session];
396 } else {
397 $composeMessage = new Message();
398 $rfc822_header = new Rfc822Header();
399 $composeMessage->rfc822_header = $rfc822_header;
400 $composeMessage->reply_rfc822_header = '';
401 }
402
403 // re-add attachments that were already in this message
404 // FIXME: note that technically this is very bad form -
405 // should never directly manipulate an object like this
406 if (!empty($attachments)) {
407 $attachments = unserialize(urldecode($attachments));
408 if (!empty($attachments) && is_array($attachments))
409 $composeMessage->entities = $attachments;
410 }
411
412 if (empty($mailbox)) {
413 $mailbox = 'INBOX';
414 }
415
416 if ($draft) {
417
418 // validate security token
419 //
420 sm_validate_security_token($submitted_token, 3600, TRUE);
421
422 /*
423 * Set $default_charset to correspond with the user's selection
424 * of language interface.
425 */
426 set_my_charset();
427 if (! deliverMessage($composeMessage, true)) {
428 showInputForm($session);
429 exit();
430 } else {
431 $draft_message = _("Draft Email Saved");
432 /* If this is a resumed draft, then delete the original */
433 if(isset($delete_draft)) {
434 $imap_stream = sqimap_login($username, false, $imapServerAddress, $imapPort, false);
435 sqimap_mailbox_select($imap_stream, $draft_folder);
436 // force bypass_trash=true because message should be saved when deliverMessage() returns true.
437 // in current implementation of sqimap_msgs_list_flag() single message id can
438 // be submitted as string. docs state that it should be array.
439 sqimap_msgs_list_delete($imap_stream, $draft_folder, $delete_draft, true);
440 if ($auto_expunge) {
441 sqimap_mailbox_expunge($imap_stream, $draft_folder, true);
442 }
443 sqimap_logout($imap_stream);
444 }
445
446 $oErrorHandler->saveDelayedErrors();
447 session_write_close();
448
449 if ($compose_new_win == '1') {
450 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
451 header("Location: $location/compose.php?saved_draft=yes&session=$composesession");
452 } else {
453 //FIXME: DON'T ECHO HTML FROM CORE!
454 echo ' <br><br><div style="text-align: center;"><a href="' . $location
455 . '/compose.php?saved_sent=yes&amp;session=' . $composesession . '">'
456 . _("Return") . '</a></div>';
457 }
458 exit();
459 } else {
460 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
461 header("Location: $location/right_main.php?mailbox=" . urlencode($draft_folder) .
462 "&startMessage=1&note=".urlencode($draft_message));
463 } else {
464 //FIXME: DON'T ECHO HTML FROM CORE!
465 echo ' <br><br><div style="text-align: center;"><a href="' . $location
466 . '/right_main.php?mailbox=' . urlencode($draft_folder)
467 . '&amp;startMessage=1&amp;note=' . urlencode($draft_message) .'">'
468 . _("Return") . '</a></div>';
469 }
470 exit();
471 }
472 }
473 }
474
475 if ($send) {
476
477 // validate security token
478 //
479 sm_validate_security_token($submitted_token, 3600, TRUE);
480
481 if (isset($_FILES['attachfile']) &&
482 $_FILES['attachfile']['tmp_name'] &&
483 $_FILES['attachfile']['tmp_name'] != 'none') {
484 $AttachFailure = saveAttachedFiles($session);
485 }
486 if (checkInput(false) && !isset($AttachFailure)) {
487 if ($mailbox == "All Folders") {
488 /* We entered compose via the search results page */
489 $mailbox = 'INBOX'; /* Send 'em to INBOX, that's safe enough */
490 }
491 $urlMailbox = urlencode($mailbox);
492 if (! isset($passed_id)) {
493 $passed_id = 0;
494 }
495 /**
496 * Set $default_charset to correspond with the user's selection
497 * of language interface.
498 */
499 set_my_charset();
500 /**
501 * This is to change all newlines to \n
502 * We'll change them to \r\n later (in the sendMessage function)
503 */
504 $body = str_replace("\r\n", "\n", $body);
505 $body = str_replace("\r", "\n", $body);
506
507 /**
508 * Rewrap $body so that no line is bigger than $editor_size
509 */
510 $body = explode("\n", $body);
511 $newBody = '';
512 foreach ($body as $line) {
513 if( $line <> '-- ' ) {
514 $line = rtrim($line);
515 }
516 if (sq_strlen($line, $default_charset) <= $editor_size + 1) {
517 $newBody .= $line . "\n";
518 } else {
519 sqWordWrap($line, $editor_size, $default_charset);
520 $newBody .= $line . "\n";
521
522 }
523
524 }
525 $body = $newBody;
526
527 $Result = deliverMessage($composeMessage);
528
529 if ($Result)
530 $mail_sent = 'yes';
531 else
532 $mail_sent = 'no';
533
534 // NOTE: this hook changed in 1.5.2 from sending $Result and
535 // $composeMessage as args #2 and #3 to being in an array
536 // under arg #2
537 $temp = array(&$Result, &$composeMessage, &$mail_sent);
538 do_hook('compose_send_after', $temp);
539 if (! $Result) {
540 showInputForm($session);
541 exit();
542 }
543
544 /* if it is resumed draft, delete draft message */
545 if ( isset($delete_draft)) {
546 $imap_stream = sqimap_login($username, false, $imapServerAddress, $imapPort, false);
547 sqimap_mailbox_select($imap_stream, $draft_folder);
548 // bypass_trash=true because message should be saved when deliverMessage() returns true.
549 // in current implementation of sqimap_msgs_list_flag() single message id can
550 // be submitted as string. docs state that it should be array.
551 sqimap_msgs_list_delete($imap_stream, $draft_folder, $delete_draft, true);
552 if ($auto_expunge) {
553 sqimap_mailbox_expunge($imap_stream, $draft_folder, true);
554 }
555 sqimap_logout($imap_stream);
556 }
557 /*
558 * Store the error array in the session because they will be lost on a redirect
559 */
560 $oErrorHandler->saveDelayedErrors();
561 session_write_close();
562
563 if ($compose_new_win == '1') {
564 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
565 header("Location: $location/compose.php?mail_sent=$mail_sent");
566 } else {
567 //FIXME: DON'T ECHO HTML FROM CORE!
568 echo ' <br><br><div style="text-align: center;"><a href="' . $location
569 . '/compose.php?mail_sent=$mail_sent">'
570 . _("Return") . '</a></div>';
571 }
572 exit();
573 } else {
574 if ( !isset($pageheader_sent) || !$pageheader_sent ) {
575 header("Location: $location/right_main.php?mailbox=$urlMailbox".
576 "&startMessage=$startMessage&mail_sent=$mail_sent");
577 } else {
578 //FIXME: DON'T ECHO HTML FROM CORE!
579 echo ' <br><br><div style="text-align: center;"><a href="' . $location
580 . "/right_main.php?mailbox=$urlMailbox"
581 . "&amp;startMessage=$startMessage&amp;mail_sent=$mail_sent\">"
582 . _("Return") . '</a></div>';
583 }
584 exit();
585 }
586 } else {
587 if ($compose_new_win == '1') {
588 compose_Header($color, $mailbox);
589 }
590 else {
591 displayPageHeader($color, $mailbox);
592 }
593 if (isset($AttachFailure)) {
594 plain_error_message(_("Could not move/copy file. File not attached"),
595 $color);
596 }
597 checkInput(true);
598 showInputForm($session);
599 /* sqimap_logout($imapConnection); */
600 }
601 } elseif (isset($html_addr_search_done)) {
602
603 // validate security token
604 //
605 sm_validate_security_token($submitted_token, 3600, TRUE);
606
607 if ($compose_new_win == '1') {
608 compose_Header($color, $mailbox);
609 }
610 else {
611 displayPageHeader($color, $mailbox);
612 }
613
614 if (isset($send_to_search) && is_array($send_to_search)) {
615 foreach ($send_to_search as $k => $v) {
616 if (substr($k, 0, 1) == 'T') {
617 if ($send_to) {
618 $send_to .= ', ';
619 }
620 $send_to .= $v;
621 }
622 elseif (substr($k, 0, 1) == 'C') {
623 if ($send_to_cc) {
624 $send_to_cc .= ', ';
625 }
626 $send_to_cc .= $v;
627 }
628 elseif (substr($k, 0, 1) == 'B') {
629 if ($send_to_bcc) {
630 $send_to_bcc .= ', ';
631 }
632 $send_to_bcc .= $v;
633 }
634 }
635 }
636 showInputForm($session);
637 } elseif (isset($html_addr_search) && !isset($html_addr_search_cancel)) {
638 if (isset($_FILES['attachfile']) &&
639 $_FILES['attachfile']['tmp_name'] &&
640 $_FILES['attachfile']['tmp_name'] != 'none') {
641 if(saveAttachedFiles($session)) {
642 plain_error_message(_("Could not move/copy file. File not attached"));
643 }
644 }
645 /*
646 * I am using an include so as to elminiate an extra unnecessary
647 * click. If you can think of a better way, please implement it.
648 */
649 include_once('./addrbook_search_html.php');
650 } elseif (isset($attach)) {
651
652 // validate security token
653 //
654 sm_validate_security_token($submitted_token, 3600, TRUE);
655
656 if ($compose_new_win == '1') {
657 compose_Header($color, $mailbox);
658 } else {
659 displayPageHeader($color, $mailbox);
660 }
661 if (saveAttachedFiles($session)) {
662 plain_error_message(_("Could not move/copy file. File not attached"));
663 }
664 showInputForm($session);
665 }
666 elseif (isset($sigappend)) {
667
668 // validate security token
669 //
670 sm_validate_security_token($submitted_token, 3600, TRUE);
671
672 $signature = $idents[$identity]['signature'];
673
674 $body .= "\n\n".($prefix_sig==true? "-- \n":'').$signature;
675 if ($compose_new_win == '1') {
676 compose_Header($color, $mailbox);
677 } else {
678 displayPageHeader($color, $mailbox);
679 }
680 showInputForm($session);
681 } elseif (isset($do_delete)) {
682
683 // validate security token
684 //
685 sm_validate_security_token($submitted_token, 3600, TRUE);
686
687 if ($compose_new_win == '1') {
688 compose_Header($color, $mailbox);
689 } else {
690 displayPageHeader($color, $mailbox);
691 }
692
693 if (isset($delete) && is_array($delete)) {
694 foreach($delete as $index) {
695 if (!empty($composeMessage->entities) && isset($composeMessage->entities[$index])) {
696 $composeMessage->entities[$index]->purgeAttachments();
697 // FIXME: one person reported that unset() didn't do anything at all here, so this is a work-around... but it triggers PHP notices if the unset() doesn't work, which should be fixed... but bigger question is if unset() doesn't work here, what about everywhere else? Anyway, uncomment this if you think you need it
698 //$composeMessage->entities[$index] = NULL;
699 unset ($composeMessage->entities[$index]);
700 }
701 }
702 $new_entities = array();
703 foreach ($composeMessage->entities as $entity) {
704 $new_entities[] = $entity;
705 }
706 $composeMessage->entities = $new_entities;
707 }
708 showInputForm($session);
709 } else {
710 /*
711 * This handles the default case as well as the error case
712 * (they had the same code) --> if (isset($smtpErrors))
713 */
714
715 if ($compose_new_win == '1') {
716 compose_Header($color, $mailbox);
717 } else {
718 displayPageHeader($color, $mailbox);
719 }
720
721 $newmail = true;
722
723 if (!isset($passed_ent_id)) {
724 $passed_ent_id = '';
725 }
726 if (!isset($passed_id)) {
727 $passed_id = '';
728 }
729 if (!isset($mailbox)) {
730 $mailbox = '';
731 }
732 if (!isset($action)) {
733 $action = '';
734 }
735
736 $values = newMail($mailbox,$passed_id,$passed_ent_id, $action, $session);
737
738 /* in case the origin is not read_body.php */
739 if (isset($send_to)) {
740 $values['send_to'] = $send_to;
741 }
742 if (isset($send_to_cc)) {
743 $values['send_to_cc'] = $send_to_cc;
744 }
745 if (isset($send_to_bcc)) {
746 $values['send_to_bcc'] = $send_to_bcc;
747 }
748 if (isset($subject)) {
749 $values['subject'] = $subject;
750 }
751 showInputForm($session, $values);
752 }
753
754 exit();
755
756 /**************** Only function definitions go below *************/
757
758 function getforwardSubject($subject)
759 {
760 if ((substr(strtolower($subject), 0, 4) != 'fwd:') &&
761 (substr(strtolower($subject), 0, 5) != '[fwd:') &&
762 (substr(strtolower($subject), 0, 6) != '[ fwd:')) {
763 $subject = '[Fwd: ' . $subject . ']';
764 }
765 return $subject;
766 }
767
768 /* This function is used when not sending or adding attachments */
769 function newMail ($mailbox='', $passed_id='', $passed_ent_id='', $action='', $session='') {
770 global $editor_size, $default_use_priority, $body, $idents,
771 $use_signature, $data_dir, $username,
772 $key, $imapServerAddress, $imapPort,
773 $composeMessage, $body_quote, $request_mdn, $request_dr,
774 $mdn_user_support, $languages, $squirrelmail_language,
775 $default_charset;
776
777 /*
778 * Set $default_charset to correspond with the user's selection
779 * of language interface. $default_charset global is not correct,
780 * if message is composed in new window.
781 */
782 set_my_charset();
783
784 $send_to = $send_to_cc = $send_to_bcc = $subject = $identity = '';
785 $mailprio = 3;
786
787 if ($passed_id) {
788 $imapConnection = sqimap_login($username, false, $imapServerAddress,
789 $imapPort, 0);
790
791 sqimap_mailbox_select($imapConnection, $mailbox);
792 $message = sqimap_get_message($imapConnection, $passed_id, $mailbox);
793
794 $body = '';
795 if ($passed_ent_id) {
796 /* redefine the messsage in case of message/rfc822 */
797 $message = $message->getEntity($passed_ent_id);
798 /* message is an entity which contains the envelope and type0=message
799 * and type1=rfc822. The actual entities are childs from
800 * $message->entities[0]. That's where the encoding and is located
801 */
802
803 $entities = $message->entities[0]->findDisplayEntity
804 (array(), $alt_order = array('text/plain'));
805 if (!count($entities)) {
806 $entities = $message->entities[0]->findDisplayEntity
807 (array(), $alt_order = array('text/plain','text/html'));
808 }
809 $orig_header = $message->rfc822_header; /* here is the envelope located */
810 /* redefine the message for picking up the attachments */
811 $message = $message->entities[0];
812
813 } else {
814 $entities = $message->findDisplayEntity (array(), $alt_order = array('text/plain'));
815 if (!count($entities)) {
816 $entities = $message->findDisplayEntity (array(), $alt_order = array('text/plain','text/html'));
817 }
818 $orig_header = $message->rfc822_header;
819 }
820
821 $type0 = $message->type0;
822 $type1 = $message->type1;
823 foreach ($entities as $ent) {
824 $msg = $message->getEntity($ent);
825 $type0 = $msg->type0;
826 $type1 = $msg->type1;
827 $unencoded_bodypart = mime_fetch_body($imapConnection, $passed_id, $ent);
828 $body_part_entity = $message->getEntity($ent);
829 $bodypart = decodeBody($unencoded_bodypart,
830 $body_part_entity->header->encoding);
831 if ($type1 == 'html') {
832 $bodypart = str_replace("\n", ' ', $bodypart);
833 $bodypart = preg_replace(array('/<\/?p>/i','/<div><\/div>/i','/<br\s*(\/)*>/i','/<\/?div>/i'), "\n", $bodypart);
834 $bodypart = str_replace(array('&nbsp;','&gt;','&lt;'),array(' ','>','<'),$bodypart);
835 $bodypart = strip_tags($bodypart);
836 }
837 if (isset($languages[$squirrelmail_language]['XTRA_CODE']) &&
838 function_exists($languages[$squirrelmail_language]['XTRA_CODE'] . '_decode')) {
839 if (mb_detect_encoding($bodypart) != 'ASCII') {
840 $bodypart = call_user_func($languages[$squirrelmail_language]['XTRA_CODE'] . '_decode', $bodypart);
841 }
842 }
843
844 // charset encoding in compose form stuff
845 if (isset($body_part_entity->header->parameters['charset'])) {
846 $actual = $body_part_entity->header->parameters['charset'];
847 } else {
848 $actual = 'us-ascii';
849 }
850
851 if ( $actual && is_conversion_safe($actual) && $actual != $default_charset){
852 $bodypart = charset_convert($actual,$bodypart,$default_charset,false);
853 }
854 // end of charset encoding in compose
855
856 $body .= $bodypart;
857 }
858 if ($default_use_priority) {
859 $mailprio = substr($orig_header->priority,0,1);
860 if (!$mailprio) {
861 $mailprio = 3;
862 }
863 } else {
864 $mailprio = '';
865 }
866
867 $from_o = $orig_header->from;
868 if (is_array($from_o)) {
869 if (isset($from_o[0])) {
870 $from_o = $from_o[0];
871 }
872 }
873 if (is_object($from_o)) {
874 $orig_from = $from_o->getAddress();
875 } else {
876 $orig_from = '';
877 }
878
879 $identities = array();
880 if (count($idents) > 1) {
881 foreach($idents as $nr=>$data) {
882 $enc_from_name = '"'.$data['full_name'].'" <'. $data['email_address'].'>';
883 if(strtolower($enc_from_name) == strtolower($orig_from)) {
884 $identity = $nr;
885 // don't stop! need to build $identities array for idents match below
886 //break;
887 }
888 $identities[] = $enc_from_name;
889 }
890
891 $identity_match = $orig_header->findAddress($identities);
892 if ($identity_match) {
893 $identity = $identity_match;
894 }
895 }
896
897 switch ($action) {
898 case ('draft'):
899 $use_signature = FALSE;
900 $composeMessage->rfc822_header = $orig_header;
901 $send_to = decodeHeader($orig_header->getAddr_s('to'),false,false,true);
902 $send_to_cc = decodeHeader($orig_header->getAddr_s('cc'),false,false,true);
903 $send_to_bcc = decodeHeader($orig_header->getAddr_s('bcc'),false,false,true);
904 $send_from = $orig_header->getAddr_s('from');
905 $send_from_parts = new AddressStructure();
906 $send_from_parts = $orig_header->parseAddress($send_from);
907 $send_from_add = $send_from_parts->mailbox . '@' . $send_from_parts->host;
908 $identity = find_identity(array($send_from_add));
909 $subject = decodeHeader($orig_header->subject,false,false,true);
910
911 // Remember the receipt settings
912 $request_mdn = $mdn_user_support && !empty($orig_header->dnt) ? '1' : '0';
913 $request_dr = $mdn_user_support && !empty($orig_header->drnt) ? '1' : '0';
914
915 /* remember the references and in-reply-to headers in case of an reply */
916 //FIXME: it would be better to fiddle with headers inside of the message object or possibly when delivering the message to its destination (drafts folder?); is this possible?
917 $composeMessage->rfc822_header->more_headers['References'] = $orig_header->references;
918 $composeMessage->rfc822_header->more_headers['In-Reply-To'] = $orig_header->in_reply_to;
919 // rewrap the body to clean up quotations and line lengths
920 sqBodyWrap($body, $editor_size);
921 $composeMessage = getAttachments($message, $composeMessage, $passed_id, $entities, $imapConnection);
922 break;
923 case ('edit_as_new'):
924 $send_to = decodeHeader($orig_header->getAddr_s('to'),false,false,true);
925 $send_to_cc = decodeHeader($orig_header->getAddr_s('cc'),false,false,true);
926 $send_to_bcc = decodeHeader($orig_header->getAddr_s('bcc'),false,false,true);
927 $subject = decodeHeader($orig_header->subject,false,false,true);
928 $mailprio = $orig_header->priority;
929 $orig_from = '';
930 $composeMessage = getAttachments($message, $composeMessage, $passed_id, $entities, $imapConnection);
931 // rewrap the body to clean up quotations and line lengths
932 sqBodyWrap($body, $editor_size);
933 break;
934 case ('forward'):
935 $send_to = '';
936 $subject = getforwardSubject(decodeHeader($orig_header->subject,false,false,true));
937 $body = getforwardHeader($orig_header) . $body;
938 // the logic for calling sqUnWordWrap here would be to allow the browser to wrap the lines
939 // forwarded message text should be as undisturbed as possible, so commenting out this call
940 // sqUnWordWrap($body);
941 $composeMessage = getAttachments($message, $composeMessage, $passed_id, $entities, $imapConnection);
942
943 //add a blank line after the forward headers
944 $body = "\n" . $body;
945 break;
946 case ('forward_as_attachment'):
947 $subject = getforwardSubject(decodeHeader($orig_header->subject,false,false,true));
948 $composeMessage = getMessage_RFC822_Attachment($message, $composeMessage, $passed_id, $passed_ent_id, $imapConnection);
949 $body = '';
950 break;
951 case ('reply_all'):
952 if(isset($orig_header->mail_followup_to) && $orig_header->mail_followup_to) {
953 $send_to = $orig_header->getAddr_s('mail_followup_to');
954 } else {
955 $send_to_cc = replyAllString($orig_header);
956 $send_to_cc = decodeHeader($send_to_cc,false,false,true);
957 }
958 case ('reply'):
959 // skip this if send_to was already set right above here
960 if(!$send_to) {
961 $send_to = $orig_header->reply_to;
962 if (is_array($send_to) && count($send_to)) {
963 $send_to = $orig_header->getAddr_s('reply_to');
964 } else if (is_object($send_to)) { /* unneccesarry, just for failsafe purpose */
965 $send_to = $orig_header->getAddr_s('reply_to');
966 } else {
967 $send_to = $orig_header->getAddr_s('from');
968 }
969 }
970 $send_to = decodeHeader($send_to,false,false,true);
971 $subject = decodeHeader($orig_header->subject,false,false,true);
972 $subject = str_replace('"', "'", $subject);
973 $subject = trim($subject);
974 if (substr(strtolower($subject), 0, 3) != 're:') {
975 $subject = 'Re: ' . $subject;
976 }
977 /* this corrects some wrapping/quoting problems on replies */
978 $rewrap_body = explode("\n", $body);
979 $from = (is_array($orig_header->from) && !empty($orig_header->from)) ? $orig_header->from[0] : $orig_header->from;
980 $body = '';
981 $strip_sigs = getPref($data_dir, $username, 'strip_sigs');
982 foreach ($rewrap_body as $line) {
983 if ($strip_sigs && substr($line,0,3) == '-- ') {
984 break;
985 }
986 if (preg_match("/^(>+)/", $line, $matches)) {
987 $gt = $matches[1];
988 $body .= $body_quote . str_replace("\n", "\n$body_quote$gt ", rtrim($line)) ."\n";
989 } else {
990 $body .= $body_quote . (!empty($body_quote) ? ' ' : '') . str_replace("\n", "\n$body_quote" . (!empty($body_quote) ? ' ' : ''), rtrim($line)) . "\n";
991 }
992 }
993
994 //rewrap the body to clean up quotations and line lengths
995 $body = sqBodyWrap ($body, $editor_size);
996
997 $body = getReplyCitation($from , $orig_header->date) . $body;
998 $composeMessage->reply_rfc822_header = $orig_header;
999
1000 break;
1001 default:
1002 break;
1003 }
1004 //FIXME: we used to register $compose_messages in the session here, but not any more - so do we still need the session_write_close() and sqimap_logout() here? We probably need the IMAP logout, but what about the session closure?
1005 session_write_close();
1006 sqimap_logout($imapConnection);
1007 }
1008 $ret = array( 'send_to' => $send_to,
1009 'send_to_cc' => $send_to_cc,
1010 'send_to_bcc' => $send_to_bcc,
1011 'subject' => $subject,
1012 'mailprio' => $mailprio,
1013 'body' => $body,
1014 'identity' => $identity );
1015
1016 return ($ret);
1017 } /* function newMail() */
1018
1019 /**
1020 * downloads attachments from original message, stores them in attachment directory and adds
1021 * them to composed message.
1022 * @param object $message
1023 * @param object $composeMessage
1024 * @param integer $passed_id
1025 * @param mixed $entities
1026 * @param mixed $imapConnection
1027 * @return object
1028 */
1029 function getAttachments($message, &$composeMessage, $passed_id, $entities, $imapConnection) {
1030 global $squirrelmail_language, $languages, $username, $attachment_dir;
1031
1032 if (!count($message->entities) ||
1033 ($message->type0 == 'message' && $message->type1 == 'rfc822')) {
1034 if ( !in_array($message->entity_id, $entities) && $message->entity_id) {
1035 switch ($message->type0) {
1036 case 'message':
1037 if ($message->type1 == 'rfc822') {
1038 $filename = $message->rfc822_header->subject;
1039 if ($filename == "") {
1040 $filename = "untitled-".$message->entity_id;
1041 }
1042 $filename .= '.eml';
1043 } else {
1044 $filename = $message->getFilename();
1045 }
1046 break;
1047 default:
1048 if (!$message->mime_header) { /* temporary hack */
1049 $message->mime_header = $message->header;
1050 }
1051 $filename = $message->getFilename();
1052 break;
1053 }
1054 $filename = str_replace('&#32;', ' ', decodeHeader($filename));
1055 if (isset($languages[$squirrelmail_language]['XTRA_CODE']) &&
1056 function_exists($languages[$squirrelmail_language]['XTRA_CODE'] . '_encode')) {
1057 $filename = call_user_func($languages[$squirrelmail_language]['XTRA_CODE'] . '_encode', $filename);
1058 }
1059
1060 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1061 $localfilename = sq_get_attach_tempfile();
1062 $message->att_local_name = $localfilename;
1063
1064 $composeMessage->initAttachment($message->type0.'/'.$message->type1,$filename,
1065 $localfilename);
1066
1067 /* Write Attachment to file */
1068 $fp = fopen ($hashed_attachment_dir . '/' . $localfilename, 'wb');
1069 mime_print_body_lines ($imapConnection, $passed_id, $message->entity_id, $message->header->encoding, $fp);
1070 fclose ($fp);
1071 }
1072 } else {
1073 for ($i=0, $entCount=count($message->entities); $i<$entCount;$i++) {
1074 $composeMessage=getAttachments($message->entities[$i], $composeMessage, $passed_id, $entities, $imapConnection);
1075 }
1076 }
1077 return $composeMessage;
1078 }
1079
1080 function getMessage_RFC822_Attachment($message, $composeMessage, $passed_id,
1081 $passed_ent_id='', $imapConnection) {
1082 if (!$passed_ent_id) {
1083 $body_a = sqimap_run_command($imapConnection,
1084 'FETCH '.$passed_id.' RFC822',
1085 TRUE, $response, $readmessage,
1086 TRUE);
1087 } else {
1088 $body_a = sqimap_run_command($imapConnection,
1089 'FETCH '.$passed_id.' BODY['.$passed_ent_id.']',
1090 TRUE, $response, $readmessage, TRUE);
1091 $message = $message->parent;
1092 }
1093 if ($response == 'OK') {
1094 $subject = encodeHeader($message->rfc822_header->subject);
1095 array_shift($body_a);
1096 array_pop($body_a);
1097 $body = implode('', $body_a) . "\r\n";
1098
1099 global $username, $attachment_dir;
1100 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1101 $localfilename = sq_get_attach_tempfile();
1102 $fp = fopen($hashed_attachment_dir . '/' . $localfilename, 'wb');
1103 fwrite ($fp, $body);
1104 fclose($fp);
1105 $composeMessage->initAttachment('message/rfc822',$subject.'.eml',
1106 $localfilename);
1107 }
1108 return $composeMessage;
1109 }
1110
1111 function showInputForm ($session, $values=false) {
1112 global $send_to, $send_to_cc, $send_to_bcc,
1113 $body, $startMessage, $action, $attachments,
1114 $use_signature, $signature, $prefix_sig, $session_expired,
1115 $editor_size, $editor_height, $subject, $newmail,
1116 $use_javascript_addr_book, $passed_id, $mailbox, $fwduid,
1117 $from_htmladdr_search, $location_of_buttons, $attachment_dir,
1118 $username, $data_dir, $identity, $idents, $delete_draft,
1119 $mailprio, $compose_new_win, $saved_draft, $mail_sent, $sig_first,
1120 $composeMessage, $composesession, $default_charset,
1121 $compose_onsubmit, $oTemplate, $oErrorHandler;
1122
1123 if (checkForJavascript()) {
1124 $onfocus = ' onfocus="alreadyFocused=true;"';
1125 $onfocus_array = array('onfocus' => 'alreadyFocused=true;');
1126 }
1127 else {
1128 $onfocus = '';
1129 $onfocus_array = array();
1130 }
1131
1132 if ($values) {
1133 $send_to = $values['send_to'];
1134 $send_to_cc = $values['send_to_cc'];
1135 $send_to_bcc = $values['send_to_bcc'];
1136 $subject = $values['subject'];
1137 $mailprio = $values['mailprio'];
1138 $body = $values['body'];
1139 $identity = (int) $values['identity'];
1140 } else {
1141 $send_to = decodeHeader($send_to, true, false);
1142 $send_to_cc = decodeHeader($send_to_cc, true, false);
1143 $send_to_bcc = decodeHeader($send_to_bcc, true, false);
1144 }
1145
1146 if ($use_javascript_addr_book) {
1147 //FIXME: NO HTML IN CORE!
1148 echo "\n". '<script type="text/javascript">'."\n<!--\n" .
1149 'function open_abook() { ' . "\n" .
1150 ' var nwin = window.open("addrbook_popup.php","abookpopup",' .
1151 '"width=670,height=300,resizable=yes,scrollbars=yes");' . "\n" .
1152 ' if((!nwin.opener) && (document.windows != null))' . "\n" .
1153 ' nwin.opener = document.windows;' . "\n" .
1154 "}\n" .
1155 "// -->\n</script>\n\n";
1156 }
1157
1158 //FIXME: NO HTML IN CORE!
1159 echo "\n" . '<form name="compose" action="compose.php" method="post" ' .
1160 'enctype="multipart/form-data"';
1161
1162 $compose_onsubmit = array();
1163 global $null;
1164 do_hook('compose_form', $null);
1165
1166 // Plugins that use compose_form hook can add an array entry
1167 // to the globally scoped $compose_onsubmit; we add them up
1168 // here and format the form tag's full onsubmit handler.
1169 // Each plugin should use "return false" if they need to
1170 // stop form submission but otherwise should NOT use "return
1171 // true" to give other plugins the chance to do what they need
1172 // to do; SquirrelMail itself will add the final "return true".
1173 // Onsubmit text is enclosed inside of double quotes, so plugins
1174 // need to quote accordingly.
1175 if (checkForJavascript()) {
1176 $onsubmit_text = ' onsubmit="';
1177 if (empty($compose_onsubmit))
1178 $compose_onsubmit = array();
1179 else if (!is_array($compose_onsubmit))
1180 $compose_onsubmit = array($compose_onsubmit);
1181
1182 foreach ($compose_onsubmit as $text) {
1183 $text = trim($text);
1184 if (substr($text, -1) != ';' && substr($text, -1) != '}')
1185 $text .= '; ';
1186 $onsubmit_text .= $text;
1187 }
1188
1189 //FIXME: DON'T ECHO HTML FROM CORE!
1190 echo $onsubmit_text . ' return true;"';
1191 }
1192
1193
1194 //FIXME: NO HTML IN CORE!
1195 echo ">\n";
1196
1197 //FIXME: DON'T ECHO HTML FROM CORE!
1198 echo addHidden('smtoken', sm_generate_security_token());
1199
1200 //FIXME: DON'T ECHO HTML FROM CORE!
1201 echo addHidden('startMessage', $startMessage);
1202
1203 if ($action == 'draft') {
1204 //FIXME: DON'T ECHO HTML FROM CORE!
1205 echo addHidden('delete_draft', $passed_id);
1206 }
1207 if (isset($delete_draft)) {
1208 //FIXME: DON'T ECHO HTML FROM CORE!
1209 echo addHidden('delete_draft', $delete_draft);
1210 }
1211 if (isset($session)) {
1212 //FIXME: DON'T ECHO HTML FROM CORE!
1213 echo addHidden('session', $session);
1214 }
1215
1216 if (isset($passed_id)) {
1217 //FIXME: DON'T ECHO HTML FROM CORE!
1218 echo addHidden('passed_id', $passed_id);
1219 }
1220
1221 if (isset($fwduid)) {
1222 //FIXME: DON'T ECHO HTML FROM CORE!
1223 echo addHidden('fwduid', $fwduid);
1224 }
1225
1226 if ($saved_draft == 'yes') {
1227 $oTemplate->assign('note', _("Your draft has been saved."));
1228 $oTemplate->display('note.tpl');
1229 }
1230 if ($mail_sent == 'yes') {
1231 $oTemplate->assign('note', _("Your mail has been sent."));
1232 $oTemplate->display('note.tpl');
1233 }
1234 if ($compose_new_win == '1') {
1235 $oTemplate->display('compose_newwin_close.tpl');
1236 }
1237
1238 if ($location_of_buttons == 'top') {
1239 //FIXME: DON'T ECHO HTML FROM CORE!
1240 showComposeButtonRow();
1241 }
1242
1243 $identities = array();
1244 if (count($idents) > 1) {
1245 reset($idents);
1246 foreach($idents as $id => $data) {
1247 $identities[$id] = $data['full_name'].' &lt;'.$data['email_address'].'&gt;';
1248 }
1249 }
1250
1251 $oTemplate->assign('identities', $identities);
1252 $oTemplate->assign('identity_def', $identity);
1253 $oTemplate->assign('input_onfocus', 'onfocus="'.join(' ', $onfocus_array).'"');
1254
1255 $oTemplate->assign('to', htmlspecialchars($send_to));
1256 $oTemplate->assign('cc', htmlspecialchars($send_to_cc));
1257 $oTemplate->assign('bcc', htmlspecialchars($send_to_bcc));
1258 $oTemplate->assign('subject', htmlspecialchars($subject));
1259
1260 // access keys...
1261 //
1262 global $accesskey_compose_to, $accesskey_compose_cc,
1263 $accesskey_compose_identity, $accesskey_compose_bcc,
1264 $accesskey_compose_subject;
1265 $oTemplate->assign('accesskey_compose_identity', $accesskey_compose_identity);
1266 $oTemplate->assign('accesskey_compose_to', $accesskey_compose_to);
1267 $oTemplate->assign('accesskey_compose_cc', $accesskey_compose_cc);
1268 $oTemplate->assign('accesskey_compose_bcc', $accesskey_compose_bcc);
1269 $oTemplate->assign('accesskey_compose_subject', $accesskey_compose_subject);
1270
1271 $oTemplate->display('compose_header.tpl');
1272
1273 if ($location_of_buttons == 'between') {
1274 //FIXME: DON'T ECHO HTML FROM CORE!
1275 showComposeButtonRow();
1276 }
1277
1278 $body_str = '';
1279 if ($use_signature == true && $newmail == true && !isset($from_htmladdr_search)) {
1280 $signature = $idents[$identity]['signature'];
1281
1282 if ($sig_first == '1') {
1283 /*
1284 * FIXME: test is specific to ja_JP translation implementation.
1285 * This test might apply incorrect conversion to other translations, but
1286 * use of 7bit iso-2022-jp charset in other translations might have other
1287 * issues too.
1288 */
1289 if ($default_charset == 'iso-2022-jp') {
1290 $body_str = "\n\n".($prefix_sig==true? "-- \n":'').mb_convert_encoding($signature, 'EUC-JP');
1291 } else {
1292 $body_str = "\n\n".($prefix_sig==true? "-- \n":'').decodeHeader($signature,false,false);
1293 }
1294 $body_str .= "\n\n".htmlspecialchars(decodeHeader($body,false,false));
1295 } else {
1296 $body_str = "\n\n".htmlspecialchars(decodeHeader($body,false,false));
1297 // FIXME: test is specific to ja_JP translation implementation. See above comments.
1298 if ($default_charset == 'iso-2022-jp') {
1299 $body_str .= "\n\n".($prefix_sig==true? "-- \n":'').mb_convert_encoding($signature, 'EUC-JP');
1300 } else {
1301 $body_str .= "\n\n".($prefix_sig==true? "-- \n":'').decodeHeader($signature,false,false);
1302 }
1303 }
1304 } else {
1305 $body_str = htmlspecialchars(decodeHeader($body,false,false));
1306 }
1307
1308 $oTemplate->assign('editor_width', (int)$editor_size);
1309 $oTemplate->assign('editor_height', (int)$editor_height);
1310 $oTemplate->assign('input_onfocus', 'onfocus="'.join(' ', $onfocus_array).'"');
1311 $oTemplate->assign('body', $body_str);
1312 $oTemplate->assign('show_bottom_send', $location_of_buttons!='bottom');
1313
1314 // access keys...
1315 //
1316 global $accesskey_compose_body, $accesskey_compose_send;
1317 $oTemplate->assign('accesskey_compose_body', $accesskey_compose_body);
1318 $oTemplate->assign('accesskey_compose_send', $accesskey_compose_send);
1319
1320 $oTemplate->display ('compose_body.tpl');
1321
1322 if ($location_of_buttons == 'bottom') {
1323 //FIXME: DON'T ECHO HTML FROM CORE!
1324 showComposeButtonRow();
1325 }
1326
1327 // composeMessage can be empty when coming from a restored session
1328 if (is_object($composeMessage) && $composeMessage->entities)
1329 $attach_array = $composeMessage->entities;
1330 if ($session_expired && !empty($attachments) && is_array($attachments))
1331 $attach_array = $attachments;
1332
1333 /* This code is for attachments */
1334 if ((bool) ini_get('file_uploads')) {
1335
1336 /* Calculate the max size for an uploaded file.
1337 * This is advisory for the user because we can't actually prevent
1338 * people to upload too large files. */
1339 $sizes = array();
1340 /* php.ini vars which influence the max for uploads */
1341 $configvars = array('post_max_size', 'memory_limit', 'upload_max_filesize');
1342 foreach($configvars as $var) {
1343 /* skip 0 or empty values, and -1 which means 'unlimited' */
1344 if( $size = getByteSize(ini_get($var)) ) {
1345 if ( $size != '-1' ) {
1346 $sizes[] = $size;
1347 }
1348 }
1349 }
1350
1351 $attach = array();
1352 global $username, $attachment_dir;
1353 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1354 if (!empty($attach_array)) {
1355 foreach ($attach_array as $key => $attachment) {
1356 $attached_file = $attachment->att_local_name;
1357 if ($attachment->att_local_name || $attachment->body_part) {
1358 $attached_filename = decodeHeader($attachment->mime_header->getParameter('name'));
1359 $type = $attachment->mime_header->type0.'/'.
1360 $attachment->mime_header->type1;
1361
1362 $a = array();
1363 $a['Key'] = $key;
1364 $a['FileName'] = $attached_filename;
1365 $a['ContentType'] = $type;
1366 $a['Size'] = filesize($hashed_attachment_dir . '/' . $attached_file);
1367 $attach[$key] = $a;
1368 }
1369 }
1370 }
1371
1372 $max = min($sizes);
1373 $oTemplate->assign('max_file_size', empty($max) ? -1 : $max);
1374 $oTemplate->assign('attachments', $attach);
1375
1376 // access keys...
1377 //
1378 global $accesskey_compose_attach_browse, $accesskey_compose_attach,
1379 $accesskey_compose_delete_attach;
1380 $oTemplate->assign('accesskey_compose_attach_browse', $accesskey_compose_attach_browse);
1381 $oTemplate->assign('accesskey_compose_attach', $accesskey_compose_attach);
1382 $oTemplate->assign('accesskey_compose_delete_attach', $accesskey_compose_delete_attach);
1383
1384 $oTemplate->display('compose_attachments.tpl');
1385 } // End of file_uploads if-block
1386 /* End of attachment code */
1387
1388 $oTemplate->assign('username', $username);
1389 $oTemplate->assign('smaction', $action);
1390 $oTemplate->assign('mailbox', $mailbox);
1391 sqgetGlobalVar('QUERY_STRING', $queryString, SQ_SERVER);
1392 $oTemplate->assign('querystring', $queryString);
1393 $oTemplate->assign('composesession', $composesession);
1394 $oTemplate->assign('send_button_count', unique_widget_name('send', TRUE));
1395 if (!empty($attach_array))
1396 $oTemplate->assign('attachments', urlencode(serialize($attach_array)));
1397
1398 $aUserNotices = array();
1399
1400 // File uploads are off, so we didn't show that part of the form.
1401 // To avoid bogus bug reports, tell the user why.
1402 if (!(bool) ini_get('file_uploads')) {
1403 $aUserNotices[] = _("Because PHP file uploads are turned off, you can not attach files to this message. Please see your system administrator for details.");
1404 }
1405
1406 $oTemplate->assign('user_notices', $aUserNotices);
1407
1408 $oTemplate->display('compose_form_close.tpl');
1409
1410 if ($compose_new_win=='1') {
1411 $oTemplate->display('compose_newwin_close.tpl');
1412 }
1413
1414 $oErrorHandler->setDelayedErrors(false);
1415 $oTemplate->display('footer.tpl');
1416 }
1417
1418
1419 function showComposeButtonRow() {
1420 global $use_javascript_addr_book, $save_as_draft,
1421 $default_use_priority, $mailprio, $default_use_mdn,
1422 $request_mdn, $request_dr,
1423 $data_dir, $username;
1424
1425 global $oTemplate, $buffer_hook;
1426
1427 if ($default_use_priority) {
1428 $priorities = array('1'=>_("High"), '3'=>_("Normal"), '5'=>_("Low"));
1429 $priority = isset($mailprio) ? $mailprio : 3;
1430 } else {
1431 $priorities = array();
1432 $priority = NULL;
1433 }
1434
1435 $mdn_user_support=getPref($data_dir, $username, 'mdn_user_support',$default_use_mdn);
1436
1437 $address_book_button_attribs = array();
1438 global $accesskey_compose_addresses;
1439 if ($accesskey_compose_addresses != 'NONE')
1440 $address_book_button_attribs['accesskey'] = $accesskey_compose_addresses;
1441 if ($use_javascript_addr_book && checkForJavascript()) {
1442 $addr_book = addButton(_("Addresses"),
1443 null,
1444 array_merge($address_book_button_attribs, array('onclick' => 'javascript:open_abook();')));
1445 } else {
1446 $addr_book = addSubmit(_("Addresses"), 'html_addr_search', $address_book_button_attribs);
1447 }
1448
1449 $oTemplate->assign('allow_priority', $default_use_priority==1);
1450 $oTemplate->assign('priority_list', $priorities);
1451 $oTemplate->assign('current_priority', $priority);
1452
1453 $oTemplate->assign('notifications_enabled', $mdn_user_support==1);
1454 $oTemplate->assign('read_receipt', $request_mdn=='1');
1455 $oTemplate->assign('delivery_receipt', $request_dr=='1');
1456
1457 $oTemplate->assign('drafts_enabled', $save_as_draft);
1458 $oTemplate->assign('address_book_button', $addr_book);
1459
1460 // access keys...
1461 //
1462 global $accesskey_compose_priority, $accesskey_compose_on_read,
1463 $accesskey_compose_on_delivery, $accesskey_compose_signature,
1464 $accesskey_compose_save_draft, $accesskey_compose_send;
1465 $oTemplate->assign('accesskey_compose_priority', $accesskey_compose_priority);
1466 $oTemplate->assign('accesskey_compose_on_read', $accesskey_compose_on_read);
1467 $oTemplate->assign('accesskey_compose_on_delivery', $accesskey_compose_on_delivery);
1468 $oTemplate->assign('accesskey_compose_signature', $accesskey_compose_signature);
1469 $oTemplate->assign('accesskey_compose_save_draft', $accesskey_compose_save_draft);
1470 $oTemplate->assign('accesskey_compose_send', $accesskey_compose_send);
1471
1472 $oTemplate->display('compose_buttons.tpl');
1473 }
1474
1475 function checkInput ($show) {
1476 /*
1477 * I implemented the $show variable because the error messages
1478 * were getting sent before the page header. So, I check once
1479 * using $show=false, and then when i'm ready to display the error
1480 * message, show=true
1481 */
1482 global $send_to, $send_to_cc, $send_to_bcc;
1483
1484 $send_to = trim($send_to);
1485 $send_to_cc = trim($send_to_cc);
1486 $send_to_bcc = trim($send_to_bcc);
1487 if (empty($send_to) && empty($send_to_cc) && empty($send_to_bcc)) {
1488 if ($show) {
1489 plain_error_message(_("You have not filled in the \"To:\" field."));
1490 }
1491 return false;
1492 }
1493 return true;
1494 } /* function checkInput() */
1495
1496
1497 /* True if FAILURE */
1498 function saveAttachedFiles($session) {
1499 global $composeMessage, $username, $attachment_dir;
1500
1501 /* get out of here if no file was attached at all */
1502 if (! is_uploaded_file($_FILES['attachfile']['tmp_name']) ) {
1503 return true;
1504 }
1505
1506 $hashed_attachment_dir = getHashedDir($username, $attachment_dir);
1507 $localfilename = sq_get_attach_tempfile();
1508 $fullpath = $hashed_attachment_dir . '/' . $localfilename;
1509
1510 // m_u_f works better with restricted PHP installs (safe_mode, open_basedir),
1511 // if that doesn't work, try a simple rename.
1512 if (!sq_call_function_suppress_errors('move_uploaded_file', array($_FILES['attachfile']['tmp_name'], $fullpath))) {
1513 if (!sq_call_function_suppress_errors('rename', array($_FILES['attachfile']['tmp_name'], $fullpath))) {
1514 return true;
1515 }
1516 }
1517 $type = strtolower($_FILES['attachfile']['type']);
1518 $name = $_FILES['attachfile']['name'];
1519 $composeMessage->initAttachment($type, $name, $localfilename);
1520 }
1521
1522 /**
1523 * Parse strings such as "8M" and "2k" into their corresponding size in bytes
1524 *
1525 * NOTE: This function only recognizes the suffixes "K", "M" and "G"
1526 * and will probably break very easily if the given size is in
1527 * some completely different format.
1528 *
1529 * @param string $ini_size The input string to be converted
1530 *
1531 * @return mixed Boolean FALSE if something went wrong (the value passed in
1532 * was empty?, the suffix was not recognized?), otherwise, the
1533 * converted size in bytes (just the number (as an integer),
1534 * no unit identifier included)
1535 *
1536 */
1537 function getByteSize($ini_size) {
1538
1539 if(!$ini_size) {
1540 return FALSE;
1541 }
1542
1543 $ini_size = trim($ini_size);
1544
1545 // if there's some kind of letter at the end of the string we need to multiply.
1546 if(!is_numeric(substr($ini_size, -1))) {
1547
1548 switch(strtoupper(substr($ini_size, -1))) {
1549 case 'G':
1550 $bytesize = 1073741824;
1551 break;
1552 case 'M':
1553 $bytesize = 1048576;
1554 break;
1555 case 'K':
1556 $bytesize = 1024;
1557 break;
1558 default:
1559 return FALSE;
1560 }
1561
1562 return ($bytesize * (int)substr($ini_size, 0, -1));
1563 }
1564
1565 return $ini_size;
1566 }
1567
1568
1569 /**
1570 * temporary function to make use of the deliver class.
1571 * In the future the responsible backend should be automaticly loaded
1572 * and conf.pl should show a list of available backends.
1573 * The message also should be constructed by the message class.
1574 *
1575 * @param object $composeMessage The message being sent. Please note
1576 * that it is passed by reference and
1577 * will be returned modified, with additional
1578 * headers, such as Message-ID, Date, In-Reply-To,
1579 * References, and so forth.
1580 *
1581 * @return boolean FALSE if delivery failed, or some non-FALSE value
1582 * upon success.
1583 *
1584 */
1585 function deliverMessage(&$composeMessage, $draft=false) {
1586 global $send_to, $send_to_cc, $send_to_bcc, $mailprio, $subject, $body,
1587 $username, $identity, $idents, $data_dir,
1588 $request_mdn, $request_dr, $default_charset, $useSendmail,
1589 $domain, $action, $default_move_to_sent, $move_to_sent,
1590 $imapServerAddress, $imapPort, $sent_folder, $key;
1591
1592 $rfc822_header = $composeMessage->rfc822_header;
1593
1594 $abook = addressbook_init(false, true);
1595 $rfc822_header->to = $rfc822_header->parseAddress($send_to,true, array(), '', $domain, array(&$abook,'lookup'));
1596 $rfc822_header->cc = $rfc822_header->parseAddress($send_to_cc,true,array(), '',$domain, array(&$abook,'lookup'));
1597 $rfc822_header->bcc = $rfc822_header->parseAddress($send_to_bcc,true, array(), '',$domain, array(&$abook,'lookup'));
1598 $rfc822_header->priority = $mailprio;
1599 $rfc822_header->subject = $subject;
1600
1601 $special_encoding='';
1602 if (strtolower($default_charset) == 'iso-2022-jp') {
1603 if (mb_detect_encoding($body) == 'ASCII') {
1604 $special_encoding = '8bit';
1605 } else {
1606 $body = mb_convert_encoding($body, 'JIS');
1607 $special_encoding = '7bit';
1608 }
1609 }
1610 $composeMessage->setBody($body);
1611
1612 $reply_to = '';
1613 $reply_to = $idents[$identity]['reply_to'];
1614
1615 $from_addr = build_from_header($identity);
1616 $rfc822_header->from = $rfc822_header->parseAddress($from_addr,true);
1617 if ($reply_to) {
1618 $rfc822_header->reply_to = $rfc822_header->parseAddress($reply_to,true);
1619 }
1620 /* Receipt: On Read */
1621 if (isset($request_mdn) && $request_mdn) {
1622 $rfc822_header->dnt = $rfc822_header->parseAddress($from_addr,true);
1623 } elseif (isset($rfc822_header->dnt)) {
1624 unset($rfc822_header->dnt);
1625 }
1626
1627 /* Receipt: On Delivery */
1628 if (!empty($request_dr)) {
1629 //FIXME: it would be better to fiddle with headers inside of the message object or possibly when delivering the message to its destination; is this possible?
1630 $rfc822_header->more_headers['Return-Receipt-To'] = $from_addr;
1631 } elseif (isset($rfc822_header->more_headers['Return-Receipt-To'])) {
1632 unset($rfc822_header->more_headers['Return-Receipt-To']);
1633 }
1634
1635 /* multipart messages */
1636 if (count($composeMessage->entities)) {
1637 $message_body = new Message();
1638 $message_body->body_part = $composeMessage->body_part;
1639 $composeMessage->body_part = '';
1640 $mime_header = new MessageHeader;
1641 $mime_header->type0 = 'text';
1642 $mime_header->type1 = 'plain';
1643 if ($special_encoding) {
1644 $mime_header->encoding = $special_encoding;
1645 } else {
1646 $mime_header->encoding = '8bit';
1647 }
1648 if ($default_charset) {
1649 $mime_header->parameters['charset'] = $default_charset;
1650 }
1651 $message_body->mime_header = $mime_header;
1652 array_unshift($composeMessage->entities, $message_body);
1653 $content_type = new ContentType('multipart/mixed');
1654 } else {
1655 $content_type = new ContentType('text/plain');
1656 if ($special_encoding) {
1657 $rfc822_header->encoding = $special_encoding;
1658 } else {
1659 $rfc822_header->encoding = '8bit';
1660 }
1661 if ($default_charset) {
1662 $content_type->properties['charset']=$default_charset;
1663 }
1664 }
1665
1666 $rfc822_header->content_type = $content_type;
1667 $composeMessage->rfc822_header = $rfc822_header;
1668 if ($action == 'reply' || $action == 'reply_all') {
1669 global $passed_id, $passed_ent_id;
1670 $reply_id = $passed_id;
1671 $reply_ent_id = $passed_ent_id;
1672 } else {
1673 $reply_id = '';
1674 $reply_ent_id = '';
1675 }
1676
1677 /* Here you can modify the message structure just before we hand
1678 it over to deliver; plugin authors note that $composeMessage
1679 is sent and modified by reference since 1.5.2 */
1680 do_hook('compose_send', $composeMessage);
1681
1682 if (!$useSendmail && !$draft) {
1683 require_once(SM_PATH . 'class/deliver/Deliver_SMTP.class.php');
1684 $deliver = new Deliver_SMTP();
1685 global $smtpServerAddress, $smtpPort, $pop_before_smtp, $pop_before_smtp_host;
1686
1687 $authPop = (isset($pop_before_smtp) && $pop_before_smtp) ? true : false;
1688 if (empty($pop_before_smtp_host)) $pop_before_smtp_host = $smtpServerAddress;
1689 get_smtp_user($user, $pass);
1690 $stream = $deliver->initStream($composeMessage,$domain,0,
1691 $smtpServerAddress, $smtpPort, $user, $pass, $authPop, $pop_before_smtp_host);
1692 } elseif (!$draft) {
1693 require_once(SM_PATH . 'class/deliver/Deliver_SendMail.class.php');
1694 global $sendmail_path, $sendmail_args;
1695 // Check for outdated configuration
1696 if (!isset($sendmail_args)) {
1697 if ($sendmail_path=='/var/qmail/bin/qmail-inject') {
1698 $sendmail_args = '';
1699 } else {
1700 $sendmail_args = '-i -t';
1701 }
1702 }
1703 $deliver = new Deliver_SendMail(array('sendmail_args'=>$sendmail_args));
1704 $stream = $deliver->initStream($composeMessage,$sendmail_path);
1705 } elseif ($draft) {
1706 global $draft_folder;
1707 $imap_stream = sqimap_login($username, false, $imapServerAddress,
1708 $imapPort, 0);
1709 if (sqimap_mailbox_exists ($imap_stream, $draft_folder)) {
1710 require_once(SM_PATH . 'class/deliver/Deliver_IMAP.class.php');
1711 $imap_deliver = new Deliver_IMAP();
1712 $success = $imap_deliver->mail($composeMessage, $imap_stream, $reply_id, $reply_ent_id, $imap_stream, $draft_folder);
1713 sqimap_logout($imap_stream);
1714 unset ($imap_deliver);
1715 $composeMessage->purgeAttachments();
1716 return $success;
1717 } else {
1718 $msg = '<br />'.sprintf(_("Error: Draft folder %s does not exist."), htmlspecialchars($draft_folder));
1719 plain_error_message($msg);
1720 return false;
1721 }
1722 }
1723 $success = false;
1724 if ($stream) {
1725 $deliver->mail($composeMessage, $stream, $reply_id, $reply_ent_id);
1726 $success = $deliver->finalizeStream($stream);
1727 }
1728 if (!$success) {
1729 // $deliver->dlv_server_msg is not always server's reply
1730 $msg = _("Message not sent.") . "<br />\n" .
1731 $deliver->dlv_msg;
1732 if (!empty($deliver->dlv_server_msg)) {
1733 // add 'server replied' part only when it is not empty.
1734 // Delivery error can be generated by delivery class itself
1735 $msg.='<br />' .
1736 _("Server replied:") . ' ' . $deliver->dlv_ret_nr . ' ' .
1737 nl2br(htmlspecialchars($deliver->dlv_server_msg));
1738 }
1739 plain_error_message($msg);
1740 } else {
1741 unset ($deliver);
1742 $imap_stream = sqimap_login($username, false, $imapServerAddress, $imapPort, 0);
1743
1744
1745 // mark as replied or forwarded if applicable
1746 //
1747 global $what, $iAccount, $startMessage, $passed_id, $fwduid, $mailbox;
1748
1749 if ($action=='reply' || $action=='reply_all' || $action=='forward' || $action=='forward_as_attachment') {
1750 require(SM_PATH . 'functions/mailbox_display.php');
1751 $aMailbox = sqm_api_mailbox_select($imap_stream, $iAccount, $mailbox,array('setindex' => $what, 'offset' => $startMessage),array());
1752 switch($action) {
1753 case 'reply':
1754 case 'reply_all':
1755 // check if we are allowed to set the \\Answered flag
1756 if (in_array('\\answered',$aMailbox['PERMANENTFLAGS'], true)) {
1757 $aUpdatedMsgs = sqimap_toggle_flag($imap_stream, array($passed_id), '\\Answered', true, false);
1758 if (isset($aUpdatedMsgs[$passed_id]['FLAGS'])) {
1759 /**
1760 * Only update the cached headers if the header is
1761 * cached.
1762 */
1763 if (isset($aMailbox['MSG_HEADERS'][$passed_id])) {
1764 $aMailbox['MSG_HEADERS'][$passed_id]['FLAGS'] = $aMsg['FLAGS'];
1765 }
1766 }
1767 }
1768 break;
1769 case 'forward':
1770 case 'forward_as_attachment':
1771 // check if we are allowed to set the $Forwarded flag (RFC 4550 paragraph 2.8)
1772 if (in_array('$forwarded',$aMailbox['PERMANENTFLAGS'], true) ||
1773 in_array('\\*',$aMailbox['PERMANENTFLAGS'])) {
1774
1775 // when forwarding as an attachment from the message
1776 // list, passed_id is not used, need to get UID(s)
1777 // from the query string
1778 //
1779 if (empty($passed_id) && !empty($fwduid))
1780 $ids = explode('_', $fwduid);
1781 else
1782 $ids = array($passed_id);
1783
1784 $aUpdatedMsgs = sqimap_toggle_flag($imap_stream, $ids, '$Forwarded', true, false);
1785
1786 foreach ($ids as $id) {
1787 if (isset($aUpdatedMsgs[$id]['FLAGS'])) {
1788 if (isset($aMailbox['MSG_HEADERS'][$id])) {
1789 $aMailbox['MSG_HEADERS'][$id]['FLAGS'] = $aMsg['FLAGS'];
1790 }
1791 }
1792 }
1793 }
1794 break;
1795 }
1796
1797 /**
1798 * Write mailbox with updated seen flag information back to cache.
1799 */
1800 if(isset($aUpdatedMsgs[$passed_id])) {
1801 $mailbox_cache[$iAccount.'_'.$aMailbox['NAME']] = $aMailbox;
1802 sqsession_register($mailbox_cache,'mailbox_cache');
1803 }
1804
1805 }
1806
1807
1808 // move to sent folder
1809 //
1810 $move_to_sent = getPref($data_dir,$username,'move_to_sent');
1811 if (isset($default_move_to_sent) && ($default_move_to_sent != 0)) {
1812 $svr_allow_sent = true;
1813 } else {
1814 $svr_allow_sent = false;
1815 }
1816
1817 if (isset($sent_folder) && (($sent_folder != '') || ($sent_folder != 'none'))
1818 && sqimap_mailbox_exists( $imap_stream, $sent_folder)) {
1819 $fld_sent = true;
1820 } else {
1821 $fld_sent = false;
1822 }
1823
1824 if ((isset($move_to_sent) && ($move_to_sent != 0)) || (!isset($move_to_sent))) {
1825 $lcl_allow_sent = true;
1826 } else {
1827 $lcl_allow_sent = false;
1828 }
1829
1830 if (($fld_sent && $svr_allow_sent && !$lcl_allow_sent) || ($fld_sent && $lcl_allow_sent)) {
1831 if ($action == 'reply' || $action == 'reply_all') {
1832 $save_reply_with_orig=getPref($data_dir,$username,'save_reply_with_orig');
1833 if ($save_reply_with_orig) {
1834 $sent_folder = $mailbox;
1835 }
1836 }
1837 require_once(SM_PATH . 'class/deliver/Deliver_IMAP.class.php');
1838 $imap_deliver = new Deliver_IMAP();
1839 $imap_deliver->mail($composeMessage, $imap_stream, $reply_id, $reply_ent_id, $imap_stream, $sent_folder);
1840 unset ($imap_deliver);
1841 }
1842
1843
1844 // final cleanup
1845 //
1846 $composeMessage->purgeAttachments();
1847 sqimap_logout($imap_stream);
1848
1849 }
1850 return $success;
1851 }