View file mail/act/files.php

File size: 1.17Kb
<?php defined('ACCESS') OR die('No direct script access...');
/**
 * Author - koder_alex
 * ISQ - 669906617
 * VK - https://vk.com/koder_alex
 * It is forbidden to give, sell, modify.
 */
	if(!(isset($_GET['type']) && $_GET['type'] == 'delete' && isset($_GET['object']) && is_dir(H . 'mail/files/' . $_GET['object']) && isset($_GET['hash']) && is_file(H . 'mail/files/' . $_GET['object'] . '/' . $_GET['hash'])))
		redirect('/mail/', 'Ошибка доступа.', 'error');
	$file = mysql_fetch_assoc(mysql_query("SELECT id_user, id_kont FROM mail_files_vk WHERE `action` = 'prepare' AND `id_mail` = '0' AND `id_user` = '". $user['id'] ."' AND `folder` = '" . $_GET['object'] . "' AND `tmp_name` = '" . $_GET['hash'] . "'"));
	if(!$file)
		redirect('/mail/', 'Ошибка доступа.', 'error');
	unlink(H . 'mail/files/' . $_GET['object'] . '/' . $_GET['hash']);
	mysql_query("DELETE FROM `mail_files_vk` WHERE `action` = 'prepare' AND `id_mail` = '0' AND `id_user` = '". $user['id'] ."' AND `folder` = '" . $_GET['object'] . "' AND `tmp_name` = '" . $_GET['hash'] . "'");
	redirect('/mail/?act=show&peer=' . $file['id_kont'], 'Файл успешно удален.');
?>