bebeboutik/modules/ant_support_form/support.php
2017-12-13 11:34:56 +01:00

371 lines
16 KiB
PHP

<?php
require_once(dirname(__FILE__).'/../../config/config.inc.php');
require_once(dirname(__FILE__).'/../../init.php');
require_once(dirname(__FILE__).'/Reason.php');
$controller->preProcess();
$langs = Language::getLanguages();
$lang = (int) $cookie->id_lang;
$isolang = Language::getIsoById($lang);
$errors = array();
if ($cookie->isLogged()) {
$smarty->assign('isLogged', 1);
$customer = new Customer((int)($cookie->id_customer));
if (!Validate::isLoadedObject($customer)) {
die(Tools::displayError('Customer not found'));
}
$products = array();
$orders = array();
$getOrders = Db::getInstance()->ExecuteS('
SELECT id_order
FROM '._DB_PREFIX_.'orders
WHERE id_customer = '.(int)$customer->id.' ORDER BY date_add
');
foreach ($getOrders as $row) {
$order = new Order($row['id_order']);
$date = explode(' ', $order->date_add);
$orders[$row['id_order']] = Tools::displayDate($date[0], $cookie->id_lang);
}
$orderList = '';
foreach ($orders as $key => $val) {
$orderList .= '<option value="'.$key.'" '.((int)(Tools::getValue('id_order')) == $key ? 'selected' : '').' >#'.$key.' - '.$val.'</option>';
}
$smarty->assign('orderList', $orderList);
}
if (Tools::isSubmit('submitMessage')) {
$alert_mode = false;
if(Module::isInstalled('ant_alerthack')) {
$alert_mode = true;
include_once dirname(__FILE__).'/../../modules/ant_alerthack/models/Suspect.php';
}
$fileAttachment = NULL;
if (isset($_FILES['fileUpload']['name']) AND !empty($_FILES['fileUpload']['name']) AND !empty($_FILES['fileUpload']['tmp_name']))
{
$extension = array('.txt', '.rtf', '.doc', '.docx', '.pdf', '.zip', '.png', '.jpeg', '.gif', '.jpg');
$filename = uniqid().substr($_FILES['fileUpload']['name'], -5);
$fileAttachment['content'] = file_get_contents($_FILES['fileUpload']['tmp_name']);
$fileAttachment['name'] = $_FILES['fileUpload']['name'];
$fileAttachment['mime'] = $_FILES['fileUpload']['type'];
}
$message = Tools::htmlentitiesUTF8(Tools::getValue('message'));
if (Tools::getValue('email2') != '') {
$this->errors[] = Tools::displayError('Invalid');
}
elseif (preg_match("/\p{Han}+/u", $message)) {
$this->errors[] = Tools::displayError('Invalid message');
}
elseif (!($from = trim(Tools::getValue('from'))) OR !Validate::isEmail($from)){
$errors[] = Tools::displayError('Invalid e-mail address');
}
elseif ($alert_mode && Suspect::isBannished($from)){
$errors[] = Tools::displayError('Message cannot be sent.');
}
elseif (!($message = nl2br2($message))){
$errors[] = Tools::displayError('Message cannot be blank');
}
elseif (!Validate::isCleanHtml($message)){
$errors[] = Tools::displayError('Invalid message');
}
elseif (!($id_contact = (int)(Tools::getValue('id_contact'))) OR !(Validate::isLoadedObject($contact = new Contact((int)($id_contact), (int)($cookie->id_lang))))){
$errors[] = Tools::displayError('Please select a subject on the list.');
}
elseif (($id_contact = (int)(Tools::getValue('id_contact'))) && $id_contact == 9 && !Tools::getValue('id_reason')){
$errors[] = Tools::displayError('Please select a reason on the list.');
}
elseif (($id_contact = (int)(Tools::getValue('id_contact'))) && ($id_contact == 9 || $id_contact == 1 || $id_contact == 2) && !Tools::getValue('id_order')){
$errors[] = Tools::displayError('Please enter/choose an order ID');
}
elseif (($id_contact = (int)(Tools::getValue('id_contact'))) && $id_contact == 1 && !Tools::getValue('id_products')){
if((int)($cookie->id_customer)){
$errors[] = Tools::displayError('Please choose a product');
} else {
$errors[] = Tools::displayError('You have to be logged');
}
}
elseif (!empty($_FILES['fileUpload']['name']) AND $_FILES['fileUpload']['error'] != 0){
$errors[] = Tools::displayError('An error occurred during the file upload');
}
elseif (!empty($_FILES['fileUpload']['name']) AND !in_array(substr($_FILES['fileUpload']['name'], -4), $extension) AND !in_array(substr($_FILES['fileUpload']['name'], -5), $extension)){
$errors[] = Tools::displayError('Bad file extension');
}
else
{
if ((int)($cookie->id_customer))
$customer = new Customer((int)($cookie->id_customer));
else
{
$customer = new Customer();
$customer->getByEmail($from);
}
if($id_contact == 9){
$id_order_state = Order::getCurrentIdState((int)Tools::getValue('id_order'));
if($id_order_state && in_array($id_order_state, array(4,17,5))) {
Tools::redirectLink('modules/ant_support_form/support.php?id_contact=1&id_order='.Tools::getValue('id_order'));
}
}
$contact = new Contact($id_contact, $cookie->id_lang);
if (!((
$id_customer_thread = (int)Tools::getValue('id_customer_thread')
AND (int)Db::getInstance()->getValue('
SELECT cm.id_customer_thread FROM '._DB_PREFIX_.'customer_thread cm
WHERE cm.id_customer_thread = '.(int)$id_customer_thread.' AND token = \''.pSQL(Tools::getValue('token')).'\'')
) OR (
$id_customer_thread = (int)Db::getInstance()->getValue('
SELECT cm.id_customer_thread FROM '._DB_PREFIX_.'customer_thread cm
WHERE cm.email = \''.pSQL($from).'\' AND cm.id_order = '.(int)(Tools::getValue('id_order')).'')
)))
{
$fields = Db::getInstance()->ExecuteS('
SELECT cm.id_customer_thread, cm.id_contact, cm.id_customer, cm.id_order, cm.id_product, cm.email
FROM '._DB_PREFIX_.'customer_thread cm
WHERE email = \''.pSQL($from).'\' AND ('.
($customer->id ? 'id_customer = '.(int)($customer->id).' OR ' : '').'
id_order = '.(int)(Tools::getValue('id_order')).')');
$score = 0;
foreach ($fields as $key => $row)
{
$tmp = 0;
if ((int)$row['id_customer'] AND $row['id_customer'] != $customer->id AND $row['email'] != $from)
continue;
if ($row['id_order'] != 0 AND Tools::getValue('id_order') != $row['id_order'])
continue;
if ($row['email'] == $from)
$tmp += 4;
if ($row['id_contact'] == $id_contact)
$tmp++;
if (Tools::getValue('id_product') != 0 AND $row['id_product'] == Tools::getValue('id_product'))
$tmp += 2;
if ($tmp >= 5 AND $tmp >= $score)
{
$score = $tmp;
$id_customer_thread = $row['id_customer_thread'];
}
}
}
$old_message = Db::getInstance()->getValue('
SELECT cm.message FROM '._DB_PREFIX_.'customer_message cm
WHERE cm.id_customer_thread = '.(int)($id_customer_thread).'
ORDER BY date_add DESC');
if ($old_message == htmlentities($message, ENT_COMPAT, 'UTF-8'))
{
$smarty->assign('alreadySent', 1);
$contact->email = '';
$contact->customer_service = 0;
}
if (!empty($contact->email))
{
if (Mail::Send((int)($cookie->id_lang), 'contact_form', Mail::l('Your message has been correctly sent'), array('{message}' => stripslashes($message)), $from)) {
$smarty->assign('confirmation', 1);
} else {
$errors[] = Tools::displayError('An error occurred while sending message.');
}
// local
// $smarty->assign('confirmation', 1);
}
if ($contact->customer_service)
{
if ((int)$id_customer_thread)
{
$ct = new CustomerThread($id_customer_thread);
$ct->status = 'open';
$ct->id_lang = (int)$cookie->id_lang;
$ct->id_contact = (int)($id_contact);
if ($id_order = (int)Tools::getValue('id_order')) {
$ct->id_order = $id_order;
}
if ($id_products = Tools::getValue('id_products')) {
$first_product = explode("_", $id_products[0]);
$ct->id_product = (int)$first_product[0];
}
if (!isset($customer->id) || !$customer->id){
$ct->id_customer = 0;
}
$ct->update();
}
else
{
$ct = new CustomerThread();
if (isset($customer->id))
$ct->id_customer = (int)($customer->id);
if ($id_order = (int)Tools::getValue('id_order')){
$ct->id_order = $id_order;
}
if ($id_products = Tools::getValue('id_products')) {
$first_product = explode("_", $id_products[0]);
$ct->id_product = (int)$first_product[0];
}
$ct->id_contact = (int)($id_contact);
$ct->id_lang = (int)$cookie->id_lang;
$ct->email = $from;
$ct->status = 'open';
$ct->token = Tools::passwdGen(12);
$ct->add();
}
if ($ct->id)
{
// adding (antadis) - linking reason and customer_thread
if (Tools::getValue('id_reason')) {
$id_reason = (int) Tools::getValue('id_reason');
$reason = new Reason($id_reason);
if ($reason->id !== null) {
$reason->insertReasonCustomerThread((int) $ct->id);
}
}
// adding (antadis) - linking productS and customer_thread
if ($id_products = Tools::getValue('id_products')) {
foreach ($id_products as $key => $val) {
// Check if quantity field is set ( product_{product_id}_{product_attribute_id}_qty )
$qty = 1;
if (Tools::getValue('product_'.$val.'_qty')) {
$qty = (int)Tools::getValue('product_'.$val.'_qty');
}
$p = explode("_", $val);
// Check quantity in db
if (($resultOld = Db::getInstance()->getRow('SELECT `product_return_quantity` FROM `'._DB_PREFIX_.'support_product_customerthread`
WHERE `id_customer_thread` = '.(int)$ct->id.' AND `id_product_attribute` = '.(int)$p[1].' AND `id_product` = '.(int)$p[0])) !== false) {
$qtyOld = $resultOld['product_return_quantity'];
if ($qty > $qtyOld) {
DB::getInstance()->execute('
UPDATE `'._DB_PREFIX_.'support_product_customerthread` SET `product_return_quantity` = '.$qty.'
WHERE `id_customer_thread` = '.(int)$ct->id.' AND `id_product_attribute` = '.(int)$p[1].' AND `id_product` = '.(int)$p[0]);
}
}
// Insert new value
else {
DB::getInstance()->execute('
INSERT IGNORE INTO `'._DB_PREFIX_.'support_product_customerthread`
(`id_product`, `id_product_attribute`, `product_return_quantity`, `id_customer_thread`)
VALUE
('.(int)$p[0].', '.(int)$p[1].', '.$qty.','.(int)$ct->id.')
');
}
}
}
$cm = new CustomerMessage();
$cm->id_customer_thread = $ct->id;
$cm->message = htmlentities($message, ENT_COMPAT, 'UTF-8');
if (isset($filename) AND rename($_FILES['fileUpload']['tmp_name'], _PS_MODULE_DIR_.'../upload/'.$filename))
$cm->file_name = $filename;
$cm->ip_address = ip2long($_SERVER['REMOTE_ADDR']);
$cm->user_agent = $_SERVER['HTTP_USER_AGENT'];
if ($cm->add())
{
if (empty($contact->email)) {
Mail::Send((int)($cookie->id_lang), 'contact_form', Mail::l('Your message has been correctly sent'), array('{message}' => stripslashes($message)), $from);
}
$smarty->assign('confirmation', 1);
}
else
$errors[] = Tools::displayError('An error occurred while sending message.');
}
else
$errors[] = Tools::displayError('An error occurred while sending message.');
}
Module::hookExec('ant_alert', array('id_contact' => (int)($id_contact)));
Module::hookExec('ant_alerthack', array(
'email' => $from,
'id_customer' => (isset($customer->id)?$customer->id:false),
'message' => $message
));
if (count($errors) > 1)
array_unique($errors);
}
}
$email = Tools::safeOutput(Tools::getValue('from', ((isset($cookie) AND isset($cookie->email) AND Validate::isEmail($cookie->email)) ? $cookie->email : '')));
$smarty->assign(array(
'errors' => $errors,
'message' => html_entity_decode(Tools::getValue('message')),
'contacts' => Contact::getContacts((int)($cookie->id_lang)),
'email' => $email,
'fileupload' => Configuration::get('PS_CUSTOMER_SERVICE_FILE_UPLOAD')
));
if ($id_customer_thread = (int)Tools::getValue('id_customer_thread') AND $token = Tools::getValue('token')) {
$customerThread = Db::getInstance()->getRow('
SELECT cm.* FROM '._DB_PREFIX_.'customer_thread cm
WHERE cm.id_customer_thread = '.(int)$id_customer_thread.' AND token = \''.pSQL($token).'\'');
$smarty->assign('customerThread', $customerThread);
}
if (isset($_GET['id_contact']) && is_numeric($_GET['id_contact'])) {
$id_contact = $_GET['id_contact'];
$contact = new Contact((int) $id_contact, $lang);
if (Validate::isLoadedObject($contact)) {
// A changer selon id_contact
switch ($id_contact) {
case '1':
$allow_product = true;
$allow_order = true;
$allow_file = false;
break;
case '2':
$allow_order = true;
$allow_product = false;
$allow_file = true;
break;
case '9':
$allow_order = true;
$allow_product = false;
$allow_file = false;
break;
default:
$allow_product = false;
$allow_order = false;
$allow_file = false;
break;
}
$smarty->assign(array(
'id_contact' => $id_contact,
'allow_product' => $allow_product,
'allow_order' => $allow_order,
'allow_file' => $allow_file,
'subject' => $contact->name
));
if (isset($_GET['id_reason']) && is_numeric($_GET['id_reason'])) {
$smarty->assign('id_reason', $_GET['id_reason']);
} else {
$reasons = Reason::getReasons(array('id_contact = '.(int)$id_contact));
foreach ($reasons as $key => &$reason) {
if (!$reason->visible) {
unset($reasons[$key]);
}
}
$smarty->assign('reasons', $reasons);
}
}
} else {
/*$reasons = Reason::getReasons();
foreach ($reasons as $key => &$reason) {
if (!$reason->visible) {
unset($reasons[$key]);
}
}
$smarty->assign('reasons', $reasons);*/
}
$_POST = array_merge($_POST, $_GET);
require_once(dirname(__FILE__).'/../../header.php');
echo Module::display(dirname(__FILE__), 'support.tpl');
require_once(dirname(__FILE__).'/../../footer.php');