view.php ¿¡
// ¼öÁ¤, »èÁ¦ ¸µÅ©
$update_href = $delete_href = "";
// ·Î±×ÀÎÁßÀ̰í ÀÚ½ÅÀÇ ±ÛÀ̶ó¸é ¶Ç´Â °ü¸®ÀÚ¶ó¸é ÆÐ½º¿öµå¸¦ ¹¯Áö ¾Ê°í ¹Ù·Î ¼öÁ¤, »èÁ¦ °¡´É
if (($member[mb_id] && ($member[mb_id] == $write[mb_id])) || $is_admin) {
$update_href = "./write.php?w=u&bo_table=$bo_table&wr_id=$wr_id&page=$page" . $qstr;
$delete_href = "javascript:del('./delete.php?bo_table=$bo_table&wr_id=$wr_id&page=$page".urldecode($qstr)."');";
if ($is_admin)
{
set_session("ss_delete_token", $token = uniqid(time()));
$delete_href = "javascript:del('./delete.php?bo_table=$bo_table&wr_id=$wr_id&token=$token&page=$page".urldecode($qstr)."');";
}
}
delete.php ¿¡
if ($is_admin)
{
if (!($token && get_session("ss_delete_token") == $token))
alert("ÅäÅ« ¿¡·¯·Î »èÁ¦ ºÒ°¡ÇÕ´Ï´Ù.");
}
|
¼£·Ò~
³! ÀÚÀ¯ÀÎ... |
|
|