Jump to content

241

Members
  • Content count

    6,148
  • Joined

  • Last visited

Everything posted by 241

  1. 241

    Paypal IPN warning with Paypal App / Express

    If you previously had the IPN under osc 2.2 check the transaction records inyour Paypal account for a failed transaction from that period. Also try clearing the server cache.
  2. 241

    Paypal IPN warning with Paypal App / Express

    I would get back to Paypal, I have had an issue there before with IPN took them a year to finally resolve. Normally IPN would be disabled long before 186 in 48 hours. have you cleared the old working directory for Paypal
  3. 241

    Paypal IPN warning with Paypal App / Express

    /includes/modules/payment/paypal_standard.php line 366 /includes/modules/payment/paypal_pro_hs.php line 314
  4. 241

    Paypal IPN warning with Paypal App / Express

    does your oscommerce have a line starting this used to be in includes/modules/payment/paypal_ipn.php
  5. Not sure if the intension is to have this work as banner manager with impressions and expiry. The set slide function has a reference to 2 missing columns in the table and a reference to the banner id string so falls over if changing the status flag in admin. admin/slides_manager.php //// // Sets the status of a slide function tep_set_slider_status($slides_id, $status) { if ($status == '1') { return tep_db_query("update " . TABLE_SLIDES . " set status = '1', expires_impressions = NULL, expires_date = NULL, date_status_change = NULL where slides_id = '" . $banners_id . "'"); } elseif ($status == '0') { return tep_db_query("update " . TABLE_SLIDES . " set status = '0', date_status_change = now() where slides_id = '" . $slides_id . "'"); } else { return -1; } } //// if not used as banner manager then code need changing to //// // Sets the status of a slide function tep_set_slider_status($slides_id, $status) { if ($status == '1') { return tep_db_query("update " . TABLE_SLIDES . " set status = '1', date_status_change = now() where slides_id = '" . (int)$slides_id . "'"); } elseif ($status == '0') { return tep_db_query("update " . TABLE_SLIDES . " set status = '0', date_status_change = now() where slides_id = '" . (int)$slides_id . "'"); } else { return -1; } } ////
  6. This is the complete package. The contribution allows admin choices: - Featured Categories with products. - Featured Manufacturers. - Featured Manufacturer with products. - Featured Products. The admin has many choices for each section(one section shown here): - Display featured products. - Layout position of featured products section. - Featured products maximum. - Columns in featured products layout. - Words per short description when it's not written. - Featured products period. - Choose a featured products set layout. - Choose a featured products set style. - Set the direction of the shadow. - Set the sort order for the feature products. - Set the sort order for products by ascending or descending. - Products vertical line height. - Products vertical line colour. - Products horizontal line colour. The admin can choose whether only one featured set is shown or more. The admin can choose which positional order the featured sets are shown if more than one. There are a number of styles and layouts to choose from. If you use the contribution please leave feedback positive,negative,suggestions or codes to include. Download the contribution here: *** Wolfen Featured Sets ***
  7. This is the support for the update only This is an update to the existing contribution NewsDesk v1.4 A lot of bugs have been fixed and some language support added. The languages being Dutch, English, French, German and Spanish. Order listing has been initially set by Date. The contribution is available here: NewsDesk v1.48
  8. The contribution can be downloaded from here. *** FAQDesk v1.01.0 *** This is the complete package. This is based on the original Carsten contribution. I have this working to a similar level to the NewsDesk contribution. - added functionality to the WYSIWYG editor in admin. - updated code and fixed a lot of bugs (I do mean a lot of bugs). - fixed the I.E.6 crash issue. - added support for more languages (upto 9 at the last count). - added url naming
  9. 241

    Customer Testimonials v1.0

    Uploaded full package with the code changes in place for sql injection prevention and sanatization of the string.
  10. 241

    Customer Testimonials v1.0

    If you are just copy and pasting then you will get the error for < as that is the beginning of your html tagging which you are pasting into the middle of php tagging thus breaking the php. You would need to post more of the code to see whether or not the HTML tagging is required for positioning, if not then you could use <?php session_start(); if(($_SESSION['security_code'] == $_POST['security_code']) && (!empty($_SESSION['security_code'])) ) { // Insert you code for processing the form here, e.g emailing the submission, entering it into a database. echo tep_image_submit('button_submit.gif', IMAGE_BUTTON_INSERT). ' <a href="' . tep_href_link(FILENAME_CUSTOMER_TESTIMONIALS_WRITE, '', 'NONSSL'); unset($_SESSION['security_code']); } else { // Insert your code for showing an error message here } ?>
  11. 241

    Customer Testimonials v1.0

    Yes it applies to all and is an injection that they can use to then setup a database user which requires no password to gain access. They setup with an open all access user in the database and then have the priveledges to setup databases etc. I will not post the code used here as this will further compound the issue. I have informed a member of the team and requested that all testimonial contributions be disabled until the issue is resolved.
  12. 241

    Customer Testimonials v1.0

    There is a further vulnerability where user information names the encrypted password and email address for every testimonial can be harvested.
  13. What does it do: This modification to the code allows the category and sub-category images to be used in the categories box. If a category or sub-category has no image then the textual name is shown. The code can be ammended to give both a category or sub-category image and textual name. I have included some files that can be used as replacements, these files if used require to be renamed categories.php and would replace the file in catalog/includes/boxes/categories.php categories_main_images.php -- This gives main category images only. categories_main_images_text.php -- This gives main category images with text. categories_main_sub_images.php -- This gives main category and sub-category images. categories_main_sub_images_text.php -- This gives main category images with text and sub-category images with text. If you use the contribution please leave feedback positive,negative,suggestions or codes to include. *** Download the contribution from here: *** Categories Box Images
  14. 241

    Option Type Feature

    The third piece of code is for passing attributes information and is a part of the osCommerce Paypal IPN It may be a part of some of the others or it may be coded slightly different in which case you would need to look at the code section dealing with attributes for the paypal module that you are using. Do you know which Paypal module you are using?
  15. This would be approx line # 202 <?php echo '<p style="margin-top: 20px;"' . tep_image_submit('button_save.gif', IMAGE_SAVE, 'name="submitbutton"') . ' ' . tep_image_button('button_cancel.gif', IMAGE_CANCEL, 'onclick=\'self.close()\'') .'</p>' . "\n"; and is to close the opening paragraph tag just before the tep_image_submit <?php echo '<p style="margin-top: 20px;">' . tep_image_submit('button_save.gif', IMAGE_SAVE, 'name="submitbutton"') . ' ' . tep_image_button('button_cancel.gif', IMAGE_CANCEL, 'onclick=\'self.close()\'') .'</p>' . "\n";
  16. The code for the last update which was SPPC attributes mod rev.1 is still using the old code. The code that you have posted here works as does the change I made prior to seeing this post. $check_product_query = tep_db_query("select p.products_status, pa.options_id, pa.options_values_id, pa.attributes_hide_from_groups, '0' as hide_attr_status from " . TABLE_PRODUCTS . " p left join " . TABLE_PRODUCTS_ATTRIBUTES . " pa on p.products_id = pa.products_id where p.products_id = '" . (int)$products_id . "'");
  17. I have gone through the contributions section installing my way through the various files for SPPC I am now receiving this error 1052 - Column 'products_id' in where clause is ambiguous select products_status, options_id, options_values_id, attributes_hide_from_groups, '0' as hide_attr_status from products left join products_attributes using(products_id) where products_id = '923' The query is for the attributes part of catalog/includes/classes/shopping_cart.php if (is_numeric($products_id) && is_numeric($qty) && ($attributes_pass_check == true)) { // BOF SPPC attribute hide check, original query expanded to include attributes $check_product_query = tep_db_query("select products_status, options_id, options_values_id, attributes_hide_from_groups, '0' as hide_attr_status from " . TABLE_PRODUCTS . " left join " . TABLE_PRODUCTS_ATTRIBUTES . " using(products_id) where products_id = '" . (int)$products_id . "'"); The error is from product_listing.php (which uses buy_now) and product_info.php (which uses add_product) when trying to add an item to the cart. The item does not have any attributes. the catalog/includes/application_top.php is using case 'add_product' : if (isset($HTTP_POST_VARS['products_id']) && is_numeric($HTTP_POST_VARS['products_id'])) { // BOF price-break-1.11.3 $cart->add_cart($HTTP_POST_VARS['products_id'], $cart->get_quantity(tep_get_uprid($HTTP_POST_VARS['products_id'], $HTTP_POST_VARS['id'])) + $HTTP_POST_VARS['cart_quantity'], $HTTP_POST_VARS['id']); // EOF price-break-1.11.3 } tep_redirect(tep_href_link($goto, tep_get_all_get_params($parameters))); break; // performed by the 'buy now' button in product listings and review page case 'buy_now' : if (isset($HTTP_GET_VARS['products_id'])) { if (tep_has_product_attributes($HTTP_GET_VARS['products_id'])) { tep_redirect(tep_href_link(FILENAME_PRODUCT_INFO, 'products_id=' . $HTTP_GET_VARS['products_id'])); } else { $cart->add_cart($HTTP_GET_VARS['products_id'], $cart->get_quantity($HTTP_GET_VARS['products_id'])+1); } } tep_redirect(tep_href_link($goto, tep_get_all_get_params($parameters))); break;
  18. 241

    Orderlist bugs !!!

    Missing or in the query should be or o.billing_country like '%david%' or o.payment_method like '%david%'
  19. 241

    Shipping Quotes?

    have you looked in the contributions section, a very quick look got these to start with. http://www.oscommerce.com/community/contributions,3072 http://www.oscommerce.com/community/contributions,3753 http://www.oscommerce.com/community/contri...ng+quote/page,1
  20. are you using option type attributes by any chance http://www.oscommerce.com/community/contributions,160
  21. 241

    Option Type Feature

    my guess would that the issue is with paypal payments and that what you get in the order is TEXT If this is correct then you need to modify your paypal_ipn.php file locate code: 'products_options_values' => $attributes_values['products_options_values_name'], change to: 'products_options_values' => $order->products[$i]['attributes'][$j]['value'], locate code: $parameters['os' . $j . '_' . $item] = $attributes_values['products_options_values_name']; change to: $parameters['os' . $j . '_' . $item] = $order->products[$i]['attributes'][$j]['value']; locate code: $products_ordered_attributes .= "\n\t" . $attributes_values['products_options_name'] . ' ' . $attributes_values['products_options_values_name']; change to: $products_ordered_attributes .= "\n\t" . $attributes_values['products_options_name'] . ' ' . tep_decode_specialchars($order->products[$i]['attributes'][$j]['value']);
  22. 241

    remove tax from invoice

    In the UK you would be VAT registered to charge tax and would be required to show this tax amount on the invoice. TITLE: <td class="dataTableHeadingContent" align="right"><?php echo TABLE_HEADING_TAX; ?></td> VALUE: ' <td class="dataTableContent" align="right" valign="top">' . tep_display_tax_value($order->products[$i]['tax']) . '%</td>' . "\n" . Unless it is the price(inc) parts that you are wanting to remove or the tax line from the totals amount. If the tax line from totals amount then switch this off in the admin modules Order Total
  23. Your other posts were removed because they were not relevent to the thread as the issue was not caused by the contribution as is the same with the issue you are now posting which is caused by having Search engine safe urls set to true in the admin. The resolve is to set Use Search-Engine Safe URLs (still in development) to false in the admin.
  24. Do not bump posts as it is against the forum rules. Ok I miss read the error message you have whitespace in your file download includes/database_tables.php via ftp then open using a file editor or program such as dreamweaver. go to the end of the file find the last ?> place your cursor after the > and hit delete several times. Save the file and upload via ftp
  25. in both your catalog/includes/configure.php and admin/includes/configure.php files change the last line to define('STORE_SESSIONS', 'mysql'); // leave empty '' for default handler or set to 'mysql'
×