include_once('config.php');
include_once(INSTALL_PATH.'/DBRecord.class.php');
include_once(INSTALL_PATH.'/reclib.php');
+include_once(INSTALL_PATH.'/Settings.class.php');
+
+$settings = Settings::factory();
try {
- $recs = DBRecord::createRecords(TBL_PREFIX.RESERVE_TBL );
+ $recs = DBRecord::createRecords(RESERVE_TBL );
// DB接続
- $dbh = mysql_connect( DB_HOST, DB_USER, DB_PASS );
+ $dbh = mysql_connect( $settings->db_host, $settings->db_user, $settings->db_pass );
if( $dbh === false ) exit( "mysql connection fail" );
- $sqlstr = "use ".DB_NAME;
+ $sqlstr = "use ".$settings->db_name;
mysql_query( $sqlstr );
$sqlstr = "set NAME utf8";
mysql_query( $sqlstr );
foreach( $recs as $rec ) {
- $title = $rec->title."(".date("Y/m/d", toTimestamp($rec->starttime)).")";
- $sqlstr = "update mt_cds_object set metadata='dc:description=".$rec->description."' where dc_title='".$rec->path."'";
+ $title = mysql_real_escape_string($rec->title)."(".date("Y/m/d", toTimestamp($rec->starttime)).")";
+ $sqlstr = "update mt_cds_object set metadata='dc:description=".mysql_real_escape_string($rec->description)."&epgrec:id=".$rec->id."' where dc_title='".$rec->path."'";
mysql_query( $sqlstr );
$sqlstr = "update mt_cds_object set dc_title='".$title."' where dc_title='".$rec->path."'";
mysql_query( $sqlstr );