B -_@sdZdZddlmZmZmZddlmZddlZddl Z ddl Z ddl m Z ddlmZddlmZddlZddlZddlZd d d d d ddddddddddgZdadaddZddZddZdd Zeadade jddfd!d Zd7d"d Z d8d#d Z!d9d&dZ"d'd(Z#d)dZ$Gd*d d Z%Gd+d d Z&e jfd,dZ'd:d-dZ(e jfd.dZ)d/dZ*d0dZ+d1dZ,d2dZ-d;d3dZ.d4d5Z/e0d6kre'dS)r r )rErArBr"r"r#r scCstdtdtj|||S)z)Parse a query given as a string argument.z?cgi.parse_qsl is deprecated, use urllib.parse.parse_qsl insteadrF)rrGr>r r )rErArBr"r"r#r sutf-8replacecs\|dd}d|}t}|||d|d<t||||ddidfd d DS) aParse multipart input. Arguments: fp : input file pdict: dictionary containing other parameters of content-type header encoding, errors: request encoding and error handler, passed to FieldStorage Returns a dictionary just like parse_qs(): keys are the field names, each value is a list of values for that field. For non-file fields, the value is a list of strings. boundaryasciiz multipart/form-data; boundary={}zCONTENT-LENGTHzContent-Lengthr+r-)headersr*errorsr@csi|]}||qSr")getlist).0k)fsr"r# sz#parse_multipart..)r<formatrZset_typer )r?rDr*rMrJrCrLr")rQr#rs     ccsx|dddkr|dd}|d}x<|dkrd|dd||dd|drd|d|d}q*W|dkrvt|}|d|}|V||d}qWdS)Nr2;r"z\"rF)findcountlenstrip)sendfr"r"r# _parseparams  *  r]cCstd|}|}i}x|D]}|d}|dkr|d|}||dd}t|dkr|d|dkrdkrnn |dd}|d d d d}|||<qW||fS) zfParse a Content-type like header. Return the main content-type and a dictionary of options. rT=rNr2rFrUz\\\z\")r]__next__rVrYlowerrXrI)linepartskeyrDpinamevaluer"r"r#rs   ,  c@s@eZdZdZdZdZdZdZiZdZ iZ iZ ddZ ddZ dS)r z=Like FieldStorage, for use when no file uploads are possible.NcCs||_||_dS)z&Constructor from field name and value.N)rhri)selfrhrir"r"r#__init__szMiniFieldStorage.__init__cCsd|j|jfS)z Return printable representation.zMiniFieldStorage(%r, %r))rhri)rjr"r"r#__repr__szMiniFieldStorage.__repr__)__name__ __module__ __qualname____doc__filenamelisttypefile type_options dispositiondisposition_optionsrLrkrlr"r"r"r#r sc @seZdZdZdddejddddddf ddZd d Zd d Zd dZ ddZ ddZ ddZ ddZ d:ddZd;ddZddZddZdd Zd!d"Zd#d$Zd%d&ZdZd'd(Zd)d*Zd+Zd,d-Zd.d/Zd0d1Zd2d3Zd4d5Zd6d7Zd8d9Z dS)!sz)FieldStorage.getvalue..N)r6rrri)rjredefaultrir"r"r#getvalues  zFieldStorage.getvaluecCs4||kr,||}t|tr$|djS|jSn|SdS)z! Return the first value received.rN)r6rrri)rjrerrir"r"r#getfirst's   zFieldStorage.getfirstcCs:||kr2||}t|tr(dd|DS|jgSngSdS)z Return list of received values.cSsg|] }|jqSr")ri)rOrr"r"r#r7sz(FieldStorage.getlist..N)r6rrri)rjrerir"r"r#rN2s   zFieldStorage.getlistcCs*|jdkrtdttdd|jDS)zDictionary style keys() method.Nz not indexablecss|] }|jVqdS)N)rh)rOrr"r"r# Asz$FieldStorage.keys..)rrrset)rjr"r"r#r=s zFieldStorage.keyscs*|jdkrtdtfdd|jDS)z%Dictionary style __contains__ method.Nz not indexablec3s|]}|jkVqdS)N)rh)rOr)rer"r#rGsz,FieldStorage.__contains__..)rrrany)rjrer")rer# __contains__Cs zFieldStorage.__contains__cCs t|S)z Dictionary style len(x) support.)rXr)rjr"r"r#__len__IszFieldStorage.__len__cCs|jdkrtdt|jS)NzCannot be converted to bool.)rrrbool)rjr"r"r#__bool__Ms zFieldStorage.__bool__cCs|j|j}t|ts0td|jt|jf||j |j }|j rT|d|j 7}t j j||j|j|j |j |jd}dd|D|_|dS)z+Internal: read data in query string format.z%s should return bytes, got %sr1)r*rMr|cSsg|]\}}t||qSr")r )rOrerir"r"r#r_sz0FieldStorage.read_urlencoded..N)r?r;rr6rr:rsrmr<r*rMr~r>r r rArBr|rr skip_lines)rjrEqueryr"r"r#rRs   zFieldStorage.read_urlencodedc Cs8|j}t|std|fg|_|jrbtjj|j|j|j |j |j |j d}|j dd|D|jpl|j}|j}t|tstd|jt|jf|jt|7_x6|d|jkr|r|j}|jt|7_qW|j }|dk r|t|j8}x&t} d} x$|j} | | 7} | sPqW| s>P|jt| 7_| | |j |j | } d | kr~| d =||j| |||||j|j|j |j | } |dk r|d 8}| jr|t| j8}|d krtd |j| j7_|j| | js$|j|j kr d krnnPqW|!dS) z/Internal: read a part that is itself multipart.z&Invalid boundary in multipart form: %r)r*rMr|css|]\}}t||VqdS)N)r )rOrerir"r"r#rosz*FieldStorage.read_multi..z%s should return bytes, got %ss--Nrxzcontent-lengthr2rzMax number of fields exceeded)"rvalid_boundaryr:rrr~r>r r rArBr*rMr|extendFieldStorageClass __class__r?rzr6rrsrmrrXrYrZfeedr<r(rrrrr)rjr@rArBZibrklassZ first_liner|parserZhdr_textdatarLpartr"r"r#rdsh              (zFieldStorage.read_multicCs4|jdkr||n||jddS)zInternal: read an atomic part.rN)r read_binaryr read_linesrtr)rjr"r"r#rs   zFieldStorage.read_singlei cCs||_|j}|dkrxx|dkr|jt||j}t|tsXt d|jt |j f|j t |7_ |svd|_P|j||t |}qWdS)zInternal: read binary data.rz%s should return bytes, got %sr_N) make_filertrr?r;minbufsizer6rr:rsrmrrXrr&)rjZtodorr"r"r#rs    zFieldStorage.read_binarycCs@|jrt|_|_nt|_|_|jr4|n|dS)z0Internal: read lines until EOF or outerboundary.N)rrrt_FieldStorage__filerrread_lines_to_outerboundaryread_lines_to_eof)rjr"r"r#rs  zFieldStorage.read_linescCsv|jdk rF|jt|dkrF||_|j}|j|d|_|jrZ|j|n|j||j |j dS)z line is always bytes, not stringNi) rtellrXrrtrr&rr<r*rM)rjrcrr"r"r#Z__writes    zFieldStorage.__writecCs>x8|jd}|jt|7_|s,d|_P||qWdS)zInternal: read lines until EOF.ir_N)r?rzrrXr_FieldStorage__write)rjrcr"r"r#rs zFieldStorage.read_lines_to_eofc Cs,d|j}|d}d}d}d}x||jkr.P|jd}|jt|7_|t|7}|sdd|_P|dkrx||}d}|dr|r|}||krP||krd|_P|}| d rd }|d d }d}nJ| d rd }|d d}d}n*| drd}|d d}d }nd}d }| ||q"Wd S)zInternal: read lines until outerboundary. Data is read as bytes: boundaries and line ends must be converted to bytes for comparisons. s--rxTrir_ r2s N F) rrr?rzrrXr startswithrstripendswithr) rj next_boundary last_boundaryZdelimlast_line_lfendZ_readrc strippedlineZodelimr"r"r#rsP          z(FieldStorage.read_lines_to_outerboundarycCs|jr |jrdSd|j}|d}d}xh|jd}|jt|7_|sRd|_P|dr|r|}||krrP||krd|_P|d}q(WdS)z5Internal: skip lines until outer boundary if defined.Ns--Tir_r2r)rrr?rzrrXrrY)rjrrrrcrr"r"r#rs&   zFieldStorage.skip_linescCs&|jrtdStjd|jddSdS)aOverridable: return a readable & writable file. The file will be used as follows: - data is written to it - seek(0) - data is read from it The file is opened in binary mode for files, in text mode for other fields This version opens a temporary file for reading and writing, and immediately deletes (unlinks) it. The trick (on Unix!) is that the file can still be used, but it can't be opened by another process, and it will automatically be deleted when it is closed or when the current process terminates. If you want a more permanent file, you derive a class which overrides this method. If you want a visible temporary file that is nevertheless automatically deleted when the script terminates, try defining a __del__ method in a derived class which unlinks the temporary files you have created. zwb+zw+r%)r*newlineN)rtempfileZ TemporaryFiler*)rjr"r"r#r.s zFieldStorage.make_file)N)N)!rmrnrorposr@rkrrrrlrrrrrrNrrrrrrrrrrrrrrrrr"r"r"r#r s@* "   C   1cCstdttjt_yNt}ttt|t|t dd}|fdd}td|Wnt YnXtdda y&t}ttt|t|Wnt YnXd S) zRobust test CGI script, usable as main program. Write minimal HTTP headers and dump all information provided to the script in HTML form. zContent-type: text/htmlcSs tddS)Nz,testing print_exception() -- italics?)execr"r"r"r#r\asztest..fcSs |dS)Nr")r\r"r"r#gcsztest..gz9

What follows is a test, not an actual exception:

z*

Second try with a small maxlen...

2N) printr3stdoutstderrr rrrrrrr9)r@formr\rr"r"r#rPs4    c Csx|dkrt\}}}ddl}ttd||||||}tdtd|ddt|df~dS)Nrz+

Traceback (most recent call last):

z
%s%s
rr_) r3exc_info tracebackr format_tbformat_exception_onlyhtmlrjoin)rsritbrrrrr"r"r#rws c Cs`t|}ttdtdx*|D]"}tdt|dt||q(WtdtdS)z#Dump the shell environment as HTML.z

Shell Environment:

z
z
z
z
N)sortedrrrr)r@rrer"r"r#rs  "cCst|}ttd|s&tdtdxb|D]Z}tdt|ddd||}tdttt|d td tt|q4Wtd td S) z$Dump the contents of a form as HTML.z

Form Contents:

z

No form fields.z

z
: )r[zzz
z
N)rrrrrreprrs)rrrerir"r"r#rs  c Csjttdy t}Wn6tk rP}ztdtt|Wdd}~XYnXtt|tdS)z#Dump the current directory as HTML.z#

Current Working Directory:

zOSError:N)rrgetcwdrrrstr)pwdmsgr"r"r#rs &cCs(ttdtttjtdS)Nz

Command Line Arguments:

)rr3r=r"r"r"r#rs  cCs tddS)z9Dump a list of environment variables used by CGI as HTML.a

These environment variables could have been set:

  • AUTH_TYPE
  • CONTENT_LENGTH
  • CONTENT_TYPE
  • DATE_GMT
  • DATE_LOCAL
  • DOCUMENT_NAME
  • DOCUMENT_ROOT
  • DOCUMENT_URI
  • GATEWAY_INTERFACE
  • LAST_MODIFIED
  • PATH
  • PATH_INFO
  • PATH_TRANSLATED
  • QUERY_STRING
  • REMOTE_ADDR
  • REMOTE_HOST
  • REMOTE_IDENT
  • REMOTE_USER
  • REQUEST_METHOD
  • SCRIPT_NAME
  • SERVER_NAME
  • SERVER_PORT
  • SERVER_PROTOCOL
  • SERVER_ROOT
  • SERVER_SOFTWARE
In addition, HTTP headers sent by the server may be passed in the environment as well. Here are some common variable names:
  • HTTP_ACCEPT
  • HTTP_CONNECTION
  • HTTP_HOST
  • HTTP_PRAGMA
  • HTTP_REFERER
  • HTTP_USER_AGENT
N)rr"r"r"r#rs'cCsFtdtdd|dd}|dd}|dd }|rB|d d }|S) zDeprecated API.z1cgi.escape is deprecated, use html.escape insteadrF) stacklevelr1z&z>rUz")rrGrI)rZZquoter"r"r#rs     cCs(ddl}t|trd}nd}|||S)Nrs^[ -~]{0,200}[!-~]$z^[ -~]{0,200}[!-~]$)rer6rmatch)rZrZ _vb_patternr"r"r#rs  r__main__)rr)rr)rHrI)NNNN)N)1rp __version__iorrrZcollections.abcrr3rZ urllib.parser>Z email.parserrZ email.messagerwarningsrrrr__all__rrr$r rr)rr9r@r r r rr]rr r rrrrrrrrrrmr"r"r"r#s`     # E    6'   /