| Server IP : 104.21.80.248 / Your IP : 172.71.28.156 Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30 System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586 User : SYSTEM ( 0) PHP Version : 5.6.30 Disable Function : NONE MySQL : ON | cURL : ON | WGET : OFF | Perl : OFF | Python : OFF | Sudo : OFF | Pkexec : OFF Directory : /Inetpub/www/myschool/phohak/modules/admin/ |
Upload File : |
<table cellspacing="0" cellpadding="0" width="100%" height=450 border="0">
<tbody>
<tr>
<td>
<table cellspacing="0" cellpadding="0" width="98%" border="0">
<tbody>
<tr>
<td><table width="100%">
<tr>
<td>
<table width="100%" align="center" cellspacing="0" cellpadding="0" border="0">
<tr>
<td align="left"> <img src="images/icon/arrow_wap.gif" border="0" align="absmiddle" /> จัดการ </b> <br />
<?
//////////////////////////////////////////// แสดงรายชื่อ
if($_GET[op] == ""){
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$limit = 200 ;
$SUMPAGE = $db->num_rows(TB_user,"id","$SQLwhere level between 4 and 13 and status='1' ");
$page=$_GET[page];
if (empty($page)){
$page=1;
}
$rt = $SUMPAGE%$limit ;
$totalpage = ($rt!=0) ? floor($SUMPAGE/$limit)+1 : floor($SUMPAGE/$limit);
$goto = ($page-1)*$limit ;
?>
<table width="100%" align="center" cellspacing="2" cellpadding="1" >
<tr bgcolor="#990000" height="25">
<td><div align="center"><font color="#FFFFFF"><b>ชื่อ - นามสกุล</b></font></div></td>
<td><div align="center"><font color="#FFFFFF"><b>ตำแหน่ง</b></font></div></td>
<td><div align="center"><font color="#FFFFFF"><b>สถานะ</b></font></div></td>
<td><div align="center"><font color="#FFFFFF"><b>จัดการ</b></font></div></td>
</tr>
<?
$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE level between 4 and 11 and status='1' ORDER BY work ASC LIMIT $goto, $limit ");
while($arr[user] = $db->fetch($res[user])){
$res[groups] = $db->select_query("SELECT * FROM ".TB_ADMIN_GROUP." WHERE id='".$arr[user][level]."' ");
$arr[groups] = $db->fetch($res[groups]);
$res[working] = $db->select_query("SELECT * FROM ".TB_WORK_CAT." WHERE id='".$arr[user][work]."' ");
$arr[working] = $db->fetch($res[working]);
?>
<tr>
<td width="230" > <? echo $arr[user][category_name];?></td>
<td width="230" ><? echo $arr[user][posit];?></td>
<?
if ($arr[user][cotton]=='B'){ // ตรวจสิทธิ์ เจ้าหน้าที่ทั่วไป============================================
?>
<td align="center" width="100" >-</td>
<? } ?>
<?
if ($arr[user][cotton]=='A'){ // ตรวจสิทธิ์ สารบัญกลาง ============================================
?>
<td align="center" width="150" ><font color=blue>ผู้รับผิดชอบโครงการ</font></td>
<? } ?>
<td width="400" >
<form method="post" action="?name=admin&file=user_cpkpi2&op=minepass_edit&action=edit&id=<? echo $arr[user][id];?>" enctype="multipart/form-data">
<INPUT TYPE="radio" NAME="COTTON" VALUE="A" ><font color=red>ผู้รับผิดชอบโครงการ</font>
<INPUT TYPE="radio" NAME="COTTON" VALUE="B" >จนท.ทั่วไป
<input type="submit" value="บันทึก" />
</form>
</td>
</tr>
<tr>
<td colspan="6" height="1" class="dotline"></td>
</tr>
<?
}
?>
</table>
</form>
<?
SplitPage($page,$totalpage,"?name=admin&file=user_cpkpi2zs");
echo $ShowSumPages ;
echo "<BR>";
echo $ShowPages ;
echo "<BR><BR>";
}
else if($_GET[op] == "minepass_edit" AND $_GET[action] == "edit"){
//////////////////////////////////////////// กรณีแก้ไขข้อมูลส่วนตัว
if($_GET[op]){
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
// $res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE username='".$_SESSION['user_user']."' ");
$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='".$_GET[id]."' ");
$arr[user] = $db->fetch($res[user]);
$db->closedb ();
if(!$_POST[COTTON] ){
$ProcessOutput .= "<BR><BR>";
$ProcessOutput .= "<CENTER><IMG SRC=\"images/icon/notview.gif\" BORDER=\"0\"><BR><BR>";
$ProcessOutput .= "<FONT COLOR=\"#336600\"><B>กรุณากรอกข้อมูลต่างๆให้ครบถ้วน</B></FONT><BR><BR>";
$ProcessOutput .= "<A HREF=\"javascript:history.go(-1);\"><B>กลับไปแก้ไข</B></A>";
$ProcessOutput .= "</CENTER>";
$ProcessOutput .= "<BR><BR>";
}else{
$User_User = $_GET[id]; //$_SESSION[admin_user];
if($_POST[PASSWORD]){
$NewPass = md5($_POST[PASSWORD]);
$URLre = "?name=admin&file=user_cp";
//session_unset();
//session_destroy();
}else{
$NewPass = $_POST[oldpass];
$URLre = "?name=admin&file=user_cp";
}
/*require("includes/class.resizepic.php");
$FILE = $_FILES['FILE'];
if ((($FILE['type']!="image/jpg") AND ($FILE['type']!="image/jpeg") AND ($FILE['type']!="image/pjpeg")) AND $FILE['size']){
echo "<script language='javascript'>" ;
echo "alert('กรุณาใช้ไฟล์นามสกุล jpg เท่านั้น')" ;
echo "</script>" ;
echo "<script language='javascript'>javascript:history.back()</script>";
exit();
}else{
@copy ($FILE['tmp_name'] , "usericon/".$arr[user][post_date].".jpg" );
$original_image = "usericon/".$arr[user][post_date].".jpg" ;
$desired_width = _Iuser_W ;
$desired_height = _Iuser_H ;
$image = new hft_image($original_image);
$image->resize($desired_width, $desired_height, '0');
$image->output_resized("usericon/".$arr[user][post_date].".jpg", "JPG");
}
*/
//ทำการแก้ไขข้อมูลลงดาต้าเบส
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$db->update_db(TB_user,array(
"cotton"=>"$_POST[COTTON]",
"update_date"=>"".TIMESTAMP.""
// )," username='$Admin_User' ");
)," id='$_GET[id]' ");
$db->closedb ();
$ProcessOutput .= "<BR><BR>";
$ProcessOutput .= "<CENTER><A HREF=\"".$URLre."\"><IMG SRC=\"images/icon/login-welcome.gif\" BORDER=\"0\"></A><BR><BR>";
$ProcessOutput .= "<FONT COLOR=\"#336600\"><B>ได้ทำการแก้ไขข้อมูลเรียบร้อยแล้ว</B></FONT><BR><BR>";
$ProcessOutput .= "<meta http-equiv=\"refresh\" content=\"1 ;url=?name=admin&file=user_cpkpi2\">";
$ProcessOutput .= "</CENTER>";
$ProcessOutput .= "<BR><BR>";
}
}else{
//กรณีไม่ผ่าน
$ProcessOutput = $PermissionFalse ;
}
echo $ProcessOutput ;
}
else if($_GET[op] == "minepass_edit"){
//////////////////////////////////////////// กรณีแก้ไขข้อมูลส่วนตัว
if($_GET[op]){
//ดึงค่าของสมาชิกเวปออกมา
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
// $res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE username='".$_SESSION['user_user']."' ");
$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='".$_GET[id]."' ");
$arr[user] = $db->fetch($res[user]);
$db->closedb ();
?>
<form method="post" action="?name=admin&file=user_cpkpi2&op=minepass_edit&action=edit&id=<? echo $arr[user][id];?>" enctype="multipart/form-data">
<TABLE width="100%" cellSpacing=0 cellPadding=0 border=0>
<TR>
<TD align="center"valign=top>
<TABLE width="600" cellSpacing=0 cellPadding=0 border=0 bgcolor=#EBFAAF>
<TR>
<TD valign=top>
<BR><B> วันนี้</B>
<BR>
<img src="images/vtoday.png" /><b><FONT COLOR=blue size=3><?=$arr[user][category_name];?> ผู้จัดทำคำรับรอง</FONT></b>
<INPUT TYPE="radio" NAME="ACTING" VALUE="3" >จนท.จัดทำคำรับรอง
<INPUT TYPE="radio" NAME="ACTING" VALUE="00" >จนท.ทั่วไป<BR>
<BR>
<center>
<input type="submit" value=" แก้ไขข้อมูลส่วนตัว " />
</center>
</TD></TR>
</TABLE>
</form>
<?
}else{
//กรณีไม่ผ่าน
echo $PermissionFalse ;
}
}
?>
<br />
<br />
</td>
</tr>
</table>
</TD>
</TR>
</table>
<br /></td>
</tr>
</table></td>
</tr>
</tbody>
</table>
</div></td>
</tr>
</tbody>
</table>
</div>