/
var
/
www
/
barefootlaw.org
/
bios2
/
manager
/
Upload File
HOME
<?php error_reporting(0); ?> <?php require_once('../Connections/fleetMan.php'); ?> <?php require_once("functions.php"); $api = new fleet(); ?> <?php if (!isset($_SESSION)) { session_start(); } $MM_authorizedUsers = ""; $MM_donotCheckaccess = "true"; // *** Restrict Access To Page: Grant or deny access to this page function isAuthorized($strUsers, $strGroups, $UserName, $UserGroup) { // For security, start by assuming the visitor is NOT authorized. $isValid = False; // When a visitor has logged into this site, the Session variable MM_Username set equal to their username. // Therefore, we know that a user is NOT logged in if that Session variable is blank. if (!empty($UserName)) { // Besides being logged in, you may restrict access to only certain users based on an ID established when they login. // Parse the strings into arrays. $arrUsers = Explode(",", $strUsers); $arrGroups = Explode(",", $strGroups); if (in_array($UserName, $arrUsers)) { $isValid = true; } // Or, you may restrict access to only certain users based on their username. if (in_array($UserGroup, $arrGroups)) { $isValid = true; } if (($strUsers == "") && true) { $isValid = true; } } return $isValid; } $MM_restrictGoTo = "signin.php"; if (!((isset($_SESSION['MM_Username'])) && (isAuthorized("",$MM_authorizedUsers, $_SESSION['MM_Username'], $_SESSION['MM_UserGroup'])))) { $MM_qsChar = "?"; $MM_referrer = $_SERVER['PHP_SELF']; if (strpos($MM_restrictGoTo, "?")) $MM_qsChar = "&"; if (isset($_SERVER['QUERY_STRING']) && strlen($_SERVER['QUERY_STRING']) > 0) $MM_referrer .= "?" . $_SERVER['QUERY_STRING']; $MM_restrictGoTo = $MM_restrictGoTo. $MM_qsChar . "accesscheck=" . urlencode($MM_referrer); header("Location: ". $MM_restrictGoTo); exit; } ?> <?php $response = array(); switch($_GET['action']) { case 'delete': $tble_name = substr($_GET['entity'],strlen($_GET['key'])); $tble_name = $api->table_name(substr($tble_name,0,-strlen($_GET['key']))); $query = mysql_query("update `".$tble_name."` set _status = '".md5(date("Y-m-d H:i:s"))."' where id = '".mysql_real_escape_string($_GET['key'])."' limit 1"); if($query && mysql_affected_rows() > 0) { echo json_encode(array("status"=>1)); exit; } else { echo json_encode(array("status"=>0)); exit; } break; case 'load_cols': $tables = explode(",",$_GET['entities']); $temp = array(); foreach($tables as $item) { $query = mysql_query("desc `".$item."`"); if($query) { $info = mysql_fetch_assoc($query); do { $temp[] = array("name"=>strtoupper(str_replace("_"," ",$item.":".$info['Field'])),"col"=>$item.".".$info['Field']); } while ($info = mysql_fetch_assoc($query)); } } echo json_encode(array("status"=>1,"fields"=>$temp)); exit; break; case 'filter_select': $bits = array(); $field = urldecode($_GET['field']); $value = urldecode($_GET['value']); //Find Field and Determine References foreach($_SESSION['RecordParameters'] as $item) { if(sha1($item['field']) == $field) { $bits = explode(".",$field); break; } } //Retrieve Values if(sizeof($bits) == 2) { $begin = mysql_query("SELECT * FROM information_schema.KEY_COLUMN_USAGE WHERE REFERENCED_TABLE_NAME = '".$bits[1]."' AND TABLE_NAME = '".$bits[0]."'"); if(mysql_num_rows($begin) > 0) { $row_data = mysql_fetch_assoc($begin); do { } while ($row_data = mysql_fetch_assoc($begin)); } } break; } ?>