Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?
- /*********************************************************************************
- * Script Name : Minutes Of Meeting *
- *
- * This File : dataview.php *
- *********************************************************************************/
- require_once("includes/config.php");
- require_once("includes/functions.php");
- session_start();
- $userid = $_SESSION['user'];
- if ($userid==""){
- die ("Plesea Login <a href=\"index.php\">Here</a>");
- }
- headhtml();
- menu();
- $do = xssclean($_GET['do']);
- $project = xssclean($_GET['projectid']);
- $meetypes = xssclean($_GET['meetypesid']);
- $meet = xssclean($_GET['meetdate']);
- if (!is_numeric($meetypes) && $meetypes !="" || !is_numeric($project) && $project !="" || !is_numeric($meet) && $meet !=""){
- echo "<script>alert(\"Hacking Attempt\")</script>";
- exit;
- }
- $agendaitem = mysql_query("SELECT * FROM agendaitems WHERE meettypeid='$meetypes'");
- while ($agendaitems = mysql_fetch_array($agendaitem) ){
- $agendaitemid = $agendaitems['id'];
- $name = $agendaitems['name'];
- echo "<table style=\"width:100%;\"><tr><td class=\"style10\" style=\"text-align: center; background-color: #666666\">".$name;
- if ($_SESSION['status'] == "admin"){
- echo" <a href=\"#\" onclick=\"javascript:window.open('add.php?mode=addworkitem&projectid=$project&agendaitem=$agendaitemid&meetypesid=$meetypes','popup','width=800,height=500');\"> <img src=\"images/buttons/addworkitem.gif\" border=\"0\" alt=\"Add Workitem\"></a>";
- }
- echo "</td></tr></table>";
- $meetingitems = mysql_query("SELECT * FROM items WHERE meetingtypeid='$meetypes' AND agendaitemid='$agendaitemid' AND meetingprojectid='$project'");
- while ($write = mysql_fetch_array($meetingitems)){
- $itemid = $write['id'];
- $workitem = $write['workitem'];
- echo "<font color=\"#1F203F\" size=\"2\" face=\"Arial Narrow\"><b>".$workitem." </b></font>";
- echo "<body alink=\"#996600\"><table style=\"width: 90%;\" border=\"1\"><tr><td class=\"style1\">Date - Time</td><td class=\"style2\">Place</td><td class=\"style6\">Notes</td></tr>";
- $kosul = "itemid='$itemid'";
- if ($meet!=""){
- $kosul = $kosul .= "AND meetings.id='$meet'" ;
- }
- else {
- $kosul = "itemid='$itemid'";
- }
- if ($_SESSION['status'] == "admin"){
- if ($meet != ""){
- echo " <a href=\"#\" onclick=\"javascript:window.open('add.php?mode=addnotes&meetdate=$meet&workitemid=$itemid','popup','width=800,height=500');\"><img src=\"images/buttons/addnotes.gif\" alt=\"Add Notes\" border=\"0\"></a> ";
- }
- echo " <a href=\"#\" onclick=\"javascript:window.open('edit.php?mode=workitemedit&workitem=$itemid','popup','width=700,height=400');\"> <img src=\"images/buttons/editworkitem.gif\" border=\"0\" alt=\"Edit Workitem\"></a>";
- $num_rows = mysql_num_rows(mysql_query("SELECT * FROM itemdetails WHERE itemid='$itemid'"));
- if ($num_rows == "0"){
- echo " <a href=\"edit.php?mode=workitemdelete&workitem=$itemid\" onclick=\"return confirm('Are You Sure ?');\"><img src=\"images/buttons/deleteworkitem.gif\" border=\"0\" alt=\"Delete Workitem\"></a>";
- }
- }
- $itemdetaildata = mysql_query("SELECT itemdetails.id,notes,meetingid,meetings.date,time,place FROM itemdetails INNER JOIN meetings ON meetings.id = itemdetails.meetingid WHERE $kosul");
- while ( $data = mysql_fetch_array($itemdetaildata) ){
- $date = $data['date'];
- $time = $data['time'];
- $place = $data['place'];
- $notes = $data['notes'];
- $noteid = $data['id'];
- $meetingid = $data['meetingid'];
- echo "<tr><td class=\"style3\">$date - $time</td><td class=\"style4\">$place</td><td class=\"style5\">$notes</td>";
- if ($_SESSION['status'] == "admin"){
- echo "<td class=\"edit\"> <a href=\"#\" onclick=\"javascript:window.open('edit.php?mode=edit&get=$noteid','popup','width=800,height=500');\"><img src=\"images/ic_c.gif\" border=\"0\"></a> </td>";
- echo "<td class=\"edit\"> <a href=\"edit.php?mode=delete&get=$noteid\" onclick=\"return confirm('Are You Sure ?');\"> <img src=\"images/ic_delete.gif\" border=\"0\"> </ a> </td>";
- }
- echo "</tr>";
- }
- echo "</table>";
- }
- }
- echo "<p align=\"right\"><a href=\"login.php?do=logout\"><img src=\"images/bt_logout.gif\" border=\"0\" tips=\"Logout\"></a></p>";
- ?>
Advertisement
Add Comment
Please, Sign In to add comment