/var/www/(Del)hsiaust.com.au/webadmin/cms_user_index.php


1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
<?php
include 'config.php';

// Check if the user is logged in

if ((!isSet($_SESSION['loginname'])) || ($loggin <> '1'))
{
header("Location: login.php");
exit;
}
?>
<?php
require("configure.php");
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<title>Content Management System (CMS) - Powered by One Solution Limited</title>
<link rel="stylesheet" type="text/css" href="css/style.css" />
<!-- Main Menu -->
<link rel="stylesheet" type="text/css" href="css/menu.css" />
<script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js"></script>
<script type="text/javascript" src="js/ddaccordion.js"></script>
<script type="text/javascript" src="js/menuddaccordion.js"></script>
<!-- End Main Menu -->
<script type="text/javascript">
function MM_jumpMenu(targ,selObj,restore){ //v3.0
  eval(targ+".location='"+selObj.options[selObj.selectedIndex].value+"'");
  if (restore) selObj.selectedIndex=0;
}
//-->
</script>

</head>

<body>
<table width="1000" height="600" border="0" cellpadding="0" cellspacing="0">
  <tr>
    <td width="200" align="left" valign="top"><table width="200" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td height="70" align="left" valign="middle">&nbsp;</td>
      </tr>
      <tr>
          <td width="200" align="left" valign="top"><!-- Main Menu --><?php require("menu.php");?><!-- End Main Menu --></td>
    </tr>
    </table></td>
    <td width="800" align="left" valign="top"><table width="800" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td><table width="800" border="0" cellspacing="0" cellpadding="0">
            <tr>
              <td height="70" class="pagetitletxt">&nbsp;&nbsp;</td>
              <td width="50" align="center" class="icontxt"><?php session_start(); if (($_SESSION['cmsrole'] == 'superadmin') || ($_SESSION['cmsrole'] == 'admin')) { ?><a href="cms_user_addform.php"><img src="images/iconNew.png" alt="Add" width="32" height="32" border="0" /><br />
                &nbsp;Add&nbsp;&nbsp;</a><?php ?></td>
            </tr>
          </table></td>
      </tr>
     <tr>
        <td class="pagetitletxt">&nbsp;&nbsp;<b><img src="images/iconList.jpg" width="48" height="48" align="absmiddle" /> CMS User Management </b></td>
      </tr>
      <tr>
        <td height="25" align="left" valign="middle" class="msg"><?php echo $_GET['msg']; ?></td>
      </tr>
      <tr>
        <td align="left" valign="middle"><table width="800" border="0" cellpadding="0" cellspacing="0">
            <tr>
              <td width="10" class="listtitletxt"></td>
              <td width="150" class="listtitletxt">User Name</td>
              <td width="150" class="listtitletxt">Login Name</td>
              <td width="400" class="listtitletxt">Role</td>
              <td width="50" class="listtitletxt">Status</td>
              <td width="20" class="listtitletxt"></td>
              <td width="20" class="listtitletxt"></td>
            </tr>
            <?php
            
if ($_SESSION['cmsrole'] == 'user') {
                
$result mysql_query("SELECT * FROM cms_login WHERE cmsloginid = ".$_SESSION['cmsloginid']." ORDER BY cmsusername ASC, cmsloginid DESC ");
            } else if (
$_SESSION['cmsrole'] == 'admin') {
                
$result mysql_query("SELECT * FROM cms_login WHERE cmsrole <> 'superadmin' ORDER BY cmsusername ASC, cmsloginid DESC ");
            } else if (
$_SESSION['cmsrole'] == 'superadmin') {
                
$result mysql_query("SELECT * FROM cms_login ORDER BY cmsusername ASC, cmsloginid DESC ");
            }            
            while (
$row mysql_fetch_array($result,MYSQL_ASSOC))
            {
                print 
"<tr>";
                print 
"<td class='listtxt' style='padding-left:5'>&nbsp;</td>";
                print 
"<td class='listtxt' style='padding-left:5'>".$row{'cmsusername'}."</td>";
                print 
"<td class='listtxt' style='padding-left:5'>".$row{'cmsloginname'}."</td>";
                print 
"<td class='listtxt' style='padding-left:5'>".$row{'cmsrole'}."</td>";
                
                
// Status
                
print "<td class='listtxt' align='center'>";
                if (
$row{'cmsstatus'} == '1'// Enable
                
{
                    print 
"<a href='cms_user_status.php?cmsloginid=".$row{'cmsloginid'}."'>";
                    print 
"<img src='images/tick.png' title='Status' alt='Status' border='0' hspace='2'></a>";
                }
                else 
// Disable
                
{
                    print 
"<a href='cms_user_status.php?cmsloginid=".$row{'cmsloginid'}."'>";
                    print 
"<img src='images/cross.png' title='Status' alt='Status' border='0' hspace='2'></a>";
                }
                print 
"</td>";
                
                
// Modify            
                
print "<td class='listtxt' align='right'>";
                print 
"<a href='#' onClick=\"window.location='cms_user_modifyform.php?cmsloginid=".$row{'cmsloginid'}."'\"><img src='images/btnModify.png' title='Modify' alt='Modify' hspace='2' border='0'></a>";
                print 
"</td>";        
                print 
"<td class='listtxt' style='padding-left:5'>&nbsp;</td>";
                print 
"</tr>";
            }
            
mysql_close($dbh);
            
?>
        </table></td>
      </tr>
</table>
</td></tr>
</table>
</body>
</html>