/var/www/hkosl.com/ergofito/webadmin/content/sys_cms_user/sys_cms_user_index.php


1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
<?php include_once('../../check_login.php'); ?>
<!DOCTYPE html>
<html>
<head>
    <?php include_once('../../head.php'); ?>
    <link rel="stylesheet" type="text/css" href="../../css/menu.css"/>
    <script type="text/javascript" src="../../js/ddaccordion.js"></script>
    <script type="text/javascript" src="../../js/menuddaccordion.js"></script>
    <!-- End Main Menu -->
    <script type="text/javascript">
        function MM_jumpMenu(targ, selObj, restore) { //v3.0
            eval(targ + ".location='" + selObj.options[selObj.selectedIndex].value + "'");
            if (restore) selObj.selectedIndex = 0;
        }
        //-->
    </script>

</head>

<body>
<table width="1000" height="600" border="0" cellpadding="0" cellspacing="0">
    <tr>
        <td width="200" align="left" valign="top">
            <table width="200" border="0" cellpadding="0" cellspacing="0">
                <tr>
                    <td height="70" align="left" valign="middle">&nbsp;</td>
                </tr>
                <tr>
                    <td width="200" align="left" valign="top"><!-- Main Menu -->
                        <?php require("../../menu.php");?><!-- End Main Menu --></td>
                </tr>
            </table>
        </td>
        <td width="800" align="left" valign="top">
            <table width="800" border="0" cellpadding="0" cellspacing="0">
                <tr>
                    <td>
                        <table width="800" border="0" cellspacing="0" cellpadding="0">
                            <tr>
                                <td height="70" class="pagetitletxt">&nbsp;&nbsp;</td>
                                <td width="50" align="center" class="icontxt"><?php if (($_SESSION['role'] == 'admin') || ($_SESSION['role'] == 'super_admin')) { ?>
                                        <a href="sys_cms_user_addform.php"><img src="../../images/iconNew.png" alt="Add" width="32" height="32" border="0"/><br/>
                                            &nbsp;新增&nbsp;&nbsp;</a><?php ?></td>
                            </tr>
                        </table>
                    </td>
                </tr>
                <tr>
                    <td class="pagetitletxt">
                        &nbsp;&nbsp;<b><img src="../../images/iconList.jpg" width="48" height="48" align="absmiddle"/> 後台帳戶管理</b></td>
                </tr>
                <tr>
                    <td height="25" align="left" valign="middle" class="msg"><?php if (isset($_GET["msg"])) echo $_GET['msg']; ?></td>
                </tr>
                <tr>
                    <td align="left" valign="middle">
                        <table width="800" border="0" cellpadding="0" cellspacing="0">
                            <tr>
                                <td width="10" class="listtitletxt"></td>
                                <td width="150" class="listtitletxt">使用者名稱</td>
                                <td width="150" class="listtitletxt">登入名稱</td>
                                <td width="400" class="listtitletxt">職權</td>
                                <td width="50" class="listtitletxt">狀態</td>
                                <td width="20" class="listtitletxt"></td>
                                <td width="20" class="listtitletxt"></td>
                            </tr>
                            <?php

                                
if ($_SESSION['role'] == 'user') {

                                    
$sth1 $dbh->prepare("SELECT * FROM sys_cms_login WHERE cmsloginid = ?");
                                    
$sth1->execute(array($_SESSION['loginid']));

                                } else if (
$_SESSION['role'] == 'admin') {
                                    
$sth1 $dbh->prepare("SELECT * FROM sys_cms_login WHERE cmsrole <> 'super_admin' ORDER BY cmsusername ASC, cmsloginid DESC ");
                                    
$sth1->execute();

                                } else if (
$_SESSION['role'] == 'super_admin') {
                                    
$sth1 $dbh->prepare("SELECT * FROM sys_cms_login ORDER BY cmsusername ASC, cmsloginid DESC ");
                                    
$sth1->execute();
                                }
                                while (
$row $sth1->fetch(PDO::FETCH_ASSOC)) {
                                    print 
"<tr>";
                                    print 
"<td class='listtxt' style='padding-left:5'>&nbsp;</td>";
                                    print 
"<td class='listtxt' style='padding-left:5'>" $row{'cmsusername'} . "</td>";
                                    print 
"<td class='listtxt' style='padding-left:5'>" $row{'cmsloginname'} . "</td>";
                                    print 
"<td class='listtxt' style='padding-left:5'>" $row{'cmsrole'} . "</td>";

                                    
// Status
                                    
print "<td class='listtxt' align='center'>";
                                    if (
$row{'cmsstatus'} == '1'// Enable
                                    
{
                                        print 
"<a href='sys_cms_user_status.php?loginid=" $row{'cmsloginid'} . "'>";
                                        print 
"<img src='../../images/tick.png' title='Status' alt='Status' border='0' hspace='2'></a>";
                                    } else 
// Disable
                                    
{
                                        print 
"<a href='sys_cms_user_status.php?loginid=" $row{'cmsloginid'} . "'>";
                                        print 
"<img src='../../images/cross.png' title='Status' alt='Status' border='0' hspace='2'></a>";
                                    }
                                    print 
"</td>";

                                    
// Modify
                                    
print "<td class='listtxt' align='right'>";
                                    print 
"<a href='#' onClick=\"window.location='sys_cms_user_modifyform.php?cmsloginid=" $row{'cmsloginid'} . "'\"><img src='../../images/btnModify.png' title='Modify' alt='Modify' hspace='2' border='0'></a>";
                                    print 
"</td>";
                                    print 
"<td class='listtxt' style='padding-left:5'>&nbsp;</td>";
                                    print 
"</tr>";
                                }

                            
?>
                        </table>
                    </td>
                </tr>
            </table>
        </td>
    </tr>
</table>
</body>
</html>