2 /************************************************************************
3 * MXChange v0.2.1 Start: 09/28/2003 *
4 * =============== Last change: 12/13/2004 *
6 * -------------------------------------------------------------------- *
7 * File : what-guestedit.php *
8 * -------------------------------------------------------------------- *
9 * Short description : Edit guest's menu *
10 * -------------------------------------------------------------------- *
11 * Kurzbeschreibung : Menue fuer die Gaeste editieren *
12 * -------------------------------------------------------------------- *
14 * -------------------------------------------------------------------- *
15 * Copyright (c) 2003 - 2008 by Roland Haeder *
16 * For more information visit: http://www.mxchange.org *
18 * This program is free software; you can redistribute it and/or modify *
19 * it under the terms of the GNU General Public License as published by *
20 * the Free Software Foundation; either version 2 of the License, or *
21 * (at your option) any later version. *
23 * This program is distributed in the hope that it will be useful, *
24 * but WITHOUT ANY WARRANTY; without even the implied warranty of *
25 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the *
26 * GNU General Public License for more details. *
28 * You should have received a copy of the GNU General Public License *
29 * along with this program; if not, write to the Free Software *
30 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, *
32 ************************************************************************/
34 // Some security stuff...
35 if ((ereg(basename(__FILE__), $_SERVER['PHP_SELF'])) || (!IS_ADMIN()))
37 $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php";
40 // Add description as navigation point
41 ADD_DESCR("admin", basename(__FILE__));
43 // Do we edit/delete/change main menus or sub menus?
44 $AND = "what = ''"; $SUB = "";
46 if (!empty($_GET['sub']))
48 $AND = sprintf("action='%s'", SQL_ESCAPE($_GET['sub']));
49 $SUB = SQL_ESCAPE($_GET['sub']);
52 // Get count of (maybe) selected menu points
54 if (!empty($_POST['sel'])) $chk = SELECTION_COUNT($_POST['sel']);
56 // List all menu points and make them editable
57 if ((isset($_POST['edit'])) && ($chk > 0) && (!IS_DEMO()))
60 define('__SUB_VALUE', $SUB);
61 define('__CHK_VALUE', $chk);
63 $cnt = 0; $SW = 2; $OUT = "";
64 foreach ($_POST['sel'] as $sel => $confirm)
69 $query = SQL_QUERY_ESC("SELECT title, action, what FROM "._MYSQL_PREFIX."_guest_menu WHERE ".$AND." AND id=%s LIMIT 1",
70 array(bigintval($sel)), __FILE__, __LINE__);
71 if (SQL_NUMROWS($query) == 1)
73 // Entry found so we load the stuff...
74 list($menu, $act, $wht) = SQL_FETCHROW($query);
75 SQL_FREERESULT($result);
79 'action' => ADMIN_MAKE_MENU_SELECTION("guest", "action", "sel_action[".$sel."]", $act),
80 'what' => ADMIN_MAKE_MENU_SELECTION("guest", "what", "sel_what[".$sel."]", $wht),
84 $OUT .= LOAD_TEMPLATE("admin_gmenu_edit_row", true, $DATA);
93 $OUT .= LOAD_TEMPLATE("admin_menu_404_row", true, $content);
98 define('__MENU_ROWS', $OUT);
99 define('__CNT_VALUE', $cnt);
102 LOAD_TEMPLATE("admin_gmenu_edit_form");
104 elseif ((isset($_POST['del'])) && (!IS_DEMO()))
106 // Del menu entries with or without confirmation
107 define('__SUB_VALUE', $SUB);
108 define('__CHK_VALUE', $chk);
110 $cnt = 0; $OUT = ""; $SW = 2;
111 foreach ($_POST['sel'] as $sel => $confirm)
116 $query = SQL_QUERY_ESC("SELECT title FROM "._MYSQL_PREFIX."_guest_menu WHERE ".$AND." AND id=%s LIMIT 1",
117 array(bigintval($sel)), __FILE__, __LINE__);
118 if (SQL_NUMROWS($query) == 1)
120 // Entry found so we load the stuff...
121 list($menu) = SQL_FETCHROW($query);
122 SQL_FREERESULT($result);
129 $OUT .= LOAD_TEMPLATE("admin_gmenu_delete_row", true, $DATA);
138 $OUT .= LOAD_TEMPLATE("admin_menu_404_row", true, $content);
143 define('__MENU_ROWS', $OUT);
144 define('__CNT_VALUE', $cnt);
147 LOAD_TEMPLATE("admin_gmenu_delete");
149 elseif ((isset($_POST['ok'])) && (!IS_DEMO()))
151 // An action is done...
152 switch ($_POST['ok'])
154 case "edit": // Edit menu
155 foreach ($_POST['sel'] as $sel => $menu)
158 $sel = bigintval($sel);
161 $query = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_guest_menu SET title='%s', action='%s', what='%s' WHERE ".$AND." AND id=%s LIMIT 1",
162 array($menu, $_POST['sel_action'][$sel], $_POST['sel_what'][$sel], $sel),__FILE__, __LINE__);
164 LOAD_TEMPLATE("admin_data_saved");
167 case "del": // Delete menu
168 foreach ($_POST['sel'] as $sel => $menu)
171 $query = SQL_QUERY_ESC("DELETE LOW_PRIORITY FROM "._MYSQL_PREFIX."_guest_menu WHERE ".$AND." AND id=%s LIMIT 1",
172 array(bigintval($sel)), __FILE__, __LINE__);
174 LOAD_TEMPLATE("admin_data_saved");
177 case "status": // Change access levels
178 foreach ($_POST['sel'] as $sel => $menu)
181 $sel = bigintval($sel);
184 $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_guest_menu SET visible='%s', locked='%s' WHERE ".$AND." AND id=%s LIMIT 1",
185 array($_POST['visible'][$sel], $_POST['locked'][$sel], $sel), __FILE__, __LINE__);
187 LOAD_TEMPLATE("admin_data_saved");
190 default: // Unexpected action
191 define('__OK_VALUE', $_POST['ok']);
192 LOAD_TEMPLATE("admin_menu_unknown_okay");
196 elseif ((isset($_POST['status'])) && ($chk > 0) && (!IS_DEMO()))
198 // Change status (visible / locked)
199 define('__SUB_VALUE', $SUB);
200 define('__CHK_VALUE', $chk);
203 $SW = 2; $cnt = 0; $OUT = "";
204 foreach ($_POST['sel'] as $sel => $confirm)
209 $result = SQL_QUERY_ESC("SELECT title, visible, locked FROM "._MYSQL_PREFIX."_guest_menu WHERE ".$AND." AND id=%s LIMIT 1",
210 array(bigintval($sel)), __FILE__, __LINE__);
211 if (SQL_NUMROWS($result) == 1)
213 // Entry found so we load the stuff...
214 list($menu, $vis, $locked) = SQL_FETCHROW($result);
215 SQL_FREERESULT($result);
221 'visible' => ADD_SELECTION("yn", $vis , "visible", $sel),
222 'locked' => ADD_SELECTION("yn", $locked, "locked" , $sel),
226 $OUT .= LOAD_TEMPLATE("admin_menu_status_row", true, $content);
235 $OUT .= LOAD_TEMPLATE("admin_menu_404_row", true, $content);
240 define('__CNT_VALUE', $cnt);
241 define('__MENU_ROWS', $OUT);
244 LOAD_TEMPLATE("admin_gmenu_status");
248 if ((!empty($_GET['act'])) && (!empty($_GET['tid'])) && (!empty($_GET['fid'])))
251 if (!empty($_GET['w']))
253 // Sub menus selected
254 $result = SQL_QUERY_ESC("SELECT id FROM "._MYSQL_PREFIX."_guest_menu WHERE action='%s' AND sort='%s' LIMIT 1",
255 array($_GET['act'], bigintval($_GET['tid'])), __FILE__, __LINE__);
256 list($tid) = SQL_FETCHROW($result);
257 SQL_FREERESULT($result);
258 $result = SQL_QUERY_ESC("SELECT id FROM "._MYSQL_PREFIX."_guest_menu WHERE action='%s' AND sort='%s' LIMIT 1",
259 array($_GET['act'], bigintval($_GET['fid'])), __FILE__, __LINE__);
260 list($fid) = SQL_FETCHROW($result);
261 SQL_FREERESULT($result);
265 // Main menu selected
266 $result = SQL_QUERY_ESC("SELECT id FROM "._MYSQL_PREFIX."_guest_menu WHERE (what='' OR what IS NULL) AND sort='%s' LIMIT 1",
267 array(bigintval($_GET['tid'])), __FILE__, __LINE__);
268 list($tid) = SQL_FETCHROW($result);
269 SQL_FREERESULT($result);
270 $result = SQL_QUERY_ESC("SELECT id FROM "._MYSQL_PREFIX."_guest_menu WHERE (what='' OR what IS NULL) AND sort='%s' LIMIT 1",
271 array(bigintval($_GET['fid'])), __FILE__, __LINE__);
272 list($fid) = SQL_FETCHROW($result);
273 SQL_FREERESULT($result);
276 if ((!empty($tid)) && (!empty($fid)))
279 $result_sort = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_guest_menu SET sort='%s' WHERE ".$AND." AND id=%s LIMIT 1",
280 array(bigintval($_GET['tid']), bigintval($fid)), __FILE__, __LINE__);
281 $result_sort = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_guest_menu SET sort='%s' WHERE ".$AND." AND id=%s LIMIT 1",
282 array(bigintval($_GET['fid']), bigintval($tid)), __FILE__, __LINE__);
286 // By default list menus
289 // List only main menus
290 $query = SQL_QUERY("SELECT id, action, what, title, sort FROM "._MYSQL_PREFIX."_guest_menu WHERE (what='' OR what IS NULL) ORDER BY sort ASC", __FILE__, __LINE__);
295 $query = SQL_QUERY_ESC("SELECT id, action, what, title, sort FROM "._MYSQL_PREFIX."_guest_menu WHERE action='%s' AND what != '' ORDER BY sort ASC",
296 array($SUB), __FILE__, __LINE__);
299 // Get number of menu entries
300 $max = SQL_NUMROWS($query);
303 // Some entties does exist!
307 define('__SUB_VALUE', $SUB);
311 // No sub menu selected
312 define('__SUB_VALUE', "");
315 $SW = 2; $cnt = 0; $OUT = "";
316 while (list($id, $act, $wht, $title, $sort) = SQL_FETCHROW($query))
319 if (($sort == 0) || (($sort == 1) && (!empty($SUB))))
321 // Is highest position
322 $NAVI = "<A href=\"".URL."/modules.php?module=admin&what=guestedit&sub=".__SUB_VALUE."&act=".$act."&w=".$wht."&tid=".($sort+1)."&fid=".$sort."\">".LOWER."</A>";
324 elseif ($cnt == $max)
326 // Is lowest position
327 $NAVI = "<A href=\"".URL."/modules.php?module=admin&what=guestedit&sub=".__SUB_VALUE."&act=".$act."&w=".$wht."&tid=".($sort-1)."&fid=".$sort."\">".HIGHER."</A>";
331 // Anything else between highest and lowest
332 $NAVI = "<A href=\"".URL."/modules.php?module=admin&what=guestedit&sub=".__SUB_VALUE."&act=".$act."&w=".$wht."&tid=".($sort-1)."&fid=".$sort."\">".HIGHER."</A>/<A href=\"".URL."/modules.php?module=admin&what=guestedit&sub=".__SUB_VALUE."&act=".$act."&w=".$wht."&tid=".($sort+1)."&fid=".$sort."\">".LOWER."</A>";
334 if (empty($act)) $act = " ";
335 if (empty($wht)) $wht = " ";
336 if (empty($title)) $title = " ";
346 $OUT .= LOAD_TEMPLATE("admin_menu_overview_row", true, $content);
351 SQL_FREERESULT($query);
352 define('__MENU_ROWS', $OUT);
355 LOAD_TEMPLATE("admin_gmenu_edit");
359 // Menu entries are missing... (???)
360 LOAD_TEMPLATE("admin_settings_saved", false, ADMIN_NO_MENUS_FOUND);