MINI SHELL

Server : Apache/2.2.2 (Fedora)
System : Linux App1.pathumtani.go.th 2.6.20-1.2320.fc5smp #1 SMP Tue Jun 12 19:40:16 EDT 2007 i686
User : apache ( 48)
PHP Version : 5.2.9
Disable Function : NONE
Directory :  /var/www/html/pathumthani_vc/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /var/www/html/pathumthani_vc/ticket_detailpop.php
<?
session_start() ;
//			$userid = $session_id  ;
			$phpreport = "ticket_detailpop.php" ;
			include ("../../inc/conndb.inc.php")  ;
			include ("../../inc/std_function.inc.php")  ;
if ($yy == "") { $yy = 2548  ;  }
if ($year1 == "") { $year1 = $yy ;  }
if ($mm == "") { $mm = 1 ; }
if ($sar_id == "") { $sar_id =  "01010100" ;  }
$sar_table =   "kpi_sar_val_"  .  $sar_id    ;


################## sar_id=01010100&year1=2548&mm=6&userid=222
//  kpi_sar_val_comment
$sql_comment = " SELECT * FROM   kpi_sar_val_comment  WHERE   id=$sar_id  and  yy=$year1  ";
$query_result_comment = mysql_db_query($dbname,$sql_comment) ;
$result_comment = mysql_fetch_array($query_result_comment) ;

if ($result_comment[resv1] == "") { $title_resv1 = ""  ; } else { $title_resv1 = $result_comment[resv1]  ; }
if ($result_comment[resv2] == "") { $title_resv2 = ""  ; } else { $title_resv2 = $result_comment[resv2]  ; }
if ($result_comment[resv3] == "") { $title_resv3 = ""  ; } else { $title_resv3 = $result_comment[resv3]  ; }

#################################################################################################
#################################################################################################
#################################################################################################
## sar_id :::::::::::::: 01010202
## ticket_id :::::::::::::: 12072548111815PSA0170
## timestampupload :::::::::::::: 20051009101122

$kpisar_table = "kpi_sar_val_"  . $sar_id  ;
$sql = "  SELECT   *,login.id as login_id  FROM    `login`     ";
			$sql = $sql ."    INNER JOIN `$sar_table` ON (`login`.`id` = `$sar_table`.`userid`)  ";
			$sql = $sql ."    INNER JOIN `office_detail` ON (`login`.`office_refid` = `office_detail`.`id`)  ";
			$sql = $sql ."    INNER JOIN `kpi_sar` ON (`kpi_sar`.`id` = `$sar_table`.`id`)  ";
			$sql = $sql ."    WHERE  `$sar_table`.id = '$sar_id'  and `$sar_table`.yy = $year1 and mm = $mm    ";
			$sql = $sql ."    AND login.id = '$user_id'  ";
//			echo $sql ;
			echo " <!--     $sql      -->  ";
			$query_result = mysql_db_query($dbname,$sql) ;


			while ($result=mysql_fetch_array($query_result)){
				$db_approve = $result[approve]   ;
				$db_computed = $result[computed]   ;
				$db_refid = $result[ref_id]   ;
				$db_si = $result[si]   ;
				$db_office = $result[office]   ;
				$db_web = $result[web]   ;
				$db_email2 = $result[email2]   ;
				$db_tel1 = $result[tel1]   ;
				$db_wi = $result[wi]   ;
				$db_goal = $result[goal]   ;
				$db_unit = $result[unit]   ;
				$db_wisi = $result[wisi]   ;
				$db_old_yy = $result[old_yy]   ;
				$db_new_yy = $result[new_yy]   ;
				$db_date_rec = $result[date_rec]   ;
				$db_idname = $result[name]   ;
				$db_approve = $result[approve] ;
				$db_userid = $result[login_id]  ;

				$db_resv1 = $result[resv1] ;
				$db_resv2 = $result[resv2] ;
				$db_resv3 = $result[resv3] ;
				$db_office_refid = $result[office_refid]  ;
			}
/*
 SELECT   *,login.id as login_id  FROM    `login`         INNER JOIN `kpi_sar_val_01010100` ON (`login`.`id` = `kpi_sar_val_01010100`.`userid`)      INNER JOIN `office_detail` ON (`login`.`office_refid` = `office_detail`.`id`)      INNER JOIN `kpi_sar` ON (`kpi_sar`.`id` = `kpi_sar_val_01010100`.`id`)      WHERE  `kpi_sar_val_01010100`.id = '01010100'  and `kpi_sar_val_01010100`.yy = 2548 and mm = 12        AND login.id = '61'

*/
################################################################################
/*      $query_result0 = mysql_db_query($dbname,$sql0) ;
echo " <!---  $sql0   --> ";
$result0 = mysql_fetch_array($query_result0) ;
//  echo $sql0  . "   <hr>  $result0[yy]    ___        $result0[old_yy]      <hr>    "  ;
//  print_r($result0)   ;

$yy	                       = $result0[yy]  ;
$db_refid	                       =$result0[db_refid]  ;
$db_idname	               =$result0[db_idname]  ;
$db_userid	               =$result0[db_userid]  ;
$db_office	             =$result0[db_office]  ;
$db_web	                       =$result0[$db_web]  ;
$db_email2	                  =$result0[db_email2]  ;
$db_tel1	                      =$result0[db_tel1]  ;
$db_wi	                       =$result0[db_wi]  ;
$db_goal	                       =$result0[db_goal]  ;
$db_old_yy	               =$result0[db_old_yy]  ;
$db_new_yy	             =$result0[db_new_yy]  ;
$db_resv1	           =$result0[db_resv1]  ;
$db_resv2	             =$result0[db_resv2]  ;
$db_resv3	             =$result0[db_resv3]  ;
$db_computed	     =$result0[db_computed]  ;
$db_unit	                     =$result0[db_unit]  ;
$db_si	                   =$reresult0sult[db_si]  ;
$db_wisi	                   =$result0[db_wisi]  ;
$db_date_rec	           =$result0[db_date_rec]  ;
$db_approve	          =$result0[db_approve]  ;
*/
################################################################################

/*
$sql_temp  = "  	SELECT * FROM   kpi_sar_user  WHERE   yy=$yy and userid = $session_id  and id = $sar_id   ";
$query_result_temp = mysql_db_query($dbname,$sql_temp) ;
if ( mysql_num_rows($query_result_temp) > 0   ){
		$result_temp = mysql_fetch_array($query_result_temp) ;
		$db_goal = $result_temp[goal] ;
         //   goal                 unit     g1             g2              g3              g4                 g5
}
  */


?>



<HTML><HEAD><TITLE><?=$db_idname?>  </TITLE>
<META http-equiv=Content-Type content="text/html; charset=windows-874">
<LINK href="../../style.css" rel=stylesheet type="text/css">
<script src="../../inc/functions.js" type="text/javascript" language="javascript"></script>
<script language="JavaScript" type="text/JavaScript">
<!--
function MM_openBrWindow(theURL,winName,features) { //v2.0
  window.open(theURL,winName,features);
}
//-->
</script>
<script src="../../inc/javaopenwin.js" type="text/javascript" language="javascript"> </script>
</HEAD>
<BODY bgcolor="#A3B2CC"  >
<?
/*
	while (list ($key, $val) = each ($HTTP_GET_VARS)) {
		echo " $key   :::::::::::::: $val   <br>";
	}  // end while (list ................
	echo " $office_refid <hr><hr><hr><hr><hr>   ";
         */

		$sql0 = " SELECT    *      FROM     `login`      ";
		$sql0 = $sql0 . "    INNER JOIN `office_detail` ON (`login`.`id` = `office_detail`.`id`)     ";
		$sql0 = $sql0 . "    where login.id =  $user_id      ";
		$query_result0 = mysql_db_query($dbname,$sql0) ;
// echo $sql0 ;
		$result0 = mysql_fetch_array($query_result0)  ;

		$db_thname 			= $result0[th_name]  ;
		if ($result0[$db_web] == "") { $db_web	 = "-" ;  }
		if ($result0[$db_email2] == "") { $db_email2	 = "-" ;  }
		if ($result0[$db_tel1] == "") { $db_tel1	 = "-" ;  }

?>
          <form action="ticket_detailpop_go.php" method="post" name="form1" target="_self">
            <br>
            <table width="96%"  border="1" align="center" cellpadding="1" cellspacing="0" bordercolor="#000000" bgcolor="#FFFFFF">
          <tr>
            <td colspan="2" class="index1"><span class="headerTB">µÑǪÕéÇÑ´·Õè
                <?=$db_refid?>
                <span class="13_style">
                <?=$db_idname?>
            </span> <span class="13_style"></span></span> </td>
            </tr>
          <tr bgcolor="#EFEFEF">
            <td width="30%">¤èÓ¹éÓ˹ѡ<strong>
            </strong></td>
            <td width="70%"><strong>
            <?=$db_wi?>
            &nbsp; </strong></td>
          </tr>
          <tr bgcolor="#EFEFEF">
            <td>à»éÒËÁÒÂ</td>
            <td><strong>
            <?=$db_goal?>
            &nbsp;</strong></td>
          </tr>
          <tr bgcolor="#EFEFEF">
            <td>¢éÍÁÙž×é¹°Ò¹</td>
            <td><strong>
            <?=$db_old_yy?>
            &nbsp;</strong></td>
          </tr>
          <tr bgcolor="#EFEFEF">
            <td>¢éÍÁÙŻջѨ¨ØºÑ¹</td>
            <td><strong>
            <?=$db_new_yy?>
            &nbsp;</strong></td>
          </tr>

<?  if ($title_resv1 != "") {             ?>
          <tr bgcolor="#EFEFEF">
            <td>              <?=$title_resv1?>            </td>
            <td><strong>
            <?=subval_3($db_resv1)?>
            &nbsp;</strong></td>
          </tr>
<?   }    ?>
<?  if ($title_resv2 != "") {             ?>
          <tr bgcolor="#EFEFEF">
            <td>              <?=$title_resv2?>            </td>
            <td><strong>
            <?=subval_3($db_resv2)?>
            &nbsp;</strong></td>
          </tr>
<?   }    ?>
<?  if ($title_resv3 != "") {             ?>
          <tr bgcolor="#EFEFEF">
            <td>              <?=$title_resv3?>            </td>
            <td><strong>
            <?=subval_3($db_resv3)?>
            &nbsp;</strong></td>
          </tr>
<?   }    ?>


          <tr bgcolor="#EFEFEF">
            <td>¼Å§Ò¹·Õè·Óä´é</td>
            <td><strong>
            <?
			  $val001 =   $db_computed   ;
			  $val001 = $val001  +1 ;   $val001 = $val001  - 1 ;
			  if(is_float($val001)){
			  		echo  number_format($val001,4)   ;
				}else{
			     	echo  $val001  ;
			    }
			    ?>
&nbsp; </strong></td>
          </tr>
          <tr bgcolor="#EFEFEF">
            <td>˹èÇÂÇÑ´</td>
            <td><strong>
            <?=$db_unit?>
            &nbsp;</strong></td>
          </tr>
          <tr bgcolor="#EFEFEF">
            <td>¤èÒ¤Ðá¹¹</td>
            <td><strong>
            <?
			  $val001 =   $db_si   ;
			  $val001 = $val001  +1 ;   $val001 = $val001  - 1 ;
			  if(is_float($val001)){
			  		echo  number_format($val001,4)   ;
				}else{
			     	echo  $val001  ;
			    }
			    ?>
            &nbsp; </strong></td>
          </tr>
          <tr bgcolor="#EFEFEF">
            <td>¤Ðá¹¹x¹éÓ˹ѡ</td>
            <td><strong>
            <?
			  $val001 =   $db_wisi   ;
			  $val001 = $val001  +1 ;   $val001 = $val001  - 1 ;
			  if(is_float($val001)){
			  		echo  number_format($val001,4)   ;
				}else{
			     	echo  $val001  ;
			    }
			    ?>
            &nbsp; </strong></td>
          </tr>
          <tr bgcolor="#EFEFEF">
            <td>Çѹ·Õè¨Ñ´à¡çº¢éÍÁÙÅ</td>
            <td><strong>
            <?=$db_date_rec?>
            &nbsp; </strong></td>
          </tr>
          <tr align="left" bgcolor="#EFEFEF">
            <td height="13" valign="top">ʶҹСÒÃÃѺÃͧ¢éÍÁÙÅ</td>
            <td height="13"><strong>
              <?    if ($db_approve == "approve"){   ?>
              <img src="../../images/check_green.gif" width="16" height="13">
              <?  }else if($db_approve == "notapprove")    {  ?>
              <img src="../../images/b_drop.png" width="16" height="16">
              <?  }else    {  ?>
              <img src="../../images/alert.gif" width="16" height="16">
              <?   }   ?>
            </strong></td>
          </tr>
          <tr align="left" bgcolor="#EFEFEF">
            <td height="13" valign="top"><strong>¤ÇÒÁàË繨ҡ¼ÙéÃѺÃͧ¢éÍÁÙÅ
              <?
$sql1 = "  SELECT *  FROM `ticket_list`  WHERE   ";
$sql1 = $sql1." `yy` =$yy AND `mm` =$mm  AND `useruploadid` LIKE '%$db_userid%'  ";
$query_result1 = mysql_db_query($dbname,$sql1) ;
$result1=mysql_fetch_array($query_result1)			 ;
$db_ticketid = $result1[ticketid]   ;
  echo "<!---- $sql1   ---> "  ;


$sql1 = "  SELECT *  FROM `ticket_history`  WHERE   ";
$sql1 = $sql1."   ticket_refid = '$db_ticketid'  and  id like '$sar_id'  and userid like '$db_userid'  "  ;
$sql1 = $sql1."   ORDER BY    historytimestamp  ASC  "  ;
  echo "<!---- $sql1   ---> "  ;
$query_result1 = mysql_db_query($dbname,$sql1) ;
	if (mysql_errno() != 0 ) { echo "<hr> <b> " .mysql_error()     .  "<b> ::::: $sql1<hr>  " ;  }
$db_timestamp = "";
$num_no = 1 ;
while ($result1=mysql_fetch_array($query_result1) ) {
	$db_notes = $result1[notes]   ;
	if (trim($db_notes) == "" ) {  continue ;  }
			 	$timetmp =  $result1[historytimestamp]  ;
				$syear = substr ("$timetmp", 0,4); $syear = $syear + 543 ;         // »Õ           echo " »Õ :: $syear ::<hr>";
				$smm = substr ("$timetmp", 5,2);            // à´×͹   echo " à´×͹ :: $smm ::<hr>";
				$sday = substr ("$timetmp", 8,2);               // Çѹ    echo " Çѹ :: $sday ::<hr>";
				$shour = substr ("$timetmp", 11,2);            // ªÑèÇâÁ§    echo " ªÑèÇâÁ§ :: $shour ::<hr>";
				$sminute = substr ("$timetmp", 14,2);              // ¹Ò·Õ    echo " ¹Ò·Õ  :: $sminute ::<hr>";
	$db_timestamp =       "¤ÃÑé§·Õè $num_no) $sday  ".find_month($smm)." $syear ( $shour:$sminute) "         . "  \n".  $db_notes  ."\n\n"  .  $db_timestamp   ;
$num_no++  ;
}
?>
            </strong></td>
            <td height="13"><textarea name="textarea" cols="49" rows="10"><?=$db_timestamp?></textarea>
            </td>
          </tr>
          <tr align="center" bgcolor="#A3B2CC">
            <td height="14" colspan="2"><input name="db_timestamp" type="hidden" id="db_timestamp" value="<?=$db_timestamp?>">              <input name="ticketid" type="hidden" id="ticketid" value="<?=$db_ticketid?>">
              <input name="sar_id" type="hidden" id="sar_id" value="<?=$sar_id?>">
              <input name="yy" type="hidden" id="yy" value="<?=$yy?>">
              <input name="year1" type="hidden" id="year1" value="<?=$year1?>">
              <input name="mm" type="hidden" id="mm" value="<?=$mm?>">
              <input name="userid" type="hidden" id="userid" value="<?=$userid?>">



              <input type="button" name="Button" value="  »Ô´  " onclick="window.close()">
              <?

$sql1 = "  SELECT *  FROM `ticket_history`  WHERE   ";
$sql1 = $sql1."   ticket_refid = '$db_ticketid'  and  id = $sar_id  and userid = $db_userid  "  ;
$sql1 = $sql1."   ORDER BY    historytimestamp  DESC  "  ;

$query_result1 = mysql_db_query($dbname,$sql1) ;
$result1=mysql_fetch_array($query_result1)			 ;
if (mysql_errno() != 0 ) { echo "<hr> <b> " .mysql_error()     .  "<b> ::::: $sql1<hr>  " ;  }
$db_notes = $result1[notes]   ;
$db_timestamp = $result1[historytimestamp]   ;


$query_result1 = mysql_db_query($dbname,$sql1) ;
$result1=mysql_fetch_array($query_result1)			 ;
if (mysql_errno() != 0 ) { echo "<hr> <b> " .mysql_error()  .  "<b> ::::: $sql1<hr>  " ;  }
?></td>
          </tr>
        </table>
</form>
<?
/*
				$db_approve = $result[approve]   ;
				$db_computed = $result[computed]   ;
				$db_si = $result[si]   ;
				$db_office = $result[office]   ;
				$db_web = $result[web]   ;
				$db_email1 = $result[email1]   ;
				$db_tel1 = $result[tel1]   ;
				$db_wi = $result[wi]   ;
				$db_goal = $result[goal]   ;
				$db_unit = $result[unit]   ;
				$db_wisi = $result[wisi]   ;
				$db_old_yy = $result[old_yy]   ;
				$db_new_yy = $result[new_yy]   ;
				$db_date_rec = $result[date_rec]   ;
=======================================================


*/
?>

Anon7 - 2021