ACC SHELL

Path : /srv/www/vhosts/lps/__zaloha/
File Upload :
Current File : //srv/www/vhosts/lps/__zaloha/inside.php

<?
//hlavni sprava prispevku
include("auth.php");
include("connectdb.php"); 
?>
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
  <head>
  <meta http-equiv="content-type" content="text/html; charset=windows-1250">
  <title></title>
  </head>
  <body>


<?php
echo"<a href=\"http://".$webl."/log_out.php/\">Uživatel: ".$_SESSION['login']."</a><br>";
     

Switch ($_GET['er']){
case 0:
echo"<a href=\"http://".$webl."/inside.php?er=2/\">Zadat novou nabídku práce</a> <br>";
echo"<a href=\"http://".$webl."/inside.php?er=3/\">Procházet,upravit stávající nabídky práce</a><br>";
break;
case 2: 
//vkládání nového inzerátu
?>
<form method="POST" action="inside.php?er=5">
<label>Pracovní pozice</label>
<br>
<input type="text" size="30" value="Pracovní pozice" name="workp">
<br>
<label>Popis pracovní pozice</label>
<br>
<textarea rows="5" cols="30" name="notice">
Zde příjde popis pracovní pozice ...
</textarea>
<br>
<label>Doplňující informace</label>
<br>
<input type="text" name="id" value="<? echo $_SESSION['rc']; ?>" readonly>
<input type="text" name="date" value="<? echo $_SESSION['date']; ?>" readonly>
<br>
<input type="submit" name="ok" value="Potvrdit">
</form>

<?
break;
case 3:
//procházení stávajících inzerátů + možné úpravy
$query="SELECT * FROM advart";
$result=mysql_query($query)
        or die("Požadovaná data nelze nalézt");
$signnum=mysql_num_rows($result);
?>

<table border="1" >
<tr bgcolor="#0099CC">
<th>Název pozice</th>
<th>Popis</th>
<th>Vyvořil</th>
<th>Dne</th>
<th></th>
<th></th>
</tr>

<? 
for($i=1;$i<=$signnum;$i++){
$row_array=mysql_fetch_array($result); 
?>

<tr align="center" bgcolor="#CCCCCC"> 
    <td><? echo $row_array["workp"];?></td>
    <td><? echo $row_array["notice"];?></td>
    <td><? echo $row_array["rc"];?></td>
	  <td><? echo $row_array["cdate"];?></td>
	  <td><a href="http://<?echo $webl;?>/inside.php?er=4&id=<? echo $row_array["ida"];?>"><img src="img/edit.gif" alt="uprav"></a></td>
	  <td><a href="http://<?echo $webl;?>/inside.php?er=7&id=<? echo $row_array["ida"];?>"><img src="img/delete.gif" alt="smaž"></a></td>
</tr>
<? }; 
?>
</table> 
<?
break;
case 4:
if(!isset($_GET['id'])){Header("location: http://$webl/work.php?er=0");}
$ida=$_GET['id'];
// uprava stavajicich
$query="SELECT * FROM advart WHERE ida='".$ida."'";
$result=mysql_query($query)
        or die("Požadovaná data nelze nalézt");
$signnum=mysql_num_rows($result);
$row_array=mysql_fetch_array($result); 
?>
<form method="POST" action="inside.php?er=6">
<label>Název pracovní pozice</label>
<br>
<input type="text" size="30" value="<?echo $row_array["workp"];?>" name="workp">
<br>
<label>Popis pracovní pozice  </label>
<br>
<textarea rows="5" cols="30" name="notice">
<?echo $row_array["notice"];?>
</textarea>
<br>


<input type="hidden" name="id" value="<?echo $row_array["ida"];?>" >

<label>Datum vytvoření</label>
<br>
<input type="text" name="date" value="<?echo $_SESSION['date'];?>" readonly>
<input type="hidden" name="date" value="<?echo $_SESSION['rc'];?>" >
<input type="submit" name="ok" value="Potvrdit">
</form>
<?
break;
case 5:
//vlozeni noveho inzeratu
if(!isset($_POST['ok'])){Header("location: http://$webl/inside.php?er=0");};
$query="INSERT INTO advart (cdate,rc,notice,workp) 
VALUES('".$_SESSION['date']."','".$_POST['id']."','".$_POST['notice']."','".$_POST['workp']."')";
$result=mysql_query($query)
        or die("Požadovaná data nelze nalézt");
Header("location: http://$webl/inside.php?er=0");
break;
case 6:
//uprava stavajiciho inzeratu
if(!isset($_POST['ok'])){Header("location: http://$webl/inside.php?er=0");}
$query="UPDATE advart SET cdate='".$_SESSION['date']."',rc='".$_SESSION['rc']."',notice='".$_POST['notice']."',workp='".$_POST['workp']."'
WHERE ida='".$_POST['id']."'";
$result=mysql_query($query)
        or die("Požadovaná data nelze nalézt");
Header("location: http://$webl/inside.php?er=0");
break;
case 7:
// mazani stareho
if(!isset($_GET['id'])){Header("location: http://$webl/inside.php?er=0");};
echo $_GET['id'];
$query="DELETE FROM advart WHERE ida='".$_GET['id']."'";
$result=mysql_query($query)
        or die("Požadovaná data nelze nalézt");
Header("location: http://$webl/inside.php?er=0");
break;
};
?>
</body>
</html>

ACC SHELL 2018