File: /home/panama/public_html_old/appadmin.php
<?
include("include/config.php");
$db_sel = new database();
$pageid=6;
$db_sel->where("pageid=".$pageid);
$db_sel->selectstmt("cmspagemaster");
$pagetitle = $db_sel->f_pagetitle;
$pagemeta = $db_sel->f_pagemeta;
$pagemetadesc = $db_sel->f_pagemetadesc;
//$str_len=strlen($db_sel->f_pagedesc);
//if($str_len>1100)
//$description = substr($db_sel->f_pagedesc,0,1100)."...";
//else
$description = $db_sel->f_pagedesc;
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="description" content="<?=$pagemetadesc?>" />
<meta name="keywords" content="<?=$pagemeta?>"/>
<title><?=SITE_TITLE."- Services - ".$pagetitle?></title>
<!-- Stylesheets -->
<link rel="stylesheet" type="text/css" href="styles.css"/>
<!-- Javascript -->
<!--[if IE 6]><script src="js/ie6.js"></script><![endif]-->
<link rel="stylesheet" href="css/dropdownmenu.css" type="text/css" />
<script type="text/javascript" src="js/dropdownmenu.js"></script>
<? include('includescript.php')?>
</head>
<body>
<? include("header.php") ?>
<div id="contentwrapper">
<div class="contentcontainer">
<div class="maincontainer">
<div class="servicesbannerwrapper"><img src="images/banner_services.jpg" width="958" height="178" alt=""/></div>
</div>
<div class="maincontainer">
<div class="servicetextwrapper">
<div class="title">
<div class="breadcrumbs">
<ul>
<li class="first"><span class="titleicons"><img src="images/icon_services.png" width="40" height="42" alt=""/></span> Services</li>
<li><?=$pagetitle?></li>
</ul>
</div>
</div>
<div >
<font size="3">
<?php require_once ("./include/ewconfig.php") ?>
<?php require_once ("./include/db.php") ?>
<?php
/*echo "<script language=javascript>alert('Come to Go!!!');</script>";*/
if (@$_GET["userid"] <> "")
{
$userid=@$_GET["userid"];
$appid=@$_GET["appid"];
$actionid=@$_GET["action"];
/*echo "<script language=javascript>alert('".$username."');</script>";*/
$conn = phpmkr_db_connect(HOST, USER, PASS, DB, PORT);
MySQL_query("SET NAMES 'utf8'");
$sSql="select * from visa_user where userid='".$userid."'";
$query = phpmkr_query($sSql, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
$row = @phpmkr_fetch_array($query);
$userid=$row["userid"];
$query = phpmkr_query($sSql, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
$strFirstName=$row["firstname"];
$strLastName=$row["lastname"];
echo "Welcome Administrator.<br>"
?>
View Applications
<input type="text" name="txtuser" id="txtuser" value="<?php echo $userid ?>" style="display:none">
</font>
<script language="javascript">
function delconfirm() {
if (!confirm("Are You Sure To Delete This Application?")) {
window.event.returnValue = false;
}
}
</script>
<table border="0" width="616" id="table1">
<tr>
<td align="center" width="150" bgcolor="#013D85" style="color: #FFFFFF">Application ID</td>
<td align="center" width="165" bgcolor="#013D85" style="color: #FFFFFF">Date</td>
<td width="121" align="center" bgcolor="#013D85" style="color: #FFFFFF">Status</td>
<td width="162" align="center" bgcolor="#013D85" style="color: #FFFFFF">Action</td>
</tr>
<?php
if($actionid==3)/*Delete application*/
{
//Clear Attachment,but keep the special picture
$StrSel="select * From visa_form Where userid=".$userid." and appid='".$appid."'";
$query = phpmkr_query($StrSel, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
$row = @phpmkr_fetch_array($query);
$query = phpmkr_query($StrSel, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
if (phpmkr_num_rows($query) > 0)
{
$imgfolder=".\\visattach\\";
$file1=$row["file1"];
$file2=$row["file2"];
$file3=$row["file3"];
if($file1=="")
{
}
else
{
$showfile1=$imgfolder.$file1;
if(file_exists($showfile1))
{
unlink($showfile1);
}
}
if($file2=="")
{
}
else
{
$showfile2=$imgfolder.$file2;
if(file_exists($showfile2))
{
unlink($showfile2);
}
}
if($file3=="")
{
}
else
{
$showfile3=$imgfolder.$file3;
if(file_exists($showfile3))
{
unlink($showfile3);
}
}
}
else
{
}
//Delete Record
//1 Main
$SQLDel="Delete From visa_applist Where userid=".$userid." and appid='".$appid."'";
$query = phpmkr_query($SQLDel, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
//2 Detail
$SQLDel="Delete From visa_form Where userid=".$userid." and appid='".$appid."'";
$query = phpmkr_query($SQLDel, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
}
$sSql="select * from visa_applist left join visa_status on status=statusid where status=2 order by appid";
$query = phpmkr_query($sSql, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
$rowapp = @phpmkr_fetch_array($query);
$query = phpmkr_query($sSql, $conn) or die("<font color='#FF0000'>ERROR: Failed to execute query at line " . __LINE__ . ": " . phpmkr_error($conn) . '<br>SQL: ' . $sSql."</font>");
if (phpmkr_num_rows($query) > 0)
{
while ($rowapp = @phpmkr_fetch_array($query))
{
?>
<tr>
<td align="center" width="150" bgcolor="#469BFF"><?php echo $rowapp["appid"]; ?></td>
<td align="center" width="165" bgcolor="#469BFF"><?php echo $rowapp["appdate"]; ?></td>
<td width="121" align="center" bgcolor="#469BFF"><?php echo $rowapp["statusdesc"]; ?></td>
<td width="162" align="center" bgcolor="#469BFF">
<?php
if($rowapp["statusdesc"]=="Submited")
{
echo "<a href='appform.php?userid=0&appid=".$rowapp["appid"]."&action=4&viewuser=".$rowapp["userid"]."'>View</a> / <a href='appadmin.php?userid=".$rowapp["userid"]."&appid=".$rowapp["appid"]."&action=3' onclick= 'delconfirm()'>Delete</a>";
}
else
{
/*Action 1.New 2.Edit 3.Delete 4.View*/
echo "<a href='appform.php?userid=".$rowapp["userid"]."&appid=".$rowapp["appid"]."&action=2'>Edit</a> /
<a href='applist.php?userid=".$rowapp["userid"]."&appid=".$rowapp["appid"]."&action=3' onclick= 'return confirm('Are You Sure To Delete This Application?');'>Delete</a>";
}
?>
</td>
</tr>
<?php
}
}
else
{
?>
<tr>
<td align="center" width="150" height="20" bgcolor="#469BFF"></td>
<td align="center" width="165" height="20" bgcolor="#469BFF"></td>
<td width="121" align="center" height="20" bgcolor="#469BFF"></td>
<td width="162" align="center" height="20" bgcolor="#469BFF"></td>
</tr>
<?php
}
}
else
{
}
?>
<tr>
<td colspan="4" align="center">
<input type="button" value="Sign out" name="logout" id="logout" onclick="logout()">
</td>
</tr>
</table>
<script type="text/javascript" language="javascript">
function NewApp()
{
//alert("Haha");
var userid=document.getElementById("txtuser").value;
location.href="appform.php?userid="+userid+"&appid=&action=1";
}
function logout()
{
location.href="onlinevisa.php";
}
</script>
</div>
</div>
<div class="servicesphotowrapper">
<div class="servicesphotocontainer">
<? include("right.php");?>
</div>
</div>
</div>
</div>
<? include('footer.php') ?>
</div>
</body>
</html>