Exemple #1
0
'><?php 
        echo $chars[$i]['name'];
        ?>
</a></div>
								<a class="userbox-link" href="character?c=Darksoke">VIEW CHARACTER EQUIPMENT</a>
							</div>
							<?php 
        $i++;
    }
    ?>
					</div>
					<div id="gm-tools-list" style="display: none;">
						<div class='lastnews-head-text-nobg' style="text-align:center;margin-bottom:15px;font-size:18px;margin-top:-10px;">Check active tickets</div>
						<?php 
    if ($user_account->gmlevel > 5) {
        $active_tickets = list_tickets();
        if (!empty($active_tickets)) {
            $i = 1;
            foreach ($active_tickets as $ticket) {
                ?>
							<div class="ticket-line">
								<div class="ticket-message">
									<?php 
                echo $active_tickets[$i]['message'];
                ?>
								</div>
								<div class="ticket-info">
									<div class="ticket-list-title">By: <label class="ticket-list-item"><?php 
                echo $active_tickets[$i]['name'];
                ?>
</label></div>
    /* update ticket */
    if ($id == '' or $id <= 0 or !check_for_rows("SELECT * FROM {$GLOBALS['mysql_prefix']}ticket WHERE id='{$id}' LIMIT 1")) {
        print "<FONT CLASS=\"warn\">Invalid Ticket ID: '{$id}'</FONT>";
    } else {
        edit_ticket($id);
        // post updated data
    }
} else {
    if (isset($_GET['delete'])) {
        //delete ticket
        if ($_POST['frm_confirm']) {
            /* remove ticket and ticket actions */
            $result = mysql_query("DELETE FROM `{$GLOBALS['mysql_prefix']}ticket` WHERE ID='{$id}'") or do_error('edit.php::remove_ticket(ticket)', 'mysql_query() failed', mysql_error(), __FILE__, __LINE__);
            $result = mysql_query("DELETE FROM `{$GLOBALS['mysql_prefix']}action` WHERE ticket_id='{$id}'") or do_error('edit.php::remove_ticket(action)', 'mysql_query() failed', mysql_error(), __FILE__, __LINE__);
            print "<FONT CLASS=\"header\">Ticket '{$id}' has been removed.</FONT><BR /><BR />";
            list_tickets();
        } else {
            //confirm deletion
            print "<FONT CLASS='header'>Confirm ticket deletion</FONT><BR /><BR /><FORM METHOD='post' NAME = 'del_form' ACTION='" . basename(__FILE__) . "?id={$id}&delete=1&go=1'><INPUT TYPE='checkbox' NAME='frm_confirm' VALUE='1'>Delete ticket #{$id} &nbsp;<INPUT TYPE='Submit' VALUE='Confirm'></FORM>";
        }
    } else {
        // not ($_GET['delete'])
        if ($id == '' or $id <= 0 or !check_for_rows("SELECT * FROM `{$GLOBALS['mysql_prefix']}ticket` WHERE id='{$id}'")) {
            /* sanity check */
            print "<FONT CLASS=\"warn\">Invalid Ticket ID: '{$id}'</FONT><BR />";
        } else {
            // OK, do form - 7/7/09, 4/1/11
            $query = "SELECT *,UNIX_TIMESTAMP(problemstart) AS problemstart,\n \t\t\t\tUNIX_TIMESTAMP(problemend) AS problemend, \n \t\t\t\tUNIX_TIMESTAMP(booked_date) AS booked_date, \n \t\t\t\tUNIX_TIMESTAMP(date) AS date,\n \t\t\t\tUNIX_TIMESTAMP(updated) AS updated, \n \t\t\t\t`t`.`description` AS `tick_descr`,\n \t\t\t\t`u`.`user` AS `tick_user`\n \t\t\t\tFROM `{$GLOBALS['mysql_prefix']}ticket` `t`\n \t\t\t\tLEFT JOIN `{$GLOBALS['mysql_prefix']}in_types` `ty` ON (`t`.`in_types_id` = `ty`.`id`)\n \t\t\t\tLEFT JOIN `{$GLOBALS['mysql_prefix']}user` `u` ON (`t`.`_by` = `u`.`id`)\n \t\t\t\tWHERE `t`.`id`='{$id}' LIMIT 1";
            // 			snap(__LINE__, $query);
            $result = mysql_query($query) or do_error($query, 'mysql query failed', mysql_error(), basename(__FILE__), __LINE__);
            $row = stripslashes_deep(mysql_fetch_array($result));