function cek_hak_akses($id_menu, $id_menu_tree, $sesi) { $qck = "select id_menu, id_menu_tree from account_menu where username='******' and id_menu='{$id_menu}' and id_menu_tree='{$id_menu_tree}'"; $rck = mysql_query($qck); $rck = mysql_num_rows($rck); if ($rck == "" || $rck < 1) { echo '<script type="text/javascript">alert("Anda tidak diizinkan mengakses halaman ini.");</script>'; lompat_ke("index.php"); } }
/** * @author Agus Setiawan * @copyright 2014 */ require_once "library/koneksi.php"; require_once "library/fungsi_standar.php"; $id_menu = $_REQUEST['id_menu']; $uid = $_REQUEST['uid']; $act = $_REQUEST['act']; if ($act == "add") { $pecah = explode("-", $id_menu); $qry = "select * from account_menu where username='******'uid'] . "' and \n id_menu='" . $pecah[0] . "' and id_menu_tree='" . $pecah[1] . "'"; $ckmn = mysql_query($qry); $dtmn = mysql_num_rows($ckmn); if ($dtmn >= 1) { echo "Sudah ada data yang sama"; //lompat_ke("index.php?halaman=hak_akses&id='$uid'"); } else { $sql = "insert into account_menu (id_menu, id_menu_tree, username) values ('{$pecah['0']}', '{$pecah['1']}', '{$uid}')"; $rs = mysql_query($sql); echo "Menu ditambahkan"; //lompat_ke("index.php?halaman=hak_akses&id='$uid'"); } } else { if ($act == "del") { $pecah = explode("-", $id_menu); $sql = "delete from account_menu where username='******' and id_menu='{$pecah['0']}' and id_menu_tree='{$pecah['1']}'"; $rs = mysql_query($sql); lompat_ke("index.php?halaman=hak_akses&id={$uid}"); } }
<?php //Kalo yang ini untuk menampilkan gambar// if ($_GET['menu'] == '1') { echo "<center><img src='1.gif'></center>"; echo "<Center><H5>SELAMAT DATANG</h5></center>"; } if ($_GET['menu'] == '2') { echo "<center><h1>About Programmer</h1></center>"; echo "\n\t<div id='about_photos'>\n\t<img src='2.jpg'><br><br>"; echo '</div>'; echo "\n\t<center>\n\t<table>\n\t\t\t\t\t\t<tr>\n\t\t\t\t\t\t\t<td>Nama</td>\n\t\t\t\t\t\t\t<td><input type='text' value='Sigit Dwi Prasetyo' disabled='disabled'></td>\n\t\t\t\t\t\t</tr>\n\t\t\t\t\t\t<tr>\n\t\t\t\t\t\t\t<td>Tempat/ tgl Lahir</td>\n\t\t\t\t\t\t\t<td><input type='text' value='Yogyakarta, 06 Des' disabled='disabled'></td>\n\t\t\t\t\t\t</tr>\n\t\t\t\t\t\t<tr>\n\t\t\t\t\t\t\t<td>Kewarganegaraan</td>\n\t\t\t\t\t\t\t<td><input type='text' value='Indonesia' disabled='disabled'></td>\n\t\t\t\t\t\t</tr>\n <tr>\n\t\t\t\t\t\t\t<td>Etnis</td>\n\t\t\t\t\t\t\t<td><input type='text' value='Javanesse' disabled='disabled'></td>\n\t\t\t\t\t\t</tr>\n <tr>\n\t\t\t\t\t\t\t<td>Kegemaran</td>\n\t\t\t\t\t\t\t<td><input type='text' value='Media Social Society' disabled='disabled'></td>\n\t\t\t\t\t\t</tr>\n <tr>\n\t\t\t\t\t\t\t<td>Status</td>\n\t\t\t\t\t\t\t<td><input type='text' value='Single' disabled='disabled'></td>\n\t\t\t\t\t\t</tr>\n\t\t\t\t\t\t\n\t\t\t\t\t</table></center><br>\n\t"; } ?> <?php require_once $hal . ".php"; } else { lompat_ke("form_login.php"); } ?> <?php include "kaki.php"; ?> </div> </body> </html>
$qty = $dstok['qty'] + $djual['qty']; //update stok $upstok = "UPDATE stok SET qty='{$qty}' WHERE barang_id='{$_GET['id']}'"; mysql_query($upstok); //hapus barang dari temp_jual_detail $hapus = "DELETE FROM temp_jual_detail WHERE barang_id='{$_GET['id']}'"; mysql_query($hapus); $url = "transaksi"; $hal = "form_jual"; break; case "hapus_stok": $sql = "DELETE FROM stok WHERE barang_id='{$_GET['id']}'"; mysql_query($sql); $hal = "stok"; break; case "hapus_akun": $sql = "DELETE FROM account WHERE username='******'id']}'"; mysql_query($sql); $hal = "data_akun"; break; case "hapus_menu": $sql = "DELETE FROM menus WHERE id='{$_GET['id']}'"; mysql_query($sql); $hal = "data_menu"; break; } if ($url == "transaksi") { lompat_ke("index.php?halaman=" . $hal); } else { lompat_ke("index.php?halaman=" . $hal); }
<a href="<?php echo "proses.php?proses=hapus_akun&id={$dakun['username']}"; ?> " onclick="return confirm('Apakah Anda akan menghapus data akun ini ?')">hapus</a> <?php echo "\n </td>\n <td><a href='?halaman=hak_akses&id={$dakun['username']}'>Pengaturan akses</a> </td>\n </tr>"; } ?> <tr> <td colspan="5" align="center"><?php _navpage($koneksi, $sqlnav, $maxrow, $page, "?halaman=data_akun&maxrow={$maxrow}&status_absen={$status_absen}&{$start}={$start}&end={$end}&show=data_akun.php"); ?> </td> </tr> </tbody> </table> </div> </div> <!-- /BOX --> </div> </div> </body> </html> <?php } else { echo '<script type="text/javascript">alert("Anda tidak diizinkan mengakses halaman ini.");</script>'; lompat_ke("index.php"); }