} elseif ($act == "add") { $id = isset($_REQUEST["id"]) ? intval($_REQUEST["id"]) : 0; if ($id) { $row = $db->get_row("select * from data where id = " . $id, ARRAY_A); $row["content"] = html_entity_decode($row["content"]); } else { $row = array("id" => 0, "name" => "", "sort" => 0, "dataclass_id" => 0, "content" => "", "type" => intval($_REQUEST['type'])); } $smarty->assign('row', $row); $smarty->display('admin/admin_data_add.html'); } elseif ($act == "addsubmit") { $list = array("name" => str_filter($_REQUEST["name"]), "content" => str_filter($_REQUEST["content"]), "sort" => intval($_REQUEST["sort"]), "dataclass_id" => intval($_REQUEST["dataclass_id"]), "type" => intval($_REQUEST["type"])); $id = isset($_REQUEST["id"]) ? intval($_REQUEST["id"]) : 0; if ($id) { $sql = SqlText::update("data", $list, "id=" . $id); $db->query($sql); output_json(0, "更新成功"); } else { $list["add_time"] = time(); $list["hits"] = 0; $sql = SqlText::insert("data", $list); $db->query($sql); output_json(0, "添加成功"); } } elseif ($act == "del") { $sql = "delete from data where id = " . intval($_REQUEST["id"]); $db->query($sql); output_json(0, "删除成功"); } else { exit("错误请求"); }
} $smarty->assign('data', $data); $smarty->display('admin/admin_admin_list.html'); } elseif ($act == "add") { $smarty->display('admin/admin_admin_add.html'); } elseif ($act == "addsubmit") { $name = str_filter($_REQUEST["name"]); $pwd = str_filter($_REQUEST["pwd"]); $pwd2 = str_filter($_REQUEST["pwd2"]); if ($pwd == $pwd2) { $result = $db->get_var("select count(id) from user where name='" . $name . "'"); if ($result) { output_json(1, "此用户已存在"); } $list = array("name" => $name, "pwd" => $pwd, "add_time" => time()); $sql = SqlText::insert("user", $list); $db->query($sql); output_json(0, "添加成功!"); } else { output_json(1, "第二次输入密码不正确"); } } elseif ($act == "del") { $id = intval($_REQUEST["id"]); if ($id == $_SESSION["curr_user"]["id"]) { output_json(1, "不能删除自己"); } else { $where = "id=" . $_REQUEST["id"]; $sql = SqlText::delete("user", $where); $db->query($sql); output_json(0, "删除成功"); }
if ($id) { $sql = "select * from dataclass where id = " . $id; $row = $db->get_row($sql, ARRAY_A); } else { $row = array("id" => 0, "name" => "", "type" => $type, "parent_id" => 0, "sort" => 0); } $smarty->assign("row", $row); $smarty->display('admin/admin_dataclass_add.html'); } elseif ($act == "addsubmit") { $list = array("name" => str_filter($_REQUEST["name"]), "sort" => intval($_REQUEST["sort"]), "parent_id" => intval($_REQUEST["parent_id"]), "type" => intval($_REQUEST['type'])); $id = isset($_REQUEST["id"]) ? intval($_REQUEST["id"]) : 0; if ($id) { $sql = SqlText::update("dataclass", $list, "id = " . $id); $db->query($sql); output_json(0, "更新成功"); } else { $sql = SqlText::insert("dataclass", $list); $db->query($sql); output_json(0, "添加成功"); } } elseif ($act == "get_tree_selector") { //获取 $type = isset($_REQUEST["type"]) ? intval($_REQUEST["type"]) : 0; $data = get_tree_selector($type); output_json(0, "请求成功", $data); } elseif ($act == "del") { do_del(intval($_REQUEST['id'])); output_json(0, "删除成功"); } else { exit("错误请求"); }