$queryid = isset($_REQUEST['queryid']) ? $_REQUEST['queryid'] + 0 : 0; $sortby = isset($_REQUEST['sortby']) ? $_REQUEST['sortby'] : false; $sortorder = isset($_REQUEST['sortorder']) ? $_REQUEST['sortorder'] : false; $creationdate = isset($_REQUEST['creationdate']) ? $_REQUEST['creationdate'] : false; $queryname = isset($_REQUEST['queryname']) ? $_REQUEST['queryname'] : ''; $submit = isset($_REQUEST['submit']) ? $_REQUEST['submit'] == '1' : false; savequery($queryid, $queryname, false, $submit, 0, $sortby, $sortorder, $creationdate); } elseif ($action == 'saveas') { $queryid = isset($_REQUEST['queryid']) ? $_REQUEST['queryid'] + 0 : 0; $sortby = isset($_REQUEST['sortby']) ? $_REQUEST['sortby'] : false; $sortorder = isset($_REQUEST['sortorder']) ? $_REQUEST['sortorder'] : false; $creationdate = isset($_REQUEST['creationdate']) ? $_REQUEST['creationdate'] : false; $queryname = isset($_REQUEST['queryname']) ? $_REQUEST['queryname'] : ''; $submit = isset($_REQUEST['submit']) ? $_REQUEST['submit'] == '1' : false; $oldqueryid = isset($_REQUEST['oldqueryid']) ? $_REQUEST['oldqueryid'] + 0 : 0; savequery($queryid, $queryname, true, $submit, $oldqueryid, $sortby, $sortorder, $creationdate); } elseif ($action == 'delete') { $queryid = isset($_REQUEST['queryid']) ? $_REQUEST['queryid'] + 0 : 0; deletequery($queryid); } else { // default: view viewqueries(); } function deletequery($queryid) { global $tpl, $login; sql("DELETE FROM `queries` WHERE `id`='&1' AND `user_id`='&2' LIMIT 1", $queryid, $login->userid); $tpl->redirect('query.php?action=view'); } function viewqueries() {
$target = urlencode(tpl_get_current_page()); tpl_redirect('login.php?target=' . $target); die; } if ($action == 'save') { $queryid = isset($_REQUEST['queryid']) ? $_REQUEST['queryid'] : 0; $queryname = isset($_REQUEST['queryname']) ? $_REQUEST['queryname'] : ''; $submit = isset($_REQUEST['submit']) ? $_REQUEST['submit'] == '1' : false; savequery($queryid, $queryname, false, $submit, 0); } else { if ($action == 'saveas') { $queryid = isset($_REQUEST['queryid']) ? $_REQUEST['queryid'] : 0; $queryname = isset($_REQUEST['queryname']) ? $_REQUEST['queryname'] : ''; $submit = isset($_REQUEST['submit']) ? $_REQUEST['submit'] == '1' : false; $oldqueryid = isset($_REQUEST['oldqueryid']) ? $_REQUEST['oldqueryid'] : 0; savequery($queryid, $queryname, true, $submit, $oldqueryid); } else { if ($action == 'delete') { $queryid = isset($_REQUEST['queryid']) ? $_REQUEST['queryid'] : 0; deletequery($queryid); } else { // default: view viewqueries(); } } } } function deletequery($queryid) { global $tplname, $usr; $dbc = new dataBase();