Changeset 778caf0


Ignore:
Timestamp:
Oct 12, 2025, 10:40:11 PM (8 weeks ago)
Author:
rgigli <roberto.gigli@…>
Branches:
main
Children:
0d5f1b3
Parents:
7c0bab9
Message:

corretto il login, la gestione degli orari di rilevazione e una query

Location:
admin
Files:
5 edited

Legend:

Unmodified
Added
Removed
  • admin/includes/query.php

    r7c0bab9 r778caf0  
    3232global $dbi,$prefix,$id_cons_gen;
    3333        if(!$id) $id=$id_cons_gen;
    34         $sql="SELECT * FROM ".$prefix."_ele_consultazione where id_cons_gen=$id";
     34        $sql="SELECT * FROM ".$prefix."_ele_consultazione where id_cons_gen='$id'";
    3535        $sth = $dbi->prepare("$sql");
    3636        $sth->execute();       
     
    5555{
    5656        global $id_cons_gen,$id_comune,$prefix,$dbi;
    57         $sql="select id_cons_gen from ".$prefix."_ele_cons_comune where id_comune=$id_comune order by preferita desc limit 0,1";
     57        $sql="select id_cons_gen from ".$prefix."_ele_cons_comune where id_comune='$id_comune' order by preferita desc limit 0,1";
    5858        $sth = $dbi->prepare("$sql");
    59         $sth->execute();
     59        $sth->execute(); 
    6060        list($row) = $sth->fetch(PDO::FETCH_NUM);
    6161        return($row);   
  • admin/login.php

    r7c0bab9 r778caf0  
    6969        $mpwd=md5($pwd);
    7070        if (isset($_POST['id_comune']) and intval($_POST['id_comune'])>0) $id_comune=intval($_POST['id_comune']); else $id_comune=$row['siteistat'];
    71                 $sth = $dbi->prepare("select pwd,adminop,adminsuper,counter,admlanguage from ".$prefix."_authors where binary aid='$aid' and (id_comune='$id_comune' or adminsuper='1')");
     71                $sth = $dbi->prepare("select pwd,adminop,adminsuper,counter,admlanguage from ".$prefix."_authors where binary aid='$aid' and pwd='$mpwd' and (id_comune='$id_comune' or adminsuper='1')");
    7272                $sth->execute();       
    7373                $esiste=$sth->rowCount();
  • admin/modules/gestione_affluenza.php

    r7c0bab9 r778caf0  
    11<?php
    22require_once '../includes/check_access.php';
    3 global $id_cons_gen;
    4 $row=dati_consultazione($id_cons_gen);
     3$id_cons_gen=$_SESSION['id_cons_gen'];
     4$row=dati_consultazione(0);
    55$dataInizio=$row[0]['data_inizio'];
    66$dataFine=$row[0]['data_fine'];
  • admin/modules/salva_orario_affluenza.php

    r7c0bab9 r778caf0  
    2323        $orario="$ora:00";
    2424global $prefix,$fileout,$aid,$id_cons_gen;
    25        
     25$id_cons=$_SESSION['id_cons'];
    2626$salvato=1;
    2727if($op=='cancella'){
     
    5555        if($salvato){
    5656                $datal=date('Y-m-d');
     57#               $datal=date('d-m-Y');
    5758                $orariol=date(' H:i:s');
    5859                $riga=addslashes($sql);
    59                 $sqlog="insert into ".$prefix."_ele_log values('','','$aid','$datal','$orariol','','$riga','".$prefix."_ele_rilaff - nuovo affluenza: $id_cons_gen - $data - $orario ')";
     60                $sqlog="insert into ".$prefix."_ele_log values('$id_cons','0','$aid','$datal','$orariol','','$riga','".$prefix."_ele_rilaff')";
    6061                $res = $dbi->prepare("$sqlog");
    6162                $res->execute();
  • admin/principale.php

    r7c0bab9 r778caf0  
    109109$id_comune=$_SESSION['id_comune'];
    110110$perms=0;
    111 $sql="select adminsuper, admincomune, adminop  from ".$prefix."_authors where aid='$aid' and pwd='$pwd' and (id_comune='$id_comune' or id_comune=0)";
     111$sql="select adminsuper, admincomune, adminop  from ".$prefix."_authors where aid='$aid' and pwd='$pwd' and (id_comune='$id_comune' or id_comune='0')";
    112112$sth = $dbi->prepare("$sql");
    113113$sth->execute();       
     
    121121        $admincomune=0;
    122122        $oper=1;
    123 }       
     123}
    124124        if ($adminsuper==1)
    125125                return 256;
     
    136136                $sql="select permessi from ".$prefix."_ele_operatori where id_cons='$id_cons' and aid='$aid'";
    137137                $sth = $dbi->prepare("$sql");
    138                 $sth->execute();               
     138                $sth->execute();
    139139                list($perms) = $sth->fetch(PDO::FETCH_NUM);
    140140                return $perms;
Note: See TracChangeset for help on using the changeset viewer.