!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/mis/eassess_OLD/admin/   drwxr-xr-x
Free 51 GB of 127.8 GB (39.9%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     addDefineSomeCourse.php (37.5 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
include_once "template.php";
showHeader();

include_once 
"../class/clsAssessForm.php";
include_once 
"../class/clsDefineAssessment.php";
include_once 
"../class/clsDoAssessment.php";
include_once 
"../class/clsHoldCourse.php";
include_once 
"../class/clsHoldCourseTmp.php";
include_once 
"../class/clsClassAssess.php";
include_once 
"../class/clsClassOpenForAssess.php";
include_once 
"../class/clsCourseAssess.php";
include_once 
"../link/function.php";
include_once 
"../class/clsReg_Program.php";
include_once 
"../class/clsReg_SysSemesterDes.php";
include_once 
"../class/clsTimeTableAssess.php";
include_once 
"../class/clsReg_AcadYearConfig";

confirmSubmit();
checkFormat();
openWindow1();

$oCR = new clsConnection($GLOBALS['HOST'], $GLOBALS['DB_REG'], $GLOBALS['USER_REG'], $GLOBALS['PASSWORD_REG']);

$oCA = new clsConnection($GLOBALS['HOST'], $GLOBALS['DB_EASS'], $GLOBALS['USER_EASS'], $GLOBALS['PASSWORD_EASS']);

$oProg = new Program($oCR);
$oAF = new AssessForm($oCA);
$oDA = new DefineAssessment($oCA);
$oDo = new DoAssessment($oCA);
$oSse = new SysSemesterDes($oCR);
$oHC = new HoldCourse($oCA);
$oHCT = new HoldCourseTmp($oCA);
$oHCT2= new HoldCourseTmp($oCA);
$oClassA = new ClassAssess($oCA);
$oClsOpen = new ClassOpenForAssess($oCA);
$oCourse = new CourseAssess($oCA);
$oTTA=new TimeTableAssess($oCA);
$oAYC = new AcadYearConfig($oCR);

if(!
$acadYear)
    
$acadYear $GLOBALS["ACADYEAR"];
if(!
$semester)
    
$semester $GLOBALS["SEMESTER"];

if(
$acadYearList == "")
    
$acadYearList $GLOBALS["ACADYEAR"];
if(!
$semesterList)
    
$semesterList $GLOBALS["SEMESTER"];
    
$oAYC->SearchByKey($acadYear,$semester);
$oAYC->GetRecord();
?>
<meta http-equiv="Content-Type" content="text/html; charset=TIS-620">
<body>
<table width="740" border="0" align="center" cellpadding="0" cellspacing="0">
<tr>
    <td><br><fieldset>
      <legend><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"]; ?>"><a href="processDefineSomeCourse.php?link=main&menu=linkBackMenu">กำหนดช่วงเวลาประเมิน</a> 
      <img src="../picture/ico3.gif" align="absmiddle" border="0"> กำหนดช่วงเวลานักศึกษาประเมินโดยขึ้นกับบางรายวิชา</font></legend>
        <div align="center"><br>
          <table width="646" align="center" border="0" cellpadding="0" cellspacing="1">
            <tr> 
              <td colspan="2" align="center"><font size="3" color="<?php echo $GLOBALS['COLOR_FONT_3'];?>"><strong>กำหนดแบบประเมินและช่วงเวลาประเมินโดยขึ้นกับบางรายวิชา</strong></font></td>
            </tr>
            <tr> 
              <td width="553">&nbsp;</td>
            </tr>
            <tr> 
              <td colspan="2"><table width="674" border="1" align="center" cellpadding="0" cellspacing="0" bordercolor="<?php echo $GLOBALS["COLOR_BORDER_TABLE_1"];?>">
                  <tr> 
                    <td colspan="7" align="center">
                        <form name="FormDefine" method="post" action="processDefineSomeCourse.php" >
                        <input type="hidden" name="firstDateTm" value="<?=$oAYC->firstDate?>">
                        <input type="hidden" name="lastDateTm" value="<?=$oAYC->lastDate?>">
                    <table width="654" align="center" border="0">
                        <tr bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_7"];?>"> 
                          <td width="170"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>">&nbsp;<b>แบบประเมินที่สร้าง</b></font></td>
                          <td colspan="3"> 
                            <?     if(!isset($assid)){ ?>
                            <select name="assid" onChange="selectDefineAss()">
                              <option value="" selected >---เลือกแบบประเมิน---</option>
                              <?php //$oAF->SearchByConfirmUse('1');
                                
$oAF->RSUseDefine();
                                while(
$oAF->GetRecord()) {
                                
//หาความยาวของชื่อแบบประเมิน
                                    
if($oAF->maintopic == ""){
                                        
$strNameAss strlen($oAF->nameAss); ?>
                              <option value="<?php echo $oAF->assid;?>" title="<?php echo $oAF->nameAss?>"><?php echo "** ".substr($oAF->nameAss,0,80); if($strNameAss >= 80) echo "..."?></option>
                              <?    }else{ 
                                        
$strNameAss strlen($oAF->maintopic); ?>
                              <option value="<?php echo $oAF->assid;?>" title="<?php echo $oAF->maintopic?>" ><?php echo substr($oAF->maintopic,0,80); if($strNameAss >= 80) echo "..."?></option>
                              <?php
                                  
}
                            }    
//close while?>
                            </select> 
                            <? } else { //echo "assid = ".$assid; ?>
                            <select name="assid" onChange="selectDefineAss()">
                              <? 
                                $oAF
->RSUseDefine();
                                while(
$oAF->GetRecord()) { 
                                
//หาความยาวของชื่อแบบประเมิน
                                    
if($oAF->maintopic == ""){
                                        
$strNameAss strlen($oAF->nameAss); ?>
                              <option value="<?php echo $oAF->assid;?><? if($oAF->assid == $assid) echo "selected"?> title="<?php echo " ".$oAF->nameAss?>"><?php echo "** ".substr($oAF->nameAss,0,80); if($strNameAss >= 80) echo "..."?></option>
                              <?    }else{ 
                                        
$strNameAss strlen($oAF->maintopic); ?>
                              <option value="<?php echo $oAF->assid;?><? if($oAF->assid == $assid) echo "selected"?> title="<?php echo " ".$oAF->nameAss?>"><?php echo substr($oAF->maintopic,0,80); if($strNameAss >= 80) echo "..."?></option>
                              <?php
                                  
}
                            }
//close while?>
                            </select> 
                            <? //end else?>
                            <font size="2" color="<?php echo $GLOBALS['COLOR_FONT_3'];?>">*</font></td>
                        </tr>
                        <tr> 
                          <td valign="top"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>">&nbsp;<b>ลักษณะการประเมิน</b></font></td>
                          <td colspan="3"> 

                        <? 
                            $oHCT
->RSHoldCourseTmp();
                            if(!
$oHCT->GetRecord()){ $selectFlag 8;
                         
?>
                            <font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>"> 
                            <input type="radio" name="selectFlag" value="8"  onclick="enableIsPreAssess(8)" <? if($selectFlag == 8) echo "checked "?>>
                            <img src="../picture/icoa15.jpg"  border="0">&nbsp;รายอาจารย์ผู้สอน <br>
                            <input type="radio" name="selectFlag" value="7"  onclick="enableIsPreAssess(7)" <? if($selectFlag == 7) echo "checked "?>>
                            <img src="../picture/icoa18.jpg"  border="0">&nbsp;&nbsp;&nbsp;รายสัปดาห์  <br>
                            <input type="radio" name="selectFlag" value="6"  onclick="enableIsPreAssess(6)" <? if($selectFlag == 6) echo "checked "?>>
                            <img src="../picture/icoa14.jpg"  border="0">&nbsp;ภาพรวมรายวิชา,ศักยภาพ,สมรรถภาพผู้เรียน ฯลฯ <br>
                            <input type="radio" name="selectFlag" value="9"  onclick="enableIsPreAssess(9)" <? if($selectFlag == 9) echo "checked "?>>
                            <img src="../picture/assEp.jpg"  border="0" height="18" width="22">&nbsp;แหล่งฝึก
                             </font> 
                        <? 
                            
}else{
                                if(
$selectFlag==8){ //$selectFlag=8; 
                                    
echo "<input type=\"radio\" name=\"selectFlag\" value=\"8\"  checked >";
                                    echo 
"<img src=\"../picture/icoa15.jpg\"  border=\"0\">&nbsp;รายอาจารย์ผู้สอน";
                                }elseif(
$selectFlag==7){ //$selectFlag=7; 
                                    
echo "<input type=\"radio\" name=\"selectFlag\" value=\"7\"  checked >";
                                    echo 
"<img src=\"../picture/icoa18.jpg\"  border=\"0\">&nbsp;&nbsp;รายสัปดาห์";
                                }elseif(
$selectFlag==6){ //$selectFlag=6; 
                                    
echo "<input type=\"radio\" name=\"selectFlag\" value=\"6\"  checked >";
                                    echo 
"<img src=\"../picture/icoa14.jpg\"  border=\"0\">&nbsp;ภาพรวมรายวิชา,ศักยภาพ,สมรรถภาพผู้เรียน ฯลฯ";
                                }else{ 
//$selectFlag=9; 
                                    
echo "<input type=\"radio\" name=\"selectFlag\" value=\"9\"  checked >";
                                    echo 
"<img src=\"../picture/assEp.jpg\"  border=\"0\"height=\"18\" width=\"22\" >&nbsp;แหล่งฝึก";
                                }
                        }
?>
                        </td></tr>
                        <tr bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_7"];?>">
                          <td height="26"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>"><b>รูปแบบการประเมิน</b></font></td>
                          <td colspan="3">
                                  <? if(!isset($isPreAssess)){ $isPreAssess 0?>
                            <font  size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>"> 
                            <input type="radio"  id="p0" name="isPreAssess" value="0"  <? if(isPreAssess == 0) echo "checked "?>>
                            <img src="../picture/open_book1.jpg" width="22" height="18" border="0">&nbsp;ประเมินหลังเรียน  &nbsp;&nbsp;
                            <input type="radio" id="p1" name="isPreAssess" value="1"  <? if(isPreAssess == 1) echo "checked "?>>
                            <img src="../picture/book1.gif" width="22" height="18" border="0">&nbsp;&nbsp;&nbsp;ประเมินตามช่วงเวลาที่กำหนด
                            </font>
                            <? }else{
                                    if(
$isPreAssess==0){
                                        echo 
"<input type=\"radio\" name=\"isPreAssess\" value=\"0\"  checked >";
                                        echo 
"<img src=\"../picture/open_book1.jpg\"  width=\"18\" height=\"22\" border=\"0\">&nbsp;ประเมินหลังเรียน";
                                    }else{
                                        echo 
"<input type=\"radio\" name=\"isPreAssess\" value=\"1\"  checked >";
                                        echo 
"<img src=\"../picture/book1.gif\"  width=\"18\" height=\"22\" border=\"0\">&nbsp;ประเมินตามช่วงเวลาที่กำหนด";
                                    }
                                }
                            
?>
                          </td>
                        </tr>
                        <tr> 
                          <td height="26"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>">&nbsp;<b>ปีการศึกษา</b></font></td>
                          <td colspan="3"> <input name="text"  type="text" value="<? echo $acadYear." / "?><? $oSse->SearchByKey($semester); $oSse->GetRecord(); echo $oSse->semesterName?>" readonly> 
                            <font color="<?php echo $GLOBALS['COLOR_FONT_3'];?>"> 
                            **</font></td>
                        </tr>
                        <tr  bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_7"];?>"> 
                          <td height="22">&nbsp;<font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>"><b>ช่วงเวลาประเมิน</b></font></td>
                          <td width="118" > 
                            <? if(!isset($startDate)){ ?>
                            <script>DateInput('startDate', true, 'DD/MM/YYYY','<?php echo getNowDateFw2();?>');</script> 
                            <? }else{  ?>
                            <script>DateInput('startDate', true, 'DD/MM/YYYY','<?php echo $startDate;?>');</script> 
                            <? ?>        </td>
                          <td width="24"><div align="center"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>"><b>ถึง</b></font></div></td>
                          <td width="357"> 
                            <? if(!isset($endDate)){ ?>
                            <script>DateInput('endDate', true, 'DD/MM/YYYY','<?php echo getNowDateFw2();?>');</script> 
                            <? }else{ ?>
                            <script>DateInput('endDate', true, 'DD/MM/YYYY','<?php echo $endDate;?>');</script> 
                            <? ?></td>
                        </tr>
                        <tr> 
                          <td height="22" colspan="3">&nbsp;<font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>"><b>วันที่ยกเลิกการเลือกเมนูผู้ที่ไม่เข้าประเมิน</b></font></td>
                          <td >
<?php
                            
if(!isset($closeDate)) {
?>
                          <script>DateInput('closeDate', true, 'DD/MM/YYYY','<?php echo getNowDateFw2();?>');</script>
<?php
                            
}
                            else {
?>
                          <script>DateInput('closeDate', true, 'DD/MM/YYYY','<?php echo $closeDate;?>');</script>
<?php
                            
}
?>                          </td>
                        </tr>
                        <tr  bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_7"];?>"> 
                          <td height="26" colspan="4"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>">&nbsp;<b>เพิ่มรายวิชาที่ผูกกับแบบประเมิน 
                            </b> 
                            <!--span style="cursor:pointer" onMouseOver="checkInput();" > -->
                          </font><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>">
                          <input type="button" name="addOrder" value=" + " onClick="sendValue(document.forms['FormDefine'].elements['selectFlag'],document.forms['FormDefine'].elements['isPreAssess'])" <? if($assid == "") echo "disabled"?> />
                          </font><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>">
                          <!--</span>-->
                            </font></td>
                        </tr>
                        <tr> 
                          <td height="99" colspan="4"><div align="center"><br>
                              <table width="627" border="0" cellpadding="1" cellspacing="1" bgcolor="silver">
                                <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TABLE_7'];?>"> 
                                  <td align="center" width="80" height="22"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>ชื่อย่อหลักสูตร</strong></font></td>
                                  <td align="center" width="71"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>รหัสรายวิชา</strong></font></td>
                                  <td align="center" width="230"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>ชื่อรายวิชา</strong></font><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>">&nbsp;</font></td>
                                  <td align="center" width="49"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>&nbsp;</strong></font></td>
                                  <td align="center" width="36"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>ชั้นปี</strong></font></td>
                                  <td align="center"width="70"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>หน่วยกิต</strong></font></td>
                                  <td align="center" width="32"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>กลุ่ม</strong></font></td>
                                  <td align="center" width="34"><font color="<?php echo $GLOBALS["COLOR_FONT_1"];?>" size="2"><strong>ลบ</strong></font></td>
                                </tr>
                                <?php
                                $sumCreditTotal 
0;
                                
$i 0;
                        
        
                                
$oHCT->RSDistinctClassId();
                                while(
$oHCT->GetRecord()) {
                                    
//$oHCT2->RSFlag7And6ByClassId($oHCT->classId);
                                    
$oHCT2->SearchByClassId($oHCT->classId);
                                    
$oHCT2->GetRecord();
                                    
$oClassA->SearchByKey($oHCT->classId);
                                    
$oClassA->GetRecord();
                                    
$oCourse->SearchByKey($oClassA->courseId);
                                    
$oCourse->GetRecord();            
                                    if((
$i%2) == 0)
                                        echo 
"<tr  bgcolor=\"#FFFFFF\">";
                                    else
                                        echo 
"<tr bgcolor=\"".$GLOBALS["COLOR_BG_TD_7"]."\">";
?>
                                <td align="center" ><font size="2"> 
                                  <?  if(($oClassA->programId == 0) || ($oClassA->programId == "")){
                                                
$z 0;
                                                
$oClsOpen->SearchByClassId($oClassA->classId);
                                                while(
$oClsOpen->GetRecord()){
                                                    
$oProg->SearchByKey($oClsOpen->programId);  
                                                    
$oProg->GetRecord();
                                                    if(
$oProg->programAbbr != ""){
                                                        
$arrCls[$z] = $oProg->programAbbr;
                                                    }else{
                                                        
$arrCls[$z] = "<img src = \"../picture/warn.png\" border = \"0\">";
                                                    }
                                                    
//$arrCls[$z] = $oClsOpen->programId;
                                                    
$z++;
                                                } 
// end while oClsOpen
                                                
for($a=0;$a<=$z;$a++){
                                                    echo 
$arrCls[$a];
                                                    if(
$a $z-1) echo ",<br>";
                                                }
                                            }else{
                                                
$oProg->SearchByKey($oClassA->programId);  
                                                if(
$oProg->GetRecord()){
                                                    if(
$oProg->programAbbr != ""){
                                                        echo 
$oProg->programAbbr;
                                                    }else{
                                                        echo 
"<img src = \"../picture/warn.png\" border = \"0\">";
                                                    }
                                                }
                                                
//echo $oClassA->programId;
                                            
}
                                    
?>
                                  </font></td>
                                <td align="center" ><font size="2"><?php echo $oCourse->courseCode;?></font></td>
                                <td><font size=2><?=$oCourse->courseName;?></font> </td>
                                <td>
<?php
                                
if($selectFlag==8){ //$selectFlag=8; 
                                    
echo "<img src=\"../picture/icoa15.jpg\"  border=\"0\">";
                                }elseif(
$selectFlag==7){ //$selectFlag=7; 
                                    
echo "<img src=\"../picture/icoa18.jpg\"  border=\"0\">";
                                }elseif(
$selectFlag==6){ //$selectFlag=6; 
                                    
echo "<img src=\"../picture/icoa14.jpg\"  border=\"0\">";
                                }else{ 
//$selectFlag=9; 
                                    
echo "<img src=\"../picture/assEp.jpg\"  border=\"0\"height=\"18\" width=\"22\" >";
                                }
?>
                                </td>
                                <td align = "center"><?php echo $oClassA->studentYear ?></td>
                                <td align="center"><font size="2" > <?php echo $oCourse->courseUnit;?> 
                                  </font></td>
                                <td align="center"><? echo $oClassA->section ?></td>
                                <td align="center"><a href="processHoldCourseTmp.php?method=delete&classId=<?php echo $oClassA->classId;?>&flag=<?=$oHCT2->ttId;?>&assid=<?php echo $assid;?>&acadYear=<?php echo $acadYear;?>&semester=<?php echo $semester;?>&startDate=<?php echo $startDate;?>&endDate=<?php echo $endDate;?>&selectFlag=<?php echo $selectFlag;?>&isPreAssess=<?php echo $isPreAssess;?> " onClick='return confirmSubmit("คุณต้องการลบข้อมูลแน่นอนใช่หรือไม่")' onMouseOver="window.status=''; return true;"><img src="../picture/deletenew.gif" width="16" height="19" align="absmiddle" border="0"></a></td>
                                </tr>
                                <?php
                            $i
++;        
                        }
//end while HCT
                    
                        
if($i == 0){
?>
                                <tr bgcolor="#FFFFFF"> 
                                  <td colspan="8" align="center"><div align="center"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_3'];?>">** 
                                      ไม่ปรากฏรายการ (กรุณาเพิ่มรายวิชาที่ขึ้นกับแบบประเมิน) 
                                      **</font></div></td>
                                </tr>
                                <?php    
                        
}
                            
?>
                                <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TABLE_7'];?>"> 
                                  <td height="13" colspan="8" align="center" ><div align="left"></div></td>
                                </tr>
                              </table>
                              <br>
                            </div></td>
                        </tr>
                        <? if($i 0) { ?>
                        <tr> 
                          <td height="13" colspan="7" align="center" ><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_3'];?>">** 
                            เมื่อเลือกรายการเรียบร้อยแล้ว กรุณาคลิกปุ่มบันทึกเพื่อยืนยันรายการที่เลือกไว้ 
                            **</font></td>
                        </tr>
                        <tr> 
                          <td height="6" colspan="7" align="center" ></td>
                        </tr>
                        <? ?>
                        <tr> 
                          <td colspan="4" align="center"> <p> 
                             <input type="submit" name="add" value="บันทึก"  onClick="return checkInput(new Array(this.form.endDate.value), new Array(this.form.closeDate.value));" <? if($i == 0) { echo "disabled"; } ?>>
                              <input type="button" name="cancel" value="ยกเลิก" onClick="location.href = 'processDefineSomeCourse.php?link=main'">
                 <?php //     <input type="hidden" name="link" value="check">    ?>
                              <input type="hidden" name="method" value="add">
                              <input type="hidden" name="acadYear" value="<? echo $acadYear ?>">
                              <input type="hidden" name="semester" value="<? echo $semester ?>">
                              <input type="hidden" name="selectFlag" value="<?=$selectFlag?>">
                              <input type="hidden" name="isPreAssess" value="<?=$isPreAssess?>">
                            </p></td>
                        </tr>
                      </table> <br>
                      </form>
                       <table width="343" border="0" align="right">
                        <tr> 
                          <td height="34" align="center" background="../picture/coverBG2.gif"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_1'];?>">&nbsp;</font><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_1'];?>">&nbsp;<b>ปีการศึกษา:</b></font><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>"><b><select name="List1" onChange="location.href = '<?php echo $PHP_SELF;?>?acadYearList='+encodeURI(options[selectedIndex].value)+'&amp;semesterList=<?php echo $semesterList;?>'">
                              <?php
                                $oAy
->RSAcadYearConfigGroupAcY();
                                while(
$oAy->GetRecord()) {
?>
                              <option value="<?php echo $oAy->acadYear;?><? if($acadYearList == $oAy->acadYear) echo "selected"?>><?php echo $oAy->acadYear;?></option>
                              <?php                
                                
}
?>
                            </select>
                            </b></font><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_1'];?>">&nbsp;<b>ภาคการศึกษา:<select name="List2" onChange="location.href ='<?php echo $PHP_SELF;?>?semesterList='+encodeURI(options[selectedIndex].value)+'&amp;acadYearList=<?php echo $acadYearList;?>'">
                              <?php
                                $oSse
->RSSysSemesterDes();
                                while(
$oSse->GetRecord()) {
?>
                              <option value="<?php echo $oSse->semester;?><? if($semesterList == $oSse->semester) echo "selected"?>><?php echo $oSse->semesterName;?></option>
                              <?php
                                        
}
?>
                            </select>
                            </b></font></td>
                        </tr>
                      </table></td>
                  </tr>
                  <tr><td><form name="pc" method="post" action="<?php echo $PHP_SELF;?>">
                  <table border="0">
                  <tr bgcolor="<?php echo $GLOBALS["COLOR_BG_TABLE_2"];?>"> 
                    <td width="86" height="22" align="center"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>ภาคการศึกษาที่</strong></font></td>
                    <td width="31" align="center"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_1"];?>"><strong>ลำดับ</strong></font></td>
                    <td width="258" height="22" align="center"><font color="<?php echo $GLOBALS["COLOR_FONT_1"];?>" size="2"><strong>รายการแบบประเมิน</strong></font></td>
                    <td width="50" align="center"><font color="<?php echo $GLOBALS["COLOR_FONT_1"];?>" size="2"><strong>&nbsp;</strong></font></td>
                    <td width="169" align="center"><font color="<?php echo $GLOBALS["COLOR_FONT_1"];?>" size="2"><strong>ช่วงเวลาในการประเมิน</strong></font></td>
                    <td width="29" align="center"><font color="<?php echo $GLOBALS["COLOR_FONT_1"];?>" size="2"><strong>แก้ไข</strong></font></td>
                    <td width="22" align="center"><font color="<?php echo $GLOBALS["COLOR_FONT_1"];?>" size="2"><strong>ลบ</strong></font></td>
                  </tr>
          <?php
            $numRow 
$oDA->CountDefineidByAcadSem4Flag($acadYearList,$semesterList,'9','6','7','8');
            
$page_size 12;
            
$total_page = (int)($numRow/$page_size);
            if((
$numRow%$page_size) != 0)
                
$total_page++;

            if(isset(
$page_id))
                
$start $page_size*($page_id-1);
            else {
                
$page_id 1;
                
$start 0;
            }
                
$i 0;
    
                
$oDA->RSAssessLimitByAcadSem5Flag($acadYearList,$semesterList,'1','6','7','8','9',$start$page_size);
                while(
$oDA->GetRecord()){
                    
//นับจำนวนการประเมินว่ามีการประเมินหลังจากที่กำหนดแบบประเมินและช่วงเวลาไปแล้วหรือไม่  ถ้ามีจะไม่สามารถลบการกำหนดช่วงเวลาในการประเมินไปแล้วได้
                    
$numDoAss=$oDo->CountDoidByDefineid($oDA->defineid);
                    
$oAF->SearchByKey($oDA->assid);
                    
$oAF->GetRecord();
                    
//หาความยาวของชื่อแบบประเมิน    
                    
$strNameAss strlen($oAF->nameAss);
                        if((
$i%2) == 0)
                            echo 
"<tr>";
                        else
                            echo 
"<tr bgcolor=\"".$GLOBALS["COLOR_BG_TD_4"]."\">";
?>
                  <td align="center"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><?php echo $oDA->semester;?>/<?php echo $oDA->acadYear?></font></td>
                  <td align="center"><?php echo $i+1;?></td>
                  <td><a href="#" class='box'  border="0" align="absmiddle" id=IMG3 style="CURSOR: hand" onClick='OpenWindow1("detailHoldSomeCourse.php?defineid=<?php echo $oDA->defineid;?>&acadYear=<?php echo $oDA->acadYear;?>&semester=<?php echo $oDA->semester;?>&noAss=<?php echo $oDA->noAss;?>",540,520,280,95)' title="<?php if($oDA->isPreAssess) echo "แบบประเมินก่อนเรียนวิชา : "; else echo "แบบประเมินหลังเรียนวิชา : ";?><? getAllCourseCode($oDA->defineid,$oHC,$oClassA,$oCourse);?>วันที่ปิดการประเมิน <?php echo abbreDate2($oDA->closeDate,'/');?> ">
                  <? if($oAF->maintopic == ""){ echo substr($oAF->nameAss,0,49)."<img src = \"../picture/warn.png\" border = \"0\">"$strNameAss strlen($oAF->nameAss);  if($strNameAss >= 49) echo "..."; }else{ echo substr($oAF->maintopic,0,49); $strNameAss strlen($oAF->maintopic);  if($strNameAss >= 49) echo "..."; } ?></a></font></td>
                  <td align="center"> 
                      <? if($oDA->flag == 7){?><img src="../picture/icoa18.jpg" border="0">
                              <?    if($oDA->isPreAssess) { ?><img src="../picture/book1.gif" width="22" height="18" border="0">  
                            <? }else {?><img src="../picture/open_book1.jpg" width="22" height="18" border="0">
                    <? }
                    }elseif(
$oDA->flag == 8){?><img src="../picture/icoa15.jpg" border="0">
                              <?    if($oDA->isPreAssess) { ?><img src="../picture/book1.gif" width="22" height="18" border="0">  
                            <? }else {?><img src="../picture/open_book1.jpg" width="22" height="18" border="0">
                    <? }
                     }elseif(
$oDA->flag == 6){ ?><img src="../picture/icoa14.jpg"  border="0">
                     <? }else{ ?><img src="../picture/assEp.jpg"  border="0" height="18" width="22">
                     <? ?></td>
                  <td align="center"><?php  echo abbreDate2($oDA->startDate,'/');?> (ถึง) <?php  echo abbreDate2($oDA->endDate,'/');?>
                  </td>
                  <? if($oDA->flag == 1){ ?> <td align="center">-</td>
                  <? }else{ ?>
                  <td align="center"><a href="editDefineSomeCourse.php?defineid=<?php echo $oDA->defineid;?>&acadYear=<?php echo $oDA->acadYear;?>&semester=<?php echo $oDA->semester;?>&noAss=<?php echo $oDA->noAss;?>&fe=1&back=0 " onClick="return sendRequest(this);" onMouseOver="window.status=''; return true;"><img src="../picture/editnew.gif" width="20" height="21" align="absmiddle" border="0"></a></td>
                  <? ?>
                  <td align="center"> 
                    <? if($numDoAss == '0') { ?>
                    <a href="processDefineSomeCourse.php?method=delete&defineid=<?php echo $oDA->defineid;?>&acadYear=<?php echo $oDA->acadYear;?>&semester=<?php echo $oDA->semester;?>&noAss=<?php echo $oDA->noAss;?>" onClick='return confirmSubmit("คุณต้องการลบข้อมูลแน่นอนใช่หรือไม่ ?")' onMouseOver="window.status=''; return true;" ><img src="../picture/deletenew.gif" width="16" height="19" align="absmiddle" border="0"></a> 
                    <? } else { ?>
                    <img src="../picture/deleted.gif" width="16" height="19" align="absmiddle" border="0"> 
                    <? ?>
                  </td>
                  </tr>
                  <?php
                        $i
++;
                } 
//end while oDA
                        
                        
if($i == 0){
?>
                  <tr> 
                    <td colspan="6" height="22" align="center"><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_3'];?>">** 
                      ไม่ปรากฏรายการในฐานข้อมูล **</font></td>
                  </tr>
                  <?php
                        
}
?>
                    </table></form></td></tr>
                </table></td>
            </tr>
            <tr> 
              <td><font size="2" color="<?php echo $GLOBALS['COLOR_FONT_4'];?>">หน้า-&gt; 
                <?php
                    
for ($num=1$num<=$total_page$num++) {    
                        if(
$num == $page_id)
                            echo 
$num." ";
                        else {
?>
                <a href="addDefineSomeCourse.php?page_id=<?php echo $num;?>&semesterList=<? echo $semesterList ?>&acadYearList=<? echo $acadYearList ?>"><?php echo '[ '.$num.' ]';?></a> 
                <?php
                        
}
                    }
?>
                </font></td>
              <td width="120" align="right"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">รวม 
                <?php echo $numRow;?> รายการ</font></td>
            </tr>
            <tr> 
              <td colspan="2"><input type="button" name="back2" value="กลับเมนูหลัก" onClick="location.href = 'index.php?mm=1'"></td>
            </tr>
          </table>
        </div>
        </fieldset>
      <table width="115%" border="0" align="center">
        <tr> 
          <td width="9%"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><b>หมายเหตุ 
            :</b></font></td>
          <td width="91%"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>">* 
            หมายถึง ต้องกรอกข้อมูลให้สมบูรณ์,</font></td>
        </tr>
        <tr>
          <td height="22">&nbsp;</td>
          <td><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>">** 
            หมายถึง ระบบกำหนดให้ไม่สามารถแก้ไขได้,</font></td>
        </tr>
         <tr>
          <td height="27">&nbsp;</td>
          <td colspan="2"><img src="../picture/book1.gif" width="22" height="18" border="0">
            <font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"> หมายถึง แบบประเมินก่อนเรียน</font>
          </td>
        </tr>
        <tr> 
          <td height="27">&nbsp;</td>
          <td colspan="2"><img src="../picture/open_book1.jpg" width="22" height="18" border="0">
            <font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>">หมายถึง แบบประเมินหลังเรียน</font></td>
        </tr>
        <tr> 
          <td height="22">&nbsp;</td>
          <td><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>">ใช้เม้าท์คลิกที่รายการแบบประเมิน 
            เพื่อดูรายละเอียดวิชาที่เลือกไว้</font></td>
        </tr>
        <tr> 
          <td height="22">&nbsp;</td>
          <td><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><img src="../picture/deleted.gif" width="16" height="19" align="absmiddle" border="0"> 
            หมายถึง ไม่สามารถลบรายการที่กำหนดนั้นๆ ได้ เนื่องจากได้มีนักศึกษาเข้ามาประเมินแล้ว 
            </font></td>
        </tr>
      </table>
      
      <table width="742" border="0">
        <tr> 
          <td width="72" height="18"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>">&nbsp;</font></td>
          <td width="660"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><u>ชื่อย่อหลักสูตรที่แสดงอยู่ในตาราง 
            หมายถึง </u></font></td>
        </tr>
        <? $oProg->SearchByProgramStatusY(); 
                while(
$oProg->GetRecord()){
             
?>
        <tr> 
          <td>&nbsp;</td>
          <td><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>">
              <?  if($oProg->programAbbr != ""){
                        echo 
$oProg->programAbbr." = ".$oProg->programName;
                    }else{
                        echo 
"<img src = \"../picture/warn.png\" border = \"0\"> = ".$oProg->programName;
                    }
             
?><? //echo $oProg->programId." = ".$oProg->programName; ?>
                </font>
            </td>
        </tr>
        <? ?>
      </table></td>
    </tr>
</table>
</body>
<?php

$oCA
->Disconnect();
$oCR->Disconnect();
showFooter();
?>

<script language="JavaScript1.2">
function checkInput(txtStart, txtEnd){
    
    if(document.FormDefine.assid.value =="" ){
        alert('กรุณาเลือกแบบประเมิน !');
        document.FormDefine.assid.focus();
        return false;
    }else {
        f = document.FormDefine;

        var date1 = f.startDate.value.split("/");
        var date2 = f.endDate.value.split("/");
        var dateFTm = f.firstDateTm.value.split("-");
        var dateLTm = f.lastDateTm.value.split("-");
        //Set the two dates
        date1 = new Date(eval(date1[2]), eval(date1[1]-1), eval(date1[0]));
        date2 = new Date(eval(date2[2]), eval(date2[1]-1), eval(date2[0])); //Month is 0-11 in JavaScript
        dateFTm = new Date(eval(dateFTm[0]), eval(dateFTm[1]-1), eval(dateFTm[2]));
        dateLTm = new Date(eval(dateLTm[0]), eval(dateLTm[1]-1), eval(dateLTm[2])); //Month is 0-11 in JavaScript
        //Set 1 day in milliseconds
        var one_day = 1000*60*60*24;
        //Calculate difference btw the two dates, and convert to days
        var diff = Math.ceil((date2.getTime()-date1.getTime())/(one_day));
        var year = date1.getFullYear()+543;
                
        var be  = Math.ceil((dateLTm.getTime()-date1.getTime())/(one_day));
        var af = Math.ceil((date1.getTime()-dateFTm.getTime())/(one_day));
        if( be<0 || af<0){
            alert("กรุณาตรวจสอบ 'วันที่เริ่มต้น' ควรอยู่ในช่วง 'ปีการศึกษาปัจจุบัน' !");
            return false;
        }else 
        if(diff < 0){
            alert("กรุณาตรวจสอบ 'วันที่เริ่มต้น' ควรน้อยกว่า 'วันที่สิ้นสุด' !");
            return false;
        }
        //return true;
    }
    
    if (txtStart && txtEnd) {
        var oblen = txtStart.length;
        for (var i = 0; i < oblen; i++) {
            if (!isvalidate(txtStart[i], txtEnd[i])) {
                return false;
            }
        }
    }
    return true;
}

function selectDefineAss(){
    if (document.FormDefine.assid.value!="")  //เลือกแล้ว refresh หน้าจอ
            location.replace('addDefineSomeCourse.php?assid='+document.FormDefine.assid.value+'&acadYear='+document.FormDefine.acadYear.value+'&semester='+document.FormDefine.semester.value);    //location.replace('addDefineSomeCourse.php?assid='+document.FormDefine.assid.value+'&acadYear='+document.FormDefine.acadYear.value+'&semester='+document.FormDefine.semester.value+'&startDate='+document.FormDefine.startDate.value+'&endDate='+document.FormDefine.endDate.value);
        
}
function getFlag(radioObj){
    var radioLength = radioObj.length;
        for(var i = 0; i < radioLength; i++) {
            if(radioObj[i].checked) {
                selectFlag =  radioObj[i].value;
            }
        }    
    return  selectFlag;
}
function sendValue(radioObj1,radioObj2){
    var selectFlag=getFlag(radioObj1);
    var isPreAssess=getFlag(radioObj2);

        if(selectFlag==7){
            window.open('courseInProgramTableTmp.php?assid='+document.FormDefine.assid.value+'&acadYear='+document.FormDefine.acadYear.value+'&semester='+document.FormDefine.semester.value+'&startDate='+document.FormDefine.startDate.value+'&endDate='+document.FormDefine.endDate.value+'&closeDate='+document.FormDefine.closeDate.value+'&selectFlag='+selectFlag+'&isPreAssess='+isPreAssess,'PopUp','toolbar=0,scrollbars=1,location=0,statusbar=0,menubar=0,resizable=0,width=540,height=650,left = 240,top = 10')
        }else if(selectFlag==8){
            window.open('courseInProgramTableTmpF8.php?assid='+document.FormDefine.assid.value+'&acadYear='+document.FormDefine.acadYear.value+'&semester='+document.FormDefine.semester.value+'&startDate='+document.FormDefine.startDate.value+'&endDate='+document.FormDefine.endDate.value+'&closeDate='+document.FormDefine.closeDate.value+'&selectFlag='+selectFlag+'&isPreAssess='+isPreAssess,'PopUp','toolbar=0,scrollbars=1,location=0,statusbar=0,menubar=0,resizable=0,width=540,height=650,left = 240,top = 10')
        }else if(selectFlag==6){ // flag6
            window.open('courseInProgramTableTmpF6.php?assid='+document.FormDefine.assid.value+'&acadYear='+document.FormDefine.acadYear.value+'&semester='+document.FormDefine.semester.value+'&startDate='+document.FormDefine.startDate.value+'&endDate='+document.FormDefine.endDate.value+'&closeDate='+document.FormDefine.closeDate.value+'&selectFlag='+selectFlag+'&isPreAssess='+isPreAssess,'PopUp','toolbar=0,scrollbars=1,location=0,statusbar=0,menubar=0,resizable=0,width=540,height=650,left = 240,top = 10')
        }else { // flag9
            window.open('courseInProgramTableTmpF9.php?assid='+document.FormDefine.assid.value+'&acadYear='+document.FormDefine.acadYear.value+'&semester='+document.FormDefine.semester.value+'&startDate='+document.FormDefine.startDate.value+'&endDate='+document.FormDefine.endDate.value+'&closeDate='+document.FormDefine.closeDate.value+'&selectFlag='+selectFlag+'&isPreAssess='+isPreAssess,'PopUp','toolbar=0,scrollbars=1,location=0,statusbar=0,menubar=0,resizable=0,width=540,height=650,left = 240,top = 10')
        }
}

function isvalidate (txtStart, txtEnd)
{
    var retval = true;  
    var ArrayStartDay = txtStart.split("/");
    var ArrayStopDay = txtEnd.split("/");
    var StartDay = ArrayStartDay[2] + ArrayStartDay[1] + ArrayStartDay[0];
    var StopDay = ArrayStopDay[2] + ArrayStopDay[1] + ArrayStopDay[0];
    if (StartDay > StopDay) {
        alert("กรุณาตรวจสอบ 'วันที่สิ้นสุด' ควรน้อยกว่า 'วันที่ปิดการประเมิน' !");
        retval = false;
    }
    return retval;
}

function enableIsPreAssess(v){
    var p0=document.getElementById('p0');
    var p1=document.getElementById('p1');
    
    if(v==6 || v==9){    
        p0.checked=true;
        p1.disabled=true;
    }else{
        p1.disabled=false;
    }
}

</script>

<?php 
    
function getAllCourseCode($defineid,$oHC,$oClassA,$oCourse)
    {
        
$oHC->SearchDistinctClassIdByDefineid($defineid);
        while(
$oHC->GetRecord()){
            
$oClassA->SearchByKey($oHC->classId);
            
$oClassA->GetRecord();
            
$oCourse->SearchByKey($oClassA->courseId);
            
$oCourse->GetRecord();
            echo 
$oCourse->courseCode." ,";
        }
    }
?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0154 ]--