?

áEÓę¤ÎďLwebshll2019

Current Path : /home/webyoo/www/backup/allback/myagenda/
Upload File :
Current File : /home/webyoo/www/backup/allback/myagenda/agenda.php

<?php

if (!defined('IN_WWW'))
    exit();

if (!$_Connected)
{
	//exit('Espace réservé : accès interdit');
	?><script type="text/javascript">
	alert('Espace réservé : accès interdit');
	document.location.href="http://web4yoo.com/myagenda/";
	</script><?
}


$anneTitre['jan'] = "Janvier";
$anneTitre['jun'] = "Juin";
$anneTitre['feb'] = "Février";
$anneTitre['aug'] = "Aout";
$anneTitre['mar'] = "Mars";
$anneTitre['sep'] = "Septembre";
$anneTitre['apr'] = "Avril";
$anneTitre['oct'] = "Octobre";
$anneTitre['may'] = "Mai";
$anneTitre['nov'] = "Novembre";
$anneTitre['jul'] = "Juillet";
$anneTitre['dec'] = "Décembre";


if (!isset($_REQUEST['date'])) {
    $date = mktime(0, 0, 0, date('m'), date('d'), date('Y'));
} else {
    $date = $_REQUEST['date'];
}
$la = mktime(0, 0, 0, date('m'), date('d'), date('Y'));

$day = date('d', $date);
$month = date('m', $date);
$year = date('Y', $date);

$month_start = mktime(0, 0, 0, $month, 1, $year);
$month_name = date('M', $month_start);
$monthTitre = $anneTitre[strtolower($month_name)];
$month_start_day = date('D', $month_start);

switch ($month_start_day) {
    case "Sun": $offset = 0;
        break;
    case "Mon": $offset = 1;
        break;
    case "Tue": $offset = 2;
        break;
    case "Wed": $offset = 3;
        break;
    case "Thu": $offset = 4;
        break;
    case "Fri": $offset = 5;
        break;
    case "Sat": $offset = 6;
        break;
}

if ($month == 1) {
    $num_days_last = cal_days_in_month(0, 12, ($year - 1));
} else {
    $num_days_last = cal_days_in_month(0, ($month - 1), $year);
}

$num_days_current = cal_days_in_month(0, $month, $year);

for ($i = 1; $i <= $num_days_current; $i++) {
    $num_days_array[] = $i;
}

for ($i = 1; $i <= $num_days_last; $i++) {
    $num_days_last_array[] = $i;
}

if ($offset > 0) {
    $offset_correction = array_slice($num_days_last_array, -$offset, $offset);
    $new_count = array_merge($offset_correction, $num_days_array);
    $offset_count = count($offset_correction);
} else {
    $offset_count = 0;
    $new_count = $num_days_array;
}

$current_num = count($new_count);


if ($current_num > 35) {
    $num_weeks = 6;
    $outset = (42 - $current_num);
} elseif ($current_num < 35) {
    $num_weeks = 5;
    $outset = (35 - $current_num);
}
if ($current_num == 35) {
    $num_weeks = 5;
    $outset = 0;
}

for ($i = 1; $i <= $outset; $i++) {
    $new_count[] = $i;
}

$weeks = array_chunk($new_count, 7);

$previous_link = "<a href=\"./?a=agenda&date=";
if ($month == 1) {
    $previous_link .= mktime(0, 0, 0, 12, $day, ($year - 1));
} else {
    $previous_link .= mktime(0, 0, 0, ($month - 1), $day, $year);
}
$previous_link .= "\"><< Pr&eacute;c&eacute;dent</a>";

$next_link = "<a href=\"./?a=agenda&date=";
if ($month == 12) {
    $next_link .= mktime(0, 0, 0, 1, $day, ($year + 1));
} else {
    $next_link .= mktime(0, 0, 0, ($month + 1), $day, $year);
}
$next_link .= "\">Suivant >></a>";

$site_Content .= "
		<h2><img src=\"http://web4yoo.com/myagenda/images/Calendar-64.png\" align=\"absmiddle\" class=\"rotate\"/>&nbsp;&nbsp;Mon Agenda</h2>";
		
$site_Content .= '<div style="padding: 10px; margin: 22px 0px;font-size:10px;"><span style="border:1px solid #54B80F;padding: 10px; margin: 10px;">Date du jour</span><span style="border:1px solid #CC0000;padding: 10px; margin: 10px;">Date en cours</span><span style="color:white;background:#2794F9;padding: 10px; margin: 10px;">Taches sur ce jour</span></div>';		
$site_Content .= "<table align=\"center\" border=\"1\" cellpadding=\"2\" cellspacing=\"0\" width=\"726\" class=\"tableau calendar\">" .
        "<tr>" .
        "<td colspan=\"7\">" .
        "<table width=\"100%\" align=\"center\">" .
        "<tr>" .
        "<td colspan=\"2\" width=\"100\" align=\"left\">$previous_link</td>" .
        "<td colspan=\"3\" align=\"center\">$monthTitre $year</td>" .
        "<td colspan=\"2\" width=\"100\" align=\"right\">$next_link</td>" .
        "</tr>" .
        "</table>" .
        "</td>" .
        "<tr height=\"10\">" .
        "<td class=\"small\">Dimanche</td><td class=\"small\">Lundi</td><td class=\"small\">Mardi</td><td class=\"small\">Mercredi</td><td class=\"small\">Jeudi</td><td class=\"small\">Vendredi</td><td class=\"small\">Samedi</td>" .
        "</tr>";

$i = 0;

if(is_admin())
{
	$link = './admin';
}else
{
	$link = '.';
}

foreach ($weeks AS $week)
{

    $site_Content .= "<tr height=\"35\">";

    foreach ($week as $d)
    {

        if ($i < $offset_count) {
            $day_link = $d;
            $site_Content .= "<td class=\"nonmonthdays\">$day_link</td>";
        }

        if (($i >= $offset_count) && ($i < ($num_weeks * 7) - $outset)) {

            $dateLa = mktime(0, 0, 0, $month, $d, $year);
			
			if(is_admin())
			{
				$extraire1 = mysql_query("select * from agenda_events WHERE date='$dateLa'");
            }elseif(is_manager())
			{	
				
				$extraire1 = mysql_query("select * FROM agenda_events ae, agenda_dept ad, agenda_membre am 
					WHERE ae.num_dept = ad.num_dept
					AND ad.id_membre = am.id
					AND ae.date='$dateLa'
					AND (ad.id_membre='{$_SESSION['mbr_id']}' OR am.managed_by = '{$_SESSION['mbr_id']}') ");
			}
			else{
				$extraire1 = mysql_query("select * FROM agenda_events ae, agenda_dept ad, agenda_membre am 
					WHERE ae.num_dept = ad.num_dept
					AND ad.id_membre = am.id
					AND ae.date='$dateLa'
					AND ad.id_membre='{$_SESSION['mbr_id']}'");
			}
			
			$nbrEvents1 = mysql_numrows($extraire1);

            if ($nbrEvents1 > 0) {
                $eventsHere = " <span class=\"gros\"><br><span style=\"font-size:9px;color: #CFCFCF;\">".$nbrEvents1." tache(s)</span></span>";
				$style = " style='background:#2794F9; color:#FFFFFF; font-weight:bold;' ";
            } else {
                $eventsHere = "";
				$style = "";
            }

            $day_link = "<a href=\"./?a=agenda&date=" . mktime(0, 0, 0, $month, $d, $year) . "\" $style>$d</a> $eventsHere";
            if ($la == mktime(0, 0, 0, $month, $d, $year)) {
                $site_Content .= "<td class=\"today\" $style>$day_link</td>";
            } elseif ($day == $d) {
                $site_Content .="<td class=\"clic\" $style>$day_link</td>";
            } else {
                $site_Content .= "<td class=\"days\" $style>$day_link</td>";
            }

        } elseif (($outset > 0)) {

            if (($i >= ($num_weeks * 7) - $outset)) {
                $day_link = $d;
                $site_Content .= "<td class=\"nonmonthdays\">$day_link</td>";
            }

        }

        $i++;
    }
    $site_Content .= "</tr>";
}

$site_Content .= '</table>';
$ladate = $day . '/' . $month . '/' . $year;
$site_Content .= '
<br /><br />

<table width="100%">
	<tr><td colspan="2" valign="top" align="center">';


                $site_Content .='<b><a href="#" id="showform1" style="padding:12px;background: url(http://web4yoo.com/myagenda/images/submit2.png) no-repeat scroll 0 0 transparent; border: 0 none; cursor: pointer; height: 39px; width: 168px;">Cr&eacute;er une tache manuellement pour cette date</a></b><br><br>';

                $listeSelect = '';

                $select = "SELECT * FROM agenda_theme ORDER BY titre ASC";
                $result = mysql_query($select) or die('<b>Erreur MySQL [S&eacute;lection des th&egrave;mes]</b> : <br />' . mysql_error());
                $nbr = mysql_numrows($result);

                if ($nbr > 0)
                {
                    while ($row = mysql_fetch_assoc($result))
                    {
						//background:url(http://web4yoo.com/myagenda/images/statut_'.$row["id"].'.png) no-repeat left top / 15px;padding-left:34px
                        $listeSelect.='<option style="" value="' . $row["id"] . '">' . safest($row["titre"]) . '</option>';
                    }
                }
				
				
				$listeDept = '';
				
				if(is_admin())
				{
					$selwhere = "";
				}else{
					$selwhere = "WHERE id_membre='{$_SESSION['mbr_id']}'";
				}

				$selectdep = "SELECT * FROM agenda_dept $selwhere ORDER BY num_dept ASC";
				$resultdep = mysql_query($selectdep) or die('<b>Erreur MySQL </b> : <br />' . mysql_error());
				$nbrdep = mysql_numrows($resultdep);

				if ($nbrdep > 0)
				{
					while ($rowdep = mysql_fetch_assoc($resultdep))
					{
						$listeDept.='<option value="' . $rowdep["num_dept"] . '">' . safest($rowdep["num_dept"]) . '</option>';
					}
				}
				
				$selectarr = "SELECT * FROM agenda_dept ORDER BY num_dept ASC";
				$resultarr = mysql_query($selectarr);
				$nbrarr = mysql_numrows($resultarr);

				if ($nbrarr > 0)
				{
					while ($rowarr = mysql_fetch_assoc($resultarr))
					{
						$listearr.='<option value="' . $rowarr["num_dept"] . '">' . safest($rowarr["num_dept"]) . '</option>';
					}
				}

				setlocale (LC_TIME, 'fr_FR.utf8','fra'); 
				//<span id="imgtype"><img src="http://web4yoo.com/myagenda/images/statut_1.png"/></span>
                $site_Content .= '
                <form name="form1" style="display:none;position: absolute; background: none repeat scroll 0% 0% rgb(222, 222, 222); top: 15%;left: 38%;border: solid 4px #FFF; border-radius:4px;" id="form1" method="post" action="./?a=add_events&date='.$date.'" onSubmit="return cb_url();">
                <table width="250" border="0" cellspacing="0" cellpadding="0">
                    
					<tr>
                        <td colspan="2" width="130" height="10" align="right"><a href="#" id="hideform1">x Fermer</a></td>
                        
                    </tr>
					<tr>
                        <td colspan="2" width="130" height="30">Cr&eacute;ation de Tache</td>
                        
                    </tr>
					<tr>
                        <td width="206" height="30">Titre</td>
                        <td width="169" height="31"><input name="titre" type="text" id="titre" value="' . stripslashes($titreEvents) . '" /></td>
                    </tr>
                    <tr>
                        <td height="30">Statut</td>
                        <td width="169" height="31"><select name="type" id="select1">' . $listeSelect . '</select></td>
                    </tr>
					<tr>
                        <td height="30">D&eacute;partement D&eacute;part</td>
                        <td width="169" height="31"><select name="dept" id="dept">' . $listeDept . '</select></td>
                    </tr>
					
					<tr>
                        <td colspan="2" ><br><br>
						<div style="text-align: left; font-size: 12px; padding: 10px; border: 1px solid white; background: none repeat scroll 0px 0px #A3A3A3;">
						<p id="bloc_lead1" style="font-weight:bold;cursor:pointer;">D&eacute;tails du Lead</p>
						<table id="tab_lead" style="display:none;" border="0" cellspacing="0" cellpadding="0">
							<tr>
								<td width="238">Lead cr&eacute;&eacute; le:</td>
								<td><input name="date_c" type="text" value="'.$ladate.'" disabled="disabled" /><input name="date_crea" type="hidden" value="'.$ladate.'" /></td>
							</tr>
							<tr>
								<td>Type Prospect:</td>
								<td><select name="prospect"><option value="1">Particulier</option><option value="2">Societe</option><option value="3">International</option></select></td>
							</tr>
							<tr>
								<td>Nom:</td>
								<td><input name="nom" type="text" /></td>
							</tr>
							<tr>
								<td>Prenom:</td>
								<td><input name="prenom" type="text" /></td>
							</tr>
							<tr>
								<td>Email:</td>
								<td><input name="email" type="text" /></td>
							</tr>
							<tr>
								<td>D&eacute;partement Arriv&eacute;e:</td>
								<td><select name="dept_arrivee" id="dept_arrivee">' . $listearr . '</select></td>
							</tr>
							<tr>
								<td>Commentaires Client</td>
								<td><textarea name="commentaires" id="textarea" COLS=30 ROWS=3></textarea></td>
							</tr>
						</table>
						</div>
						</td>
                    </tr>
					
                    <tr>
                        <td colspan="2" ><br><br>
						<div id="bloc_lead2" style="text-align: left; font-size: 12px; padding: 10px; border: 1px solid white; background: none repeat scroll 0px 0px #A3A3A3;">
						<p style="font-weight:bold">Suivi du Lead</p>
						<span style="font-weight:bold">Historique de la tache liée au lead:</span>
						<textarea name="historique" id="textarea" COLS=80 ROWS=3></textarea>
						</div>
						<br><br>
						</td>
                    </tr>
                    <tr>
                        <td><div align="left">Date de relance</div></td>
                        <td width="169"><input name="datepicker" type="text" id="datepicker" /></td>
                    </tr>
                    <tr>
                        <td colspan="2" width="500" align="center"><input type="submit" name="Submit" value="Envoyer" /><input type="button" onclick="if(!confirm(\'Etes vous sur de vouloir annuler cette tache ?\')) {return false;}{document.getElementById(\'form1\').style.display=\'none\';}" value="Annuler" style="clear:none;" /></td>
                    </tr>
					
                    </table>
                </form></td></tr>';
			$site_Content .= '
			
			<tr><td colspan="2"><h2>Liste de taches pour le <b>'.$ladate.'</b></h2></td></tr>
			<tr><td colspan="2" valign="top">';

            $toutAf = '';
            
			if(is_admin())
			{
				$extraire = mysql_query("SELECT * FROM agenda_events WHERE date='".(int)$date."'");
			}elseif(is_manager())
			{	
				//echo $_SESSION['mbr_id'];
				$sel = "select * FROM agenda_events ae, agenda_dept ad, agenda_membre am 
					WHERE ae.num_dept = ad.num_dept
					AND ad.id_membre = am.id
					AND ae.date='".(int)$date."'
					AND (ad.id_membre='{$_SESSION['mbr_id']}' OR am.managed_by = '{$_SESSION['mbr_id']}')";
				//echo $sel;
				$extraire = mysql_query($sel);
			}else
			{
				$extraire = mysql_query("select * FROM agenda_events ae, agenda_dept ad, agenda_membre am 
					WHERE ae.num_dept = ad.num_dept
					AND ad.id_membre = am.id
					AND ae.date='".(int)$date."'
					AND ad.id_membre='{$_SESSION['mbr_id']}'");
			}
			
            $nbrEvents = mysql_numrows($extraire);

            if ($nbrEvents > 0)
            {

                $site_Content .='Il y a <b>' . $nbrEvents . '</b> tache(s) pour cette date. <br />';
               
                for ($i = 0; $i < $nbrEvents; $i++)
                {
                    
					 $toutAf.='<br /><table width="98%" class="pts">';
					$id = mysql_result($extraire, $i, "id");
                    $idDept = mysql_result($extraire, $i, "num_dept");
                    $type = mysql_result($extraire, $i, "type");
                    $texte = mysql_result($extraire, $i, "texte");
                    $titre = mysql_result($extraire, $i, "titre");

                    $extraire11 = mysql_query("SELECT id,titre FROM agenda_theme WHERE id='$type'");
                    $nbrEvents11 = mysql_numrows($extraire11);
                    if ($nbrEvents11 == 1) {
                        $type = mysql_result($extraire11, 0, "titre");
                    } else {
                        $type = "Inconnu";
                    }

                    $req = "SELECT am.login FROM agenda_membre am, agenda_dept ad WHERE ad.id_membre = am.id AND ad.num_dept ='".$idDept."'";
                    $sql = mysql_query($req);
                    $User = mysql_fetch_assoc($sql);

                    $toutAf .= '
                    <tr>
                        <td width="80%">
                            <b>' . safest($titre) . '</b> - de ' . safest($User['login']) . '  &nbsp; <i>Ref : ' . $id . '</i><br />
                            Statut : <b>' . safest($type) . '</b>
                        </td>
						<td width="20%"><a href="'.$link.'/?a=events&op=edit&k=' . $id . '" title="Editer cette tache">Modifier</a>
						<a href="'.$link.'/?a=events&op=erase&k=' . $id . '" title="Supprimer cette tache">Supprimer</a>
						</td>
                    </tr>';
					$toutAf .= '</table>';
					
                }

                

                $site_Content .= $toutAf;
                $toutAf = "";

            } else {
                $site_Content .='<span class="red">Aucune tache pour cette date.</span>';
            }


        $site_Content .= '
        </td></tr>';

    


            $site_Content .= '
        
</table>';



web shell, Coded By 2019