include_once "loc/selmysqlsrv.php"; include 'inc/db_functions.php'; include 'inc/db_connect.php'; require_once('inc/tree.php'); require_once('inc/forms.php'); require_once('inc/trees/navigazione.php'); $nav_menu_arr=vis_parse_tree($TOP_tree_el); session_start(); if (isset($_REQUEST['USERNAME'])) $login=$search_user=$_REQUEST['USERNAME']; else $search_user=$HTTP_SESSION_VARS['USERNAME']; $table="utenti"; if($search_user) { mysql_pconnect(DBHOST,DBUSER,DBPASS); $res=mysql_db_query(DBNAME,"select * from $table where USERNAME='$search_user'"); $dati_db=mysql_fetch_array($res); mysql_free_result($res); } if ($login) $in = ($dati_db["ACTIVE"]=='Y' and (($_REQUEST['USERNAME'] == $dati_db["USERNAME"] and $_REQUEST['PASSWORD'] == $dati_db["PASSWD"] ) or ($HTTP_SESSION_VARS['USERNAME'] == $dati_db["USERNAME"] and $HTTP_SESSION_VARS['PASSWORD'] == $dati_db["PASSWD"] ))); else $in = !($dati_db["ACTIVE"]!='Y' or $HTTP_SESSION_VARS['USERNAME'] != $dati_db["USERNAME"] or $HTTP_SESSION_VARS['PASSWORD'] != $dati_db["PASSWD"]); if ($in) { if ($login and isset($_REQUEST['USERNAME']) and isset($_REQUEST['PASSWORD'])) { $HTTP_SESSION_VARS['USERNAME'] = $_REQUEST['USERNAME']; $HTTP_SESSION_VARS['PASSWORD'] = $_REQUEST['PASSWORD']; $HTTP_SESSION_VARS['USER_DATA'] = $dati_db; $HTTP_SESSION_VARS['USER_DATA']["AO"] = ($dati_db[RIF_SESSO]=='M')?'o':'a'; } } if(isset($HTTP_SESSION_VARS['USER_DATA'])) { $sess_profilo_utente = @mydecompact($HTTP_SESSION_VARS['USER_DATA']['ID_PROFILO']); } $toloadpage=$_REQUEST['E']; $looppami=true; while($looppami) { $looppami=false; if($toloadpage) $curr_array=gotopage($nav_menu_arr,path2currarr($nav_menu_arr,e2patharr($toloadpage))); else { reset($nav_menu_arr); while (list ($ddo, $dda) = @each($nav_menu_arr)) { if($dda["-default"]) $curr_array=gotopage($nav_menu_arr,$dda); } } @reset($curr_array["-children"]); while (list ($ordine, $elemento) = @each($curr_array["-children"])) { if($elemento["TIPO"]=="html_elem") { $page.= dato_secco_id($elemento["TIPO"],"CONTENUTO",$elemento["FIELD_EXT"],$elemento["ID_EXT"]); } if($elemento["TIPO"]=="formulario") { $sql="SELECT * FROM form_elem WHERE ID_FORMULARIO=".$elemento["ID_EXT"]." ORDER BY ORDINE"; $risultato = mysql_query($sql); while ($riga = mysql_fetch_assoc($risultato)) { $ctrls[]=$riga; } mysql_free_result($risultato); $paver = makeHtmlForm($ctrls,'