File Manager
Back to List
| Current Directory: ~/
Editing: letins_sum.asp.bak
Full path: C:\ict\ICT\letins_sum.asp.bak
Permissions: rwx
Write test: File appears not directly writable
Current process identity: IIS APPPOOL\DefaultAppPool
<%response.cachecontrol="private"%> <!--#INCLUDE FILE="ConnectDB.asp"--> <!--#include file="chk_login.asp"--> <% pern=session("username") per="2" tb="letterin" sqlnc="select * from tb_permission where id_staff='"&pern&"' and tb_edit='"&per&"' and tb_name='"&tb&"'" set orsnc=server.createobject("adodb.recordset") orsnc.open sqlnc,conn,1,3 'if not orsnc.eof then %> <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html><!-- InstanceBegin template="/Templates/ICT.dwt" codeOutsideHTMLIsLocked="false" --> <head> <!-- InstanceBeginEditable name="doctitle" --> <title>�к����ʹ�����͡�ú�����</title> <!-- InstanceEndEditable --> <meta http-equiv="Content-Type" content="text/html; charset=windows-874"> <!-- InstanceBeginEditable name="head" --> <style type="text/css"> <!-- .style1 {color: #ccff33} --> </style> <!-- InstanceEndEditable --> <link href="bsri2006.css" rel="stylesheet" type="text/css"> <link href="image/favicon.ico" rel="shortcut icon" type="image/x-icon"> </head> <body leftmargin="0" topmargin="0" marginwidth="0" marginheight="0"> <table width="100%" border="0"> <tr> <td colspan="2"><div align="right"><img src="Image/head1.gif" width="800" height="61"></div></td> </tr> <tr> <td colspan="2" background="Image/bghead1.gif"><div align="right"><font size="2" face="MS Sans Serif, Tahoma, sans-serif"><strong>| <a href="http://www.swu.ac.th" target=_blank>SWU</a> | <a href="http://bsri.swu.ac.th" target=_blank>BSRI</a> |<a href="chaPW.asp"><strong>Change Password</strong></a>|<a href="log_out.asp">Log Out </a></strong></font>|</div></td> </tr> <tr> <td width="20%" align="left" valign="top" bgcolor="#FFCCCC"><!-- InstanceBeginEditable name="EditRegion5" --><!--#include file="chk_menu.asp"--><!-- InstanceEndEditable --></td> <td width="77%" align="left" valign="top"><!-- InstanceBeginEditable name="EditRegion3" --> <div align="center"> <p><strong>˹ѧ������ʶҺѹ�Ԩ�¾ĵԡ�����ʵ��<br> [<a href="all_letterin.asp">˹ѧ��ͷ�����</a>][<a href="searchletter.asp">����˹ѧ���</a>][<a href="letterin_staff.asp">˹ѧ��������ºؤ��</a>]</strong>[<a href="letin_intro.asp">˹ѧ������¹-��Ъ�����ѹ��</a>]</p> <% id_staff=request("ids") if id_staff="" then id_staff=session("ids") else session("ids")=id_staff end if sqls="select * from lecturer where id_lecturer='"&id_staff&"'" set orss=server.createobject("adodb.recordset") orss.open sqls,conn,1,3 if not orss.eof then names=orss("name_lec") surenames=orss("sur_lec") else sqlst="select * from staff where id_staff='"&id_staff&"'" set orsst=server.createobject("adodb.recordset") orsst.open sqlst,conn,1,3 if not orsst.eof then names=orsst("name_st") surenames=orsst("sur_st") end if end if %> <p>˹ѧ�����Ңͧ.....<%=names%>...<% =surenames%></p> <p>��س����͡��ǧ�������ҷ���Ѻ </p> <form name="form1" method="post" action="letins_sum.asp"> �� <select name="msearch" id="select2"> <option value="0">��</option> <option value="1">���Ҥ�</option> <option value="2">����Ҿѹ��</option> <option value="3">�չҤ�</option> <option value="4">����¹</option> <option value="5">����Ҥ�</option> <option value="6">�Զع�¹</option> <option value="7">�á�Ҥ�</option> <option value="8">�ԧ�Ҥ�</option> <option value="9">�ѹ��¹</option> <option value="10">���Ҥ�</option> <option value="11">��Ȩԡ�¹</option> <option value="12">�ѹ�Ҥ�</option> </select> �� <select name="ysearch"> <% mydate=date myyear=year(mydate) yearbegin=myyear+540 myyear=myyear+543 'response.write "<tr><td>"&yearbegin&"</td></tr>" i=0 do while i<7 %> <option <% if yearbegin=myyear then %> value=<%=myyear%> selected <%else%> value=<%=yearbegin%> <%end if%>> <%=yearbegin%> </option> <%i=i+1 yearbegin=yearbegin+1 loop %> </select> <!-- <input name="ysearch" type="text" id="y_fcontact" onKeyPress='if (event.keyCode < 46 || event.keyCode >57 ) event.returnValue=false;' size="10" maxlength="4">--> <input type="submit" name="Submit" value="Submit"> </form> <table width="100%" border="1" cellspacing="0" cellpadding="0"> <br> </p> <tr> <td bgcolor="#669900"><div align="center" class="style1">�Ţ���˹ѧ���</div></td> <td bgcolor="#669900"><div align="center" class="style1">�Ţ����Ѻ</div></td> <td bgcolor="#669900"><div align="center" class="style1">�ѹ �� �� </div></td> <td bgcolor="#669900"><div align="center" class="style1">�ҡ</div></td> <td bgcolor="#669900"><div align="center" class="style1" >����ͧ</div></td> <!-- <td bgcolor="#669900"><div align="center" class="style1">ʶҹ�</div></td>--> <!-- <td bgcolor="#669900"><div align="center" class="style1">��觷�����Ҵ���</div></td> --> <td bgcolor="#669900" width="15%"><div align="center" class="style1" >���������Ǣ�ͧ</div></td> </tr> <% id_s=session("ids") msearch=request.form("msearch") ysearch=request.form("ysearch") If msearch="1" Then msearch1="���Ҥ�" ElseIf msearch="2" Then msearch1="����Ҿѹ��" ElseIf msearch="3" Then msearch1="�չҤ�" ElseIf msearch="4" Then msearch1="����¹" ElseIf msearch="5" Then msearch1="����Ҥ�" ElseIf msearch="6" Then msearch1="�Զع�¹" ElseIf msearch="7" Then msearch1="�á�Ҥ�" ElseIf msearch="8" Then msearch1="�ԧ�Ҥ�" ElseIf msearch="9" Then msearch1="�ѹ��¹" ElseIf msearch="10" Then msearch1="���Ҥ�" ElseIf msearch="11" Then msearch1="��Ȩԡ�¹" ElseIf msearch="12" Then msearch1="�ѹ�Ҥ�" Else msearch1="����к���" End If sqlstf="select * from staffletter where id_staff='"&id_s&"' order by id_letter desc" set orstf=server.CreateObject("adodb.recordset") orstf.open sqlstf,conn,1,3 'response.write sqlstf response.write "�� "&msearch1&" �� "&ysearch Response.write "<form name=form3 method=post action=letins_sumexcel.asp>" %> <input type="hidden" name="sqlname" value=<%=sqlstf%>> <input type="hidden" name="ids" value=<%=id_s%>> <input type="hidden" name="msearch" value=<%=msearch%>> <input type="hidden" name="ysearch" value=<%=ysearch%>> <% Response.write "<input type=submit name=Submit value=Excel> " Response.write "</form>" i=1 if not orstf.eof then orstf.movefirst do while not orstf.eof idletter=orstf("id_letter") statusread=orstf("statusread") sqlse="select * from letterin where mreceive='"&msearch&"' and yreceive='"&ysearch&"' and id_letter='"&idletter&"' order by id_letter" set orse=server.CreateObject("adodb.recordset") orse.open sqlse,conn,1,3 if not orse.eof then orse.movefirst do while not orse.eof ii=i mod 2 if ii=0 then bgc="#e5e5e5" else bgc="#ffffff" end if response.write "<tr bgcolor="&bgc&"><td>" i=i+1 response.write orse("id_sent")&"</td>" response.write "<td>" response.write "[<a href=detail_letterin.asp?id="&orse("id_letter")&">"&orse("id_letter")&"</a>]</td>" response.write "<td>" response.write orse("dletter")&"/"&orse("mletter")&"/"&orse("yletter")&"[�Ţ�����]<br>" response.write orse("dreceive")&"/"&orse("mreceive")&"/"&orse("yreceive")&"[�Ţ����Ѻ]</td>" response.write "<td>" response.write orse("originletter")&"</td>" response.write "<td>" response.write orse("titleletter")&"</td>" idl=orse("id_letter") response.write "<td>" set ors1=server.CreateObject("adodb.recordset") osql1 = "Select * From staffletter where id_letter='"&idl&"' Order By id_staff Desc" ors1.Open osql1, conn, 1, 3 'response.write osql1 c=1 if not ors1.eof then ors1.movefirst do while not ors1.eof idaaa=ors1("id_letter") c=c+1 sqls="select * from lecturer where id_lecturer='"&ors1("id_staff")&"'" set orss=server.createobject("adodb.recordset") orss.open sqls,conn,1,3 if not orss.eof then response.write orss("name_lec")&" "&orss("sur_lec")&"<br>" else sqlst="select * from staff where id_staff='"&ors1("id_staff")&"'" set orsst=server.createobject("adodb.recordset") orsst.open sqlst,conn,1,3 if not orsst.eof then response.write orsst("name_st")&" "&orsst("sur_st") end if end if statusread=ors1("statusread") if statusread=0 then response.write "<img src=Image/close.gif />" else response.write "<img src=Image/open.gif />" end if ors1.MoveNext if c=2 then '����ʴ������ 2 ���� ����Թ ���͡ 'ors1.movelast response.write "[<a href=detail_letterin.asp?id="&orse("id_letter")&">more..</a>]" exit do end if loop end if response.write "</td>" response.write "</tr>" orse.movenext loop end if orstf.movenext loop end if response.write "</table>" %> <p> <!-- InstanceEndEditable --></td> </tr> <tr> <td colspan="2" background="Image/bghead1.gif">Contact Admin:: wassanaw@swu.ac.th tel.02-649-5000 ext 17600</td> </tr> </table> </body> <!-- InstanceEnd --></html> <% 'else 'response.write "No Permission" 'response.write "<a href=index_academic.asp>Return</a>" 'end if %>