File Manager
Back to List
| Current Directory: ~/
Editing: plan_edu.asp.bak
Full path: C:\ict\ICT\plan_edu.asp.bak
Permissions: rwx
Write test: File appears not directly writable
Current process identity: IIS APPPOOL\DefaultAppPool
<!--#include file="connectdb.asp"--> <!--#include file="inc_cache_control.asp"--> <!--#include file="inc_access_control.asp"--> <!--#include file="chk_login.asp"--> <% pern=session("username") per="2" tb="research" sqlnc="select * from tb_permission where id_staff='"&pern&"' and tb_edit='"&per&"' and tb_name='"&tb&"'" set orsnc=server.createobject("adodb.recordset") orsnc.open sqlnc,conn,1,3 'if not orsnc.eof then %> <script language="javascript"> function doSubmit() { if( document.form2.scc.value == "" ) { alert("��سҡ�͡�����Ԫ�������") document.form2.scc.focus() return false; } } </script> <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html><!-- InstanceBegin template="/Templates/ict.dwt" codeOutsideHTMLIsLocked="false" --> <head> <!-- InstanceBeginEditable name="doctitle" --> <title>�к����ʹ�����͡�ú�����</title> <!-- InstanceEndEditable --> <meta http-equiv="Content-Type" content="text/html; charset=windows-874"> <!-- InstanceBeginEditable name="head" --><!-- InstanceEndEditable --> <link href="bsri2006.css" rel="stylesheet" type="text/css"> <link href="image/favicon.ico" rel="shortcut icon" type="image/x-icon"> </head> <body leftmargin="0" topmargin="0" marginwidth="0" marginheight="0"> <table width="100%" border="0"> <tr> <td colspan="2"><div align="right"><img src="Image/head1.gif" width="800" height="61"></div></td> </tr> <tr> <td colspan="2" background="Image/bghead1.gif"><div align="right"><font size="2" face="MS Sans Serif, Tahoma, sans-serif"><strong>| <a href="http://www.swu.ac.th" target=_blank>SWU</a> | <a href="http://bsri.swu.ac.th" target=_blank>BSRI</a> |<a href="chaPW.asp"><strong>Change Password</strong></a>|<a href="log_out.asp">Log Out </a></strong></font>|</div></td> </tr> <tr> <td width="20%" align="left" valign="top" bgcolor="#FFCCCC"><!-- InstanceBeginEditable name="EditRegion5" --><!--#include file="chk_menu.asp"--><!-- InstanceEndEditable --></td> <td width="77%" align="left" valign="top"><!-- InstanceBeginEditable name="EditRegion3" --> <% '***************************************************************** session("tb_name")="course" %> <!--#include file="chk_permission.asp"--> <% '***************************************************************** if session("tb_edit") <> 1 or session("id_lecturer1") = id_lecturer then '���Է��� �����㹰ҹ ��� ����Ңͧ�������ͧ id_stugroup=request("id_stugroup") %> <table width="100%" border="0" cellspacing="0"> <tr> <td> </td> </tr> <tr> <td width="892" align="left" valign="top"><div align="center"><font size=2><strong> �Ѵ���Ѻ<br> <br> <table border=0> <% '�������� sql_group="select * from student_group where id_stugroup='"&id_stugroup&"'" set ors_group=server.createobject("adodb.recordset") ors_group.open sql_group,conn,1,3 if not ors_group.eof then year_edu=ors_group("year_edu") scc=ors_group("selection_course_credit") %> <tr> <td><strong>��ѡ�ٵ� <% id_curriculum=ors_group("id_curriculum") sql_curri="select * from curriculum where id_curriculum='"&id_curriculum&"'" set ors_curri=server.createobject("adodb.recordset") ors_curri.open sql_curri,conn,1,3 if not ors_curri.eof then response.write ors_curri("curriculum_full")&"</td>" end if %> <td><strong>Ẻ <% id_type_curriculum=ors_group("id_type_curri") set ors_tc=server.createobject("adodb.recordset") sqlmark_tc="select * from type_curriculum where id_type_curri='"&id_type_curriculum&"'" ors_tc.open sqlmark_tc,Conn,1,3 if not ors_tc.eof then response.write ors_tc("type_curri_th") end if %> </td> <td><strong>��蹷�� <% response.write ors_group("no_stugroup") %> </td></div> <td ><strong>�Ң� <% id_major=ors_group("id_major") set ors5=server.createobject("adodb.recordset") sql5="select * from major where id_major='"&id_major&"'" ors5.open sql5,Conn,1,3 ors5.movefirst if not ors5.eof then response.write ors5("major_th") end if %> </td> <td ><strong></td> </tr> <% response.write "<tr><td colspan=3>�������[<a href=detail_stugroup.asp?id_stugroup="&ors_group("id_stugroup")&">"&ors_group("id_stugroup")&"</a>]" '/�������� end if response.write "</table>" response.write "<table border=0>" response.write "<tr bgcolor=#FF99CC><td colspan=4 align=center>����ԪҶ١�Ѵ���Ѻ" response.write "<tr bgcolor=#FFCCCC><td colspan=4 align=left>��Ǵ�ԪҺѧ�Ѻ" sql2="select * from plan_edu where id_stugroup='"&id_stugroup&"'" set ors2=server.createobject("adodb.recordset") ors2.open sql2,conn,1,3 c=0 if not ors2.eof then ors2.movefirst do while not ors2.eof c=c+1 b1=c mod 2 if b1=0 then bg1="#E6E6E6" else bg1="#FCFCFC" end if sqlc1="select * from course_category where id_course='"&ors2("id_course")&"' and id_category=1" set orsc1=server.createobject("adodb.recordset") orsc1.open sqlc1,conn,1,3 if not orsc1.eof then sql_a1="select * from course where id_course='"&orsc1("id_course")&"' " set ors_a1=server.createobject("adodb.recordset") ors_a1.open sql_a1,conn,1,3 'response.write sql_a2 if not ors_a1.eof then 'response.write "<tr><td>55" response.write "<tr bgcolor="&bg1&"><td>"&ors_a1("id_course_th")&" ("&ors_a1("id_course")&")</td>" response.write "<td >"&ors_a1("course_th")&"</td>" response.write "<td >"&ors_a1("credit")&"</td>" if not orsnc.eof then response.write "<td >[<a href=plan_edu_del.asp?id_course="&ors_a1("id_course")&"&id_stugroup="&ors_group("id_stugroup")&">ź</a>]</td>" end if response.write "</tr>" end if end if sqlc3="select * from course_category where id_course='"&ors2("id_course")&"' and id_category=3" set orsc3=server.createobject("adodb.recordset") orsc3.open sqlc3,conn,1,3 if not orsc3.eof then sql_a3="select * from course where id_course='"&orsc3("id_course")&"' " set ors_a3=server.createobject("adodb.recordset") ors_a3.open sql_a3,conn,1,3 'response.write sql_a2 if not ors_a3.eof then 'response.write "<tr><td>55" response.write "<tr bgcolor="&bg1&"><td>"&ors_a3("id_course_th")&" ("&ors_a3("id_course")&")</td>" response.write "<td >"&ors_a3("course_th")&"</td>" response.write "<td >"&ors_a3("credit")&"</td>" if not orsnc.eof then response.write "<td >[<a href=plan_edu_del.asp?id_course="&ors_a3("id_course")&"&id_stugroup="&ors_group("id_stugroup")&">ź</a>]</td>" end if response.write "</tr>" end if end if sqlc5="select * from course_category where id_course='"&ors2("id_course")&"' and id_category=5" set orsc5=server.createobject("adodb.recordset") orsc5.open sqlc5,conn,1,3 if not orsc5.eof then sql_a5="select * from course where id_course='"&orsc5("id_course")&"' " set ors_a5=server.createobject("adodb.recordset") ors_a5.open sql_a5,conn,1,3 'response.write sql_a2 if not ors_a5.eof then 'response.write "<tr><td>55" response.write "<tr bgcolor="&bg1&"><td>"&ors_a5("id_course_th")&" ("&ors_a5("id_course")&")</td>" response.write "<td >"&ors_a5("course_th")&"</td>" response.write "<td >"&ors_a5("credit")&"</td>" if not orsnc.eof then response.write "<td >[<a href=plan_edu_del.asp?id_course="&ors_a5("id_course")&"&id_stugroup="&ors_group("id_stugroup")&">ź</a>]</td>" end if response.write "</tr>" end if end if ors2.movenext loop 'else response.write "<tr><td colspan=4 align=center>No Course" end if if not orsnc.eof then%><tr > <form name="form1" method="post" action="plan_edu_add.asp"> <td colspan=4 align=center>���͡����Ԫ�<select name="id_course"> <% sqlc33="select * from course_category where id_category=1 or id_category=3 or id_category=5" set orsc33=server.createobject("adodb.recordset") orsc33.open sqlc33,conn,1,3 if not orsc33.eof then orsc33.movefirst do while not orsc33.eof sql_a33="select * from course where id_course='"&orsc33("id_course")&"' and year_edu='"&year_edu&"'" set ors_a33=server.createobject("adodb.recordset") ors_a33.open sql_a33,conn,1,3 if not ors_a33.eof then sql2="select * from plan_edu where id_stugroup='"&id_stugroup&"' and id_course='"&ors_a33("id_course")&"'" set ors2=server.createobject("adodb.recordset") ors2.open sql2,conn,1,3 if ors2.eof then response.write "<option value="&ors_a33("id_course")&">"&ors_a33("id_course")&" ("&ors_a33("course_th")&")</option>" end if end if orsc33.movenext loop end if %> </select> <input type=hidden name=id_stugroup value=<%=id_stugroup%>> <input type="submit" name="Submit" value="Add!" > </td> </form> <%end if 'response.write "<tr><td colspan=4 align=center>Dont have Course" 'response.write "<table>" 'response.write "<tr bgcolor=#CCCCFF><td colspan=4 align=center><strong>��س����͡����Ԫ�<br></td></tr>" 'sql1="select * from course where year_edu='"&ors_group("year_edu")&"'" 'set ors1=server.createobject("adodb.recordset") 'ors1.open sql1,conn,1,3 'a=0 'if not ors1.eof then ' ors1.movefirst ' do while not ors1.eof ' 'response.write a 'b=a mod 2 'if b=0 then 'bg2="#E6E6E6" 'else bg2="#FCFCFC" 'end if 'id_course=ors1("id_course") 'sql_a1="select * from plan_edu where id_course='"&ors1("id_course")&"' and id_stugroup='"&id_stugroup&"'" 'set ors_a1=server.createobject("adodb.recordset") 'ors_a1.open sql_a1,conn,1,3 '' response.write sql_a1 ' if ors_a1.eof then ' a=a+1 ' response.write "<tr bgcolor="&bg2&"><td>"&ors1("id_course_th")&" ("&ors1("id_course")&")</td>" ' response.write "<td >"&ors1("course_th")&"</td>" ' response.write "<td >"&ors1("credit")&"</td>" ''response.write "<td >[<a href=plan_edu_add.asp?id_course="&ors_a1("id_course")&"&id_stugroup="&id_stugroup&">���͡</a>]</td></tr>" ' response.write "<td >[<a href=plan_edu_add.asp?id_course="&id_course&"&id_stugroup="&id_stugroup&">���͡</a>]</td></tr>" ' end if ' ors1.movenext ' loop 'end if response.write "<tr bgcolor=#FFCCCC><td colspan=4 align=left>��Ǵ�Ԫһ�ԭ�ҹԾ���</td>" sqlstugthe="select * from plan_edu where id_stugroup='"&id_stugroup&"'" set orsstugthe=server.createobject("adodb.recordset") orsstugthe.open sqlstugthe,conn,1,3 c=0 if not orsstugthe.eof then orsstugthe.movefirst do while not orsstugthe.eof c=c+1 b1=c mod 2 if b1=0 then bg1="#E6E6E6" else bg1="#FCFCFC" end if sqlstugthe1="select * from course_category where id_course='"&orsstugthe("id_course")&"' and id_category=6" set orsstugthe1=server.createobject("adodb.recordset") orsstugthe1.open sqlstugthe1,conn,1,3 if not orsstugthe1.eof then sql_stugthea1="select * from course where id_course='"&orsstugthe1("id_course")&"' " set ors_stugthea1=server.createobject("adodb.recordset") ors_stugthea1.open sql_stugthea1,conn,1,3 'response.write sql_a2 if not ors_stugthea1.eof then 'response.write "<tr><td>55" response.write "<tr bgcolor="&bg1&"><td>"&ors_stugthea1("id_course_th")&" ("&ors_stugthea1("id_course")&")</td>" response.write "<td >"&ors_stugthea1("course_th")&"</td>" response.write "<td >"&ors_stugthea1("credit")&"</td>" if not orsnc.eof then response.write "<td >[<a href=plan_edu_del.asp?id_course="&ors_stugthea1("id_course")&"&id_stugroup="&ors_group("id_stugroup")&">ź</a>]</td>" end if response.write "</tr>" end if end if orsstugthe.movenext loop else response.write "<tr><td colspan=4 align=center>" end if if not orsnc.eof then%> <form name="form1" method="post" action="plan_edu_add.asp"> <tr ><td colspan=4 align=center>���͡����Ԫ�<select name="id_course"> <% sqlc6="select * from course_category where id_category=6" set orsc6=server.createobject("adodb.recordset") orsc6.open sqlc6,conn,1,3 if not orsc6.eof then orsc6.movefirst do while not orsc6.eof sql_a6="select * from course where id_course='"&orsc6("id_course")&"' and year_edu='"&year_edu&"'" set ors_a6=server.createobject("adodb.recordset") ors_a6.open sql_a6,conn,1,3 if not ors_a6.eof then sql6="select * from plan_edu where id_stugroup='"&id_stugroup&"' and id_course='"&ors_a6("id_course")&"'" set ors6=server.createobject("adodb.recordset") ors6.open sql6,conn,1,3 if ors6.eof then response.write "<option value="&ors_a6("id_course")&">"&ors_a6("id_course")&" ("&ors_a6("course_th")&")</option>" end if end if orsc6.movenext loop end if %> </select> <input type=hidden name=id_stugroup value=<%=id_stugroup%>> <input type="submit" name="Submit" value="Add!" > </td> </form> <%end if response.write "<tr bgcolor=#FFCCCC><td colspan=4 align=left>˹��¡Ե��Ǵ�Ԫ����͡" response.write "<tr ><td colspan=4 align=center>" %> <form name="form2" method="post" action="plan_edu_add_credit.asp"> ˹��¡Ե<input type=text name=scc size=10 maxlength=2 onkeypress='if (event.keyCode < 46 || event.keyCode >57 ) event.returnValue=false;' value=<%=scc%>> <input type="hidden" name="id_stugroup" value=<%=id_stugroup%>> <%if not orsnc.eof then%> <input type="submit" name="Submit" value="Add!" onmousedown="doSubmit();"> <%end if ' response.write "</table>" %></div></td> </tr> </table> <% else '���Է� response.write "<tr><td colspan=3><center>�س������Է����� �س���ѵԹ��" response.write "<meta http-equiv=refresh content =3;url=javascript:history.back();>" '���Է� end if '���Է� %> </table> <!-- InstanceEndEditable --></td> </tr> <tr> <td colspan="2" background="Image/bghead1.gif">Contact Admin:: wassanaw@swu.ac.th tel.02-649-5000 ext 17600</td> </tr> </table> </body> <!-- InstanceEnd --></html>