<?php
session_start();
$user_ID=$_SESSION[user_ID];
if (!$user_ID || $user_ID=='0')
{
header('location: index.php');
die('Login failed');
}
require("util.php");
$sql = new MySQL_class;
$sql->Create("generator");
$esql = new MySQL_class;
$esql->Create("generator");
if ($_GET[user]) { $_SESSION[var_user] = $_GET[user]; }
$user=$_SESSION[var_user];
?>
<?php
if ($_POST['right']!='') {
$right = $_POST['right'];
}
?>
<HTML>
<HEAD>
<META HTTP-EQUIV="CONTENT-TYPE" CONTENT="text/html; charset=windows-1252">
<TITLE>Rights add</TITLE>
</HEAD>
<BODY LANG="en-US" DIR="LTR" ONLOAD="Insert.<?php
{echo 'right';}
?>.focus();">
<FORM NAME="Insert" ACTION="postaddrights.php" METHOD=POST>
<INPUT TYPE="HIDDEN" NAME="FOCUS" VALUE="">
<TABLE WIDTH=100% BORDER=0 CELLPADDING=4 CELLSPACING=1>
<THEAD>
<TR>
<TD COLSPAN=2 WIDTH=100% VALIGN=TOP BGCOLOR="#000080">
<P><FONT COLOR="#ffffff"><FONT FACE="Verdana, sans-serif"><FONT SIZE=1 STYLE="font-size: 8pt"><B>Rights add
</B></FONT></FONT></FONT></P>
</TD>
</TR>
</THEAD>
<TBODY>
<TR VALIGN=TOP>
<TD WIDTH=20% BGCOLOR="#e6e6ff">
<P><FONT COLOR="#000080"><FONT FACE="Verdana, sans-serif"><FONT SIZE=1 STYLE="font-size: 8pt">
Right
</FONT></FONT></FONT></P>
</TD>
<TD WIDTH=80%>
<P><FONT COLOR="#000080"><FONT FACE="Verdana, sans-serif"><FONT SIZE=1 STYLE="font-size: 8pt">
<?php
$current=($_POST['right']!='');
echo ("<SELECT NAME=\"right\" OnChange=\"Insert.action=''; Insert.FOCUS.value='502'; Insert.submit();\">");
$sql->Query("SELECT username as F0_1, `user`.user FROM `user` ");
for ($i = 0; $i < $sql->rows; $i++)
{
$sql->Fetch($i);
$searchID = $sql->data[user];
$username_0=htmlspecialchars($sql->data[F0_1]);
$searchshow = "$username_0";
echo ("<OPTION ");
if ($current && $searchID == $_POST['right']) {echo "SELECTED ";};
echo "VALUE=\"$searchID\">$searchshow";
}
echo ("</SELECT>");
?>
</FONT></FONT></FONT></P>
</TD>
</TR>
</TBODY>
</TABLE>
<P ALIGN=RIGHT>
<INPUT TYPE=submit VALUE=Add>
<INPUT TYPE=BUTTON VALUE="Cancel" onClick="window.close()">
</P>
</FORM>
</BODY>
</HTML>