get('roleid'); $userid = $current_user->get('id'); $viewer = new Vtiger_Viewer(); $viewer->assign('MODULE', 'Home'); $viewer->assign('SELECTED_MENU_CATEGORY', 'MARKETING'); $viewer->assign('COMPANY_LOGO', Vtiger_CompanyDetails_Model::getInstanceById()->getLogo()); $viewer->assign('COMPANY_DETAILS_SETTINGS',new Settings_Vtiger_CompanyDetails_Model()); $viewer->assign('USER_MODEL', $current_user); $viewer->assign('CURRENT_USER_MODEL', $current_user); $viewer->assign('PAGETITLE','Veille'); $viewer->view('CustomDashboard.tpl'); if(isset($_POST['Evenement']) && isset($_POST['Produit'])) { if($_FILES['fileToUpload']['name'] != ""){ $file_name = $_FILES['fileToUpload']['name']; $file_tmp =$_FILES['fileToUpload']['tmp_name']; $lien="file_upload/".date("Ymdhis")."_".$file_name; move_uploaded_file($file_tmp,$lien); $query = "INSERT INTO `veilleconc`(`event`, `product`, `ppa`, `ug`, `mpc`, `pc`, `type`, `action`,`lien_image`,`creatorid`, `date_create`) VALUES ('".addslashes($_POST['Evenement'])."','".addslashes($_POST['Produit'])."','".addslashes($_POST['PPA'])."','".addslashes($_POST['UG'])."','".addslashes($_POST['MPC'])."','".addslashes($_POST['PC'])."','".addslashes($_POST['type'])."','".addslashes($_POST['action'])."','".$lien."','".$userid."', CURDATE());"; $adb->query($query); }else{ $query = "INSERT INTO `veilleconc`(`event`, `product`, `ppa`, `ug`, `mpc`, `pc`, `type`, `action`,`creatorid`, `date_create`) VALUES ('".addslashes($_POST['Evenement'])."','".addslashes($_POST['Produit'])."','".addslashes($_POST['PPA'])."','".addslashes($_POST['UG'])."','".addslashes($_POST['MPC'])."','".addslashes($_POST['PC'])."','".addslashes($_POST['type'])."','".addslashes($_POST['action'])."','".$userid."', CURDATE());"; $adb->query($query); } } if(!isResponsable($roleid)) $userid = "%"; $param = "like '".$userid."'"; if(isMedecin($roleid) || isPharma($roleid)) { $subusers = array_values(getSubordinateRoleAndUsers($roleid))[0]; $subarr = array(); foreach($subusers as $key => $value){ array_push($subarr, $key); } $subusers_str = '('.implode (", ", $subarr).')'; $param = "in ".$subusers_str; } if (isVM($roleid) || isVP($roleid)) $param = "like '".$current_user->get('id')."'"; $query = "SELECT * FROM `veilleconc` v Join vtiger_users u ON v.creatorid = u.id where creatorid ".$param.";"; $sql_get_result = $adb->pquery($query); $results = array(); while ($recordinfo = $adb->fetch_array($sql_get_result)) { $results[] = $recordinfo; } echo '