Codice PHP:
<html>
<head><title>abcd</title>
<link rel="stylesheet" type="text/css" href="default.css"/>
<script language="javascript" type="text/javascript" src="tinymce/jscripts/tiny_mce/tiny_mce.js"></script>
<script language="javascript" type="text/javascript">
tinyMCE.init({
mode : "textareas",
theme : "advanced",
plugins :"table,save,advhr,advimage,advlink,emotions,iespell,insertdatetime,preview,zoom,flash,searchreplace,print,contextmenu",
theme_advanced_buttons1 :"bold,italic,underline,separator,outdent,indent,separator,strikethrough,justifyleft,justifycenter,justifyright, justifyfull,bullist,numlist,undo,redo,separator,link,image,separator,preview",
theme_advanced_buttons2 : "cut,copy,paste,separator,tablecontrols,separator,emotions,separator,save",
theme_advanced_buttons3 : "",
theme_advanced_toolbar_location : "top",
theme_advanced_toolbar_align : "center",
theme_advanced_path_location : "",
extended_valid_elements :"a[name|href|target|title|onclick],img[class|src|border=0|alt|title|hspace|vspace|width|height|align|onmouseover|onmouseout|name],hr[class|width|size|noshade],font[face|size|color|style],span[class|align|style]",
});
</script>
</head>
<body>
<? include_once("auth.php"); ?>
<div class="container">
<div class="top">
<div class="header"></div>
<?
include_once("menu.php");
include_once("config.php");
$connect = mysql_connect(HOST_DB, USER_DB, PASS_DB)
or die("Connessione non riuscita");
mysql_select_db(NAME_DB)
or die("Selezione del database non riuscita");
$query="
SELECT * FROM `staff` WHERE `utente`= '".$_COOKIE["user"]."' AND `mansione` != 'Amministratore'
";
$query1="
SELECT * FROM `utenti` WHERE `nick`= '".$_COOKIE["user"]."'
";
$result=mysql_query($query);
$result1=mysql_query($query1);
$dati1=mysql_fetch_array($result1);
$data=date ("d/m/Y");
echo '
<div class="content">
<div class="left">
<div class="item">
<h1>Inserimento Nuovo Articolo</h1>
<form method="post" action="admin_nuovo_articolo.php">
Titolo
<input type="text" name="titolo" size="50">
Autore:
<input type="text" name="autore" value="'.$dati1["nome"].' '.$dati1["cognome"].' “'.$dati1["nick"].'”" size="50" readonly="readonly">
Categoria:
<select name="list_name"> ';
while ( $dati = mysql_fetch_array($result) )
{
echo'
<option value="'.$dati["mansione"].'">'.$dati["mansione"].'</option>
';
};
echo '
<option value="Tutte">Tutte</option>
</select>
<input type="text" name="data" value="'.$data.'" size="8" readonly="readonly">
<textarea name="testo" id="testo" rows="15" style="width:100%"></textarea>
<input name="Inserisci" type="submit" id="Inserisci" value="Inserisci">
<input name="Cancella" type="reset" id="Cancella" value="Cancella">
</form>
<center>[b][url="admin.php"]Torna Indietro[/url][/b]</center>
</p>
</div>
</div>
</div>
';
include_once("footer.php");
?>