diff --git a/src/server/cyberhex-code/system/secure_zone/php/client_settings.php b/src/server/cyberhex-code/system/secure_zone/php/client_settings.php index 95e089f..f294555 100644 --- a/src/server/cyberhex-code/system/secure_zone/php/client_settings.php +++ b/src/server/cyberhex-code/system/secure_zone/php/client_settings.php @@ -33,6 +33,9 @@ if(isset($_GET["update"])){ if(isset($_GET["delete"])){ delete_item($_GET["db"],$_GET["delete"]); } +if(isset($_GET["add"])){ + add_item($_GET["db"],$_GET["value"],$_GET["field"]); +} load_settings(); function delete_item($db,$id){ include "../../../config.php"; @@ -48,6 +51,21 @@ function delete_item($db,$id){ $stmt->close(); $conn -> close(); } +function add_item($db,$value,$field){ + include "../../../config.php"; + $conn = new mysqli($DB_SERVERNAME, $DB_USERNAME, $DB_PASSWORD,$DB_DATABASE); + if ($conn->connect_error) { + $success=0; + die("Connection failed: " . $conn->connect_error); + } + $db=htmlspecialchars($db); + $id=htmlspecialchars($id); + $stmt = $conn->prepare("INSERT INTO $db ($field) VALUES(?);"); + $stmt->bind_param("s",$value); + $stmt->execute(); + $stmt->close(); + $conn -> close(); +} function safe_settings(){ include "../../../config.php"; $conn = new mysqli($DB_SERVERNAME, $DB_USERNAME, $DB_PASSWORD,$DB_DATABASE); @@ -178,6 +196,11 @@ function load_settings(){ function delete_item(db,id){ fetch('client_settings.php?delete='+id+'&db='+db); } + function add_item(db,element_id,field){ + var element = document.getElementById(id); + var value = element.value; + fetch('client_settings.php?add='+db+'&value='+value+'&field='+field); + }