is_maintainer($ob->appId,$ob->versionId)) ) { errorpage("Insufficient Privileges!"); exit; } if(isset($_REQUEST['sub'])) { $sOldNoteTitle = $ob->noteTitle; $sOldNoteDesc = $ob->noteDesc; $sFullAppName = "Application: ".lookupAppName($ob->appId)." Version: ".lookupVersionName($ob->appId, $ob->versionId); /* Start of e-mail */ $ms = APPDB_ROOT."appview.php?appId={$ob->appId}&versionId={$ob->versionId}"."\n"; $ms .= "\n"; $sEmail = getNotifyEmailAddressList($ob->appId, $ob->versionId); if ($_REQUEST['sub'] == 'Delete') { // delete Note query_appdb("DELETE from `appNotes` where noteId = {$_REQUEST['noteId']}"); if($sEmail) { $ms .= ($_SESSION['current']->username ? $_SESSION['current']->username : "Anonymous")." deleted note from ".$sFullAppName."\n"; $ms .= "\n"; $ms .= "title: ".$sOldNoteTitle."\n"; $ms .= "\n"; $ms .= $sOldNoteDesc."\n"; $ms .= "\n"; $ms .= STANDARD_NOTIFY_FOOTER; mail(stripslashes($sEmail), "[AppDB] ".$sFullAppName ,$ms); } else { $sEmail = "no one"; } addmsg("mesage sent to: ".$sEmail, 'green'); // success addmsg("Note Deleted.", "green"); } else if ($_REQUEST['sub'] == 'Update') { $sUpdate = compile_update_string(array( 'noteTitle' => $_REQUEST['noteTitle'], 'noteDesc' => $_REQUEST['noteDesc'])); query_appdb("UPDATE appNotes SET $sUpdate WHERE noteId = {$_REQUEST['noteId']}"); if($sEmail) { $ms .= ($_SESSION['current']->username ? $_SESSION['current']->username : "Anonymous")." changed note for ".$sFullAppName."\n"; $ms .= "From --------------------------\n"; $ms .= "title: ".$sOldNoteTitle."\n"; $ms .= "\n"; $ms .= $sOldNoteDesc."\n"; $ms .= "To --------------------------\n"; $ms .= "title: ".$_REQUEST['noteTitle']."\n"; $ms .= "\n"; $ms .= $_REQUEST['noteDesc']."\n"; $ms .= "\n"; $ms .= STANDARD_NOTIFY_FOOTER; mail(stripslashes($sEmail), "[AppDB] ".$sFullAppName ,$ms); } else { $sEmail = "no one"; } addmsg("mesage sent to: ".$sEmail, green); addmsg("Note Updated", "green"); } redirect(apidb_fullurl("appview.php?appId={$ob->appId}&versionId={$ob->versionId}")); } else { if (!isset($_REQUEST['preview'])) { $_REQUEST['noteTitle'] = $ob->noteTitle; $_REQUEST['noteDesc'] = $ob->noteDesc; $_REQUEST['appId'] = $ob->appId; $_REQUEST['versionId'] = $ob->versionId; } // show form apidb_header("Edit Application Note"); echo "