From: ivan Date: Wed, 26 Dec 2007 08:23:01 +0000 (+0000) Subject: leftovers from XSSmas X-Git-Tag: TRIXBOX_2_6~151 X-Git-Url: http://git.freeside.biz/gitweb/?p=freeside.git;a=commitdiff_plain;h=fbb0b64be7d4b8e44d87d15b3a55bee57c000331 leftovers from XSSmas --- diff --git a/httemplate/misc/timeworked.html b/httemplate/misc/timeworked.html index dc89d1cde..b0eadc42e 100755 --- a/httemplate/misc/timeworked.html +++ b/httemplate/misc/timeworked.html @@ -1,72 +1,97 @@ <% include('/elements/header.html', $title, '' ) %> -% if ( $cgi->param('error') ) { - Error: <% $cgi->param('error') %> -

-% } +<% include('/elements/error.html') %>
- - - - - - - - - - - - - - - - - - - - -% foreach my $tr_id ( keys %ticketmap ) { -% my (@customers) = @{$customers{$ticketmap{$tr_id}}}; -% next unless @customers; -% my $multiplier = sprintf("%.2f", 1/@customers); -% my ($custnum, $name) = split(':', pop @customers, 2); -% my $link = $p. 'rt/Ticket/Display.html?id='. $ticketmap{$tr_id}. -% '#txn-'. $tr_id; - - - - - - - - - - - -% foreach ( @customers ) { -% ($custnum, $name) = split(':', $_, 2); - - - - - - - -% } -% } + + + + + + + + + + + + + + + + + + + + + + +% foreach my $tr_id ( keys %ticketmap ) { +% my (@customers) = @{$customers{$ticketmap{$tr_id}}}; +% next unless @customers; +% my $default_multiplier = sprintf("%.2f", 1/@customers); +% my ($custnum, $name) = split(':', pop @customers, 2); +% my $link = $p. 'rt/Ticket/Display.html?id='. $ticketmap{$tr_id}. +% '#txn-'. $tr_id; + + + + + + +% my $seconds = 0; +% if ( $cgi->param("seconds$tr_id") =~ /^(\d+)$/ ) { +% $seconds = $1; +% } + + + + + + + +% foreach ( @customers ) { +% ($custnum, $name) = split(':', $_, 2); + + + + + + + + +% } +% } + +
TransTicketTimeCustomerMultiplier
##Subjecthours#Name
<% $tr_id %><% $ticketmap{$tr_id} %><% $ticket{$ticketmap{$tr_id}} |h %><% sprintf("%0.2f", $cgi->param("seconds$tr_id")/3600) %><% $custnum %><% $name %> - - " > - param("multiplier${_}_$custnum") : $multiplier %>" > -
<% $custnum %><% $name %> - param("multiplier${tr_id}_$custnum") : $multiplier %>" > -
TransTicketTimeCustomerMultiplier
##Subjecthours#Name
<% $tr_id %><% $ticketmap{$tr_id} %><% $ticket{$ticketmap{$tr_id}} |h %><% sprintf("%0.2f", $seconds/3600) %><% $custnum %><% $name %> + + + +% my $multiplier = $default_multiplier; +% my $mult_paramname = "multiplier${tr_id}_$custnum" +% if ( $cgi->param($mult_paramname) =~ /^\s*([\d\.]+)\s*$/ ) { +% $multiplier = $1; +% } + + +
<% $custnum %><% $name %> + +% $multiplier = $default_multiplier; +% $mult_paramname = "multiplier${tr_id}_$custnum"; +% if ( $cgi->param($mult_paramname) =~ /^\s*([\d\.]+)\s*$/ ) { +% $multiplier = $1; +% } + + + +
+
+