shell bypass 403
<div class="row">
<div class="col-md-12">
<div class="box">
<div class="box-header">
<h3 class="box-title">Liste des autorisations</h3>
<div class="box-tools">
<?php if(in_array($add, $access["Autorisation"]->actions)){ ?>
<a href="<?php echo site_url('autorisation/add'); ?>" class="btn btn-success btn-sm">Ajouter</a>
<?php } ?>
<?php if(in_array($export, $access["Autorisation"]->actions)){ ?>
<a href="#" id="exportautorisation" data-toggle="modal" data-target="#modalexportautorisation" class="btn btn-info btn-sm"><i class="fa fa-print"></i> Exporter</a>
<?php } ?>
</div>
</div>
<div class="box-body">
<?php if(isset($msg)){ ?>
<div class="alert alert-danger" >
<strong>Attention!</strong> <?php echo $msg; ?>.
</div>
<?php } ?>
<table class="table table-striped" id="dataautorisation">
<thead>
<tr>
<th>Date de creation</th>
<th>Date de demande</th>
<th>Utilisateur</th>
<th>Depart</th>
<th>Moyen de transport</th>
<th>Heure de sortie</th>
<th>Heure fin</th>
<th>Total des heure</th>
<th>Objet autorisation</th>
<th>Description</th>
<th>Etat</th>
<th>Actions</th>
</tr>
</thead>
<tbody>
<?php foreach($autorisation as $d){ ?>
<tr>
<td><?php echo $d['creationdate']; ?></td>
<td><?php echo $d['datedemande']; ?></td>
<td><?php echo $d['name']." ".$d['prenom'];?></td>
<td><?php echo $d['depart']; ?></td>
<td><?php echo $d['transport']; ?></td>
<td><?php echo $d['heursdebut']; ?></td>
<td><?php echo $d['heursfin']; ?></td>
<td> <?php
$start = date_create('2015-01-26 '.$d["heursdebut"]);
$end = date_create('2015-01-26 '.$d["heursfin"]);
$diff=date_diff($end,$start);
echo $diff->h.":".$diff->i;
?></td>
<td><?php echo $d['objetautorisation']; ?></td>
<td><?php echo $d['description']; ?></td>
<td>
<?php
$valide_values = array(
'0'=>'En Attente',
'1'=>'Confirmé',
'2'=>'Rejeté',
'3'=>'Annulé',
);
if($d["etat"]==0){
echo "<span class='label label-default'>".$valide_values[$d["etat"]]."</span>";
}else if($d["etat"]==1){
echo "<span class='label label-success'>".$valide_values[$d["etat"]]."</span>";
}else if($d["etat"]==2){
echo "<span class='label label-danger'>".$valide_values[$d["etat"]]."</span>";
}else{
echo "<span class='label label-warning'>".$valide_values[$d["etat"]]."</span>";
}
?>
</td>
<td>
<?php if(in_array($edit, $access["Autorisation"]->actions)){ ?>
<a href="<?php echo site_url('autorisation/edit/'.$d['idautorisation']); ?>" class="btn btn-info btn-xs"><span class="fa fa-pencil"></span> Edition</a>
<?php } ?>
<?php if(in_array($delete, $access["Autorisation"]->actions)){ ?>
<a href="<?php echo site_url('autorisation/remove/'.$d['idautorisation']); ?>" class="btn btn-danger btn-xs"><span class="fa fa-trash"></span> Supprimer</a>
<?php } ?>
<?php if($d["etat"]==1){ ?>
<?php if(in_array($print , $access["Autorisation"]->actions)){ ?>
<a href="<?php echo site_url('autorisation/pdf/'.$d['idautorisation']); ?>" class="btn btn-success btn-xs"><span class="fa fa-print"></span> Imprimer</a>
<?php } ?>
<?php if(in_array($cancel, $access["Autorisation"]->actions)){ ?>
<a href="<?php echo site_url('autorisation/annuler/'.$d['idautorisation']); ?>" class="btn btn-warning btn-xs"><span class="fa fa-ban"></span> Annuler</a>
<?php } ?>
<?php } ?>
<?php if($d["etat"]==0){ ?>
<?php if(in_array($confirm, $access["Autorisation"]->actions)){ ?>
<a href="<?php echo site_url('autorisation/confirm/'.$d['idautorisation']); ?>" class="btn btn-success btn-xs"><span class="fa fa-check"></span> Confirmer</a>
<?php } ?>
<?php if(in_array($reject, $access["Autorisation"]->actions)){ ?>
<a href="<?php echo site_url('autorisation/reject/'.$d['idautorisation']); ?>" class="btn btn-danger btn-xs"><span class="fa fa-times"></span> Rejeter</a>
<?php } ?>
<?php } ?>
</td>
</tr>
<?php } ?>
</tbody>
</table>
<div class="pull-right">
<?php echo $this->pagination->create_links(); ?>
</div>
</div>
</div>
</div>
</div>
<?php if(in_array($chart, $access["Autorisation"]->actions)){ ?>
<div class="row">
<div class="col-md-6">
<div class="box box-default">
<div class="box-header with-border">
<h3 class="box-title">Statistique</h3>
<div class="box-tools pull-right">
<button type="button" class="btn btn-box-tool" data-widget="collapse"><i class="fa fa-minus"></i>
</button>
<button type="button" class="btn btn-box-tool" data-widget="remove"><i class="fa fa-times"></i></button>
</div>
</div>
<!-- /.box-header -->
<div class="box-body">
<div class="row">
<div class="col-md-8">
<div class="chart-responsive">
<canvas id="pieChartAutorisation" height="150"></canvas>
</div>
<!-- ./chart-responsive -->
</div>
<!-- /.col -->
<div class="col-md-4">
<ul class="chart-legend clearfix">
<li><i class="fa fa-circle-o text-red"></i> Rejetée</li>
<li><i class="fa fa-circle-o text-yellow"></i>Anulée </li>
<li><i class="fa fa-circle-o text-green"></i> Confirmée</li>
<li><i class="fa fa-circle-o text-gray"></i> En attente</li>
</ul>
</div>
<!-- /.col -->
</div>
<!-- /.row -->
</div>
<!-- /.box-body -->
<!-- /.footer -->
</div>
<!-- /.box -->
</div>
<div class="col-md-6">
<div class="box box-default">
<div class="box-header with-border">
<h3 class="box-title">Paramétre statistique</h3>
<div class="box-tools pull-right">
<button type="button" class="btn btn-box-tool" data-widget="collapse"><i class="fa fa-minus"></i>
</button>
<button type="button" class="btn btn-box-tool" data-widget="remove"><i class="fa fa-times"></i></button>
</div>
</div>
<!-- /.box-header -->
<div class="box-body">
<div class="row">
<div class="col-md-6">
<label for="datedebut" class="control-label"><span class="text-danger">*</span>Date debut </label>
<div class="form-group">
<input type="text" required name="datedebut" value="" class="has-datepicker form-control" id="datedebutchart" />
<span class="text-danger" id="debuterror"></span>
</div>
</div>
<div class="col-md-6">
<label for="datefin" class="control-label"><span class="text-danger">*</span>Date fin</label>
<div class="form-group">
<input type="text" required name="datefin" value="" class="has-datepicker form-control" id="datefinchart" />
<span class="text-danger" id="finerror"></span>
</div>
</div>
<div class="col-md-12">
<button type="button" id="sendchartautorisation" class="btn btn-success">
<i class="fa fa-check"></i> Envoyer
</button>
<button type="button" id="sendallchartautorisation" class="btn btn-success">
<i class="fa fa-check"></i> Tout
</button>
</div>
</div>
<!-- /.row -->
</div>
<!-- /.box-body -->
<!-- /.footer -->
</div>
</div>
</div>
<?php } ?>
<!------------------------------------------------------------------------------------------>
<div class="modal" id="modalexportautorisation" tabindex="-1" role="dialog">
<div class="modal-dialog" role="document">
<div class="modal-content">
<div class="modal-header">
<h5 class="modal-title">Exportation</h5>
<button type="button" class="close" data-dismiss="modal" aria-label="Close">
<span aria-hidden="true">×</span>
</button>
</div>
<div class="modal-body">
<div class="col-md-6">
<label for="datedebut" class="control-label"><span class="text-danger">*</span>Date debut </label>
<div class="form-group">
<input type="text" required name="datedebut" value="" class="has-datepicker form-control" id="datedebutmodal" />
<span class="text-danger" id="debuterror"></span>
</div>
</div>
<div class="col-md-6">
<label for="datefin" class="control-label"><span class="text-danger">*</span>Date fin</label>
<div class="form-group">
<input type="text" required name="datefin" value="" class="has-datepicker form-control" id="datefinmodal" />
<span class="text-danger" id="finerror"></span>
</div>
</div>
<div class="col-md-12">
<label for="usersmodal" class="control-label"><span class="text-danger">*</span> Utilisateur</label>
<div class="form-group">
<select name="usersmodal" id="usersmodal" class="form-control" required>
<option value="0">selectionnez un utilisateur</option>
<?php
foreach($all_users as $user)
{
?>
<option value="<?php echo $user['id']; ?>"><?php echo $user['nom'].' '.$user['prenom']; ?></option>
<?php
}
?>
</select>
</div>
</div>
<div class="col-md-6">
<label for="objetautorisation_idmodal" class="control-label"><span class="text-danger">*</span> Objet autorisation</label>
<div class="form-group">
<select name="objetautorisation_idmodal" id="objetautorisation_idmodal" class="form-control" required>
<option value="0">select objet autorisation</option>
<?php
foreach($all_objetautorisation as $objetautorisation)
{
?>
<option value="<?php echo $objetautorisation['id']; ?>"><?php echo $objetautorisation['libelle']; ?></option>
<?php
}
?>
</select>
<span class="text-danger" id="objetautorisationerror"></span>
</div>
</div>
<div class="col-md-6">
<label for="etatmodal" class="control-label"><span class="text-danger">*</span> Etat</label>
<div class="form-group">
<select name="etatmodal" id="etatmodal" class="form-control" required>
<option value="-1">Selectionnez une Etat</option>
<?php
$states = array(
'0'=>'En Attente',
'1'=>'Confirmée',
'2'=>'Rejetée',
'3'=>'Annulée',
);
foreach($states as $key => $state)
{
?>
<option value="<?php echo $key; ?>"><?php echo $state; ?></option>
<?php
}
?>
</select>
<span class="text-danger" id="etatautorisationerror"></span>
</div>
</div>
</div>
<div class="modal-footer">
<button type="button" class="btn btn-primary" id="exportautorisationBtn">Exporter</button>
<button type="button" class="btn btn-secondary" data-dismiss="modal">Fermer</button>
</div>
</div>
</div>
</div>