index.php 38 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989
  1. <?php
  2. $generationTime = -microtime(true);
  3. //include functions
  4. require_once 'functions.php';
  5. //Set result array
  6. $result = array();
  7. //Get request method
  8. $method = $_SERVER['REQUEST_METHOD'];
  9. reset($_GET);
  10. $function = (key($_GET) ? str_replace("/", "_", key($_GET)) : false);
  11. //Exit if $function is blank
  12. if ($function === false) {
  13. $result['status'] = "error";
  14. $result['statusText'] = "No API Path Supplied";
  15. exit(json_encode($result));
  16. }
  17. $result['request'] = key($_GET);
  18. switch ($function) {
  19. case 'v1_settings_page':
  20. switch ($method) {
  21. case 'GET':
  22. if (qualifyRequest(1)) {
  23. $result['status'] = 'success';
  24. $result['statusText'] = 'success';
  25. $result['data'] = $pageSettings;
  26. writeLog('success', 'Admin Function - Accessed Settings Page', $GLOBALS['organizrUser']['username']);
  27. } else {
  28. $result['status'] = 'error';
  29. $result['statusText'] = 'API/Token invalid or not set';
  30. $result['data'] = null;
  31. writeLog('error', 'Admin Function - Tried to access Settings Page', $GLOBALS['organizrUser']['username']);
  32. }
  33. break;
  34. default:
  35. $result['status'] = 'error';
  36. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  37. break;
  38. }
  39. break;
  40. case 'v1_homepage_page':
  41. switch ($method) {
  42. case 'GET':
  43. $result['status'] = 'success';
  44. $result['statusText'] = 'success';
  45. $result['data'] = $pageHomepage;
  46. break;
  47. default:
  48. $result['status'] = 'error';
  49. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  50. break;
  51. }
  52. break;
  53. case 'v1_settings_plugins':
  54. switch ($method) {
  55. case 'GET':
  56. if (qualifyRequest(1)) {
  57. $result['status'] = 'success';
  58. $result['statusText'] = 'success';
  59. $result['data'] = $pageSettingsPlugins;
  60. } else {
  61. $result['status'] = 'error';
  62. $result['statusText'] = 'API/Token invalid or not set';
  63. $result['data'] = null;
  64. }
  65. break;
  66. default:
  67. $result['status'] = 'error';
  68. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  69. break;
  70. }
  71. break;
  72. case 'v1_settings_tab_editor_homepage':
  73. switch ($method) {
  74. case 'GET':
  75. if (qualifyRequest(1)) {
  76. $result['status'] = 'success';
  77. $result['statusText'] = 'success';
  78. $result['data'] = $pageSettingsTabEditorHomepage;
  79. } else {
  80. $result['status'] = 'error';
  81. $result['statusText'] = 'API/Token invalid or not set';
  82. $result['data'] = null;
  83. }
  84. break;
  85. default:
  86. $result['status'] = 'error';
  87. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  88. break;
  89. }
  90. break;
  91. case 'v1_settings_tab_editor_homepage_order':
  92. switch ($method) {
  93. case 'GET':
  94. if (qualifyRequest(1)) {
  95. $result['status'] = 'success';
  96. $result['statusText'] = 'success';
  97. $result['data'] = $pageSettingsTabEditorHomepageOrder;
  98. } else {
  99. $result['status'] = 'error';
  100. $result['statusText'] = 'API/Token invalid or not set';
  101. $result['data'] = null;
  102. }
  103. break;
  104. default:
  105. $result['status'] = 'error';
  106. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  107. break;
  108. }
  109. break;
  110. case 'v1_settings_homepage_list':
  111. switch ($method) {
  112. case 'GET':
  113. if (qualifyRequest(1)) {
  114. $result['status'] = 'success';
  115. $result['statusText'] = 'success';
  116. $result['data'] = getHomepageList();
  117. } else {
  118. $result['status'] = 'error';
  119. $result['statusText'] = 'API/Token invalid or not set';
  120. $result['data'] = null;
  121. }
  122. break;
  123. case 'POST':
  124. if (qualifyRequest(1)) {
  125. $result['status'] = 'success';
  126. $result['statusText'] = 'success';
  127. $result['data'] = editPlugins($_POST);
  128. } else {
  129. $result['status'] = 'error';
  130. $result['statusText'] = 'API/Token invalid or not set';
  131. $result['data'] = null;
  132. }
  133. break;
  134. default:
  135. $result['status'] = 'error';
  136. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  137. break;
  138. }
  139. break;
  140. case 'v1_settings_plugins_list':
  141. switch ($method) {
  142. case 'GET':
  143. if (qualifyRequest(1)) {
  144. $result['status'] = 'success';
  145. $result['statusText'] = 'success';
  146. $result['data'] = getPlugins();
  147. } else {
  148. $result['status'] = 'error';
  149. $result['statusText'] = 'API/Token invalid or not set';
  150. $result['data'] = null;
  151. }
  152. break;
  153. case 'POST':
  154. if (qualifyRequest(1)) {
  155. $result['status'] = 'success';
  156. $result['statusText'] = 'success';
  157. $result['data'] = editPlugins($_POST);
  158. } else {
  159. $result['status'] = 'error';
  160. $result['statusText'] = 'API/Token invalid or not set';
  161. $result['data'] = null;
  162. }
  163. break;
  164. default:
  165. $result['status'] = 'error';
  166. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  167. break;
  168. }
  169. break;
  170. case 'v1_settings_settings_logs':
  171. switch ($method) {
  172. case 'GET':
  173. if (qualifyRequest(1)) {
  174. $result['status'] = 'success';
  175. $result['statusText'] = 'success';
  176. $result['data'] = $pageSettingsSettingsLogs;
  177. } else {
  178. $result['status'] = 'error';
  179. $result['statusText'] = 'API/Token invalid or not set';
  180. $result['data'] = null;
  181. }
  182. break;
  183. default:
  184. $result['status'] = 'error';
  185. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  186. break;
  187. }
  188. break;
  189. case 'v1_settings_settings_sso':
  190. switch ($method) {
  191. case 'GET':
  192. if (qualifyRequest(1)) {
  193. $result['status'] = 'success';
  194. $result['statusText'] = 'success';
  195. $result['data'] = $pageSettingsSettingsSSO;
  196. } else {
  197. $result['status'] = 'error';
  198. $result['statusText'] = 'API/Token invalid or not set';
  199. $result['data'] = null;
  200. }
  201. break;
  202. default:
  203. $result['status'] = 'error';
  204. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  205. break;
  206. }
  207. break;
  208. case 'v1_settings_settings_main':
  209. switch ($method) {
  210. case 'GET':
  211. if (qualifyRequest(1)) {
  212. $result['status'] = 'success';
  213. $result['statusText'] = 'success';
  214. $result['data'] = $pageSettingsSettingsMain;
  215. } else {
  216. $result['status'] = 'error';
  217. $result['statusText'] = 'API/Token invalid or not set';
  218. $result['data'] = null;
  219. }
  220. break;
  221. default:
  222. $result['status'] = 'error';
  223. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  224. break;
  225. }
  226. break;
  227. case 'v1_settings_customize_appearance':
  228. switch ($method) {
  229. case 'GET':
  230. if (qualifyRequest(1)) {
  231. $result['status'] = 'success';
  232. $result['statusText'] = 'success';
  233. $result['data'] = $pageSettingsCustomizeAppearance;
  234. } else {
  235. $result['status'] = 'error';
  236. $result['statusText'] = 'API/Token invalid or not set';
  237. $result['data'] = null;
  238. }
  239. break;
  240. case 'POST':
  241. if (qualifyRequest(1)) {
  242. $result['status'] = 'success';
  243. $result['statusText'] = 'success';
  244. $result['data'] = editAppearance($_POST);
  245. } else {
  246. $result['status'] = 'error';
  247. $result['statusText'] = 'API/Token invalid or not set';
  248. $result['data'] = null;
  249. }
  250. break;
  251. default:
  252. $result['status'] = 'error';
  253. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  254. break;
  255. }
  256. break;
  257. case 'v1_remove_file':
  258. switch ($method) {
  259. case 'POST':
  260. if (qualifyRequest(1)) {
  261. $result['status'] = 'success';
  262. $result['statusText'] = 'success';
  263. $result['data'] = removeFile($_POST);
  264. } else {
  265. $result['status'] = 'error';
  266. $result['statusText'] = 'API/Token invalid or not set';
  267. $result['data'] = null;
  268. }
  269. break;
  270. default:
  271. $result['status'] = 'error';
  272. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  273. break;
  274. }
  275. break;
  276. case 'v1_update_config':
  277. switch ($method) {
  278. case 'POST':
  279. if (qualifyRequest(1)) {
  280. $result['status'] = 'success';
  281. $result['statusText'] = 'success';
  282. $result['data'] = updateConfigItem($_POST);
  283. } else {
  284. $result['status'] = 'error';
  285. $result['statusText'] = 'API/Token invalid or not set';
  286. $result['data'] = null;
  287. }
  288. break;
  289. default:
  290. $result['status'] = 'error';
  291. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  292. break;
  293. }
  294. break;
  295. case 'v1_update_config_multiple':
  296. switch ($method) {
  297. case 'POST':
  298. if (qualifyRequest(1)) {
  299. $result['status'] = 'success';
  300. $result['statusText'] = 'success';
  301. $result['data'] = updateConfigMultiple($_POST);
  302. } else {
  303. $result['status'] = 'error';
  304. $result['statusText'] = 'API/Token invalid or not set';
  305. $result['data'] = null;
  306. }
  307. break;
  308. default:
  309. $result['status'] = 'error';
  310. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  311. break;
  312. }
  313. break;
  314. case 'v1_homepage_connect':
  315. switch ($method) {
  316. case 'POST':
  317. $result['status'] = 'success';
  318. $result['statusText'] = 'success';
  319. $result['data'] = homepageConnect($_POST);
  320. break;
  321. default:
  322. $result['status'] = 'error';
  323. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  324. break;
  325. }
  326. break;
  327. case 'v1_test_api_connection':
  328. switch ($method) {
  329. case 'POST':
  330. if (qualifyRequest(1)) {
  331. $result['status'] = 'success';
  332. $result['statusText'] = 'success';
  333. $result['data'] = testAPIConnection($_POST);
  334. } else {
  335. $result['status'] = 'error';
  336. $result['statusText'] = 'API/Token invalid or not set';
  337. $result['data'] = null;
  338. }
  339. break;
  340. default:
  341. $result['status'] = 'error';
  342. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  343. break;
  344. }
  345. break;
  346. case 'v1_settings_tab_editor_tabs':
  347. switch ($method) {
  348. case 'GET':
  349. if (qualifyRequest(1)) {
  350. $result['status'] = 'success';
  351. $result['statusText'] = 'success';
  352. $result['data'] = $pageSettingsTabEditorTabs;
  353. } else {
  354. $result['status'] = 'error';
  355. $result['statusText'] = 'API/Token invalid or not set';
  356. $result['data'] = null;
  357. }
  358. break;
  359. case 'POST':
  360. if (qualifyRequest(1)) {
  361. $result['status'] = 'success';
  362. $result['statusText'] = 'success';
  363. $result['data'] = editTabs($_POST);
  364. } else {
  365. $result['status'] = 'error';
  366. $result['statusText'] = 'API/Token invalid or not set';
  367. $result['data'] = null;
  368. }
  369. break;
  370. default:
  371. $result['status'] = 'error';
  372. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  373. break;
  374. }
  375. break;
  376. case 'v1_settings_tab_editor_categories':
  377. switch ($method) {
  378. case 'GET':
  379. if (qualifyRequest(1)) {
  380. $result['status'] = 'success';
  381. $result['statusText'] = 'success';
  382. $result['data'] = $pageSettingsTabEditorCategories;
  383. } else {
  384. $result['status'] = 'error';
  385. $result['statusText'] = 'API/Token invalid or not set';
  386. $result['data'] = null;
  387. }
  388. break;
  389. case 'POST':
  390. if (qualifyRequest(1)) {
  391. $result['status'] = 'success';
  392. $result['statusText'] = 'success';
  393. $result['data'] = editCategories($_POST);
  394. } else {
  395. $result['status'] = 'error';
  396. $result['statusText'] = 'API/Token invalid or not set';
  397. $result['data'] = null;
  398. }
  399. break;
  400. default:
  401. $result['status'] = 'error';
  402. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  403. break;
  404. }
  405. break;
  406. case 'v1_settings_user_manage_users':
  407. switch ($method) {
  408. case 'GET':
  409. if (qualifyRequest(1)) {
  410. $result['status'] = 'success';
  411. $result['statusText'] = 'success';
  412. $result['data'] = $pageSettingsUserManageUsers;
  413. } else {
  414. $result['status'] = 'error';
  415. $result['statusText'] = 'API/Token invalid or not set';
  416. $result['data'] = null;
  417. }
  418. break;
  419. case 'POST':
  420. if (qualifyRequest(1)) {
  421. $result['status'] = 'success';
  422. $result['statusText'] = 'success';
  423. $result['data'] = adminEditUser($_POST);
  424. } elseif (qualifyRequest(998)) {
  425. $result['status'] = 'success';
  426. $result['statusText'] = 'success';
  427. $result['data'] = editUser($_POST);
  428. } else {
  429. $result['status'] = 'error';
  430. $result['statusText'] = 'API/Token invalid or not set';
  431. $result['data'] = null;
  432. }
  433. break;
  434. default:
  435. $result['status'] = 'error';
  436. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  437. break;
  438. }
  439. break;
  440. case 'v1_manage_user':
  441. switch ($method) {
  442. case 'POST':
  443. if (qualifyRequest(998)) {
  444. $result['status'] = 'success';
  445. $result['statusText'] = 'success';
  446. $result['data'] = editUser($_POST);
  447. } else {
  448. $result['status'] = 'error';
  449. $result['statusText'] = 'API/Token invalid or not set';
  450. $result['data'] = null;
  451. }
  452. break;
  453. default:
  454. $result['status'] = 'error';
  455. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  456. break;
  457. }
  458. break;
  459. case 'v1_settings_user_manage_groups':
  460. switch ($method) {
  461. case 'GET':
  462. if (qualifyRequest(1)) {
  463. $result['status'] = 'success';
  464. $result['statusText'] = 'success';
  465. $result['data'] = $pageSettingsUserManageGroups;
  466. } else {
  467. $result['status'] = 'error';
  468. $result['statusText'] = 'API/Token invalid or not set';
  469. $result['data'] = null;
  470. }
  471. break;
  472. case 'POST':
  473. if (qualifyRequest(1)) {
  474. $result['status'] = 'success';
  475. $result['statusText'] = 'success';
  476. $result['data'] = adminEditGroup($_POST);
  477. } else {
  478. $result['status'] = 'error';
  479. $result['statusText'] = 'API/Token invalid or not set';
  480. $result['data'] = null;
  481. }
  482. break;
  483. default:
  484. $result['status'] = 'error';
  485. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  486. break;
  487. }
  488. break;
  489. case 'v1_settings_image_manager_view':
  490. switch ($method) {
  491. case 'GET':
  492. if (qualifyRequest(1)) {
  493. $result['status'] = 'success';
  494. $result['statusText'] = 'success';
  495. $result['data'] = $pageSettingsImageManager;
  496. } else {
  497. $result['status'] = 'error';
  498. $result['statusText'] = 'API/Token invalid or not set';
  499. $result['data'] = null;
  500. }
  501. break;
  502. case 'POST':
  503. if (qualifyRequest(1)) {
  504. $result['status'] = 'success';
  505. $result['statusText'] = 'success';
  506. $result['data'] = editImages();
  507. } else {
  508. $result['status'] = 'error';
  509. $result['statusText'] = 'API/Token invalid or not set';
  510. $result['data'] = null;
  511. }
  512. break;
  513. default:
  514. $result['status'] = 'error';
  515. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  516. break;
  517. }
  518. break;
  519. case 'v1_wizard_page':
  520. switch ($method) {
  521. case 'GET':
  522. if (!file_exists('config'.DIRECTORY_SEPARATOR.'config.php')) {
  523. $result['status'] = 'success';
  524. $result['statusText'] = 'success';
  525. $result['data'] = $pageWizard;
  526. } else {
  527. $result['status'] = 'error';
  528. $result['statusText'] = 'Wizard has already been run';
  529. $result['data'] = null;
  530. }
  531. break;
  532. default:
  533. $result['status'] = 'error';
  534. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  535. break;
  536. }
  537. break;
  538. case 'v1_dependencies_page':
  539. switch ($method) {
  540. case 'GET':
  541. $result['status'] = 'success';
  542. $result['statusText'] = 'success';
  543. $result['data'] = $pageDependencies;
  544. break;
  545. default:
  546. $result['status'] = 'error';
  547. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  548. break;
  549. }
  550. break;
  551. case 'v1_wizard_config':
  552. switch ($method) {
  553. case 'POST':
  554. if (!file_exists('config'.DIRECTORY_SEPARATOR.'config.php')) {
  555. $result['status'] = 'success';
  556. $result['statusText'] = 'success';
  557. $result['data'] = wizardConfig($_POST);
  558. } else {
  559. $result['status'] = 'error';
  560. $result['statusText'] = 'Wizard has already been run';
  561. $result['data'] = null;
  562. }
  563. break;
  564. default:
  565. $result['status'] = 'error';
  566. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  567. break;
  568. }
  569. break;
  570. case 'v1_wizard_path':
  571. switch ($method) {
  572. case 'POST':
  573. if (!file_exists('config'.DIRECTORY_SEPARATOR.'config.php')) {
  574. $result['status'] = 'success';
  575. $result['statusText'] = 'success';
  576. $result['data'] = wizardPath($_POST);
  577. } else {
  578. $result['status'] = 'error';
  579. $result['statusText'] = 'Wizard has already been run';
  580. $result['data'] = null;
  581. }
  582. break;
  583. default:
  584. $result['status'] = 'error';
  585. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  586. break;
  587. }
  588. break;
  589. case 'v1_login':
  590. switch ($method) {
  591. case 'POST':
  592. $result['status'] = 'success';
  593. $result['statusText'] = 'success';
  594. $result['data'] = login($_POST);
  595. break;
  596. default:
  597. $result['status'] = 'error';
  598. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  599. break;
  600. }
  601. break;
  602. case 'v1_register':
  603. switch ($method) {
  604. case 'POST':
  605. $result['status'] = 'success';
  606. $result['statusText'] = 'success';
  607. $result['data'] = register($_POST);
  608. break;
  609. default:
  610. $result['status'] = 'error';
  611. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  612. break;
  613. }
  614. break;
  615. case 'v1_recover':
  616. switch ($method) {
  617. case 'POST':
  618. $result['status'] = 'success';
  619. $result['statusText'] = 'success';
  620. $result['data'] = recover($_POST);
  621. break;
  622. default:
  623. $result['status'] = 'error';
  624. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  625. break;
  626. }
  627. break;
  628. case 'v1_upgrade':
  629. case 'v1_update':
  630. case 'v1_force':
  631. switch ($method) {
  632. case 'POST':
  633. if (qualifyRequest(1)) {
  634. $result['status'] = 'success';
  635. $result['statusText'] = 'success';
  636. $result['data'] = upgradeInstall($_POST['data']['branch'], $_POST['data']['stage']);
  637. } else {
  638. $result['status'] = 'error';
  639. $result['statusText'] = 'API/Token invalid or not set';
  640. $result['data'] = null;
  641. }
  642. break;
  643. default:
  644. $result['status'] = 'error';
  645. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  646. break;
  647. }
  648. break;
  649. case 'v1_login_page':
  650. switch ($method) {
  651. case 'GET':
  652. $result['status'] = 'success';
  653. $result['statusText'] = 'success';
  654. $result['data'] = $pageLogin;
  655. break;
  656. default:
  657. $result['status'] = 'error';
  658. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  659. break;
  660. }
  661. break;
  662. case 'v1_lockscreen':
  663. switch ($method) {
  664. case 'GET':
  665. $result['status'] = 'success';
  666. $result['statusText'] = 'success';
  667. $result['data'] = $pageLockScreen;
  668. break;
  669. default:
  670. $result['status'] = 'error';
  671. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  672. break;
  673. }
  674. break;
  675. case 'v1_login_log':
  676. switch ($method) {
  677. case 'GET':
  678. if (qualifyRequest(1)) {
  679. $result['status'] = 'success';
  680. $result['statusText'] = 'success';
  681. $result['data'] = getLog('loginLog');
  682. } else {
  683. $result['status'] = 'error';
  684. $result['statusText'] = 'API/Token invalid or not set';
  685. $result['data'] = null;
  686. }
  687. break;
  688. default:
  689. $result['status'] = 'error';
  690. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  691. break;
  692. }
  693. break;
  694. case 'v1_organizr_log':
  695. switch ($method) {
  696. case 'GET':
  697. if (qualifyRequest(1)) {
  698. $result['status'] = 'success';
  699. $result['statusText'] = 'success';
  700. $result['data'] = getLog('org');
  701. } else {
  702. $result['status'] = 'error';
  703. $result['statusText'] = 'API/Token invalid or not set';
  704. $result['data'] = null;
  705. }
  706. break;
  707. default:
  708. $result['status'] = 'error';
  709. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  710. break;
  711. }
  712. break;
  713. case 'v1_user_list':
  714. switch ($method) {
  715. case 'GET':
  716. if (qualifyRequest(1)) {
  717. $result['status'] = 'success';
  718. $result['statusText'] = 'success';
  719. $result['data'] = allUsers();
  720. } else {
  721. $result['status'] = 'error';
  722. $result['statusText'] = 'API/Token invalid or not set';
  723. $result['data'] = null;
  724. }
  725. break;
  726. default:
  727. $result['status'] = 'error';
  728. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  729. break;
  730. }
  731. break;
  732. case 'v1_tab_list':
  733. switch ($method) {
  734. case 'GET':
  735. if (qualifyRequest(1)) {
  736. $result['status'] = 'success';
  737. $result['statusText'] = 'success';
  738. $result['data'] = allTabs();
  739. } else {
  740. $result['status'] = 'error';
  741. $result['statusText'] = 'API/Token invalid or not set';
  742. $result['data'] = null;
  743. }
  744. break;
  745. default:
  746. $result['status'] = 'error';
  747. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  748. break;
  749. }
  750. break;
  751. case 'v1_image_list':
  752. switch ($method) {
  753. case 'GET':
  754. if (qualifyRequest(1)) {
  755. $result['status'] = 'success';
  756. $result['statusText'] = 'success';
  757. $result['data'] = getImages();
  758. } else {
  759. $result['status'] = 'error';
  760. $result['statusText'] = 'API/Token invalid or not set';
  761. $result['data'] = null;
  762. }
  763. break;
  764. default:
  765. $result['status'] = 'error';
  766. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  767. break;
  768. }
  769. break;
  770. case 'v1_customize_appearance':
  771. switch ($method) {
  772. case 'GET':
  773. if (qualifyRequest(1)) {
  774. $result['status'] = 'success';
  775. $result['statusText'] = 'success';
  776. $result['data'] = getCustomizeAppearance();
  777. } else {
  778. $result['status'] = 'error';
  779. $result['statusText'] = 'API/Token invalid or not set';
  780. $result['data'] = null;
  781. }
  782. break;
  783. default:
  784. $result['status'] = 'error';
  785. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  786. break;
  787. }
  788. break;
  789. case 'v1_sso':
  790. switch ($method) {
  791. case 'GET':
  792. if (qualifyRequest(1)) {
  793. $result['status'] = 'success';
  794. $result['statusText'] = 'success';
  795. $result['data'] = getSSO();
  796. } else {
  797. $result['status'] = 'error';
  798. $result['statusText'] = 'API/Token invalid or not set';
  799. $result['data'] = null;
  800. }
  801. break;
  802. default:
  803. $result['status'] = 'error';
  804. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  805. break;
  806. }
  807. break;
  808. case 'v1_settings_main':
  809. switch ($method) {
  810. case 'GET':
  811. if (qualifyRequest(1)) {
  812. $result['status'] = 'success';
  813. $result['statusText'] = 'success';
  814. $result['data'] = getSettingsMain();
  815. } else {
  816. $result['status'] = 'error';
  817. $result['statusText'] = 'API/Token invalid or not set';
  818. $result['data'] = null;
  819. }
  820. break;
  821. default:
  822. $result['status'] = 'error';
  823. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  824. break;
  825. }
  826. break;
  827. case 'v1_user_edit':
  828. switch ($method) {
  829. case 'POST':
  830. if (qualifyRequest(1)) {
  831. $result['status'] = 'success';
  832. $result['statusText'] = 'success';
  833. $result['data'] = adminEditUser($_POST);
  834. } elseif (qualifyRequest(998)) {
  835. $result['status'] = 'success';
  836. $result['statusText'] = 'success';
  837. $result['data'] = editUser($_POST);
  838. } else {
  839. $result['status'] = 'error';
  840. $result['statusText'] = 'API/Token invalid or not set';
  841. $result['data'] = null;
  842. }
  843. break;
  844. default:
  845. $result['status'] = 'error';
  846. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  847. break;
  848. }
  849. break;
  850. case 'v1_logout':
  851. switch ($method) {
  852. case 'GET':
  853. $result['status'] = 'success';
  854. $result['statusText'] = 'success';
  855. $result['data'] = logout();
  856. break;
  857. default:
  858. $result['status'] = 'error';
  859. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  860. break;
  861. }
  862. break;
  863. case 'v1_launch_organizr':
  864. switch ($method) {
  865. case 'GET':
  866. $pluginSearch = '-enabled';
  867. $pluginInclude = '-include';
  868. $status = array();
  869. $result['status'] = 'success';
  870. $result['statusText'] = 'success';
  871. $status['status'] = organizrStatus();
  872. $result['appearance'] = loadAppearance();
  873. $status['user'] = $GLOBALS['organizrUser'];
  874. $status['categories'] = loadTabs()['categories'];
  875. $status['tabs'] = loadTabs()['tabs'];
  876. $status['plugins'] = array_filter($GLOBALS, function ($k) use ($pluginSearch) {
  877. return stripos($k, $pluginSearch) !== false;
  878. }, ARRAY_FILTER_USE_KEY);
  879. $status['plugins']['includes'] = array_filter($GLOBALS, function ($k) use ($pluginInclude) {
  880. return stripos($k, $pluginInclude) !== false;
  881. }, ARRAY_FILTER_USE_KEY);
  882. $result['data'] = $status;
  883. $result['branch'] = $GLOBALS['branch'];
  884. $result['theme'] = $GLOBALS['theme'];
  885. $result['style'] = $GLOBALS['style'];
  886. $result['version'] = $GLOBALS['installedVersion'];
  887. $result['sso'] = array(
  888. 'myPlexAccessToken' => isset($_COOKIE['mpt']) ? $_COOKIE['mpt'] : false,
  889. 'id_token' => isset($_COOKIE['Auth']) ? $_COOKIE['Auth'] : false
  890. );
  891. $result['settings'] = organizrSpecialSettings();
  892. break;
  893. default:
  894. $result['status'] = 'error';
  895. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  896. break;
  897. }
  898. break;
  899. case 'v1_auth':
  900. switch ($method) {
  901. case 'GET':
  902. auth();
  903. break;
  904. default:
  905. $result['status'] = 'error';
  906. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  907. break;
  908. }
  909. break;
  910. case 'v1_plugin':
  911. switch ($method) {
  912. case 'POST':
  913. // Include all plugin api Calls
  914. foreach (glob(__DIR__.DIRECTORY_SEPARATOR.'plugins' . DIRECTORY_SEPARATOR . 'api' . DIRECTORY_SEPARATOR . "*.php") as $filename) {
  915. require_once $filename;
  916. }
  917. break;
  918. default:
  919. $result['status'] = 'error';
  920. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  921. break;
  922. }
  923. break;
  924. case 'v1_image':
  925. switch ($method) {
  926. case 'GET':
  927. getImage();
  928. break;
  929. default:
  930. $result['status'] = 'error';
  931. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  932. break;
  933. }
  934. break;
  935. case 'v1_downloader':
  936. switch ($method) {
  937. case 'POST':
  938. $result['status'] = 'success';
  939. $result['statusText'] = 'success';
  940. $result['data'] = downloader($_POST);
  941. break;
  942. default:
  943. $result['status'] = 'error';
  944. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  945. break;
  946. }
  947. break;
  948. case 'v1_ombi':
  949. switch ($method) {
  950. case 'POST':
  951. $result['status'] = 'success';
  952. $result['statusText'] = 'success';
  953. $result['data'] = ombiAPI($_POST);
  954. break;
  955. default:
  956. $result['status'] = 'error';
  957. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  958. break;
  959. }
  960. break;
  961. case 'v1_plex_join':
  962. switch ($method) {
  963. case 'POST':
  964. $result['status'] = 'success';
  965. $result['statusText'] = 'success';
  966. $result['data'] = plexJoinAPI($_POST);
  967. break;
  968. default:
  969. $result['status'] = 'error';
  970. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  971. break;
  972. }
  973. break;
  974. default:
  975. //No Function Available
  976. $result['status'] = 'error';
  977. $result['statusText'] = 'function requested is not defined';
  978. break;
  979. }
  980. //Set Default Result
  981. if (!$result) {
  982. $result['status'] = "error";
  983. $result['error'] = "An error has occurred";
  984. }
  985. $result['generationDate'] = $GLOBALS['currentTime'];
  986. $generationTime += microtime(true);
  987. $result['generationTime'] = (sprintf('%f', $generationTime)*1000).'ms';
  988. //return JSON array
  989. exit(json_encode($result, JSON_HEX_QUOT | JSON_HEX_TAG));