index.php 40 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440
  1. <?php
  2. //include functions
  3. require_once 'functions.php';
  4. //Set result array
  5. $result = array();
  6. //Get request method
  7. $method = $_SERVER['REQUEST_METHOD'];
  8. $pretty = isset($_GET['pretty']) ? true : false;
  9. reset($_GET);
  10. $function = (key($_GET) ? str_replace("/", "_", key($_GET)) : false);
  11. //Exit if $function is blank
  12. if ($function === false) {
  13. $result['status'] = "error";
  14. $result['statusText'] = "No API Path Supplied";
  15. exit(json_encode($result));
  16. }
  17. $approvedFunctionsBypass = array(
  18. 'v1_upgrade',
  19. 'v1_update',
  20. 'v1_force',
  21. 'v1_auth',
  22. 'v1_wizard_config',
  23. 'v1_login',
  24. 'v1_wizard_path',
  25. 'v1_login_api'
  26. );
  27. if (!in_array($function, $approvedFunctionsBypass)) {
  28. if (isApprovedRequest($method) === false) {
  29. $result['status'] = "error";
  30. $result['statusText'] = "Not Authorized";
  31. http_response_code(401);
  32. writeLog('success', 'Killed Attack From [' . (isset($_SERVER['HTTP_REFERER']) ? $_SERVER['HTTP_REFERER'] : 'No Referer') . ']', $GLOBALS['organizrUser']['username']);
  33. exit(json_encode($result));
  34. }
  35. }
  36. $result['request'] = key($_GET);
  37. $result['params'] = $_POST;
  38. //Custom Page Check
  39. if(strpos($function,'v1_custom_page_') !== false){
  40. $endpoint = explode('v1_custom_page_', $function)[1];
  41. $function = 'v1_custom_page';
  42. }
  43. switch ($function) {
  44. case 'v1_settings_page':
  45. switch ($method) {
  46. case 'GET':
  47. if (qualifyRequest(1)) {
  48. $result['status'] = 'success';
  49. $result['statusText'] = 'success';
  50. $result['data'] = $pageSettings;
  51. writeLog('success', 'Admin Function - Accessed Settings Page', $GLOBALS['organizrUser']['username']);
  52. } else {
  53. $result['status'] = 'error';
  54. $result['statusText'] = 'API/Token invalid or not set';
  55. $result['data'] = null;
  56. writeLog('error', 'Admin Function - Tried to access Settings Page', $GLOBALS['organizrUser']['username']);
  57. }
  58. break;
  59. default:
  60. $result['status'] = 'error';
  61. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  62. break;
  63. }
  64. break;
  65. case 'v1_homepage_page':
  66. switch ($method) {
  67. case 'GET':
  68. $result['status'] = 'success';
  69. $result['statusText'] = 'success';
  70. $result['data'] = $pageHomepage;
  71. break;
  72. default:
  73. $result['status'] = 'error';
  74. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  75. break;
  76. }
  77. break;
  78. case 'v1_settings_plugins':
  79. switch ($method) {
  80. case 'GET':
  81. if (qualifyRequest(1)) {
  82. $result['status'] = 'success';
  83. $result['statusText'] = 'success';
  84. $result['data'] = $pageSettingsPlugins;
  85. } else {
  86. $result['status'] = 'error';
  87. $result['statusText'] = 'API/Token invalid or not set';
  88. $result['data'] = null;
  89. }
  90. break;
  91. default:
  92. $result['status'] = 'error';
  93. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  94. break;
  95. }
  96. break;
  97. case 'v1_settings_tab_editor_homepage':
  98. switch ($method) {
  99. case 'GET':
  100. if (qualifyRequest(1)) {
  101. $result['status'] = 'success';
  102. $result['statusText'] = 'success';
  103. $result['data'] = $pageSettingsTabEditorHomepage;
  104. } else {
  105. $result['status'] = 'error';
  106. $result['statusText'] = 'API/Token invalid or not set';
  107. $result['data'] = null;
  108. }
  109. break;
  110. default:
  111. $result['status'] = 'error';
  112. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  113. break;
  114. }
  115. break;
  116. case 'v1_settings_tab_editor_homepage_order':
  117. switch ($method) {
  118. case 'GET':
  119. if (qualifyRequest(1)) {
  120. $result['status'] = 'success';
  121. $result['statusText'] = 'success';
  122. $result['data'] = $pageSettingsTabEditorHomepageOrder;
  123. } else {
  124. $result['status'] = 'error';
  125. $result['statusText'] = 'API/Token invalid or not set';
  126. $result['data'] = null;
  127. }
  128. break;
  129. default:
  130. $result['status'] = 'error';
  131. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  132. break;
  133. }
  134. break;
  135. case 'v1_settings_homepage_list':
  136. switch ($method) {
  137. case 'GET':
  138. if (qualifyRequest(1)) {
  139. $result['status'] = 'success';
  140. $result['statusText'] = 'success';
  141. $result['data'] = getHomepageList();
  142. } else {
  143. $result['status'] = 'error';
  144. $result['statusText'] = 'API/Token invalid or not set';
  145. $result['data'] = null;
  146. }
  147. break;
  148. case 'POST':
  149. if (qualifyRequest(1)) {
  150. $result['status'] = 'success';
  151. $result['statusText'] = 'success';
  152. $result['data'] = editPlugins($_POST);
  153. } else {
  154. $result['status'] = 'error';
  155. $result['statusText'] = 'API/Token invalid or not set';
  156. $result['data'] = null;
  157. }
  158. break;
  159. default:
  160. $result['status'] = 'error';
  161. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  162. break;
  163. }
  164. break;
  165. case 'v1_settings_plugins_list':
  166. switch ($method) {
  167. case 'GET':
  168. if (qualifyRequest(1)) {
  169. $result['status'] = 'success';
  170. $result['statusText'] = 'success';
  171. $result['data'] = getPlugins();
  172. } else {
  173. $result['status'] = 'error';
  174. $result['statusText'] = 'API/Token invalid or not set';
  175. $result['data'] = null;
  176. }
  177. break;
  178. case 'POST':
  179. if (qualifyRequest(1)) {
  180. $result['status'] = 'success';
  181. $result['statusText'] = 'success';
  182. $result['data'] = editPlugins($_POST);
  183. } else {
  184. $result['status'] = 'error';
  185. $result['statusText'] = 'API/Token invalid or not set';
  186. $result['data'] = null;
  187. }
  188. break;
  189. default:
  190. $result['status'] = 'error';
  191. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  192. break;
  193. }
  194. break;
  195. case 'v1_settings_settings_logs':
  196. switch ($method) {
  197. case 'GET':
  198. if (qualifyRequest(1)) {
  199. $result['status'] = 'success';
  200. $result['statusText'] = 'success';
  201. $result['data'] = $pageSettingsSettingsLogs;
  202. } else {
  203. $result['status'] = 'error';
  204. $result['statusText'] = 'API/Token invalid or not set';
  205. $result['data'] = null;
  206. }
  207. break;
  208. default:
  209. $result['status'] = 'error';
  210. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  211. break;
  212. }
  213. break;
  214. case 'v1_settings_settings_sso':
  215. switch ($method) {
  216. case 'GET':
  217. if (qualifyRequest(1)) {
  218. $result['status'] = 'success';
  219. $result['statusText'] = 'success';
  220. $result['data'] = $pageSettingsSettingsSSO;
  221. } else {
  222. $result['status'] = 'error';
  223. $result['statusText'] = 'API/Token invalid or not set';
  224. $result['data'] = null;
  225. }
  226. break;
  227. default:
  228. $result['status'] = 'error';
  229. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  230. break;
  231. }
  232. break;
  233. case 'v1_settings_settings_main':
  234. switch ($method) {
  235. case 'GET':
  236. if (qualifyRequest(1)) {
  237. $result['status'] = 'success';
  238. $result['statusText'] = 'success';
  239. $result['data'] = $pageSettingsSettingsMain;
  240. } else {
  241. $result['status'] = 'error';
  242. $result['statusText'] = 'API/Token invalid or not set';
  243. $result['data'] = null;
  244. }
  245. break;
  246. default:
  247. $result['status'] = 'error';
  248. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  249. break;
  250. }
  251. break;
  252. case 'v1_settings_customize_appearance':
  253. switch ($method) {
  254. case 'GET':
  255. if (qualifyRequest(1)) {
  256. $result['status'] = 'success';
  257. $result['statusText'] = 'success';
  258. $result['data'] = $pageSettingsCustomizeAppearance;
  259. } else {
  260. $result['status'] = 'error';
  261. $result['statusText'] = 'API/Token invalid or not set';
  262. $result['data'] = null;
  263. }
  264. break;
  265. case 'POST':
  266. if (qualifyRequest(1)) {
  267. $result['status'] = 'success';
  268. $result['statusText'] = 'success';
  269. $result['data'] = editAppearance($_POST);
  270. } else {
  271. $result['status'] = 'error';
  272. $result['statusText'] = 'API/Token invalid or not set';
  273. $result['data'] = null;
  274. }
  275. break;
  276. default:
  277. $result['status'] = 'error';
  278. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  279. break;
  280. }
  281. break;
  282. case 'v1_remove_file':
  283. switch ($method) {
  284. case 'POST':
  285. if (qualifyRequest(1)) {
  286. $result['status'] = 'success';
  287. $result['statusText'] = 'success';
  288. $result['data'] = removeFile($_POST);
  289. } else {
  290. $result['status'] = 'error';
  291. $result['statusText'] = 'API/Token invalid or not set';
  292. $result['data'] = null;
  293. }
  294. break;
  295. default:
  296. $result['status'] = 'error';
  297. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  298. break;
  299. }
  300. break;
  301. case 'v1_update_config':
  302. switch ($method) {
  303. case 'POST':
  304. if (qualifyRequest(1)) {
  305. $result['status'] = 'success';
  306. $result['statusText'] = 'success';
  307. $result['data'] = updateConfigItem($_POST);
  308. } else {
  309. $result['status'] = 'error';
  310. $result['statusText'] = 'API/Token invalid or not set';
  311. $result['data'] = null;
  312. }
  313. break;
  314. default:
  315. $result['status'] = 'error';
  316. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  317. break;
  318. }
  319. break;
  320. case 'v1_update_config_multiple':
  321. switch ($method) {
  322. case 'POST':
  323. if (qualifyRequest(1)) {
  324. $result['status'] = 'success';
  325. $result['statusText'] = 'success';
  326. $result['data'] = updateConfigMultiple($_POST);
  327. } else {
  328. $result['status'] = 'error';
  329. $result['statusText'] = 'API/Token invalid or not set';
  330. $result['data'] = null;
  331. }
  332. break;
  333. default:
  334. $result['status'] = 'error';
  335. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  336. break;
  337. }
  338. break;
  339. case 'v1_update_config_multiple_form':
  340. switch ($method) {
  341. case 'POST':
  342. if (qualifyRequest(1)) {
  343. $result['status'] = 'success';
  344. $result['statusText'] = 'success';
  345. $result['data'] = updateConfigMultipleForm($_POST);
  346. } else {
  347. $result['status'] = 'error';
  348. $result['statusText'] = 'API/Token invalid or not set';
  349. $result['data'] = null;
  350. }
  351. break;
  352. default:
  353. $result['status'] = 'error';
  354. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  355. break;
  356. }
  357. break;
  358. case 'v1_homepage_connect':
  359. switch ($method) {
  360. case 'POST':
  361. $result['status'] = 'success';
  362. $result['statusText'] = 'success';
  363. $result['data'] = homepageConnect($_POST);
  364. break;
  365. default:
  366. $result['status'] = 'error';
  367. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  368. break;
  369. }
  370. break;
  371. case 'v1_ping_list':
  372. switch ($method) {
  373. case 'POST':
  374. $result['status'] = 'success';
  375. $result['statusText'] = 'success';
  376. $result['data'] = ping($_POST['data']['pingList']);
  377. break;
  378. default:
  379. $result['status'] = 'error';
  380. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  381. break;
  382. }
  383. break;
  384. case 'v1_test_api_connection':
  385. switch ($method) {
  386. case 'POST':
  387. if (qualifyRequest(1)) {
  388. $result['status'] = 'success';
  389. $result['statusText'] = 'success';
  390. $result['data'] = testAPIConnection($_POST);
  391. } else {
  392. $result['status'] = 'error';
  393. $result['statusText'] = 'API/Token invalid or not set';
  394. $result['data'] = null;
  395. }
  396. break;
  397. default:
  398. $result['status'] = 'error';
  399. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  400. break;
  401. }
  402. break;
  403. case 'v1_settings_tab_editor_tabs':
  404. switch ($method) {
  405. case 'GET':
  406. if (qualifyRequest(1)) {
  407. $result['status'] = 'success';
  408. $result['statusText'] = 'success';
  409. $result['data'] = $pageSettingsTabEditorTabs;
  410. } else {
  411. $result['status'] = 'error';
  412. $result['statusText'] = 'API/Token invalid or not set';
  413. $result['data'] = null;
  414. }
  415. break;
  416. case 'POST':
  417. if (qualifyRequest(1)) {
  418. $result['status'] = 'success';
  419. $result['statusText'] = 'success';
  420. $result['data'] = editTabs($_POST);
  421. } else {
  422. $result['status'] = 'error';
  423. $result['statusText'] = 'API/Token invalid or not set';
  424. $result['data'] = null;
  425. }
  426. break;
  427. default:
  428. $result['status'] = 'error';
  429. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  430. break;
  431. }
  432. break;
  433. case 'v1_settings_tab_editor_categories':
  434. switch ($method) {
  435. case 'GET':
  436. if (qualifyRequest(1)) {
  437. $result['status'] = 'success';
  438. $result['statusText'] = 'success';
  439. $result['data'] = $pageSettingsTabEditorCategories;
  440. } else {
  441. $result['status'] = 'error';
  442. $result['statusText'] = 'API/Token invalid or not set';
  443. $result['data'] = null;
  444. }
  445. break;
  446. case 'POST':
  447. if (qualifyRequest(1)) {
  448. $result['status'] = 'success';
  449. $result['statusText'] = 'success';
  450. $result['data'] = editCategories($_POST);
  451. } else {
  452. $result['status'] = 'error';
  453. $result['statusText'] = 'API/Token invalid or not set';
  454. $result['data'] = null;
  455. }
  456. break;
  457. default:
  458. $result['status'] = 'error';
  459. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  460. break;
  461. }
  462. break;
  463. case 'v1_settings_user_manage_users':
  464. switch ($method) {
  465. case 'GET':
  466. if (qualifyRequest(1)) {
  467. $result['status'] = 'success';
  468. $result['statusText'] = 'success';
  469. $result['data'] = $pageSettingsUserManageUsers;
  470. } else {
  471. $result['status'] = 'error';
  472. $result['statusText'] = 'API/Token invalid or not set';
  473. $result['data'] = null;
  474. }
  475. break;
  476. case 'POST':
  477. if (qualifyRequest(1)) {
  478. $result['status'] = 'success';
  479. $result['statusText'] = 'success';
  480. $result['data'] = adminEditUser($_POST);
  481. } elseif (qualifyRequest(998)) {
  482. $result['status'] = 'success';
  483. $result['statusText'] = 'success';
  484. $result['data'] = editUser($_POST);
  485. } else {
  486. $result['status'] = 'error';
  487. $result['statusText'] = 'API/Token invalid or not set';
  488. $result['data'] = null;
  489. }
  490. break;
  491. default:
  492. $result['status'] = 'error';
  493. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  494. break;
  495. }
  496. break;
  497. case 'v1_manage_user':
  498. switch ($method) {
  499. case 'POST':
  500. if (qualifyRequest(998)) {
  501. $result['status'] = 'success';
  502. $result['statusText'] = 'success';
  503. $result['data'] = editUser($_POST);
  504. } else {
  505. $result['status'] = 'error';
  506. $result['statusText'] = 'API/Token invalid or not set';
  507. $result['data'] = null;
  508. }
  509. break;
  510. default:
  511. $result['status'] = 'error';
  512. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  513. break;
  514. }
  515. break;
  516. case 'v1_settings_user_manage_groups':
  517. switch ($method) {
  518. case 'GET':
  519. if (qualifyRequest(1)) {
  520. $result['status'] = 'success';
  521. $result['statusText'] = 'success';
  522. $result['data'] = $pageSettingsUserManageGroups;
  523. } else {
  524. $result['status'] = 'error';
  525. $result['statusText'] = 'API/Token invalid or not set';
  526. $result['data'] = null;
  527. }
  528. break;
  529. case 'POST':
  530. if (qualifyRequest(1)) {
  531. $result['status'] = 'success';
  532. $result['statusText'] = 'success';
  533. $result['data'] = adminEditGroup($_POST);
  534. } else {
  535. $result['status'] = 'error';
  536. $result['statusText'] = 'API/Token invalid or not set';
  537. $result['data'] = null;
  538. }
  539. break;
  540. default:
  541. $result['status'] = 'error';
  542. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  543. break;
  544. }
  545. break;
  546. case 'v1_settings_image_manager_view':
  547. switch ($method) {
  548. case 'GET':
  549. if (qualifyRequest(1)) {
  550. $result['status'] = 'success';
  551. $result['statusText'] = 'success';
  552. $result['data'] = $pageSettingsImageManager;
  553. } else {
  554. $result['status'] = 'error';
  555. $result['statusText'] = 'API/Token invalid or not set';
  556. $result['data'] = null;
  557. }
  558. break;
  559. case 'POST':
  560. if (qualifyRequest(1)) {
  561. $result['status'] = 'success';
  562. $result['statusText'] = 'success';
  563. $result['data'] = editImages();
  564. } else {
  565. $result['status'] = 'error';
  566. $result['statusText'] = 'API/Token invalid or not set';
  567. $result['data'] = null;
  568. }
  569. break;
  570. default:
  571. $result['status'] = 'error';
  572. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  573. break;
  574. }
  575. break;
  576. case 'v1_wizard_page':
  577. switch ($method) {
  578. case 'GET':
  579. if (!file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  580. $result['status'] = 'success';
  581. $result['statusText'] = 'success';
  582. $result['data'] = $pageWizard;
  583. } else {
  584. $result['status'] = 'error';
  585. $result['statusText'] = 'Wizard has already been run';
  586. $result['data'] = null;
  587. }
  588. break;
  589. default:
  590. $result['status'] = 'error';
  591. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  592. break;
  593. }
  594. break;
  595. case 'v1_dependencies_page':
  596. switch ($method) {
  597. case 'GET':
  598. $result['status'] = 'success';
  599. $result['statusText'] = 'success';
  600. $result['data'] = $pageDependencies;
  601. break;
  602. default:
  603. $result['status'] = 'error';
  604. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  605. break;
  606. }
  607. break;
  608. case 'v1_wizard_config':
  609. switch ($method) {
  610. case 'POST':
  611. if (!file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  612. $result['status'] = 'success';
  613. $result['statusText'] = 'success';
  614. $result['data'] = wizardConfig($_POST);
  615. } else {
  616. $result['status'] = 'error';
  617. $result['statusText'] = 'Wizard has already been run';
  618. $result['data'] = null;
  619. }
  620. break;
  621. default:
  622. $result['status'] = 'error';
  623. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  624. break;
  625. }
  626. break;
  627. case 'v1_wizard_path':
  628. switch ($method) {
  629. case 'POST':
  630. if (!file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  631. $result['status'] = 'success';
  632. $result['statusText'] = 'success';
  633. $result['data'] = wizardPath($_POST);
  634. } else {
  635. $result['status'] = 'error';
  636. $result['statusText'] = 'Wizard has already been run';
  637. $result['data'] = null;
  638. }
  639. break;
  640. default:
  641. $result['status'] = 'error';
  642. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  643. break;
  644. }
  645. break;
  646. case 'v1_login':
  647. switch ($method) {
  648. case 'POST':
  649. $result['status'] = 'success';
  650. $result['statusText'] = 'success';
  651. $result['data'] = login($_POST);
  652. break;
  653. default:
  654. $result['status'] = 'error';
  655. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  656. break;
  657. }
  658. break;
  659. case 'v1_login_api':
  660. switch ($method) {
  661. case 'POST':
  662. $result['status'] = 'success';
  663. $result['statusText'] = 'success';
  664. $result['data'] = apiLogin();
  665. break;
  666. default:
  667. $result['status'] = 'error';
  668. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  669. break;
  670. }
  671. break;
  672. case 'v1_register':
  673. switch ($method) {
  674. case 'POST':
  675. $result['status'] = 'success';
  676. $result['statusText'] = 'success';
  677. $result['data'] = register($_POST);
  678. break;
  679. default:
  680. $result['status'] = 'error';
  681. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  682. break;
  683. }
  684. break;
  685. case 'v1_recover':
  686. switch ($method) {
  687. case 'POST':
  688. $result['status'] = 'success';
  689. $result['statusText'] = 'success';
  690. $result['data'] = recover($_POST);
  691. break;
  692. default:
  693. $result['status'] = 'error';
  694. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  695. break;
  696. }
  697. break;
  698. case 'v1_unlock':
  699. switch ($method) {
  700. case 'POST':
  701. $result['status'] = 'success';
  702. $result['statusText'] = 'success';
  703. $result['data'] = unlock($_POST);
  704. break;
  705. default:
  706. $result['status'] = 'error';
  707. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  708. break;
  709. }
  710. break;
  711. case 'v1_lock':
  712. switch ($method) {
  713. case 'POST':
  714. $result['status'] = 'success';
  715. $result['statusText'] = 'success';
  716. $result['data'] = lock();
  717. break;
  718. default:
  719. $result['status'] = 'error';
  720. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  721. break;
  722. }
  723. break;
  724. case 'v1_test_iframe':
  725. switch ($method) {
  726. case 'POST':
  727. $result['status'] = 'success';
  728. $result['statusText'] = 'success';
  729. $result['data'] = frameTest($_POST['data']['url']);
  730. break;
  731. default:
  732. $result['status'] = 'error';
  733. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  734. break;
  735. }
  736. break;
  737. case 'v1_upgrade':
  738. case 'v1_update':
  739. case 'v1_force':
  740. switch ($method) {
  741. case 'POST':
  742. if (qualifyRequest(1)) {
  743. $result['status'] = 'success';
  744. $result['statusText'] = 'success';
  745. $result['data'] = upgradeInstall($_POST['data']['branch'], $_POST['data']['stage']);
  746. } else {
  747. $result['status'] = 'error';
  748. $result['statusText'] = 'API/Token invalid or not set';
  749. $result['data'] = null;
  750. }
  751. break;
  752. default:
  753. $result['status'] = 'error';
  754. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  755. break;
  756. }
  757. break;
  758. case 'v1_login_page':
  759. switch ($method) {
  760. case 'GET':
  761. $result['status'] = 'success';
  762. $result['statusText'] = 'success';
  763. $result['data'] = $pageLogin;
  764. break;
  765. default:
  766. $result['status'] = 'error';
  767. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  768. break;
  769. }
  770. break;
  771. case 'v1_lockscreen':
  772. switch ($method) {
  773. case 'GET':
  774. $result['status'] = 'success';
  775. $result['statusText'] = 'success';
  776. $result['data'] = $pageLockScreen;
  777. break;
  778. default:
  779. $result['status'] = 'error';
  780. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  781. break;
  782. }
  783. break;
  784. case 'v1_login_log':
  785. switch ($method) {
  786. case 'GET':
  787. if (qualifyRequest(1)) {
  788. $result['status'] = 'success';
  789. $result['statusText'] = 'success';
  790. $result['data'] = getLog('loginLog');
  791. } else {
  792. $result['status'] = 'error';
  793. $result['statusText'] = 'API/Token invalid or not set';
  794. $result['data'] = null;
  795. }
  796. break;
  797. default:
  798. $result['status'] = 'error';
  799. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  800. break;
  801. }
  802. break;
  803. case 'v1_organizr_log':
  804. switch ($method) {
  805. case 'GET':
  806. if (qualifyRequest(1)) {
  807. $result['status'] = 'success';
  808. $result['statusText'] = 'success';
  809. $result['data'] = getLog('org');
  810. } else {
  811. $result['status'] = 'error';
  812. $result['statusText'] = 'API/Token invalid or not set';
  813. $result['data'] = null;
  814. }
  815. break;
  816. default:
  817. $result['status'] = 'error';
  818. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  819. break;
  820. }
  821. break;
  822. case 'v1_user_list':
  823. switch ($method) {
  824. case 'GET':
  825. if (qualifyRequest(1)) {
  826. $result['status'] = 'success';
  827. $result['statusText'] = 'success';
  828. $result['data'] = allUsers();
  829. } else {
  830. $result['status'] = 'error';
  831. $result['statusText'] = 'API/Token invalid or not set';
  832. $result['data'] = null;
  833. }
  834. break;
  835. default:
  836. $result['status'] = 'error';
  837. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  838. break;
  839. }
  840. break;
  841. case 'v1_tab_list':
  842. switch ($method) {
  843. case 'GET':
  844. if (qualifyRequest(1)) {
  845. $result['status'] = 'success';
  846. $result['statusText'] = 'success';
  847. $result['data'] = allTabs();
  848. } else {
  849. $result['status'] = 'error';
  850. $result['statusText'] = 'API/Token invalid or not set';
  851. $result['data'] = null;
  852. }
  853. break;
  854. default:
  855. $result['status'] = 'error';
  856. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  857. break;
  858. }
  859. break;
  860. case 'v1_image_list':
  861. switch ($method) {
  862. case 'GET':
  863. if (qualifyRequest(1)) {
  864. $result['status'] = 'success';
  865. $result['statusText'] = 'success';
  866. $result['data'] = getImages();
  867. } else {
  868. $result['status'] = 'error';
  869. $result['statusText'] = 'API/Token invalid or not set';
  870. $result['data'] = null;
  871. }
  872. break;
  873. default:
  874. $result['status'] = 'error';
  875. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  876. break;
  877. }
  878. break;
  879. case 'v1_customize_appearance':
  880. switch ($method) {
  881. case 'GET':
  882. if (qualifyRequest(1)) {
  883. $result['status'] = 'success';
  884. $result['statusText'] = 'success';
  885. $result['data'] = getCustomizeAppearance();
  886. } else {
  887. $result['status'] = 'error';
  888. $result['statusText'] = 'API/Token invalid or not set';
  889. $result['data'] = null;
  890. }
  891. break;
  892. default:
  893. $result['status'] = 'error';
  894. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  895. break;
  896. }
  897. break;
  898. case 'v1_sso':
  899. switch ($method) {
  900. case 'GET':
  901. if (qualifyRequest(1)) {
  902. $result['status'] = 'success';
  903. $result['statusText'] = 'success';
  904. $result['data'] = getSSO();
  905. } else {
  906. $result['status'] = 'error';
  907. $result['statusText'] = 'API/Token invalid or not set';
  908. $result['data'] = null;
  909. }
  910. break;
  911. default:
  912. $result['status'] = 'error';
  913. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  914. break;
  915. }
  916. break;
  917. case 'v1_settings_main':
  918. switch ($method) {
  919. case 'GET':
  920. if (qualifyRequest(1)) {
  921. $result['status'] = 'success';
  922. $result['statusText'] = 'success';
  923. $result['data'] = getSettingsMain();
  924. } else {
  925. $result['status'] = 'error';
  926. $result['statusText'] = 'API/Token invalid or not set';
  927. $result['data'] = null;
  928. }
  929. break;
  930. default:
  931. $result['status'] = 'error';
  932. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  933. break;
  934. }
  935. break;
  936. case 'v1_plugin_install':
  937. switch ($method) {
  938. case 'POST':
  939. if (qualifyRequest(1)) {
  940. $result['status'] = 'success';
  941. $result['statusText'] = 'success';
  942. $result['data'] = installPlugin($_POST);
  943. } else {
  944. $result['status'] = 'error';
  945. $result['statusText'] = 'API/Token invalid or not set';
  946. $result['data'] = null;
  947. }
  948. break;
  949. default:
  950. $result['status'] = 'error';
  951. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  952. break;
  953. }
  954. break;
  955. case 'v1_plugin_remove':
  956. switch ($method) {
  957. case 'POST':
  958. if (qualifyRequest(1)) {
  959. $result['status'] = 'success';
  960. $result['statusText'] = 'success';
  961. $result['data'] = removePlugin($_POST);
  962. } else {
  963. $result['status'] = 'error';
  964. $result['statusText'] = 'API/Token invalid or not set';
  965. $result['data'] = null;
  966. }
  967. break;
  968. default:
  969. $result['status'] = 'error';
  970. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  971. break;
  972. }
  973. break;
  974. case 'v1_theme_install':
  975. switch ($method) {
  976. case 'POST':
  977. if (qualifyRequest(1)) {
  978. $result['status'] = 'success';
  979. $result['statusText'] = 'success';
  980. $result['data'] = installTheme($_POST);
  981. } else {
  982. $result['status'] = 'error';
  983. $result['statusText'] = 'API/Token invalid or not set';
  984. $result['data'] = null;
  985. }
  986. break;
  987. default:
  988. $result['status'] = 'error';
  989. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  990. break;
  991. }
  992. break;
  993. case 'v1_theme_remove':
  994. switch ($method) {
  995. case 'POST':
  996. if (qualifyRequest(1)) {
  997. $result['status'] = 'success';
  998. $result['statusText'] = 'success';
  999. $result['data'] = removeTheme($_POST);
  1000. } else {
  1001. $result['status'] = 'error';
  1002. $result['statusText'] = 'API/Token invalid or not set';
  1003. $result['data'] = null;
  1004. }
  1005. break;
  1006. default:
  1007. $result['status'] = 'error';
  1008. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1009. break;
  1010. }
  1011. break;
  1012. case 'v1_user_edit':
  1013. switch ($method) {
  1014. case 'POST':
  1015. if (qualifyRequest(1)) {
  1016. $result['status'] = 'success';
  1017. $result['statusText'] = 'success';
  1018. $result['data'] = adminEditUser($_POST);
  1019. } elseif (qualifyRequest(998)) {
  1020. $result['status'] = 'success';
  1021. $result['statusText'] = 'success';
  1022. $result['data'] = editUser($_POST);
  1023. } else {
  1024. $result['status'] = 'error';
  1025. $result['statusText'] = 'API/Token invalid or not set';
  1026. $result['data'] = null;
  1027. }
  1028. break;
  1029. default:
  1030. $result['status'] = 'error';
  1031. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1032. break;
  1033. }
  1034. break;
  1035. case 'v1_2fa_create':
  1036. switch ($method) {
  1037. case 'POST':
  1038. if (qualifyRequest(998)) {
  1039. $result['status'] = 'success';
  1040. $result['statusText'] = 'success';
  1041. $result['data'] = create2FA($_POST['data']['type']);
  1042. } else {
  1043. $result['status'] = 'error';
  1044. $result['statusText'] = 'API/Token invalid or not set';
  1045. $result['data'] = null;
  1046. }
  1047. break;
  1048. default:
  1049. $result['status'] = 'error';
  1050. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1051. break;
  1052. }
  1053. break;
  1054. case 'v1_2fa_save':
  1055. switch ($method) {
  1056. case 'POST':
  1057. if (qualifyRequest(998)) {
  1058. $result['status'] = 'success';
  1059. $result['statusText'] = 'success';
  1060. $result['data'] = save2FA($_POST['data']['secret'], $_POST['data']['type']);
  1061. } else {
  1062. $result['status'] = 'error';
  1063. $result['statusText'] = 'API/Token invalid or not set';
  1064. $result['data'] = null;
  1065. }
  1066. break;
  1067. default:
  1068. $result['status'] = 'error';
  1069. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1070. break;
  1071. }
  1072. break;
  1073. case 'v1_2fa_verify':
  1074. switch ($method) {
  1075. case 'POST':
  1076. if (qualifyRequest(998)) {
  1077. $result['status'] = 'success';
  1078. $result['statusText'] = 'success';
  1079. $result['data'] = verify2FA($_POST['data']['secret'], $_POST['data']['code'], $_POST['data']['type']);
  1080. } else {
  1081. $result['status'] = 'error';
  1082. $result['statusText'] = 'API/Token invalid or not set';
  1083. $result['data'] = null;
  1084. }
  1085. break;
  1086. default:
  1087. $result['status'] = 'error';
  1088. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1089. break;
  1090. }
  1091. break;
  1092. case 'v1_2fa_remove':
  1093. switch ($method) {
  1094. case 'GET':
  1095. if (qualifyRequest(998)) {
  1096. $result['status'] = 'success';
  1097. $result['statusText'] = 'success';
  1098. $result['data'] = remove2FA();
  1099. } else {
  1100. $result['status'] = 'error';
  1101. $result['statusText'] = 'API/Token invalid or not set';
  1102. $result['data'] = null;
  1103. }
  1104. break;
  1105. default:
  1106. $result['status'] = 'error';
  1107. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1108. break;
  1109. }
  1110. break;
  1111. case 'v1_logout':
  1112. switch ($method) {
  1113. case 'GET':
  1114. $result['status'] = 'success';
  1115. $result['statusText'] = 'success';
  1116. $result['data'] = logout();
  1117. break;
  1118. default:
  1119. $result['status'] = 'error';
  1120. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1121. break;
  1122. }
  1123. break;
  1124. case 'v1_launch_organizr':
  1125. switch ($method) {
  1126. case 'GET':
  1127. $pluginSearch = '-enabled';
  1128. $pluginInclude = '-include';
  1129. $status = array();
  1130. $result['status'] = 'success';
  1131. $result['statusText'] = 'success';
  1132. $status['status'] = organizrStatus();
  1133. $result['appearance'] = loadAppearance();
  1134. $status['user'] = $GLOBALS['organizrUser'];
  1135. $status['categories'] = loadTabs('categories');
  1136. $status['tabs'] = loadTabs('tabs');
  1137. $status['plugins'] = array_filter($GLOBALS, function ($k) use ($pluginSearch) {
  1138. return stripos($k, $pluginSearch) !== false;
  1139. }, ARRAY_FILTER_USE_KEY);
  1140. $status['plugins']['includes'] = array_filter($GLOBALS, function ($k) use ($pluginInclude) {
  1141. return stripos($k, $pluginInclude) !== false;
  1142. }, ARRAY_FILTER_USE_KEY);
  1143. $result['data'] = $status;
  1144. $result['branch'] = $GLOBALS['branch'];
  1145. $result['theme'] = $GLOBALS['theme'];
  1146. $result['style'] = $GLOBALS['style'];
  1147. $result['version'] = $GLOBALS['installedVersion'];
  1148. $result['sso'] = array(
  1149. 'myPlexAccessToken' => isset($_COOKIE['mpt']) ? $_COOKIE['mpt'] : false,
  1150. 'id_token' => isset($_COOKIE['Auth']) ? $_COOKIE['Auth'] : false
  1151. );
  1152. $result['settings'] = organizrSpecialSettings();
  1153. break;
  1154. default:
  1155. $result['status'] = 'error';
  1156. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1157. break;
  1158. }
  1159. break;
  1160. case 'v1_auth':
  1161. switch ($method) {
  1162. case 'GET':
  1163. auth();
  1164. break;
  1165. default:
  1166. //exit(http_response_code(401));
  1167. auth();
  1168. break;
  1169. }
  1170. break;
  1171. case 'v1_plugin':
  1172. switch ($method) {
  1173. case 'POST':
  1174. case 'GET':
  1175. // Include all plugin api Calls
  1176. foreach (glob(__DIR__ . DIRECTORY_SEPARATOR . 'plugins' . DIRECTORY_SEPARATOR . 'api' . DIRECTORY_SEPARATOR . "*.php") as $filename) {
  1177. require_once $filename;
  1178. }
  1179. break;
  1180. default:
  1181. $result['status'] = 'error';
  1182. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1183. break;
  1184. }
  1185. break;
  1186. case 'v1_image':
  1187. switch ($method) {
  1188. case 'GET':
  1189. getImage();
  1190. break;
  1191. default:
  1192. $result['status'] = 'error';
  1193. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1194. break;
  1195. }
  1196. break;
  1197. case 'v1_downloader':
  1198. switch ($method) {
  1199. case 'POST':
  1200. $result['status'] = 'success';
  1201. $result['statusText'] = 'success';
  1202. $result['data'] = downloader($_POST);
  1203. break;
  1204. default:
  1205. $result['status'] = 'error';
  1206. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1207. break;
  1208. }
  1209. break;
  1210. case 'v1_import_users':
  1211. switch ($method) {
  1212. case 'POST':
  1213. if (qualifyRequest(1)) {
  1214. $result['status'] = 'success';
  1215. $result['statusText'] = 'success';
  1216. $result['data'] = importUsersType($_POST);
  1217. } else {
  1218. $result['status'] = 'error';
  1219. $result['statusText'] = 'API/Token invalid or not set';
  1220. $result['data'] = null;
  1221. }
  1222. break;
  1223. default:
  1224. $result['status'] = 'error';
  1225. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1226. break;
  1227. }
  1228. break;
  1229. case 'v1_ombi':
  1230. switch ($method) {
  1231. case 'POST':
  1232. $result['status'] = 'success';
  1233. $result['statusText'] = 'success';
  1234. $result['data'] = ombiAPI($_POST);
  1235. break;
  1236. default:
  1237. $result['status'] = 'error';
  1238. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1239. break;
  1240. }
  1241. break;
  1242. case 'v1_plex_join':
  1243. switch ($method) {
  1244. case 'POST':
  1245. $result['status'] = 'success';
  1246. $result['statusText'] = 'success';
  1247. $result['data'] = plexJoinAPI($_POST);
  1248. break;
  1249. default:
  1250. $result['status'] = 'error';
  1251. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1252. break;
  1253. }
  1254. break;
  1255. case 'v1_emby_join':
  1256. switch ($method) {
  1257. case 'POST':
  1258. $result['status'] = 'success';
  1259. $result['statusText'] = 'success';
  1260. $result['data'] = embyJoinAPI($_POST);
  1261. break;
  1262. default:
  1263. $result['status'] = 'error';
  1264. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1265. break;
  1266. }
  1267. break;
  1268. case 'v1_token_revoke':
  1269. switch ($method) {
  1270. case 'POST':
  1271. $result['status'] = 'success';
  1272. $result['statusText'] = 'success';
  1273. $result['data'] = revokeToken($_POST);
  1274. break;
  1275. default:
  1276. $result['status'] = 'error';
  1277. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1278. break;
  1279. }
  1280. break;
  1281. case 'v1_token_validate':
  1282. switch ($method) {
  1283. case 'GET':
  1284. $token = $_GET['token'] ?? false;
  1285. break;
  1286. case 'POST':
  1287. $token = $_POST['token'] ?? false;
  1288. break;
  1289. default:
  1290. $result['status'] = 'error';
  1291. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1292. break;
  1293. }
  1294. $token = validateToken($token);
  1295. if($token){
  1296. $result['status'] = 'success';
  1297. $result['statusText'] = 'success';
  1298. $result['data'] = $token;
  1299. }else{
  1300. $result['status'] = 'error';
  1301. $result['statusText'] = 'Token not validated or empty';
  1302. }
  1303. break;
  1304. case 'v1_update_db_manual':
  1305. switch ($method) {
  1306. case 'GET':
  1307. if (qualifyRequest(1)) {
  1308. $result['status'] = 'success';
  1309. $result['statusText'] = 'success';
  1310. $result['data'] = updateDB($GLOBALS['installedVersion']);
  1311. } else {
  1312. $result['status'] = 'error';
  1313. $result['statusText'] = 'API/Token invalid or not set';
  1314. $result['data'] = null;
  1315. }
  1316. break;
  1317. default:
  1318. $result['status'] = 'error';
  1319. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1320. break;
  1321. }
  1322. break;
  1323. case 'v1_version':
  1324. switch ($method) {
  1325. case 'GET':
  1326. $result['status'] = 'success';
  1327. $result['statusText'] = 'success';
  1328. $result['data'] = $GLOBALS['installedVersion'];
  1329. break;
  1330. default:
  1331. $result['status'] = 'error';
  1332. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1333. break;
  1334. }
  1335. break;
  1336. case 'v1_ping':
  1337. switch ($method) {
  1338. case 'GET':
  1339. $result['status'] = 'success';
  1340. $result['statusText'] = 'success';
  1341. $result['data'] = 'pong';
  1342. break;
  1343. default:
  1344. $result['status'] = 'error';
  1345. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1346. break;
  1347. }
  1348. break;
  1349. case 'v1_docker_update':
  1350. switch ($method) {
  1351. case 'GET':
  1352. if (qualifyRequest(1)) {
  1353. $result['status'] = 'success';
  1354. $result['statusText'] = 'success';
  1355. $result['data'] = dockerUpdate();
  1356. } else {
  1357. $result['status'] = 'error';
  1358. $result['statusText'] = 'API/Token invalid or not set';
  1359. $result['data'] = null;
  1360. }
  1361. break;
  1362. default:
  1363. $result['status'] = 'error';
  1364. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1365. break;
  1366. }
  1367. break;
  1368. case 'v1_windows_update':
  1369. switch ($method) {
  1370. case 'GET':
  1371. if (qualifyRequest(1)) {
  1372. $result['status'] = 'success';
  1373. $result['statusText'] = 'success';
  1374. $result['data'] = windowsUpdate();
  1375. } else {
  1376. $result['status'] = 'error';
  1377. $result['statusText'] = 'API/Token invalid or not set';
  1378. $result['data'] = null;
  1379. }
  1380. break;
  1381. default:
  1382. $result['status'] = 'error';
  1383. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1384. break;
  1385. }
  1386. break;
  1387. case 'v1_custom_page':
  1388. switch ($method) {
  1389. case 'GET':
  1390. $customPage = 'customPage'.ucwords($endpoint);
  1391. $result['status'] = 'success';
  1392. $result['statusText'] = 'success';
  1393. $result['data'] = $$customPage;
  1394. break;
  1395. default:
  1396. $result['status'] = 'error';
  1397. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1398. break;
  1399. }
  1400. break;
  1401. case 'v1_youtube_search':
  1402. switch ($method) {
  1403. case 'GET':
  1404. $query = isset($_GET['q']) ? $_GET['q'] : false;
  1405. $result['status'] = isset($_GET['q']) ? 'success' : 'error';
  1406. $result['statusText'] = isset($_GET['q']) ? 'success' : 'missing query';
  1407. $result['data'] = youtubeSearch($query);
  1408. break;
  1409. default:
  1410. $result['status'] = 'error';
  1411. $result['statusText'] = 'The function requested is not defined for method: ' . $method;
  1412. break;
  1413. }
  1414. break;
  1415. default:
  1416. //No Function Available
  1417. $result['status'] = 'error';
  1418. $result['statusText'] = 'function requested is not defined';
  1419. break;
  1420. }
  1421. //Set Default Result
  1422. if (!$result) {
  1423. $result['status'] = "error";
  1424. $result['error'] = "An error has occurred";
  1425. }
  1426. $result['generationDate'] = $GLOBALS['currentTime'];
  1427. $result['generationTime'] = formatSeconds(timeExecution());
  1428. //Set HTTP Code
  1429. if($result['statusText'] == "API/Token invalid or not set"){
  1430. http_response_code(401);
  1431. }else{
  1432. http_response_code(200);
  1433. }
  1434. //return JSON array
  1435. if ($pretty) {
  1436. echo '<pre>' . safe_json_encode($result, JSON_PRETTY_PRINT) . '</pre>';
  1437. } else {
  1438. exit(safe_json_encode($result, JSON_HEX_QUOT | JSON_HEX_TAG));
  1439. }