index.php 34 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900
  1. <?php
  2. $generationTime = -microtime(true);
  3. //include functions
  4. require_once 'functions.php';
  5. //Set result array
  6. $result = array();
  7. //Get request method
  8. $method = $_SERVER['REQUEST_METHOD'];
  9. reset($_GET);
  10. $function = (key($_GET) ? str_replace("/","_",key($_GET)) : false);
  11. //Exit if $function is blank
  12. if($function === false){
  13. $result['status'] = "error";
  14. $result['statusText'] = "No API Path Supplied";
  15. exit(json_encode($result));
  16. }
  17. $result['request'] = key($_GET);
  18. switch ($function) {
  19. case 'v1_settings_page':
  20. switch ($method) {
  21. case 'GET':
  22. if(qualifyRequest(1)){
  23. $result['status'] = 'success';
  24. $result['statusText'] = 'success';
  25. $result['data'] = $pageSettings;
  26. writeLog('success', 'Admin Function - Accessed Settings Page', $GLOBALS['organizrUser']['username']);
  27. }else{
  28. $result['status'] = 'error';
  29. $result['statusText'] = 'API/Token invalid or not set';
  30. $result['data'] = null;
  31. writeLog('error', 'Admin Function - Tried to access Settings Page', $GLOBALS['organizrUser']['username']);
  32. }
  33. break;
  34. default:
  35. $result['status'] = 'error';
  36. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  37. break;
  38. }
  39. break;
  40. case 'v1_homepage_page':
  41. switch ($method) {
  42. case 'GET':
  43. $result['status'] = 'success';
  44. $result['statusText'] = 'success';
  45. $result['data'] = $pageHomepage;
  46. break;
  47. default:
  48. $result['status'] = 'error';
  49. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  50. break;
  51. }
  52. break;
  53. case 'v1_settings_plugins':
  54. switch ($method) {
  55. case 'GET':
  56. if(qualifyRequest(1)){
  57. $result['status'] = 'success';
  58. $result['statusText'] = 'success';
  59. $result['data'] = $pageSettingsPlugins;
  60. }else{
  61. $result['status'] = 'error';
  62. $result['statusText'] = 'API/Token invalid or not set';
  63. $result['data'] = null;
  64. }
  65. break;
  66. default:
  67. $result['status'] = 'error';
  68. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  69. break;
  70. }
  71. break;
  72. case 'v1_settings_tab_editor_homepage':
  73. switch ($method) {
  74. case 'GET':
  75. if(qualifyRequest(1)){
  76. $result['status'] = 'success';
  77. $result['statusText'] = 'success';
  78. $result['data'] = $pageSettingsTabEditorHomepage;
  79. }else{
  80. $result['status'] = 'error';
  81. $result['statusText'] = 'API/Token invalid or not set';
  82. $result['data'] = null;
  83. }
  84. break;
  85. default:
  86. $result['status'] = 'error';
  87. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  88. break;
  89. }
  90. break;
  91. case 'v1_settings_homepage_list':
  92. switch ($method) {
  93. case 'GET':
  94. if(qualifyRequest(1)){
  95. $result['status'] = 'success';
  96. $result['statusText'] = 'success';
  97. $result['data'] = getHomepageList();
  98. }else{
  99. $result['status'] = 'error';
  100. $result['statusText'] = 'API/Token invalid or not set';
  101. $result['data'] = null;
  102. }
  103. break;
  104. case 'POST':
  105. if(qualifyRequest(1)){
  106. $result['status'] = 'success';
  107. $result['statusText'] = 'success';
  108. $result['data'] = editPlugins($_POST);
  109. }else{
  110. $result['status'] = 'error';
  111. $result['statusText'] = 'API/Token invalid or not set';
  112. $result['data'] = null;
  113. }
  114. break;
  115. default:
  116. $result['status'] = 'error';
  117. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  118. break;
  119. }
  120. break;
  121. case 'v1_settings_plugins_list':
  122. switch ($method) {
  123. case 'GET':
  124. if(qualifyRequest(1)){
  125. $result['status'] = 'success';
  126. $result['statusText'] = 'success';
  127. $result['data'] = getPlugins();
  128. }else{
  129. $result['status'] = 'error';
  130. $result['statusText'] = 'API/Token invalid or not set';
  131. $result['data'] = null;
  132. }
  133. break;
  134. case 'POST':
  135. if(qualifyRequest(1)){
  136. $result['status'] = 'success';
  137. $result['statusText'] = 'success';
  138. $result['data'] = editPlugins($_POST);
  139. }else{
  140. $result['status'] = 'error';
  141. $result['statusText'] = 'API/Token invalid or not set';
  142. $result['data'] = null;
  143. }
  144. break;
  145. default:
  146. $result['status'] = 'error';
  147. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  148. break;
  149. }
  150. break;
  151. case 'v1_settings_settings_logs':
  152. switch ($method) {
  153. case 'GET':
  154. if(qualifyRequest(1)){
  155. $result['status'] = 'success';
  156. $result['statusText'] = 'success';
  157. $result['data'] = $pageSettingsSettingsLogs;
  158. }else{
  159. $result['status'] = 'error';
  160. $result['statusText'] = 'API/Token invalid or not set';
  161. $result['data'] = null;
  162. }
  163. break;
  164. default:
  165. $result['status'] = 'error';
  166. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  167. break;
  168. }
  169. break;
  170. case 'v1_settings_settings_sso':
  171. switch ($method) {
  172. case 'GET':
  173. if(qualifyRequest(1)){
  174. $result['status'] = 'success';
  175. $result['statusText'] = 'success';
  176. $result['data'] = $pageSettingsSettingsSSO;
  177. }else{
  178. $result['status'] = 'error';
  179. $result['statusText'] = 'API/Token invalid or not set';
  180. $result['data'] = null;
  181. }
  182. break;
  183. default:
  184. $result['status'] = 'error';
  185. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  186. break;
  187. }
  188. break;
  189. case 'v1_settings_settings_main':
  190. switch ($method) {
  191. case 'GET':
  192. if(qualifyRequest(1)){
  193. $result['status'] = 'success';
  194. $result['statusText'] = 'success';
  195. $result['data'] = $pageSettingsSettingsMain;
  196. }else{
  197. $result['status'] = 'error';
  198. $result['statusText'] = 'API/Token invalid or not set';
  199. $result['data'] = null;
  200. }
  201. break;
  202. default:
  203. $result['status'] = 'error';
  204. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  205. break;
  206. }
  207. break;
  208. case 'v1_settings_customize_appearance':
  209. switch ($method) {
  210. case 'GET':
  211. if(qualifyRequest(1)){
  212. $result['status'] = 'success';
  213. $result['statusText'] = 'success';
  214. $result['data'] = $pageSettingsCustomizeAppearance;
  215. }else{
  216. $result['status'] = 'error';
  217. $result['statusText'] = 'API/Token invalid or not set';
  218. $result['data'] = null;
  219. }
  220. break;
  221. case 'POST':
  222. if(qualifyRequest(1)){
  223. $result['status'] = 'success';
  224. $result['statusText'] = 'success';
  225. $result['data'] = editAppearance($_POST);
  226. }else{
  227. $result['status'] = 'error';
  228. $result['statusText'] = 'API/Token invalid or not set';
  229. $result['data'] = null;
  230. }
  231. break;
  232. default:
  233. $result['status'] = 'error';
  234. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  235. break;
  236. }
  237. break;
  238. case 'v1_update_config':
  239. switch ($method) {
  240. case 'POST':
  241. if(qualifyRequest(1)){
  242. $result['status'] = 'success';
  243. $result['statusText'] = 'success';
  244. $result['data'] = updateConfigItem($_POST);
  245. }else{
  246. $result['status'] = 'error';
  247. $result['statusText'] = 'API/Token invalid or not set';
  248. $result['data'] = null;
  249. }
  250. break;
  251. default:
  252. $result['status'] = 'error';
  253. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  254. break;
  255. }
  256. break;
  257. case 'v1_homepage_connect':
  258. switch ($method) {
  259. case 'POST':
  260. $result['status'] = 'success';
  261. $result['statusText'] = 'success';
  262. $result['data'] = homepageConnect($_POST);
  263. break;
  264. default:
  265. $result['status'] = 'error';
  266. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  267. break;
  268. }
  269. break;
  270. case 'v1_settings_tab_editor_tabs':
  271. switch ($method) {
  272. case 'GET':
  273. if(qualifyRequest(1)){
  274. $result['status'] = 'success';
  275. $result['statusText'] = 'success';
  276. $result['data'] = $pageSettingsTabEditorTabs;
  277. }else{
  278. $result['status'] = 'error';
  279. $result['statusText'] = 'API/Token invalid or not set';
  280. $result['data'] = null;
  281. }
  282. break;
  283. case 'POST':
  284. if(qualifyRequest(1)){
  285. $result['status'] = 'success';
  286. $result['statusText'] = 'success';
  287. $result['data'] = editTabs($_POST);
  288. }else{
  289. $result['status'] = 'error';
  290. $result['statusText'] = 'API/Token invalid or not set';
  291. $result['data'] = null;
  292. }
  293. break;
  294. default:
  295. $result['status'] = 'error';
  296. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  297. break;
  298. }
  299. break;
  300. case 'v1_settings_tab_editor_categories':
  301. switch ($method) {
  302. case 'GET':
  303. if(qualifyRequest(1)){
  304. $result['status'] = 'success';
  305. $result['statusText'] = 'success';
  306. $result['data'] = $pageSettingsTabEditorCategories;
  307. }else{
  308. $result['status'] = 'error';
  309. $result['statusText'] = 'API/Token invalid or not set';
  310. $result['data'] = null;
  311. }
  312. break;
  313. case 'POST':
  314. if(qualifyRequest(1)){
  315. $result['status'] = 'success';
  316. $result['statusText'] = 'success';
  317. $result['data'] = editCategories($_POST);
  318. }else{
  319. $result['status'] = 'error';
  320. $result['statusText'] = 'API/Token invalid or not set';
  321. $result['data'] = null;
  322. }
  323. break;
  324. default:
  325. $result['status'] = 'error';
  326. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  327. break;
  328. }
  329. break;
  330. case 'v1_settings_user_manage_users':
  331. switch ($method) {
  332. case 'GET':
  333. if(qualifyRequest(1)){
  334. $result['status'] = 'success';
  335. $result['statusText'] = 'success';
  336. $result['data'] = $pageSettingsUserManageUsers;
  337. }else{
  338. $result['status'] = 'error';
  339. $result['statusText'] = 'API/Token invalid or not set';
  340. $result['data'] = null;
  341. }
  342. break;
  343. case 'POST':
  344. if(qualifyRequest(1)){
  345. $result['status'] = 'success';
  346. $result['statusText'] = 'success';
  347. $result['data'] = adminEditUser($_POST);
  348. }elseif(qualifyRequest(998)){
  349. $result['status'] = 'success';
  350. $result['statusText'] = 'success';
  351. $result['data'] = editUser($_POST);
  352. }else{
  353. $result['status'] = 'error';
  354. $result['statusText'] = 'API/Token invalid or not set';
  355. $result['data'] = null;
  356. }
  357. break;
  358. default:
  359. $result['status'] = 'error';
  360. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  361. break;
  362. }
  363. break;
  364. case 'v1_manage_user':
  365. switch ($method) {
  366. case 'POST':
  367. if(qualifyRequest(998)){
  368. $result['status'] = 'success';
  369. $result['statusText'] = 'success';
  370. $result['data'] = editUser($_POST);
  371. }else{
  372. $result['status'] = 'error';
  373. $result['statusText'] = 'API/Token invalid or not set';
  374. $result['data'] = null;
  375. }
  376. break;
  377. default:
  378. $result['status'] = 'error';
  379. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  380. break;
  381. }
  382. break;
  383. case 'v1_settings_user_manage_groups':
  384. switch ($method) {
  385. case 'GET':
  386. if(qualifyRequest(1)){
  387. $result['status'] = 'success';
  388. $result['statusText'] = 'success';
  389. $result['data'] = $pageSettingsUserManageGroups;
  390. }else{
  391. $result['status'] = 'error';
  392. $result['statusText'] = 'API/Token invalid or not set';
  393. $result['data'] = null;
  394. }
  395. break;
  396. case 'POST':
  397. if(qualifyRequest(1)){
  398. $result['status'] = 'success';
  399. $result['statusText'] = 'success';
  400. $result['data'] = adminEditGroup($_POST);
  401. }else{
  402. $result['status'] = 'error';
  403. $result['statusText'] = 'API/Token invalid or not set';
  404. $result['data'] = null;
  405. }
  406. break;
  407. default:
  408. $result['status'] = 'error';
  409. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  410. break;
  411. }
  412. break;
  413. case 'v1_settings_image_manager_view':
  414. switch ($method) {
  415. case 'GET':
  416. if(qualifyRequest(1)){
  417. $result['status'] = 'success';
  418. $result['statusText'] = 'success';
  419. $result['data'] = $pageSettingsImageManager;
  420. }else{
  421. $result['status'] = 'error';
  422. $result['statusText'] = 'API/Token invalid or not set';
  423. $result['data'] = null;
  424. }
  425. break;
  426. case 'POST':
  427. if(qualifyRequest(1)){
  428. $result['status'] = 'success';
  429. $result['statusText'] = 'success';
  430. $result['data'] = editImages();
  431. }else{
  432. $result['status'] = 'error';
  433. $result['statusText'] = 'API/Token invalid or not set';
  434. $result['data'] = null;
  435. }
  436. break;
  437. default:
  438. $result['status'] = 'error';
  439. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  440. break;
  441. }
  442. break;
  443. case 'v1_wizard_page':
  444. switch ($method) {
  445. case 'GET':
  446. if(!file_exists('config'.DIRECTORY_SEPARATOR.'config.php')){
  447. $result['status'] = 'success';
  448. $result['statusText'] = 'success';
  449. $result['data'] = $pageWizard;
  450. }else{
  451. $result['status'] = 'error';
  452. $result['statusText'] = 'Wizard has already been run';
  453. $result['data'] = null;
  454. }
  455. break;
  456. default:
  457. $result['status'] = 'error';
  458. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  459. break;
  460. }
  461. break;
  462. case 'v1_dependencies_page':
  463. switch ($method) {
  464. case 'GET':
  465. $result['status'] = 'success';
  466. $result['statusText'] = 'success';
  467. $result['data'] = $pageDependencies;
  468. break;
  469. default:
  470. $result['status'] = 'error';
  471. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  472. break;
  473. }
  474. break;
  475. case 'v1_wizard_config':
  476. switch ($method) {
  477. case 'POST':
  478. if(!file_exists('config'.DIRECTORY_SEPARATOR.'config.php')){
  479. $result['status'] = 'success';
  480. $result['statusText'] = 'success';
  481. $result['data'] = wizardConfig($_POST);
  482. }else{
  483. $result['status'] = 'error';
  484. $result['statusText'] = 'Wizard has already been run';
  485. $result['data'] = null;
  486. }
  487. break;
  488. default:
  489. $result['status'] = 'error';
  490. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  491. break;
  492. }
  493. break;
  494. case 'v1_wizard_path':
  495. switch ($method) {
  496. case 'POST':
  497. if(!file_exists('config'.DIRECTORY_SEPARATOR.'config.php')){
  498. $result['status'] = 'success';
  499. $result['statusText'] = 'success';
  500. $result['data'] = wizardPath($_POST);
  501. }else{
  502. $result['status'] = 'error';
  503. $result['statusText'] = 'Wizard has already been run';
  504. $result['data'] = null;
  505. }
  506. break;
  507. default:
  508. $result['status'] = 'error';
  509. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  510. break;
  511. }
  512. break;
  513. case 'v1_login':
  514. switch ($method) {
  515. case 'POST':
  516. $result['status'] = 'success';
  517. $result['statusText'] = 'success';
  518. $result['data'] = login($_POST);
  519. break;
  520. default:
  521. $result['status'] = 'error';
  522. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  523. break;
  524. }
  525. break;
  526. case 'v1_register':
  527. switch ($method) {
  528. case 'POST':
  529. $result['status'] = 'success';
  530. $result['statusText'] = 'success';
  531. $result['data'] = register($_POST);
  532. break;
  533. default:
  534. $result['status'] = 'error';
  535. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  536. break;
  537. }
  538. break;
  539. case 'v1_upgrade':
  540. case 'v1_update':
  541. case 'v1_force':
  542. switch ($method) {
  543. case 'POST':
  544. if(qualifyRequest(1)){
  545. $result['status'] = 'success';
  546. $result['statusText'] = 'success';
  547. $result['data'] = upgradeInstall($_POST['data']['branch'],$_POST['data']['stage']);
  548. }else{
  549. $result['status'] = 'error';
  550. $result['statusText'] = 'API/Token invalid or not set';
  551. $result['data'] = null;
  552. }
  553. break;
  554. default:
  555. $result['status'] = 'error';
  556. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  557. break;
  558. }
  559. break;
  560. case 'v1_login_page':
  561. switch ($method) {
  562. case 'GET':
  563. $result['status'] = 'success';
  564. $result['statusText'] = 'success';
  565. $result['data'] = $pageLogin;
  566. break;
  567. default:
  568. $result['status'] = 'error';
  569. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  570. break;
  571. }
  572. break;
  573. case 'v1_lockscreen':
  574. switch ($method) {
  575. case 'GET':
  576. $result['status'] = 'success';
  577. $result['statusText'] = 'success';
  578. $result['data'] = $pageLockScreen;
  579. break;
  580. default:
  581. $result['status'] = 'error';
  582. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  583. break;
  584. }
  585. break;
  586. case 'v1_login_log':
  587. switch ($method) {
  588. case 'GET':
  589. if(qualifyRequest(1)){
  590. $result['status'] = 'success';
  591. $result['statusText'] = 'success';
  592. $result['data'] = getLog('loginLog');
  593. }else{
  594. $result['status'] = 'error';
  595. $result['statusText'] = 'API/Token invalid or not set';
  596. $result['data'] = null;
  597. }
  598. break;
  599. default:
  600. $result['status'] = 'error';
  601. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  602. break;
  603. }
  604. break;
  605. case 'v1_organizr_log':
  606. switch ($method) {
  607. case 'GET':
  608. if(qualifyRequest(1)){
  609. $result['status'] = 'success';
  610. $result['statusText'] = 'success';
  611. $result['data'] = getLog('org');
  612. }else{
  613. $result['status'] = 'error';
  614. $result['statusText'] = 'API/Token invalid or not set';
  615. $result['data'] = null;
  616. }
  617. break;
  618. default:
  619. $result['status'] = 'error';
  620. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  621. break;
  622. }
  623. break;
  624. case 'v1_user_list':
  625. switch ($method) {
  626. case 'GET':
  627. if(qualifyRequest(1)){
  628. $result['status'] = 'success';
  629. $result['statusText'] = 'success';
  630. $result['data'] = allUsers();
  631. }else{
  632. $result['status'] = 'error';
  633. $result['statusText'] = 'API/Token invalid or not set';
  634. $result['data'] = null;
  635. }
  636. break;
  637. default:
  638. $result['status'] = 'error';
  639. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  640. break;
  641. }
  642. break;
  643. case 'v1_tab_list':
  644. switch ($method) {
  645. case 'GET':
  646. if(qualifyRequest(1)){
  647. $result['status'] = 'success';
  648. $result['statusText'] = 'success';
  649. $result['data'] = allTabs();
  650. }else{
  651. $result['status'] = 'error';
  652. $result['statusText'] = 'API/Token invalid or not set';
  653. $result['data'] = null;
  654. }
  655. break;
  656. default:
  657. $result['status'] = 'error';
  658. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  659. break;
  660. }
  661. break;
  662. case 'v1_image_list':
  663. switch ($method) {
  664. case 'GET':
  665. if(qualifyRequest(1)){
  666. $result['status'] = 'success';
  667. $result['statusText'] = 'success';
  668. $result['data'] = getImages();
  669. }else{
  670. $result['status'] = 'error';
  671. $result['statusText'] = 'API/Token invalid or not set';
  672. $result['data'] = null;
  673. }
  674. break;
  675. default:
  676. $result['status'] = 'error';
  677. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  678. break;
  679. }
  680. break;
  681. case 'v1_customize_appearance':
  682. switch ($method) {
  683. case 'GET':
  684. if(qualifyRequest(1)){
  685. $result['status'] = 'success';
  686. $result['statusText'] = 'success';
  687. $result['data'] = getCustomizeAppearance();
  688. }else{
  689. $result['status'] = 'error';
  690. $result['statusText'] = 'API/Token invalid or not set';
  691. $result['data'] = null;
  692. }
  693. break;
  694. default:
  695. $result['status'] = 'error';
  696. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  697. break;
  698. }
  699. break;
  700. case 'v1_sso':
  701. switch ($method) {
  702. case 'GET':
  703. if(qualifyRequest(1)){
  704. $result['status'] = 'success';
  705. $result['statusText'] = 'success';
  706. $result['data'] = getSSO();
  707. }else{
  708. $result['status'] = 'error';
  709. $result['statusText'] = 'API/Token invalid or not set';
  710. $result['data'] = null;
  711. }
  712. break;
  713. default:
  714. $result['status'] = 'error';
  715. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  716. break;
  717. }
  718. break;
  719. case 'v1_settings_main':
  720. switch ($method) {
  721. case 'GET':
  722. if(qualifyRequest(1)){
  723. $result['status'] = 'success';
  724. $result['statusText'] = 'success';
  725. $result['data'] = getSettingsMain();
  726. }else{
  727. $result['status'] = 'error';
  728. $result['statusText'] = 'API/Token invalid or not set';
  729. $result['data'] = null;
  730. }
  731. break;
  732. default:
  733. $result['status'] = 'error';
  734. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  735. break;
  736. }
  737. break;
  738. case 'v1_user_edit':
  739. switch ($method) {
  740. case 'POST':
  741. if(qualifyRequest(1)){
  742. $result['status'] = 'success';
  743. $result['statusText'] = 'success';
  744. $result['data'] = adminEditUser($_POST);
  745. }elseif(qualifyRequest(998)){
  746. $result['status'] = 'success';
  747. $result['statusText'] = 'success';
  748. $result['data'] = editUser($_POST);
  749. }else{
  750. $result['status'] = 'error';
  751. $result['statusText'] = 'API/Token invalid or not set';
  752. $result['data'] = null;
  753. }
  754. break;
  755. default:
  756. $result['status'] = 'error';
  757. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  758. break;
  759. }
  760. break;
  761. case 'v1_logout':
  762. switch ($method) {
  763. case 'GET':
  764. $result['status'] = 'success';
  765. $result['statusText'] = 'success';
  766. $result['data'] = logout();
  767. break;
  768. default:
  769. $result['status'] = 'error';
  770. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  771. break;
  772. }
  773. break;
  774. case 'v1_launch_organizr':
  775. switch ($method) {
  776. case 'GET':
  777. $pluginSearch = '-enabled';
  778. $pluginInclude = '-include';
  779. $status = array();
  780. $result['status'] = 'success';
  781. $result['statusText'] = 'success';
  782. $status['status'] = organizrStatus();
  783. $result['appearance'] = loadAppearance();
  784. $status['user'] = $GLOBALS['organizrUser'];
  785. $status['categories'] = loadTabs()['categories'];
  786. $status['tabs'] = loadTabs()['tabs'];
  787. $status['plugins'] = array_filter($GLOBALS, function($k)use($pluginSearch){
  788. return stripos($k, $pluginSearch) !== FALSE;
  789. }, ARRAY_FILTER_USE_KEY);
  790. $status['plugins']['includes'] = array_filter($GLOBALS, function($k)use($pluginInclude){
  791. return stripos($k, $pluginInclude) !== FALSE;
  792. }, ARRAY_FILTER_USE_KEY);
  793. $result['data'] = $status;
  794. $result['branch'] = $GLOBALS['branch'];
  795. $result['theme'] = $GLOBALS['theme'];
  796. $result['style'] = $GLOBALS['style'];
  797. $result['version'] = $GLOBALS['installedVersion'];
  798. $result['sso'] = array(
  799. 'myPlexAccessToken' => isset($_COOKIE['mpt']) ? $_COOKIE['mpt'] : false,
  800. 'id_token' => isset($_COOKIE['Auth']) ? $_COOKIE['Auth'] : false
  801. );
  802. $result['settings'] = organizrSpecialSettings();
  803. break;
  804. default:
  805. $result['status'] = 'error';
  806. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  807. break;
  808. }
  809. break;
  810. case 'v1_auth':
  811. switch ($method) {
  812. case 'GET':
  813. auth();
  814. break;
  815. default:
  816. $result['status'] = 'error';
  817. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  818. break;
  819. }
  820. break;
  821. case 'v1_plugin':
  822. switch ($method) {
  823. case 'POST':
  824. // Include all plugin api Calls
  825. foreach (glob(__DIR__.DIRECTORY_SEPARATOR.'plugins' . DIRECTORY_SEPARATOR . 'api' . DIRECTORY_SEPARATOR . "*.php") as $filename){
  826. require_once $filename;
  827. }
  828. break;
  829. default:
  830. $result['status'] = 'error';
  831. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  832. break;
  833. }
  834. break;
  835. case 'v1_image':
  836. switch ($method) {
  837. case 'GET':
  838. getImage();
  839. break;
  840. default:
  841. $result['status'] = 'error';
  842. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  843. break;
  844. }
  845. break;
  846. case 'v1_downloader':
  847. switch ($method) {
  848. case 'POST':
  849. $result['status'] = 'success';
  850. $result['statusText'] = 'success';
  851. $result['data'] = downloader($_POST);
  852. break;
  853. default:
  854. $result['status'] = 'error';
  855. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  856. break;
  857. }
  858. break;
  859. case 'v1_ombi':
  860. switch ($method) {
  861. case 'POST':
  862. $result['status'] = 'success';
  863. $result['statusText'] = 'success';
  864. $result['data'] = ombiAPI($_POST);
  865. break;
  866. default:
  867. $result['status'] = 'error';
  868. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  869. break;
  870. }
  871. break;
  872. case 'v1_plex_join':
  873. switch ($method) {
  874. case 'POST':
  875. $result['status'] = 'success';
  876. $result['statusText'] = 'success';
  877. $result['data'] = plexJoinAPI($_POST);
  878. break;
  879. default:
  880. $result['status'] = 'error';
  881. $result['statusText'] = 'The function requested is not defined for method: '.$method;
  882. break;
  883. }
  884. break;
  885. default:
  886. //No Function Available
  887. $result['status'] = 'error';
  888. $result['statusText'] = 'function requested is not defined';
  889. break;
  890. }
  891. //Set Default Result
  892. if(!$result){
  893. $result['status'] = "error";
  894. $result['error'] = "An error has occurred";
  895. }
  896. $result['generationDate'] = $GLOBALS['currentTime'];
  897. $generationTime += microtime(true);
  898. $result['generationTime'] = (sprintf('%f', $generationTime)*1000).'ms';
  899. //return JSON array
  900. exit(json_encode($result, JSON_HEX_QUOT | JSON_HEX_TAG));