Example #1
14
function check_user($uid, $link)
{
    $query = "SELECT sid FROM " . USERS_TABLE . " WHERE uid='{$uid}';";
    $result = mysqli_query($link, $query) or die(mysqli_error());
    $row = mysqli_fetch_assoc($result);
    return $row["sid"] == SID ? true : false;
}
 public function bajaEmpleo($id)
 {
     $conexion = new Conexion();
     $sql = "delete from empleos_anteriores where id={$id}";
     mysqli_query($conexion->link, $sql) or die("Error: " . mysqli_error($conexion->link));
     echo "Empleo borrado correctamente";
 }
Example #3
1
function sc_check_priv($prob_id, $opened, $user)
{
    if (!function_exists('check_priv')) {
        require __DIR__ . '/privilege.php';
    }
    if (isset($_SESSION['user'])) {
        if (strcmp($user, $_SESSION['user']) == 0 || check_priv(PRIV_SOURCE)) {
            return TRUE;
        }
    }
    require __DIR__ . '/../conf/database.php';
    if (!defined('PROB_HAS_TEX')) {
        require __DIR__ . '/../lib/problem_flags.php';
    }
    if ($opened) {
        $row = mysqli_fetch_row(mysqli_query($con, "select has_tex from problem where problem_id={$prob_id}"));
        if (!$row) {
            return _('There\'s no such problem');
        }
        $prob_flag = $row[0];
        if ($prob_flag & PROB_IS_HIDE && !check_priv(PRIV_INSIDER)) {
            return _('Looks like you can\'t access this page');
        }
        if ($prob_flag & PROB_DISABLE_OPENSOURCE) {
            return _('This solution is not open-source');
        } else {
            if ($prob_flag & PROB_SOLVED_OPENSOURCE) {
                if (isset($_SESSION['user'])) {
                    $query = 'select min(result) from solution where user_id=\'' . $_SESSION['user'] . "' and problem_id={$prob_id} group by problem_id";
                    $user_status = mysqli_query($con, $query);
                    $row = mysqli_fetch_row($user_status);
                    if ($row && $row[0] == 0) {
                        return TRUE;
                    }
                }
                return _('You can\'t see me before solving it');
            } else {
                if (isset($_SESSION['user'])) {
                    $res = mysqli_query($con, "SELECT contest.contest_id,co.contest_id from contest\n                                       RIGHT JOIN (select contest_id from contest_status where user_id='" . $_SESSION['user'] . "' and leave_time is NULL) as cs on (contest.contest_id=cs.contest_id)\n                                       LEFT JOIN (select contest_id from contest_problem where problem_id={$prob_id}) as cp on (contest.contest_id=cp.contest_id)\n                                       LEFT JOIN (select contest_id from contest_owner where user_id='" . $_SESSION['user'] . "') as co on (contest.contest_id=co.contest_id)\n                                       where NOW()>start_time and NOW()<end_time and contest.hide_source_code");
                    $num = mysqli_num_rows($res);
                    if ($num > 0) {
                        $accessible = false;
                        while ($row = mysqli_fetch_row($res)) {
                            if (!is_null($row[1])) {
                                $accessible = true;
                            }
                        }
                        if ($accessible) {
                            return TRUE;
                        } else {
                            return _('You can\'t see me before the contest ends');
                        }
                    }
                    return TRUE;
                }
            }
        }
    }
    return _('Looks like you can\'t access this page');
}
Example #4
1
 public function execute($db)
 {
     if (is_null($this->sql_query)) {
         $this->sql_query = $this->build_director();
     }
     return mysqli_query($db, $this->sql_query);
 }
Example #5
0
function getstockprice()
{
    global $con;
    $sql = "SELECT ROUND(current_stock_price, 1) as ct , ROUND(last_stock_price, 1) as lt from stocks";
    $query = mysqli_query($con, $sql);
    if (!$query && !mysqli_num_rows($query)) {
        throw new Exception('Error in SQL');
    }
    $i = 1;
    $ret = array();
    while ($row = mysqli_fetch_assoc($query)) {
        if ($row['ct'] > $row['lt']) {
            $direction = 'up';
            $color = 'green';
        } else {
            $direction = 'down';
            $color = 'red';
        }
        $arr[$i] = array($row['ct'], $direction, $color);
        array_push($ret, $arr[$i]);
        $i++;
    }
    mysqli_close($con);
    return $ret;
}
Example #6
0
function DetailsInsert($con)
{
    $datecon = $_POST["YYYY"] . "-" . $_POST["MM"] . "-" . $_POST["DD"];
    //$query="INSERT into customers ('check_in', 'check-out', 'room_type', 'adults_per_room', 'children_0_5', 'children_6_12') VALUES ('$checkin.','$checkout','$roomtype','$adults','$child0','$child6');";
    $query = "INSERT INTO `happy_hearts`.`schoolinfo` ( `school_id`, `date_updated`, `children`, `teachers`,`girls`,`boys`,`new_enroll`,`no_left`) VALUES ('" . $_POST["school_id"] . "','" . $_POST["udate"] . "','" . $_POST["children"] . "','" . $_POST["girls"] . "','" . $_POST["boys"] . "','" . $_POST["no_enroll"] . "','" . $_POST["no_left"] . "');";
    //id is auto increment
    echo $query;
    if (mysqli_query($con, $query)) {
        $id = mysqli_insert_id($con);
        //Gives the auto generated id required in employee_master table
    } else {
        return false;
    }
    /*$query1="insert into employee_master(emp_id,emp_username,emp_password) values(".$id.",'".$_POST["user"]."','".$_POST["pass"]."');";	//id is auto increment,we take auto incremented id from the first table to put in employee id in employee_master table and this query stores the username and password from the query  
    
    
    	echo $query1; //see screenshot
    
    
    	if(!mysqli_query($con,$query1)) //Runs the query and returns boolean variable.
    	{
    		return false;
    	}
    	else 
    	{
    		return true;
    	}	//checks the second query just as the first
    	*/
}
Example #7
0
function verificar_login($userid, $pass, &$result)
{
    $servername = "localhost";
    $username = '******';
    $password = "";
    $dbname = "cmd";
    // Create connection
    $conn = new mysqli($servername, $username, $password, $dbname);
    // Check connection
    if ($conn->connect_error) {
        die("Connection failed: " . $conn->connect_error);
    }
    $sql = "SELECT * FROM `trabajador` WHERE `userid`=\"" . $userid . "\" and `password`=\"" . $pass . "\"";
    $result = mysqli_query($conn, $sql);
    $count = 0;
    if (!$result) {
        echo "no result";
    } else {
        if (mysqli_num_rows($result) > 0) {
            while ($row = mysqli_fetch_assoc($result)) {
                $_SESSION['userid'] = $row["userid"];
                $_SESSION['rol'] = $row["rol"];
                $count++;
            }
        }
        if ($count == 1) {
            return 1;
        } else {
            return 0;
        }
    }
}
Example #8
0
function konprobatuSaioa($nora, $errorea)
{
    if (!isset($_SESSION)) {
        session_start();
    }
    if (!isset($_SESSION['posta'])) {
        $user_check = 0;
    } else {
        $user_check = $_SESSION['posta'];
    }
    $sql = "SELECT * FROM  erabiltzaileak where posta like '{$user_check}'";
    require_once __DIR__ . '/../datuBasea/konexioa.php';
    $result = mysqli_query($konexioa, $sql);
    $row = mysqli_fetch_assoc($result);
    $login_session = $row['izenabizen'];
    if (!isset($login_session) && !(isset($_SESSION['posta']) && $_SESSION['posta'] == true)) {
        if ($errorea) {
            echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"js/abixuak/dist/sweetalert2.css\"/>\n<script src=\"js/jquery.js\"></script>\n<script src=\"js/abixuak/dist/sweetalert2.min.js\"></script>\n<body bgcolor=\"#8A0829\">\n<script language=\"JavaScript\">";
            echo "\n        swal({\n                    title: \"GUNE PRIBATUA\",\n                    text: \"Logeatuta egon behar duzu, atal honetan sartzeko.\",\n                    type: \"error\"\n                },\n                function(){\n                    window.location.href = '{$nora}';\n                });\n                    window.onclick = function(){\n                        window.location.href = '{$nora}';\n                        }\n      ";
            echo "</script>\n</body>";
            return false;
        }
    } else {
        return true;
    }
}
Example #9
0
function check_login($dbc, $name = '', $password = '')
{
    $errors = array();
    if (empty($name)) {
        $errors[] = 'you forget to input your ID';
    } else {
        $e = mysqli_real_escape_string($dbc, trim($name));
    }
    if (empty($password)) {
        $errors[] = 'you forget to input your password';
    } else {
        $p = mysqli_real_escape_string($dbc, trim($password));
    }
    if (empty($errors)) {
        $q = "SELECT name FROM Manager where name= '{$e}' AND Cro = '{$p}'";
        $r = mysqli_query($dbc, $q);
        if (mysqli_num_rows($r) == 1) {
            $row = mysqli_fetch_array($r, MYSQLI_ASSOC);
            return array(ture, $row);
        } else {
            $errors[] = 'your name OR password did not match!';
        }
    }
    return array(false, $errors);
}
Example #10
0
function fdelete($del)
{
    //echo $del;
    $strSQL = "DELETE FROM companies WHERE id={$del}";
    mysqli_query($link, $strSQL);
    header("Location:http://localhost/companies/index.php?page=companies");
}
Example #11
0
 public function query($sql, $unbuffered = false)
 {
     if (defined('FEATHER_SHOW_QUERIES')) {
         $q_start = get_microtime();
     }
     $this->query_result = @mysqli_query($this->link_id, $sql);
     if ($this->query_result) {
         if (defined('FEATHER_SHOW_QUERIES')) {
             $this->saved_queries[] = array($sql, sprintf('%.5f', get_microtime() - $q_start));
         }
         ++$this->num_queries;
         return $this->query_result;
     } else {
         if (defined('FEATHER_SHOW_QUERIES')) {
             $this->saved_queries[] = array($sql, 0);
         }
         $this->error_no = @mysqli_errno($this->link_id);
         $this->error_msg = @mysqli_error($this->link_id);
         // Rollback transaction
         if ($this->in_transaction) {
             mysqli_query($this->link_id, 'ROLLBACK');
         }
         --$this->in_transaction;
         return false;
     }
 }
Example #12
0
function Populate()
{
    //mysql connection
    $con = mysqli_connect("eu-cdbr-azure-west-a.cloudapp.net", "b8592f1b44ff9a", "fecb2128", "TeamProject");
    if (mysqli_connect_errno()) {
        $result = "f";
    } else {
        //query
        $query = "SELECT Name,Email FROM Subscriber";
        $result = mysqli_query($con, $query);
        //initialize arrays
        $i = 0;
        $subnames = array();
        $submails = array();
        //loop through the database populating
        while ($sub = mysqli_fetch_assoc($result)) {
            $subnames[$i] = $sub['Name'];
            $submails[$i] = $sub['Email'];
            $i++;
        }
        //close conection and return
        mysqli_close($con);
        return array($subnames, $submails);
    }
}
Example #13
0
function validateUser($user, $pass, $pass_confirm)
{
    $valueToRetun = 0;
    $validUsernameOrNot = validUsername($user);
    $validPasswordOrNot = validPassword($pass);
    //check to see if username exists
    $sqlQuery = "SELECT * FROM users WHERE username = '******'";
    $result = mysqli_query($connection, $sqlQuery);
    $row = mysqli_fetch_assoc($result);
    if ($row != "") {
        $valueToReturn = 1;
    } else {
        if ($validUsernameOrNot && $validPasswordOrNot) {
            $valueToReturn = 2;
            //Username and password is valid
        } else {
            if (!$validUsernameOrNot) {
                $valueToReturn = 3;
                //Username is not valid format
            } else {
                if (!$validPasswordOrNot) {
                    $valueToReturn = 4;
                    //Password is not valid format
                } else {
                    if (strcmp($pass, $pass_confirm) !== 0) {
                        $valueToReturn = 5;
                        //Password confirmation is incorrect
                    }
                }
            }
        }
    }
    mysql_free_result($result);
    return $valueToReturn;
}
Example #14
0
function generateDataLayer($result, $p, $view, $genre, $category, $sort, $searchName)
{
    require 'includes/connect.php';
    $dataLayerString = "[{'page':'homePage',";
    //movie
    $movieString = "'movies':[";
    while ($row = mysqli_fetch_array($result)) {
        $movieId = mysqli_real_escape_string($conn, $row['movieId']);
        $movieName = mysqli_real_escape_string($conn, $row['name']);
        if ($p == "rating") {
            $averageRatingQuery = "SELECT average FROM `averagerating` WHERE movieId = '" . $movieId . "'";
            $averageRatingResult = mysqli_query($conn, $averageRatingQuery);
            $averageRatingRow = mysqli_fetch_array($averageRatingResult);
            if (!$averageRatingRow) {
                printf("Error: %s\n", mysqli_error($conn));
                //exit();
            }
            $average = $averageRatingRow['average'];
            $movieString .= "{ 'movieId':'{$movieId}', 'movieName':'{$movieName}', 'averageRating':'{$average}' },";
        } else {
            if ($p == "sentiment") {
                $sentCount = "";
                if ($sentSort == "pos") {
                    $sentCount = $row['positive'];
                    $sentType = "positive";
                } else {
                    $sentCount = $row['negative'];
                    $sentType = "negative";
                }
                $movieString .= "{ 'movieId':'{$movieId}', 'movieName':'{$movieName}', '{$sentType}':'{$sentCount}' },";
            }
        }
    }
    $movieString = rtrim($movieString, ",");
    $movieString .= "]";
    $dataLayerString .= $movieString;
    //metric (rating or sentiment)
    $pString = ", 'metric': '{$p}'";
    $dataLayerString .= $pString;
    //view
    $viewString = ", 'view': '{$view}'";
    $dataLayerString .= $viewString;
    //genre
    $genreString = ", 'genre': '{$genre}'";
    $dataLayerString .= $genreString;
    //all/theatre/recent
    $categoryString = ", 'category': '{$category}'";
    $dataLayerString .= $categoryString;
    //sort
    $sortString = ", 'sort': '{$sort}'";
    $dataLayerString .= $sortString;
    //search
    if (!empty($searchName)) {
        $searchString = ", 'searchValue': '{$searchName}'";
        $dataLayerString .= $searchString;
    }
    $dataLayerString .= "}]";
    //echo "datalayer".$dataLayerString;
    return $dataLayerString;
}
 function team($abbr)
 {
     global $con;
     $result = mysqli_query($con, "SELECT * from teamnames Where abbr='{$abbr}'") or die(mysqli_error($con));
     $row1 = mysqli_fetch_array($result);
     return $row1['name'];
 }
Example #16
0
function post_query($col)
{
    include 'conn.php';
    //  Get the number of row of a table
    $sql = "SELECT count(id) FROM blog";
    $query = mysqli_query($conn, $sql);
    $row = mysqli_fetch_row($query);
    //  Catch the session variable from another page
    $n = $_SESSION['var'];
    for ($i = 1; $i <= $row[0]; $i++) {
        $sql = "SELECT * FROM blog where id = {$n} order by time asc";
        //  For query
        $query = mysqli_query($conn, $sql);
        $row = mysqli_fetch_assoc($query);
        if ($col == 'post_detail') {
            str_cut($row['post_detail']);
            break;
        } elseif ($col == 'author') {
            echo $row['author'];
            break;
        } elseif ($col == 'time') {
            echo $row['time'];
            break;
        } elseif ($col == 'post_heading') {
            echo $row['post_heading'];
            break;
        } elseif ($col == 'image') {
            echo $row['image'];
            break;
        } elseif ($col == 'id') {
            echo $row['id'];
            break;
        }
    }
}
function addData($name, $code, $price, $description)
{
    //print "Ready to add data";
    include "dbinfo.php";
    $picture = checkPicture();
    $sql = "INSERT INTO product2 VALUES (null,'7','{$picture}','{$name}','{$code}','{$price}','{$description}')";
    $result = mysqli_query($conn, $sql) or die(mysqli_error($conn));
    if (true === $result) {
        printf("no error: %s\n", mysqli_error($conn));
    } else {
        echo 'done.';
    }
    include "header.php";
    print <<<HERE
\t\t\t<br><br><br><br><br>
\t<h1>The following has been added:</h1>
\t<ul>
\t<li>Picture: <img src='images/Accessories/{$picture}' /></li>
\t<li>Type: 7</li>
\t<li>Name: {$name}</li>
\t<li>Code: {$code}</li>
\t<li>Price: {$price}</li>
\t<li>Description: {$description}</li>
\t</ul>
HERE;
}
Example #18
0
function insertarMiPrograma()
{
    $id_prog = $POST['id_prog'];
    $fecha = $POST['fecha'];
    $evento = $POST['evento'];
    $descripcion = $POST['descripcion'];
    $lugar = $POST['lugar'];
    $horaInicio = $POST['horaInicio'];
    $horaFin = $POST['horaFin'];
    $categoria = $POST['categoria'];
    $usuario_id = $POST['usuario_id'];
    $mysql = new conexion();
    $mysqli = $mysql->conctar();
    echo "{$id_prog} de porgrama";
    echo "{$fecha} de programa";
    echo "{$evento} de programa";
    echo "{$descripcion} de programa";
    echo "{$lugar} de programa";
    echo "{$horaInicio} de programa";
    echo "{$horaFin} de programa";
    echo "{$categoria} de programa";
    echo "{$usuario_id} de usuario";
    $query = "INSERT INTO programa (id_prog, fecha, evento, descripcion, lugar, horaInicio, horaFin, categoria, usuario_id) VALUES ({$id_prog}, '{$fecha}', '{$evento}', '{$descripcion}', '{$lugar}', '{$horaInicio}', '{$horaFin}' '{$categoria}', '{$usuario_id}');";
    mysqli_query($mysqli, $query) or die(mysqli_errno($mysqli));
    mysqli_close($mysqli);
}
 function display_product_details($id)
 {
     $dbc = mysqli_connect(DB_HOST, DB_USER, DB_PASSWORD, DB_NAME);
     $query3 = "SELECT * FROM food_items WHERE id= '{$id}' ";
     $result3 = mysqli_query($dbc, $query3);
     echo '<form action="fp-updateresult.php" method="post">';
     echo '<table>';
     echo '<tr>';
     echo '<th>Name</th>';
     echo '<th>Description</th>';
     echo '<th>Price</th>';
     echo '<th>Update</th>';
     echo '</tr>';
     while ($row3 = mysqli_fetch_array($result3)) {
         echo '<tr>';
         echo '<td><input type="text" name="name" value="' . $row3['name'] . '" /></td>';
         echo '<td><input type="text" name="description" value="' . $row3['description'] . '" /></td>';
         echo '<td><input type="text" name="price" value="' . $row3['price'] . '" /></td>';
         echo '<input type="hidden" name="proid" value="' . $row3['id'] . '" />';
         echo '<td><input type="submit" name="submit" value="Update" style="margin:0" /></td>';
     }
     echo '</tr>';
     echo '</table>';
     echo '</form>';
 }
Example #20
0
function login2($user, $pass)
{
    $con = new db();
    $conc = $con->c();
    $kcook = intval($_POST["remember"]);
    $q = mysqli_query($conc, "SELECT `id`,`user`,`name`,`email`,`img1`,`img2`,`img3`,`bgcolor` FROM `users` WHERE (`user` = '{$user}' OR `email` ='{$user}') AND pass = '******'");
    if (mysqli_num_rows($q) == 1) {
        $r = mysqli_fetch_array($q);
        setcookie("u", $r[1], time() + 52 * 60 * 60 * 24 * 7, "/");
        $_SESSION["uid"] = $r[0];
        $_SESSION["user"] = $r[1];
        $_SESSION["name"] = $r[2];
        $_SESSION["email"] = $r[3];
        $_SESSION["p"] = $pass;
        $_SESSION["color"] = $r[7];
        $_SESSION["img1"] = $r[4];
        $_SESSION["img2"] = $r[5];
        $_SESSION["img3"] = $r[6];
        $_SESSION["ula"] = md5("{$r['1']} {$pass} {$r['0']}");
        $con->close_db_con($conc);
        if (!valid_name($_SESSION["user"])) {
            $_SESSION["set_user"] = "******";
            header("location: ./?settings");
        } else {
            if ($kcook == 1) {
                setcookie("um", $r[1], time() + 52 * 60 * 60 * 24 * 7, "/");
                setcookie("pm", $pass, time() + 52 * 60 * 60 * 24 * 7, "/");
            }
            return true;
        }
    } else {
        return false;
    }
}
Example #21
0
 function query($sql, $type = '')
 {
     if (!($query = mysqli_query($this->link, $sql))) {
         $this->show('Say:', $sql);
     }
     return $query;
 }
 /**
  * executes a query
  *
  * @param string $query a query
  * @return no value
  * @author TinhDoan added [20100414]
  *
  */
 function query($query)
 {
     // No empty queries
     if (empty($query)) {
         $this->writeLog("SQL is empty.", 0);
         return;
     }
     // Connect if not already
     if ($this->_connection == null) {
         if (!$this->createIConnection()) {
             $this->writeLog("Create connection is failed", 0);
             return;
         }
     }
     // Perform query
     $this->_currentCursor = mysqli_query($this->_connection, $query, MYSQLI_USE_RESULT);
     // Error handling - postgresql errors - i.e. duplicate key
     if (mysqli_error($this->_connection)) {
         $error = mysqli_error($this->_connection);
         // Write log
         $this->writeLog("Execute SQL={$query}", 0);
         $this->writeLog("Execute SQL error={$error}", 1);
         // Store error
         $this->_strLastError = $error;
     }
 }
Example #23
0
function login($user, $pass)
{
    $con = new db();
    $conc = $con->c();
    $kcook = intval($_POST["remember"]);
    $q = mysqli_query($conc, "SELECT `id`,`user`,`name`,`email`,`img1`,`img2`,`img3`,`bgcolor` FROM `users` WHERE (`user` = '{$user}' OR `email` ='{$user}') AND pass = '******'");
    if (mysqli_num_rows($q) == 1) {
        $r = mysqli_fetch_array($q);
        setcookie("u", $r[1], time() + 52 * 60 * 60 * 24 * 7);
        $_SESSION["uid"] = $r[0];
        $_SESSION["user"] = $r[1];
        $_SESSION["name"] = $r[2];
        $_SESSION["email"] = $r[3];
        $_SESSION["p"] = $pass;
        $_SESSION["color"] = $r[7];
        $_SESSION["img1"] = $r[4];
        $_SESSION["img2"] = $r[5];
        $_SESSION["img3"] = $r[6];
        $_SESSION["ula"] = md5("{$r['1']} {$pass} {$r['0']}");
        $con->close_db_con($conc);
        if ($kcook == 1) {
            setcookie("u", $r[1], time() + 2 * 60 * 60 * 24 * 7);
            setcookie("p", $pass, time() + 2 * 60 * 60 * 24 * 7);
        }
        return true;
    } else {
        return false;
    }
}
/**
* Função que valida um usuário e senha
*
* @param string $usuario - O usuário a ser validado
* @param string $senha - A senha a ser validada
*
* @return bool - Se o usuário foi validado ou não (true/false)
*/
function validaUsuario($usuario, $senha)
{
    global $_SG;
    $cS = $_SG['caseSensitive'] ? 'BINARY' : '';
    // Usa a função addslashes para escapar as aspas
    $nusuario = addslashes($usuario);
    $nsenha = addslashes($senha);
    // Monta uma consulta SQL (query) para procurar um usuário
    $sql = "SELECT `id`, `nome` FROM `" . $_SG['tabela'] . "` WHERE " . $cS . " `usuario` = '" . $nusuario . "' AND " . $cS . " `senha` = '" . $nsenha . "' LIMIT 1";
    $query = mysqli_query($sql);
    $resultado = mysqli_fetch_assoc($query);
    // Verifica se encontrou algum registro
    if (empty($resultado)) {
        // Nenhum registro foi encontrado => o usuário é inválido
        return false;
    } else {
        // Definimos dois valores na sessão com os dados do usuário
        $_SESSION['usuarioID'] = $resultado['id'];
        // Pega o valor da coluna 'id do registro encontrado no MySQL
        $_SESSION['usuarioNome'] = $resultado['nome'];
        // Pega o valor da coluna 'nome' do registro encontrado no MySQL
        // Verifica a opção se sempre validar o login
        if ($_SG['validaSempre'] == true) {
            // Definimos dois valores na sessão com os dados do login
            $_SESSION['usuarioLogin'] = $usuario;
            $_SESSION['usuarioSenha'] = $senha;
        }
        return true;
    }
}
Example #25
0
function get_papers()
{
    $conn = connect();
    $query_string = "SELECT * FROM `papers`";
    $query = mysqli_query($conn, $query_string);
    return $query;
}
Example #26
0
 public function getRecordList($page)
 {
     if (is_null($page)) {
         $page = 0;
     }
     $page = mysqli_real_escape_string(parent::getDb(), $page);
     $qRecord = mysqli_real_escape_string(parent::getDb(), $this->qRecord);
     $qBand = mysqli_real_escape_string(parent::getDb(), $this->qBand);
     $qGenre = mysqli_real_escape_string(parent::getDb(), $this->qGenre);
     $qPerformer = mysqli_real_escape_string(parent::getDb(), $this->qPerformer);
     $start_index = $page * NUM_OF_RESULTS;
     if ($qPerformer === '') {
         $query = "SELECT DISTINCT record.record_id, record.record_name, \n \t\t\t\trecord.record_artwork, band.band_name \n\t\t\t\tFROM record\n\t\t\t\tLEFT OUTER JOIN band\n\t\t\t\tON record.band_id = band.band_id\n\t\t\t\tLEFT OUTER JOIN genre\n\t\t\t\tON record.genre_id = genre.genre_id\n\t\t\t\tWHERE record.record_name LIKE '%{$qRecord}%' AND COALESCE(genre.genre_name,'') LIKE '%{$qGenre}%'\n\t\t\t\tAND band.band_name LIKE '%{$qBand}%' \n\t\t\t\tORDER BY record.record_id";
     } else {
         $query = "SELECT DISTINCT record.record_id, record.record_name, \n \t\t\t\trecord.record_artwork, band.band_name \n\t\t\t\tFROM record\n\t\t\t\tLEFT OUTER JOIN band\n\t\t\t\tON record.band_id = band.band_id\n\t\t\t\tLEFT OUTER JOIN genre\n\t\t\t\tON record.genre_id = genre.genre_id\n\t\t\t\tLEFT OUTER JOIN bandmate\n\t\t\t\tON record.band_id = bandmate.band_id\n\t\t\t\tLEFT OUTER JOIN performer\n\t\t\t\tON bandmate.performer_id = performer.performer_id\n\t\t\t\tWHERE  record.record_name LIKE '%{$qRecord}%' AND COALESCE(genre.genre_name,'') LIKE '%{$qGenre}%' \n\t\t\t\tAND band.band_name LIKE '%{$qBand}%' \n\t\t\t\tAND performer.performer_name LIKE '%{$qPerformer}%'\n\t\t\t\tORDER BY record.record_id";
     }
     $countRows = mysqli_query(parent::getDb(), $query);
     $this->countResults = mysqli_num_rows($countRows);
     $result = mysqli_query(parent::getDb(), $query . " DESC LIMIT {$start_index}, " . NUM_OF_RESULTS);
     $list = null;
     if ($result) {
         while ($data = $result->fetch_assoc()) {
             $list[] = $data;
         }
     }
     if (sizeof($list) !== 0) {
         $this->foundResults = true;
     } else {
         $this->foundResults = false;
     }
     return isset($list) ? $list : null;
 }
Example #27
0
/**
 * Make a sql query to the database.
 *
 * @param string $sql
 * @return integer
 */
function query($sql)
{
    $connection = connect();
    $res = mysqli_query($connection, $sql);
    mysqli_close($connection);
    return $res;
}
Example #28
0
function show_category($menu_id)
{
    global $connection;
    $sql_view = "SELECT * FROM `category` WHERE page_id = {$menu_id}";
    $sql_query = mysqli_query($connection, $sql_view);
    return $sql_query;
}
Example #29
-1
function DbQuery()
{
    include 'databaseconn.php';
    if (isset($_POST["Areaid"]) && !empty($_POST["Areaid"])) {
        //Checks if action value exists
        $Idarea = $_POST["Areaid"];
    }
    if (isset($_POST["startdt"]) && !empty($_POST["startdt"])) {
        //Checks if action value exists
        $startdty = $_POST["startdt"];
    }
    if (isset($_POST["endt"]) && !empty($_POST["endt"])) {
        //Checks if action value exists
        $endty = $_POST["endt"];
    }
    //sql query start
    $returna = "";
    $sql1 = "SELECT tblAreaID,slrDate,slrTime,AvgSolRad,MinSolRad,MaxSolRad FROM tblftpfiledata where tblAreaID =" . $Idarea . " AND slrDate BETWEEN '" . $startdty . "' AND '" . $endty . "'";
    $no1 = 0;
    $result1 = mysqli_query($conn, $sql1);
    $encode = array();
    while ($row = mysqli_fetch_assoc($result1)) {
        $encode[] = $row;
    }
    $returna = json_encode($encode);
    echo json_encode($encode);
}
 public function getSales($connect)
 {
     $db = new db_config();
     $data = '';
     //$sql = "SELECT * FROM tbl_sales_trans_report WHERE brand_name = '". $brandName ."' ORDER BY transaction_date DESC";
     $sql = "SELECT * FROM tbl_sales_trans_report ORDER BY transaction_date DESC";
     $result = mysqli_query($connect, $sql);
     //$num = $db->numrows($sql);
     $counter = 1;
     while ($row = mysqli_fetch_array($result)) {
         $sales_transaction_id = $row['sales_transaction_id'];
         $brand_name = $row['brand_name'];
         $subtotal = $row['subtotal'];
         $sales_tax_total = $row['sales_tax_total'];
         $total_amount = $row['total_amount'];
         $transaction_date = $row['transaction_date'];
         $new_date = date("d/m/Y h:i:s", strtotime($transaction_date));
         $data .= "<tr>";
         $data .= "<td class='userEmail'>" . $sales_transaction_id . "</td>";
         $data .= "<td class='userName'>" . $new_date . "</td>";
         $data .= "<td class='userRole'>" . $subtotal . "</td>";
         $data .= "<td class='userRole'>" . $sales_tax_total . "</td>";
         $data .= "<td class='userRole'>" . $total_amount . "</td>";
         $data .= "</tr>";
     }
     return $data;
 }