protected function BE_MenuDrag_Save() { die(__FUNCTION__); if (validate_POST(array('a', 'Data')) === true) { if (get_POST('a') == $this->WMS_Lang('GLOBAL,save')) { try { $Data = json_decode($this->Secure_Decode(Get_POST('Data')), true); if (!is_array($Data)) { return true; } // Redirect! } catch (Exception $e) { return true; // Redirect! } if (count($Data) >= 1) { /* Prepare the SQL statement */ $this->SQL_Query_Prepare('UPDATE `' . $this->SQL_Table['menu'] . '` SET Level = ?, Parent = ?, OrderList = ? WHERE ID = ? AND Mode = ?', 'Updating Menu items Order'); foreach ($Data as $K => $V) { /* Execute the Current Query with Parameters */ $STH = $this->SQL_Query_Execute(array(intval($V[0]), intval($V[1]), intval($V[2]), intval($K), 'FE')); } $this->SQL_Query_Next(); } } $this->Query_Page_Unlock($this->GETV); return true; // Redirect! } }
<?php if (isset($_POST['name']) && isset($_POST['email']) && isset($_POST['gen']) && $_FILES['File']['size'] > 0) { $name = get_POST('name'); $email = get_POST('email'); $gender = get_POST('gen'); $filename = $_FILES['File']['name']; $tmpname = $_FILES['File']['tmp_name']; $filesize = $_FILES['File']['size']; $filetype = $_FILES['File']['type']; $fp = fopen($tmpname, 'r'); $file = fread($fp, filesize($tmpname)); $file = addslashes($file); fclose($fp); if (!get_magic_quotes_gpc()) { $filename = addslashes($filename); } $query = "\n INSERT INTO output_images\n (firstname, lastname, imageType, imageData) VALUES\n ('{$name}', '{$email}', '{$filetype}', '{$file}');"; mysql_query($query) or die('Error, query failed'); } echo $name;