Example #1
0
            $audio = upload("audio", "images/Product_audio", "mp3,amr,wav");
            $audio = '';
            if ($audio[1] == "") {
                $audio1 = $audio[0];
                $audio_str = ",audio='{$audio1}'";
            }
        }
        if ($_FILES['priview']['size'] > 0) {
            $priview = upload("priview", "images/Product_audio", "mp3,amr,wav");
            $priview = '';
            if ($priview[1] == "") {
                $priview1 = $priview[0];
                $priview_str = ",preview_audio='{$priview1}'";
            }
        }
        $SQL = "UPDATE product SET product_type='" . inserttext($product_type) . "', ProductName='" . inserttext($productname) . "'{$product_str},CategoryId='" . inserttext($maincategory) . "'{$audio_str},ProductPrice='" . inserttext($price) . "'{$priview_str},description='" . inserttext($description) . "' where ProductId ='" . $ProductId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "Product Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'update';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
}
//if ($a == "muldelete") { //code for deleting multiple data form the table
//    $multipledel = loadvariable('multipledel', '');
//    $todo = loadvariable('todo', '');
//    if ($multipledel != '') {
//        if (count($multipledel) > 0) {
//            for ($i = 0; $i < count($multipledel); $i++) {
//                $del_id = $multipledel[$i];
Example #2
0
<?php

$p = loadVariable("p", "");
$a = loadVariable("a", "");
$PID = loadVariable("PID", "");
$id = loadVariable("id", "");
$value = loadVariable("value", "");
$DB = loadVariable("DB", "");
$FIELDSHOW = loadVariable("FIELDSHOW", "");
$sql = "UPDATE " . PROPERTY . " SET " . $id . "='" . inserttext($value) . "' where ID='" . $PID . "'";
$rsUpd = $objDB->sql_query($sql);
$SQL = "select " . $FIELDSHOW . " from " . $DB . " where " . $id . "='" . viewtext($value) . "'";
$rsDB = $objDB->select($SQL);
if ($id == "Status") {
    if ($rsDB[0][$FIELDSHOW] == 0) {
        echo "Inactive";
    } elseif ($rsDB[0][$FIELDSHOW] == 1) {
        echo "Active";
    } elseif ($rsDB[0][$FIELDSHOW] == 2) {
        echo "Postpond";
    } elseif ($rsDB[0][$FIELDSHOW] == 3) {
        echo "Canclled";
    } elseif ($rsDB[0][$FIELDSHOW] == 4) {
        echo "Sold to 3rd";
    } elseif ($rsDB[0][$FIELDSHOW] == 5) {
        echo "Sold to Bank";
    }
} else {
    echo $rsDB[0][$FIELDSHOW];
}
exit;
Example #3
0
$p = loadVariable("p", "");
$a = loadVariable("a", "");
$TestimonialsID = loadVariable("TestimonialsID", 0);
$AutherName = loadVariable('AutherName', '');
$CompanyName = loadVariable('CompanyName', '');
$Testimonials = loadVariable('Testimonials', '');
$s = loadVariable("s", "");
if ($p == "testimonials") {
    if ($a == "add") {
        $SQL = "INSERT INTO testimonials SET AutherName='" . inserttext($AutherName) . "',CompanyName='" . inserttext($CompanyName) . "',Testimonials='" . inserttext($Testimonials) . "',Status='1'";
        $inserttextproperty = $objDB->insert($SQL);
        $_SESSION['success'] = "Testimonials Added";
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE testimonials SET AutherName='" . inserttext($AutherName) . "',CompanyName='" . inserttext($CompanyName) . "',Testimonials='" . inserttext($Testimonials) . "' where TestimonialsID ='" . $TestimonialsID . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $_SESSION['success'] = "<span>Testimonials Updated.</span>";
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from testimonials where TestimonialsID ='" . $TestimonialsID . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $_SESSION['success'] = "<span>Testimonials Deleted.</span>";
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "muldelete") {
        $multipledel = loadvariable('multipledel', '');
        $todo = loadvariable('todo', '');
Example #4
0
     if ($_FILES["file"]["name"] != '') {
         $brand = "brand_" . $inserttextproperty . strrchr(basename($_FILES["file"]["name"]), ".");
         $tempfile = $_FILES['file']['tmp_name'];
         $uploadpath = "images/brand/" . $brand;
         move_uploaded_file($tempfile, $uploadpath);
         //resampimagejpg(558, 487, $uploadpath, "images/Product_Image/resize/". $brand,100);
         $SQL = "UPDATE product_brand SET BrandImage='" . $brand . "' where BrandId='" . $inserttextproperty . "'";
         $objDB->sql_query($SQL);
     }
     $success = "Brand Added SuccessFully";
     $_SESSION['success'] = $success;
     $_SESSION['check'] = 'add';
     header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
     exit;
 } elseif ($a == "update") {
     $SQL = "UPDATE product_brand SET BrandName='" . inserttext($BrandName) . "',CompanyName='" . inserttext($CompanyName) . "',CompanyAddress='" . inserttext($CompanyAddress) . "',ContactNo='" . inserttext($ContactNo) . "' where BrandId ='" . $BrandId . "'";
     $updatetextproperty = $objDB->sql_query($SQL);
     if ($_FILES["file"]["name"] != '') {
         $brand = "brand_" . $BrandId . strrchr(basename($_FILES["file"]["name"]), ".");
         $tempfile = $_FILES['file']['tmp_name'];
         $uploadpath = "images/brand/" . $brand;
         move_uploaded_file($tempfile, $uploadpath);
         //resampimagejpg(558, 487, $uploadpath, "images/Product_Image/resize/". $brand,100);
         $SQL = "UPDATE product_brand SET BrandImage='" . $brand . "' where BrandId='" . $BrandId . "'";
         $objDB->sql_query($SQL);
     }
     $success = "Brand Updated SuccessFully";
     $_SESSION['success'] = $success;
     $_SESSION['check'] = 'add';
     header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
     exit;
Example #5
0
$a = loadVariable("a", "");
$SubCategoryId = loadVariable("SubCategoryId", 0);
$SubCategory = loadVariable('SubCategory', '');
$maincategory = loadVariable('maincategory', '');
$s = loadVariable("s", "");
if ($p == "subcategory") {
    if ($a == "add") {
        $SQL = "INSERT INTO subcategory SET SubCategory='" . inserttext($SubCategory) . "',CategoryId='" . inserttext($maincategory) . "'";
        $inserttextproperty = $objDB->insert($SQL);
        $success = "SubCategory Added SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE subcategory SET SubCategory='" . inserttext($SubCategory) . "' where SubCategoryId ='" . $SubCategoryId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "SubCategory Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from subcategory  where SubCategoryId='" . $SubCategoryId . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $success = "SubCategory Deleted SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
Example #6
0
<?php

$p = loadvariable('p', '');
$a = loadvariable('a', '');
$review_Id = loadvariable('review_Id', '');
$ProductId = loadvariable('ProductId', '');
$review_name = loadvariable('review_name', '');
$review_title = loadVariable('review_title', '');
$review_description = loadvariable('review_description', '');
$add_date = date('Y-m-d');
$status = loadvariable('status', '0');
if ($a == 'add') {
    // add
    $SQL = "insert product_review set ProductId ='" . inserttext($ProductId) . "',review_name ='" . inserttext($review_name) . "',review_title='" . inserttext($review_title) . "',review_description= '" . inserttext($review_description) . "',add_date='" . inserttext($add_date) . "',status= '" . inserttext($status) . "'";
    $insert = $objDB->insert($SQL);
    echo '1';
    //header("Location:" . $AbsoluteURLAdmin . "index.php?p=manage_site_menu&a=edit&id=$lastid");
    exit;
}
Example #7
0
$p = loadVariable("p", "");
$a = loadVariable("a", "");
$ColorId = loadVariable("ColorId", 0);
$ColorName = loadVariable('ColorName', '');
$s = loadVariable("s", "");
if ($p == "color") {
    if ($a == "add") {
        $SQL = "INSERT INTO product_color SET ColorName='" . inserttext($ColorName) . "'";
        $inserttextproperty = $objDB->insert($SQL);
        $success = "Color Added SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE product_color SET ColorName='" . inserttext($ColorName) . "' where ColorId ='" . $ColorId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "Color Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from product_color  where ColorId='" . $ColorId . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $success = "Color Deleted SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
Example #8
0
<?php

$p = loadvariable('p', '');
$a = loadvariable('a', '');
$SettingsID = loadvariable('SettingsID', '0');
$column_name = loadvariable('column_name', '');
$value = implode(":", $column_name);
$submit = loadvariable('submit', '');
$s = loadvariable('s', '');
if ($p == 'demo') {
    if ($submit == 'Save') {
        if ($a == 'update' && $SettingsID != '0') {
            // update
            $SQL = "UPDATE " . SETTINGS . " set KeyName='demouser',ValueName='" . inserttext($value) . "' WHERE SettingsID='" . $SettingsID . "'";
            $objDB->sql_query($SQL);
            $success = "Demo User Restriction Updated";
            $_SESSION['success'] = $success;
            header("Location:" . $AbsoluteURL . "admin/index.php?p=" . $p . "&SettingsID=" . $SettingsID);
            exit;
        }
    }
}
Example #9
0
$p = loadVariable("p", "");
$a = loadVariable("a", "");
$CollarId = loadVariable("CollarId", 0);
$CollarName = loadVariable('CollarName', '');
$s = loadVariable("s", "");
if ($p == "collar") {
    if ($a == "add") {
        $SQL = "INSERT INTO product_collar SET CollarName='" . inserttext($CollarName) . "'";
        $inserttextproperty = $objDB->insert($SQL);
        $success = "Collar/Neck Added SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE product_collar SET CollarName='" . inserttext($CollarName) . "'\t\t\n\t\twhere CollarId ='" . $CollarId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "Collar/Neck Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from product_collar  where CollarId='" . $CollarId . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $success = "Collar/Neck Deleted SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
Example #10
0
$p = loadVariable("p", "");
$a = loadVariable("a", "");
$SizeId = loadVariable("SizeId", 0);
$Size = loadVariable('Size', '');
$s = loadVariable("s", "");
if ($p == "size") {
    if ($a == "add") {
        $SQL = "INSERT INTO product_size SET Size='" . inserttext($Size) . "'";
        $inserttextproperty = $objDB->insert($SQL);
        $success = "Size Added SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE product_size SET Size='" . inserttext($Size) . "' where SizeId ='" . $SizeId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "Size Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from product_size  where SizeId='" . $SizeId . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $success = "Size Deleted SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
Example #11
0
    $SQL = "delete from site_content WHERE content_id='" . $content_id . "'";
    $rsAdmin = $objDB->sql_query($SQL);
    $success = "Site Content Deleted SuccessFully";
    $_SESSION['success'] = $success;
    $_SESSION['check'] = 'add';
    header("Location:" . $AbsoluteURLAdmin . "index.php?p=list_site_content");
    exit;
}
if ($a == 'status' && $s != '' && $content_id != '0') {
    $SQL = "update site_content set status = '" . inserttext($s) . "' where content_id=" . $content_id;
    $rsAdmin = $objDB->sql_query($SQL);
    if ($s == '0') {
        $success = "Site Content Deactivated";
    } else {
        $success = "Site Content Activated";
    }
    $_SESSION['success'] = $success;
    $_SESSION['check'] = 'add';
    header("Location:" . $AbsoluteURLAdmin . "index.php?p=list_site_content");
}
if ($submit == 'Save') {
    if ($a == 'update') {
        $SQL = "UPDATE site_content set content_title ='" . inserttext($content_title) . "',content_type='" . inserttext($content_type) . "',content_excerpt= '" . inserttext($content_excerpt) . "',seo_introductory_text= '" . inserttext($seo_introductory_text) . "',seo_text= '" . inserttext($seo_text) . "',content= '" . $content . "',content_uri= '" . inserttext($content_uri) . "',status= '" . inserttext($status) . "' WHERE content_id='" . inserttext($content_id) . "'";
        $update = $objDB->edit($SQL);
        $success = "Site Content Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'edit';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=list_site_content");
        exit;
    }
}
Example #12
0
$p = loadVariable("p", "");
$a = loadVariable("a", "");
$MaterialId = loadVariable("MaterialId", 0);
$MaterialName = loadVariable('MaterialName', '');
$s = loadVariable("s", "");
if ($p == "material") {
    if ($a == "add") {
        $SQL = "INSERT INTO product_material SET MaterialName='" . inserttext($MaterialName) . "'";
        $inserttextproperty = $objDB->insert($SQL);
        $success = "Material Added SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE product_material SET MaterialName='" . inserttext($MaterialName) . "'\t\t\n\t\twhere MaterialId ='" . $MaterialId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "Material Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from product_material  where MaterialId='" . $MaterialId . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $success = "Material Deleted SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
Example #13
0
$Gold = loadVariable('Gold', '');
$Platinum = loadVariable('Platinum', '');
$s = loadVariable("s", "");
if ($p == "package") {
    if ($a == "add") {
        $SQL = "INSERT INTO packages SET PackageName='" . inserttext($PackageName) . "',SPrice='" . $SPrice . "',GPrice='" . $GPrice . "',PPrice='" . $PPrice . "',Includes='" . inserttext($Includes) . "',WYRecieve='" . inserttext($WYRecieve) . "',SDesc='" . inserttext($SDesc) . "',SPTerms='" . inserttext($SPTerms) . "',GIncludes='" . inserttext($GIncludes) . "',GWYRecieve='" . inserttext($GWYRecieve) . "',GDesc='" . inserttext($GDesc) . "',GPTerms='" . inserttext($GPTerms) . "',PIncludes='" . inserttext($PIncludes) . "',PWYRecieve='" . inserttext($PWYRecieve) . "',PDesc='" . inserttext($PDesc) . "',PPTerms='" . inserttext($PPTerms) . "',Silver='" . $Silver . "',Gold='" . $Gold . "',Platinum='" . $Platinum . "',Status='1'";
        $inserttextproperty = $objDB->insert($SQL);
        for ($i = 0; $i < count($PFeature); $i++) {
            $SQL = "INSERT INTO packfeatures SET PackageID='" . $inserttextproperty . "',PFeature='" . $PFeature[$i] . "',SPackage='" . $SPackage[$i] . "',GPackage='" . $GPackage[$i] . "',PPackage='" . $PPackage[$i] . "'";
            $objDB->insert($SQL);
        }
        $_SESSION['success'] = "Package Added";
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE packages SET PackageName='" . inserttext($PackageName) . "',SPrice='" . $SPrice . "',GPrice='" . $GPrice . "',PPrice='" . $PPrice . "',Includes='" . inserttext($Includes) . "',WYRecieve='" . inserttext($WYRecieve) . "',SDesc='" . inserttext($SDesc) . "',SPTerms='" . inserttext($SPTerms) . "',GIncludes='" . inserttext($GIncludes) . "',GWYRecieve='" . inserttext($GWYRecieve) . "',GDesc='" . inserttext($GDesc) . "',GPTerms='" . inserttext($GPTerms) . "',PIncludes='" . inserttext($PIncludes) . "',PWYRecieve='" . inserttext($PWYRecieve) . "',PDesc='" . inserttext($PDesc) . "',PPTerms='" . inserttext($PPTerms) . "',Silver='" . $Silver . "',Gold='" . $Gold . "',Platinum='" . $Platinum . "' where PackageID ='" . $PackageID . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $SQL = "delete from packfeatures where PackageID ='" . $PackageID . "'";
        $objDB->sql_query($SQL);
        for ($i = 0; $i < count($PFeature); $i++) {
            $SQL = "INSERT packfeatures SET PackageID='" . $PackageID . "',PFeature='" . $PFeature[$i] . "',SPackage='" . $SPackage[$i] . "',GPackage='" . $GPackage[$i] . "',PPackage='" . $PPackage[$i] . "'";
            $objDB->sql_query($SQL);
        }
        $_SESSION['success'] = "<span>Package Updated.</span>";
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from packages where PackageID ='" . $PackageID . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $SQL = "delete from packfeatures where PackageID ='" . $PackageID . "'";
Example #14
0
$p = loadVariable("p", "");
$a = loadVariable("a", "");
$DesignId = loadVariable("DesignId", 0);
$DesignName = loadVariable('DesignName', '');
$s = loadVariable("s", "");
if ($p == "design") {
    if ($a == "add") {
        $SQL = "INSERT INTO product_design SET DesignName='" . inserttext($DesignName) . "'";
        $inserttextproperty = $objDB->insert($SQL);
        $success = "Design Added SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE product_design SET DesignName='" . inserttext($DesignName) . "'\t\t\n\t\twhere DesignId ='" . $DesignId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "Design Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from product_design  where DesignId='" . $DesignId . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $success = "Design Deleted SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
Example #15
0
         resampimagejpg(558, 487, $uploadpath, "images/Product_Image/resize/" . $product, 100);
         $SQL = "UPDATE product SET ProductImage='" . $product . "' where ProductId='" . $inserttextproperty . "'";
         $objDB->sql_query($SQL);
     }
     $count = count($size);
     for ($i = 0; $i < $count; $i++) {
         $sql1 = "insert into product_qty(ProductId,SizeId,ColorId,Quantity,SubCategoryId) values('" . $pid . "','" . $size[$i] . "','" . $color[$i] . "','" . $quantity[$i] . "','" . $subcategory . "') ";
         mysql_query($sql1);
     }
     $success = "New Product Added SuccessFully";
     $_SESSION['success'] = $success;
     $_SESSION['check'] = 'add';
     header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
     exit;
 } elseif ($a == "update") {
     $SQL = "UPDATE product SET ProductName='" . inserttext($productname) . "',CategoryId='" . inserttext($maincategory) . "',SubCategoryId='" . inserttext($subcategory) . "',BrandId='" . inserttext($brand) . "',MaterialId='" . inserttext($material) . "',DesignId='" . inserttext($design) . "',CollarId='" . inserttext($collar) . "',ProductPrice='" . inserttext($price) . "',offer='" . inserttext($offer) . "' where ProductId ='" . $ProductId . "'";
     $updatetextproperty = $objDB->sql_query($SQL);
     if ($_FILES["file"]["name"] != '') {
         $product = "product_" . $ProductId . strrchr(basename($_FILES["file"]["name"]), ".");
         $tempfile = $_FILES['file']['tmp_name'];
         $uploadpath = "images/Product_Image/" . $product;
         move_uploaded_file($tempfile, $uploadpath);
         resampimagejpg(558, 487, $uploadpath, "images/Product_Image/resize/" . $product, 100);
         $SQL = "UPDATE product SET ProductImage='" . $product . "' where ProductId ='" . $ProductId . "'";
         $objDB->sql_query($SQL);
     }
     $success = "Product Updated SuccessFully";
     $_SESSION['success'] = $success;
     $_SESSION['check'] = 'add';
     header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
     exit;
Example #16
0
$p = loadVariable("p", "");
$a = loadVariable("a", "");
$CategoryId = loadVariable("CategoryId", 0);
$Category = loadVariable('Category', '');
$s = loadVariable("s", "");
if ($p == "category") {
    if ($a == "add") {
        $SQL = "INSERT INTO category SET Category='" . inserttext($Category) . "'";
        $inserttextproperty = $objDB->insert($SQL);
        $success = "Category Added SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    } elseif ($a == "update") {
        $SQL = "UPDATE category SET Category='" . inserttext($Category) . "' where CategoryId ='" . $CategoryId . "'";
        $updatetextproperty = $objDB->sql_query($SQL);
        $success = "Category Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
    }
    if ($a == "delete") {
        $SQL = "delete from category  where CategoryId='" . $CategoryId . "'";
        $rspropertydel = $objDB->sql_query($SQL);
        $success = "Category Deleted SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'add';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=" . $p);
        exit;
Example #17
0
    $SQL = "delete from site_menu WHERE menu_id='" . $menu_id . "'";
    $rsAdmin = $objDB->sql_query($SQL);
    $success = "Site Menu Deleted SuccessFully";
    $_SESSION['success'] = $success;
    $_SESSION['check'] = 'add';
    header("Location:" . $AbsoluteURLAdmin . "index.php?p=list_site_menu");
    exit;
}
if ($a == 'status' && $s != '' && $menu_id != '0') {
    $SQL = "update site_menu set status = '" . $s . "' where menu_id=" . $menu_id;
    $rsAdmin = $objDB->sql_query($SQL);
    if ($s == '0') {
        $success = "Site Menu Deactivated";
    } else {
        $success = "Site Menu Activated";
    }
    $_SESSION['success'] = $success;
    $_SESSION['check'] = 'add';
    header("Location:" . $AbsoluteURLAdmin . "index.php?p=list_site_menu");
}
if ($submit == 'Save') {
    if ($a == 'update') {
        $SQL = "UPDATE site_menu set menu_name ='" . inserttext($menu_name) . "',parent='" . inserttext($parent) . "',description= '" . inserttext($description) . "',link_content= '" . inserttext($link_content) . "',type='" . inserttext($type) . "',external_link= '" . inserttext($external_link) . "',menu_order= '" . inserttext($menu_order) . "',status= '" . inserttext($status) . "' WHERE menu_id='" . inserttext($menu_id) . "'";
        $update = $objDB->edit($SQL);
        $success = "Site Menu Updated SuccessFully";
        $_SESSION['success'] = $success;
        $_SESSION['check'] = 'edit';
        header("Location:" . $AbsoluteURLAdmin . "index.php?p=list_site_menu");
        exit;
    }
}