Esempio n. 1
0
 public static function addPerson($obj_Person)
 {
     $db = config::dbconfig();
     $obj_retresult = new returnResult();
     $obj_Person->PersonId = DAL_managePerson::getLastPersonId() + 1;
     $sql = "INSERT INTO tbl_person (PersonId,FullName,NickName,OtherNames,DrivingLicenceNo,PassportNo,PermanentAddress,Email,Website,Description,Gender,DOB,Height,Weight,HairColor,EyeColor,BloodType,Occupation,MonthlyIncome,FutureTargets,FutureNeeds,DOD,NIC,Status) \n\t\tVALUES (" . common::noSqlInject($obj_Person->PersonId) . "," . "'" . common::noSqlInject($obj_Person->FullName) . "'" . "," . "'" . common::noSqlInject($obj_Person->NickName) . "'" . "," . "'" . common::noSqlInject($obj_Person->OtherNames) . "'" . "," . "'" . common::noSqlInject($obj_Person->DrivingLicenceNo) . "'" . "," . "'" . common::noSqlInject($obj_Person->PassportNo) . "'" . "," . "'" . common::noSqlInject($obj_Person->PermanentAddress) . "'" . "," . "'" . common::noSqlInject($obj_Person->Email) . "'" . "," . "'" . common::noSqlInject($obj_Person->Website) . "'" . "," . "'" . common::noSqlInject($obj_Person->Description) . "'" . "," . common::noSqlInject($obj_Person->Gender) . "," . "'" . common::noSqlInject($obj_Person->DOB) . "'" . "," . common::noSqlInject($obj_Person->Height) . "," . common::noSqlInject($obj_Person->Weight) . "," . "'" . common::noSqlInject($obj_Person->HairColor) . "'" . "," . "'" . common::noSqlInject($obj_Person->EyeColor) . "'" . "," . "'" . common::noSqlInject($obj_Person->BloodType) . "'" . "," . "'" . common::noSqlInject($obj_Person->Occupation) . "'" . "," . common::noSqlInject($obj_Person->MonthlyIncome) . "," . "'" . common::noSqlInject($obj_Person->FutureTargets) . "'" . "," . "'" . common::noSqlInject($obj_Person->FutureNeeds) . "'" . "," . "'" . common::noSqlInject($obj_Person->DOD) . "'" . "," . "'" . common::noSqlInject($obj_Person->NIC) . "'" . "," . common::noSqlInject($obj_Person->Status) . ");";
     $rs = mysql_query($sql);
     if (mysql_affected_rows() > 0) {
         $obj_retresult->type = 1;
         $obj_retresult->msg = "success";
         $obj_retresult->data = $obj_Person;
     } else {
         $obj_retresult->type = 0;
         $obj_retresult->msg = "failed";
     }
     return $obj_retresult;
 }