if (strstr(',' . $ids . ',', ',' . $menuid[$i] . ',')) { continue; } $myorder[$i] = (int) $myorder[$i]; $empire->query("update {$dbtbpre}enewsmenu set menuname='" . addslashes($menuname[$i]) . "',menuurl='" . addslashes($menuurl[$i]) . "',myorder='" . $myorder[$i] . "' where menuid='" . $menuid[$i] . "'"); } //操作日志 insert_dolog("classid={$classid}&del={$del}"); printerror("EditMenuSuccess", "ListMenu.php?classid={$classid}"); } $enews = $_POST['enews']; if (empty($enews)) { $enews = $_GET['enews']; } if ($enews == "AddMenu") { AddMenu($_POST, $logininid, $loginin); } elseif ($enews == "EditMenu") { EditMenu($_POST, $logininid, $loginin); } else { } $classid = (int) $_GET['classid']; if (!$classid) { printerror("ErrorUrl", "history.go(-1)"); } $cr = $empire->fetch1("select classid,classname,issys,classtype from {$dbtbpre}enewsmenuclass where classid='{$classid}'"); if (!$cr['classid']) { printerror("ErrorUrl", "history.go(-1)"); } $classtype = ''; if ($cr['classtype'] == 1) { $classtype = '常用操作';
$description = $_GET['s']; $price = $_GET['q']; $quantity = $_GET['r']; date_default_timezone_set('America/Chicago'); $date = date('m/d/Y h:i:s a', time()); $q = $mysqli->query("SELECT * from menu_categories where name='" . $category . "'"); $row = $q->fetch_array(MYSQLI_BOTH); $category_id = $row["id"]; $query = "INSERT INTO texaskitchen.menu_items (name,menu_category_id,price,description,quantity,created,modified) VALUES ('" . $menuitem . "','" . $category_id . "','" . $price . "','" . $description . "','" . $quantity . "','" . $date . "','" . $date . "');"; $data = $mysqli->query($query); if ($data) { echo "Menu Added"; } else { echo "Menu Item Could Not Be Added"; } } function AddMenu($mysqli) { if (!empty($_GET['p'])) { $query = $mysqli->query("SELECT * FROM menu_items WHERE name = '" . $_GET['p'] . "'"); if (!($row = $query->fetch_array(MYSQLI_BOTH))) { AddMenuItem($mysqli); } else { echo "Item Already Exists"; } } else { echo "Please Enter a Menu Item Name"; } } AddMenu($mysqli);