$strSQL .= " ,MODULE_ID = '" . $cmbModule . "'"; $strSQL .= " ,LAST_UPDATE_DATE = now() "; $strSQL .= " ,LAST_UPDATE_USER = '******'"; $strSQL .= " ,LAST_FUNCTION = 'U'"; $strSQL .= " where SUB_MODULE_ID = '" . $smid . "'"; $objQueryAppModule = mysql_query($strSQL); $bigIconName = $_POST['lastestBigIcon']; $smallIconName = $_POST['lastestSmallIcon']; if (count($_POST['BigIcon_file']) > 0) { foreach ($_POST['BigIcon_file'] as $k => $file) { $bigIconName = admin_move_image_upload_dir('icon_files', end(explode('/', $file)), 1000, '', false, 150, 150); } } if (count($_POST['SmallIcon_file']) > 0) { foreach ($_POST['SmallIcon_file'] as $k => $file) { $smallIconName = admin_move_image_upload_dir('icon_files', end(explode('/', $file)), 1000, '', false, 150, 150); } } if ($bannerID == '') { $strSQL = "INSERT INTO trn_banner_pic_setting "; $strSQL .= "(APP_SUB_MODULE_ID,DESKTOP_ICON_PATH, MOBILE_ICON_PATH ,ICON_LINK ,USER_CREATE , CREATE_DATE , LAST_FUNCTION) "; $strSQL .= " values "; $strSQL .= "('" . $smid . "','" . $bigIconName . "','" . $smallIconName . "','" . $txtUrlLink . "' , 'Test' , now() , 'A')"; } else { $strSQL = "update trn_banner_pic_setting "; $strSQL .= "set DESKTOP_ICON_PATH = '" . $bigIconName . "'"; $strSQL .= " , APP_SUB_MODULE_ID = '" . $smid . "'"; $strSQL .= " , MOBILE_ICON_PATH = '" . $smallIconName . "'"; $strSQL .= " ,ICON_LINK = '" . $txtUrlLink . "'"; $strSQL .= " ,LAST_UPDATE_DATE = now() "; $strSQL .= " ,LAST_UPDATE_USER = '******'";
$update[] = "BRIEF_LOC= '" . $_POST['txtBriefDescLoc'] . "'"; $update[] = "BRIEF_ENG= '" . $_POST['txtBriefDescEng'] . "'"; $update[] = "LAST_UPDATE_USER ='******'UID']; $update[] = "LAST_UPDATE_DATE = NOW()"; $update[] = "CAT_ID = '" . $_POST['cmbCategory'] . "'"; $update[] = "SUB_CAT_ID = '" . $subCatID . "'"; $sql = "UPDATE trn_content_detail SET " . implode(",", $update) . " WHERE CONTENT_ID = " . $conid; mysql_query($sql, $conn); if (count($_POST['photo_file']) > 0) { $sql_max = "SELECT MAX(ORDER_ID) AS MAX_ORDER FROM trn_content_picture WHERE CONTENT_ID = " . $conid . " AND CAT_ID = " . $_POST['cmbCategory']; $query_max = mysql_query($sql_max, $conn) or die($sql_max); $row_max = mysql_fetch_array($query_max); $max = $row_max['MAX_ORDER']; $max++; foreach ($_POST['photo_file'] as $k => $file) { $filename = admin_move_image_upload_dir('content_' . $_POST['cmbCategory'], end(explode('/', $file)), 1000, '', false, 150, 150); unset($insert); $insert['CONTENT_ID'] = $conid; $insert['IMG_TYPE'] = 1; $insert['IMG_PATH'] = "'" . $filename . "'"; $insert['CAT_ID'] = "'" . $_POST['cmbCategory'] . "'"; $insert['ORDER_ID'] = $max++; $sql = "INSERT INTO trn_content_picture (" . implode(",", array_keys($insert)) . ") VALUES (" . implode(",", array_values($insert)) . ")"; mysql_query($sql, $conn) or die($sql); } } if (count($_POST['order_position']) > 0) { foreach ($_POST['order_position'] as $k => $val) { $update = ""; $update[] = "ORDER_ID = " . $val; $sql = "UPDATE trn_content_picture SET " . implode(",", $update) . " WHERE PIC_ID =" . $k;
$update[] = "LON = '" . nvl($_POST['txtLon'], "") . "'"; $update[] = "EVENT_START_TIME = '" . nvl($_POST['cmbHourStart'], '') . ':' . nvl($_POST['cmbMinuteStart'], '') . "'"; $update[] = "EVENT_END_TIME = '" . nvl($_POST['cmbHourEnd'], '') . ':' . nvl($_POST['cmbMinuteEnd'], '') . "'"; $update[] = "PRICE_RATE_LOC = '" . $_POST['txtPriceLoc'] . "'"; $update[] = "PRICE_RATE_ENG = '" . $_POST['txtPriceEng'] . "'"; $sql = "UPDATE trn_content_detail SET " . implode(",", $update) . " WHERE CONTENT_ID = " . $conid; mysql_query($sql, $conn); if (count($_POST['photo_file']) > 0) { $sql_max = "SELECT MAX(ORDER_ID) AS MAX_ORDER FROM trn_content_picture WHERE CONTENT_ID = " . $conid . " AND CAT_ID = " . $CID; //$_POST['cmbCategory']; $query_max = mysql_query($sql_max, $conn) or die($sql_max); $row_max = mysql_fetch_array($query_max); $max = $row_max['MAX_ORDER']; $max++; foreach ($_POST['photo_file'] as $k => $file) { $filename = admin_move_image_upload_dir('content_' . $CID, end(explode('/', $file)), 1000, '', false, 150, 150); unset($insert); $insert['CONTENT_ID'] = $conid; $insert['IMG_TYPE'] = 1; $insert['IMG_PATH'] = "'" . $filename . "'"; $insert['CAT_ID'] = "'" . $CID . "'"; //$_POST['cmbCategory'] . "'"; $insert['ORDER_ID'] = $max++; $sql = "INSERT INTO trn_content_picture (" . implode(",", array_keys($insert)) . ") VALUES (" . implode(",", array_values($insert)) . ")"; mysql_query($sql, $conn) or die($sql); } } if (count($_POST['video_other']) > 0) { $CONTENT_ID = intval($conid); $CAT_ID = intval($CID); $DIV_NAME = 'other';
$insert['ACTIVE_FLAG'] = "1"; $insert['SECTION_ID'] = $secid; $insert['PARENT_ORG_ID'] = "1"; $insert['DEPARTMENT_ID'] = $did; $sql = "INSERT INTO mas_org (" . implode(",", array_keys($insert)) . ") VALUES (" . implode(",", array_values($insert)) . ")"; mysql_query($sql, $conn) or die($sql); header('Location: ' . $returnPage); } if (isset($_GET['edit'])) { $update = ""; $orgID = $_GET['orgid']; $update[] = "NAME_LOC = '" . $_POST['txtNameLoc'] . "'"; $update[] = "NAME_ENG = '" . $_POST['txtNameEng'] . "'"; $update[] = "POSITION_DESC_LOC = '" . $_POST['txtPositionLoc'] . "'"; $update[] = "POSITION_DESC_ENG = '" . $_POST['txtPositionEng'] . "'"; $update[] = "PHONE = '" . $_POST['txtPhone'] . "'"; $update[] = "EMAIL = '" . $_POST['txtEmail'] . "'"; $update[] = "LAST_UPDATE_USER = '******'user_name'] . "'"; $update[] = "LAST_UPDATE_DATE = NOW()"; $filename = ""; if (count($_POST['USER_IMG_file']) > 0) { $index = 1; foreach ($_POST['USER_IMG_file'] as $k => $file) { $filename = admin_move_image_upload_dir('USER_IMG', end(explode('/', $file)), 1000, '', false, 150, 150); } $update[] = "IMG_PATH = '" . $filename . "'"; } $sql = "UPDATE mas_org SET " . implode(",", $update) . " WHERE ORG_ID = " . $orgID; mysql_query($sql, $conn); header('Location: ' . $returnPage); }