$checked_users = $_POST["checked"]; $team_id = $_POST["team_id"]; $team_manager = $_POST["manager"]; function look($looktable, $value, $conn) { $sqllook = "SELECT * FROM user WHERE {$looktable} = '{$value}' "; $resultlook = mysqli_query($conn, $sqllook); if (mysqli_num_rows($resultlook) == 0) { return false; } return true; } if ($team_name == "") { die("<script> alert('Team name is empty.'); window.location.href='../users'; </script>"); } else { if (look("team_description", $team_name, $conn)) { die("<script> alert('Team already exists on the system.'); window.location.href='../users'; </script>"); } } // Create connection $conn = new mysqli($servername, $user_db, $password_db, $dbname); // Check connection if ($conn->connect_error) { die("Connection failed: " . $conn->connect_error); } $sql = "UPDATE team SET team_description = '{$team_name}', team_manager = {$team_manager} WHERE team_id = '{$team_id}'"; $result = mysqli_query($conn, $sql); $sql3 = "UPDATE user_team SET visibility = 0 WHERE team_id = {$team_id}"; $result3 = mysqli_query($conn, $sql3); for ($i = 0; $i < count($checked_users); $i++) { $user_id = $checked_users[$i];
die("Connection failed: " . $conn->connect_error); } $v = $_POST["user_id"]; $firstname_new = $_POST["first_name_new"]; $lastname_new = $_POST["last_name_new"]; $email_new = $_POST["email_new"]; $tel_new = $_POST["tel_new"]; $user_type_new = $_POST["type_new"]; $dob_new = $_POST["dob_new"]; function look($looktable, $value, $conn) { $sqllook = "SELECT * FROM user WHERE {$looktable} = '{$value}' "; $resultlook = mysqli_query($conn, $sqllook); if (mysqli_num_rows($resultlook) == 0) { return false; } return true; } if ($firstname_new == "" || $lastname_new == "" || $email_new == "" || $tel_new == "" || $dob_new == "") { die("<script> alert('One or more fields is empty.'); window.location.href='../users'; </script>"); } else { if (look("user_mail", $email_new, $conn)) { die("<script> alert('Email already exists on the system.'); window.location.href='../users'; </script>"); } } $sql = "UPDATE user SET user_first_name = '{$firstname_new}', user_last_name = '{$lastname_new}', user_mail = '{$email_new}', user_tel = '{$tel_new}', user_type_id = '{$user_type_new}', user_dob = '{$dob_new}' WHERE user_id = '{$v}' "; $result = mysqli_query($conn, $sql); if (mysqli_affected_rows($conn) > 0) { header("Location:../users"); } header("Location:../users");
function look($looktable, $value, $conn) { $sqllook = "SELECT * FROM user WHERE {$looktable} = '{$value}' "; $resultlook = mysqli_query($conn, $sqllook); if (mysqli_num_rows($resultlook) == 0) { return false; } return true; } if ($user_first_name == "" || $user_last_name == "" || $user_login == "" || $user_email == "" || $user_tel == "" || $user_hours == "") { die("<script> alert('One or more fields is empty.'); window.location.href='../users'; </script>"); } else { if (look("user_login", $user_login, $conn)) { die("<script> alert('Login already exists on the system.'); window.location.href='../users'; </script>"); } else { if (look("user_mail", $user_email, $conn)) { die("<script> alert('Email already exists on the system.'); window.location.href='../users'; </script>"); } } } $sqltype = "SELECT user_type_id FROM user_type WHERE user_type_description = '{$user_type}' "; $resulttype = mysqli_query($conn, $sqltype); if ($resulttype) { $row = mysqli_fetch_assoc($resulttype); $user_type_id = $row["user_type_id"]; } $sql = "INSERT INTO user (user_type_id, user_login, user_first_name, user_last_name, user_DOB, user_week_hrs, user_tel, user_mail, user_password) \nVALUES ('{$user_type}', '{$user_login}', '{$user_first_name}', '{$user_last_name}', '{$user_dob}', '{$user_hours}', '{$user_tel}', '{$user_email}', '{$password_encrypted}' ) "; $result = mysqli_query($conn, $sql); $user_id = mysqli_insert_id($conn); $today = date("Y-m-d"); $sql2 = "INSERT INTO task (user_id, task_name, task_beginning_date) VALUES ('{$user_id}', 'Welcome', '{$today}')";
include "../imageUpload/upload.php"; $user_id = $_SESSION["user_id"]; $firstname_new = $_POST["first_name_new"]; $lastname_new = $_POST["last_name_new"]; $email_new = $_POST["email_new"]; $tel_new = $_POST["tel_new"]; $dob_new = $_POST["dob_new"]; function look($looktable, $value, $conn, $user_id) { $sqllook = "SELECT * FROM user WHERE {$looktable} = '{$value}' AND user_id <> '{$user_id}' "; $resultlook = mysqli_query($conn, $sqllook); if (mysqli_num_rows($resultlook) == 0) { return false; } return true; } if ($firstname_new == "" || $lastname_new == "" || $email_new == "" || $email_new == "" || $tel_new == "" || $dob_new == "") { die("<script> alert('One or more fields is empty.'); window.location.href='../general'; </script>"); } else { if (look("user_mail", $email_new, $conn, $user_id)) { die("<script> alert('Email already exists on the system.'); window.location.href='../general'; </script>"); } } $sql = "UPDATE user SET user_first_name = '{$firstname_new}', user_last_name = '{$lastname_new}', user_mail = '{$email_new}', user_tel = '{$tel_new}', user_dob = '{$dob_new}' WHERE user_login = '******' "; $result = mysqli_query($conn, $sql); if (mysqli_affected_rows($conn) > 0) { $row = mysqli_fetch_assoc($result); $_SESSION["user_first_name"] = $firstname_new; $_SESSION['user_last_name'] = $lastname_new; header("Location:../general"); }
$checked_users = $_POST["checked"]; $task_id = $_POST["task_id"]; $task_description = nl2br($task_description); function look($looktable, $value, $conn) { $sqllook = "SELECT * FROM user WHERE {$looktable} = '{$value}' "; $resultlook = mysqli_query($conn, $sqllook); if (mysqli_num_rows($resultlook) == 0) { return false; } return true; } if ($task_name == "") { die("<script> alert('Task name is empty.'); window.location.href='../setup-tasks'; </script>"); } else { if (look("task_name", $task_name, $conn)) { die("<script> alert('Task already exists on the system.'); window.location.href='../setup-tasks'; </script>"); } } // Create connection $conn = new mysqli($servername, $user_db, $password_db, $dbname); // Check connection if ($conn->connect_error) { die("Connection failed: " . $conn->connect_error); } $sql = "UPDATE task SET task_name = '{$task_name}', task_description = '{$task_description}', category_id = {$task_category} WHERE task_id = '{$task_id}'"; $result = mysqli_query($conn, $sql); $userc_id = $_SESSION["user_id"]; $sql3 = "UPDATE user_task SET visibility = 0 WHERE task_id = '{$task_id}' AND user_id <> {$userc_id} "; $result3 = mysqli_query($conn, $sql3); for ($i = 0; $i < count($checked_users); $i++) {
function look() { $con = new mysqli("localhost", "root", "rooty", "glossary") or die("Too many cheeses"); //$search = "hello"; //$definition = mysqli_query($con, "SELECT `definition` FROM `glossary` WHERE `word` = '$search'"); $example = mysqli_query($con, "SELECT `example` FROM `glossary` WHERE `word` = (?)"); $stmt = $con->prepare("SELECT `example` FROM `glossary` WHERE `word` = (?)"); $stmt->bind_param('s', $search); $stmt->execute(); $result = $stmt->get_result(); while ($row = $result->fetch_array(MYSQLI_NUM)) { foreach ($row as $r) { print "{$r} "; } print "\n"; } } look(); } ?> <html> <head></head> <body> <form action="glossary.php" methos="post" name="search_form"> <input name="wordSearch" type="text" placeholder="Search"> <input type="hidden" name="submited" value="true" /> <input type="submit" value="Seach"> </form> </body> </html>