<body> <?php include 'header.php'; $user_prefs = "SELECT photo, background_photo FROM users where user_id= '{$user}'"; $photos = mysql_query($user_prefs); while ($row = mysql_fetch_array($photos)) { $userIMG = $row['photo']; $background = $row['background_photo']; $photo = "<img src=" . $row['photo'] . " alt=\"profile image\" class=\"circle z-depth-2 responsive-img \" id=\"profileImg\">"; } if (isset($userIMG) && $userIMG != NULL) { } else { photoUpdate('https://cdn2.iconfinder.com/data/icons/ui-1/60/05-512.png', $user); backgroundUpdate('http://10steps.sg/wp-content/uploads//2012/11/christmas-light-background-small.png', $user); } ?> <br><br> <div class="container animated fadeIn"> <div id="profile-page-header" class="card"> <div class="card-image waves-effect waves-block waves-light"> <img class="" id="headerImg" src="<?php if (isset($background) && $background != 'null') { echo $background; } else { echo " images/user-profile-bg.jpg "; } ?> " alt="user background"> </div>
<?php include 'core/init.php'; if (is_numeric($_SESSION['user_id'])) { //do nothing } else { header('Location: signup.php'); } $user = $user_data['user_id']; $photo = sanitize($_POST[photo]); $backgroundPhoto = sanitize($_POST[backgroundPhoto]); //function profileUpdate($photo, $backgroundPhoto, $user_id){ // mysql_query("UPDATE users // SET photo = '$photo', background_photo='$backgroundPhoto' // WHERE user_id= '$user_id';"); //} if ($photo != '') { photoUpdate($photo, $user); echo 'Updated your photo!'; } if ($backgroundPhoto != '') { backgroundUpdate($backgroundPhoto, $user); echo 'Updated your background photo!'; }