示例#1
0
文件: be.php 项目: RickdeM/wms
 protected function BE_MenuDrag_Save()
 {
     die(__FUNCTION__);
     if (validate_POST(array('a', 'Data')) === true) {
         if (get_POST('a') == $this->WMS_Lang('GLOBAL,save')) {
             try {
                 $Data = json_decode($this->Secure_Decode(Get_POST('Data')), true);
                 if (!is_array($Data)) {
                     return true;
                 }
                 // Redirect!
             } catch (Exception $e) {
                 return true;
                 // Redirect!
             }
             if (count($Data) >= 1) {
                 /* Prepare the SQL statement */
                 $this->SQL_Query_Prepare('UPDATE `' . $this->SQL_Table['menu'] . '` SET Level = ?, Parent = ?, OrderList = ? WHERE ID = ? AND Mode = ?', 'Updating Menu items Order');
                 foreach ($Data as $K => $V) {
                     /* Execute the Current Query with Parameters */
                     $STH = $this->SQL_Query_Execute(array(intval($V[0]), intval($V[1]), intval($V[2]), intval($K), 'FE'));
                 }
                 $this->SQL_Query_Next();
             }
         }
         $this->Query_Page_Unlock($this->GETV);
         return true;
         // Redirect!
     }
 }
示例#2
0
<?php

if (isset($_POST['name']) && isset($_POST['email']) && isset($_POST['gen']) && $_FILES['File']['size'] > 0) {
    $name = get_POST('name');
    $email = get_POST('email');
    $gender = get_POST('gen');
    $filename = $_FILES['File']['name'];
    $tmpname = $_FILES['File']['tmp_name'];
    $filesize = $_FILES['File']['size'];
    $filetype = $_FILES['File']['type'];
    $fp = fopen($tmpname, 'r');
    $file = fread($fp, filesize($tmpname));
    $file = addslashes($file);
    fclose($fp);
    if (!get_magic_quotes_gpc()) {
        $filename = addslashes($filename);
    }
    $query = "\n        INSERT INTO output_images\n        (firstname, lastname, imageType, imageData) VALUES\n        ('{$name}', '{$email}', '{$filetype}', '{$file}');";
    mysql_query($query) or die('Error, query failed');
}
echo $name;