示例#1
0
     User::get_by_id($_GET['itemid'])->delete();
 } else {
     if ($_GET['itemtype'] == "store") {
         Store::get_by_id($_GET['itemid'])->delete();
     } else {
         if ($_GET['itemtype'] == "storetype") {
             StoreType::get_by_id($_GET['itemid'])->delete();
         } else {
             if ($_GET['itemtype'] == "storepic") {
                 StorePic::get_by_id($_GET['itemid'])->delete();
             } else {
                 if ($_GET['itemtype'] == "product") {
                     Product::get_by_id($_GET['itemid'])->delete();
                 } else {
                     if ($_GET['itemtype'] == "producttype") {
                         ProductType::get_by_id($_GET['itemid'])->delete();
                     } else {
                         if ($_GET['itemtype'] == "productpic") {
                             ProductPic::get_by_id($_GET['itemid'])->delete();
                         } else {
                             if ($_GET['itemtype'] == "traffic") {
                                 Traffic::get_by_id($_GET['itemid'])->delete();
                             } else {
                                 if ($_GET['itemtype'] == "review") {
                                     Review::get_by_id($_GET['itemid'])->delete();
                                 } else {
                                     if ($_GET['itemtype'] == "featureditem") {
                                         FeaturedItem::get_by_id($_GET['itemid'])->delete();
                                     } else {
                                         $message = "unknown parameter passed";
                                     }
<?php

require_once "header.php";
if (isset($_GET['id'])) {
    $object = ProductType::get_by_id($_GET['id']);
} else {
    header("location: index.php?negative");
}
if (!$session->is_logged_in()) {
    header("location: index.php?negative");
} else {
    $loggeduser = User::get_by_id($session->userid);
    if ($loggeduser->enabled == DISABLED) {
        header("location: index.php?disabled");
    }
}
$pathinfo = pathinfo($_SERVER["PHP_SELF"]);
$basename = $pathinfo["basename"];
$currentFile = str_replace(".php", "", $basename);
?>

<div class="container-fluid">
<div class="row-fluid">
  <div class="span1"></div>
  <div class="span9">
    <form id="theform" class="form-horizontal" action="#" method="post" enctype="multipart/form-data">
      <fieldset>
      <legend>
        Update
      </legend>
<?php

require_once "../initialize.php";
$message = "";
if (isset($_POST['name']) && $_POST['name'] != "" && isset($_POST['producttypeid']) && $_POST['producttypeid'] != "") {
    $object = ProductType::get_by_id($_POST['producttypeid']);
    $object->name = $_POST['name'];
    $object->description = $_POST['description'];
    $object->pending = $_POST['pending'];
    $object->enabled = $_POST['enabled'];
    $file = new File($_FILES['picture']);
    if ($file->valid) {
        $object->picture = $file->data;
    } else {
        $object->picture = base64_decode($object->picture);
    }
    $object->update();
    $log = new Log($session->userid, $clientip, "WEB", "UPDATED PRODUCT TYPE: " . $object->id);
    $log->create();
    $message .= "success";
} else {
    $message = "You have missed a required field.";
}
echo $message;