1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
|
<?php require_once "inc/configure.php";
$refid = filter_var($_REQUEST['refid'], FILTER_SANITIZE_NUMBER_INT); $lv = filter_var($_REQUEST['lv'], FILTER_SANITIZE_NUMBER_INT); $drawing_refid = filter_var($_REQUEST['drawing_refid'], FILTER_SANITIZE_STRING);
//(int)$_REQUEST['productID']; //vdump($_REQUEST); if( !empty($refid) && !empty($drawing_refid) ){ $parent_refid = filter_var($_REQUEST['parent_refid'], FILTER_SANITIZE_STRING); $opr_nbr = filter_var($_REQUEST['opr_nbr'], FILTER_SANITIZE_NUMBER_FLOAT,FILTER_FLAG_ALLOW_FRACTION); $opr_code = filter_var($_REQUEST['opr_code'], FILTER_SANITIZE_STRING); $workplace_code = filter_var($_REQUEST['workplace_code'], FILTER_SANITIZE_STRING); $opr_svc = filter_var($_REQUEST['opr_svc'], FILTER_SANITIZE_NUMBER_FLOAT,FILTER_FLAG_ALLOW_FRACTION); $uom_svc = filter_var($_REQUEST['uom_svc'], FILTER_SANITIZE_STRING); $itemno = filter_var($_REQUEST['itemno'], FILTER_SANITIZE_STRING); //$createby = filter_var($_SESSION['user'], FILTER_SANITIZE_STRING); $lastupby = filter_var($_SESSION['user'], FILTER_SANITIZE_STRING);
switch ($lv) { case 0: $table = "dgn_route"; break; case 1: $table = "dgn_subroute"; break; case 2: $table = "dgn_subsubroute"; break; }
if($lv==0){
//get child refid $sql = "SELECT * FROM dgn_subroute WHERE route_refid = :refid"; $sth = $dbh->prepare($sql); $q= $sth->execute( array(':refid' => $refid) ); pdo_showerror($sth, $q); //echo $sth->getSQL( array(':refid' => $refid) ).HTML_EOL; $children = $sth->fetchAll(); // delete grandchild foreach($children as $child){ $sql = "DELETE FROM dgn_subsubroute WHERE subroute_refid = :refid"; $sth = $dbh->prepare($sql); $q= $sth->execute( array(':refid' => $child['refid']) ); pdo_showerror($sth, $q); //echo $sth->getSQL( array(':refid' => $child['refid']) ).HTML_EOL; } //delete child $sql = "DELETE FROM dgn_subroute WHERE route_refid = :refid"; $sth = $dbh->prepare($sql); $q= $sth->execute( array(':refid' => $refid) ); pdo_showerror($sth, $q); //echo $sth->getSQL( array(':refid' => $refid) ).HTML_EOL; } elseif($lv==1){ //delete child $sql = "DELETE FROM dgn_subsubroute WHERE subroute_refid = :refid"; $sth = $dbh->prepare($sql); $q= $sth->execute( array(':refid' => $refid) ); pdo_showerror($sth, $q); //echo $sth->getSQL( array(':refid' => $refid) ).HTML_EOL; }
//delete operation $sql = "DELETE FROM $table WHERE refid = :refid"; $sth = $dbh->prepare($sql); $q= $sth->execute( array(':refid' => $refid) ); pdo_showerror($sth, $q); //echo $sth->getSQL( array(':refid' => $refid) ).HTML_EOL;
//exit; header("Location: dgn_route_modifyform.php?drawing_refid=$drawing_refid&msg=Saved."); print "Saved."; exit; } print "Invalid Request";
|