/var/www/enzatesting.onesolution.hk/inv_product_operation_modify.php


1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
<?php 
$formid 
"Product";
require_once 
"inc/configure.php";

if(
havePermission("RTu")==false){
    
myerror("Invalid Permission");    
}

$refid                 filter_var($_REQUEST['refid'], FILTER_SANITIZE_NUMBER_INT);
$lv                     filter_var($_REQUEST['lv'], FILTER_SANITIZE_NUMBER_INT);

//(int)$_REQUEST['productID'];
//vdump($_REQUEST);
if( $_REQUEST['action']=="inv_product_operation_modifyform" && !empty($refid)  ){
    
    
$parent_refid     filter_var($_REQUEST['parent_refid'], FILTER_SANITIZE_STRING);
    
$opr_nbr         = (int)filter_var($_REQUEST['opr_nbr'], FILTER_SANITIZE_NUMBER_FLOAT,FILTER_FLAG_ALLOW_FRACTION);    
    
$opr_code     filter_var($_REQUEST['opr_code'], FILTER_SANITIZE_STRING);
    
$workplace_code    filter_var($_REQUEST['workplace_code'], FILTER_SANITIZE_STRING);
        
    
$opr_svc         = (float)filter_var($_REQUEST['opr_svc'], FILTER_SANITIZE_NUMBER_FLOAT,FILTER_FLAG_ALLOW_FRACTION);    
    
$uom_svc        filter_var($_REQUEST['uom_svc'], FILTER_SANITIZE_STRING);
    
$itemno         filter_var($_REQUEST['itemno'], FILTER_SANITIZE_STRING);
    
$bom             filter_var($_REQUEST['bom'], FILTER_SANITIZE_STRING);    
    
    
//$createby        = filter_var($_SESSION['user'], FILTER_SANITIZE_STRING);
    
$lastupby        filter_var($_SESSION['user'], FILTER_SANITIZE_STRING);
    

    switch (
$lv) {
        case 
0:
            
$table "opr_route";
            break;
        case 
1:
            
$table "opr_subroute";
            break;
        case 
2:
            
$table "opr_subsubroute";
            break;
    }    

    
//update operation table
    
$sql "UPDATE $table SET 
            opr_nbr = :opr_nbr,
            opr_code = :opr_code,
            workplace_code = :workplace_code,
            opr_svc = :opr_svc, 
            uom_svc = :uom_svc, 
            itemno = :itemno, 
            lastupby = :lastupby, 
            lastupdate = GETDATE()
            WHERE refid = :refid"
;
                
    
$sth $dbh->prepare($sql);
    
$q$sth->execute( array(':opr_nbr' => $opr_nbr,
                                
':opr_code' => $opr_code,
                                
':workplace_code' => $workplace_code,
                                
':opr_svc' => $opr_svc,
                                
':uom_svc' => $uom_svc,
                                
':itemno' => $itemno,
                                
':refid' => $refid,
                                
':lastupby' => $lastupby) );
/*if(DEBUG==1){
    echo $sth->getSQL( array(':opr_nbr' => $opr_nbr,
                                ':opr_code' => $opr_code,
                                ':workplace_code' => $workplace_code,
                                ':opr_svc' => $opr_svc,
                                ':uom_svc' => $uom_svc,
                                ':itemno' => $itemno,
                                ':refid' => $refid,
                                ':lastupby' => $lastupby) ).HTML_EOL;
    //exit;        
}*/
    
header("Location: inv_product_operation_modifyform.php?bom=$bom&refid=$refid&lv=$lv&msg=Saved."); 
    print 
"Saved.";
    exit;
    
    
}
print 
"Invalid Request";