/var/www/hkosl.com/innoutstorage/webadmin/deposit_modify.php


1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
<?php
    
require_once("check_login.php");

    if (!empty(
$_POST["payment_id"])) {
        
//update payment and deposit
        
foreach ($_POST["payment_id"] as $key => $payment_id) {
            
$payment_info get_payment_by_id($payment_id);
            if (
$payment_info["status"] != $_POST["payment_status"][$key]) {
                
//status changed, need to trace it

                
$sql        "update payment set status = ?, lastupby = ?, lastupdate = ? where id = ?";
                
$parameters = array($_POST["payment_status"][$key], $_SESSION["cmsloginid"], $nowdate, (int)$payment_id);
                
bind_pdo($sql$parameters);

                
$balance_sql "";

                if ((
$payment_info["status"] == "NEW" && $_POST["payment_status"][$key] == "PAID") || ($payment_info["status"] == "RETURNED" && $_POST["payment_status"][$key] == "NEW") || ($payment_info["status"] == "RETURNED" && $_POST["payment_status"][$key] == "PAID")) {
                    
//balance -= amount, deduct balance
                    
$balance_sql "balance = balance - ?";

                    if((
$payment_info["status"] == "RETURNED" && $_POST["payment_status"][$key] == "PAID")){
                        
$balance_sql "balance = balance - (?*2)";
                    }

                }

                if ((
$payment_info["status"] == "NEW" && $_POST["payment_status"][$key] == "RETURNED") || ($payment_info["status"] == "PAID" && $_POST["payment_status"][$key] == "NEW") || ($payment_info["status"] == "PAID" && $_POST["payment_status"][$key] == "RETURNED")) {
                    
//balance += amount, add balance
                    
$balance_sql "balance = balance + ?";

                    if((
$payment_info["status"] == "PAID" && $_POST["payment_status"][$key] == "RETURNED")){
                        
$balance_sql "balance = balance + (?*2)";
                    }
                }

                
$sql        "update deposit set " $balance_sql "  where id = ?";
                
$parameters = array($_POST["amount"][$key], (int)$_POST["deposit_id"]);
                
bind_pdo($sql$parameters);

            }
        }

    }

    
//update deposit
    
$sql        "update deposit set status = ?, lastupby = ?, lastupdate = ? where id = ?";
    
$parameters = array($_POST["deposit_status"],  $_SESSION["cmsloginid"], $nowdate, (int)$_POST["deposit_id"]);
    
bind_pdo($sql$parameters);

    
$dbh null;

    
header("Location: deposit_modifyform.php?id=".(int)$_POST["deposit_id"]);