1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
|
<?php include 'config.php';
// Check if the user is logged in
if ((!isSet($_SESSION['loginname'])) || ($loggin <> '1')) { header("Location: login.php"); exit; } ?> <?php require("configure.php"); require("function_resizethumb.php");
$slideid = check_input($_POST["slideid"]); //$slideimgalten = check_input($_POST["slideimgalten"]); //$slideimgalttc = check_input($_POST["slideimgalttc"]); $slidelinksc = check_input($_POST["slidelinksc"]); $slidelinktc = check_input($_POST["slidelinktc"]); $nowdate = date("Y-m-d H:i:s"); //print_r($_POST); $slidetype = check_input($_POST["slidetype"]); //Delete execiting Image file $result = mysql_query("SELECT * FROM slideshow WHERE slideid=". $slideid ." "); $row = mysql_fetch_array($result,MYSQL_ASSOC); if($_FILES['slideimgsc']['name'] <> '' or $_POST['delimagesc'] > 0 ){ unlink("../images/slideshow/".$row['slideimgsc']); $sql = "update slideshow set slideimgsc='' "; $sql .= " where slideid=". $slideid ." "; mysql_query($sql); } if($_FILES['slideimgtc']['name'] <> '' or $_POST['delimagetc'] > 0 ){ unlink("../images/slideshow/".$row['slideimgtc']); $sql = "update slideshow set slideimgtc='' "; $sql .= " where slideid=". $slideid ." "; mysql_query($sql); }
// Upload File $filelimit = 2 * 1048576; //Filelimit in 2MB if ($_FILES['slideimgsc']['name'] <> '') { if ($_FILES['slideimgsc']['size'] < $filelimit ){
if (($_FILES["slideimgsc"]["type"] == "image/gif") || ($_FILES["slideimgsc"]["type"] == "image/GIF") || ($_FILES["slideimgsc"]["type"] == "image/jpg") || ($_FILES["slideimgsc"]["type"] == "image/JPG") || ($_FILES["slideimgsc"]["type"] == "image/jpeg") || ($_FILES["slideimgsc"]["type"] == "image/JPEG") || ($_FILES["slideimgsc"]["type"] == "image/pjpeg") || ($_FILES["slideimgsc"]["type"] == "image/PJEG") || ($_FILES["slideimgsc"]["type"] == "image/png") || ($_FILES["slideimgsc"]["type"] == "image/x-png") || ($_FILES["slideimgsc"]["type"] == "image/PNG") || ($_FILES["slideimgsc"]["type"] == "image/X-PNG")) { move_uploaded_file ($_FILES['slideimgsc']['tmp_name'], "../images/slideshow/id_".$slideid."_sc_".$_FILES['slideimgsc']['name']) or die ("Could not copy the file"); $slideimgscimg = "../images/slideshow/id_".$slideid."_sc_".$_FILES['slideimgsc']['name']; //createthumb($slideimgscimg, $slideimgscimg, 980, 310); $slideimgsc = "id_".$slideid."_sc_".$_FILES['slideimgsc']['name']; } } else { // upload error ?> <script language="javascript"> alert("Files must be JPEG, GIF, or PNG and under 2MB in size"); history.back(); </script> <?php exit; }
} else { $slideimgsc = ""; }
if ($_FILES['slideimgtc']['name'] <> '') { if ($_FILES['slideimgtc']['size'] < $filelimit ){
if (($_FILES["slideimgtc"]["type"] == "image/gif") || ($_FILES["slideimgtc"]["type"] == "image/GIF") || ($_FILES["slideimgtc"]["type"] == "image/jpg") || ($_FILES["slideimgtc"]["type"] == "image/JPG") || ($_FILES["slideimgtc"]["type"] == "image/jpeg") || ($_FILES["slideimgtc"]["type"] == "image/JPEG") || ($_FILES["slideimgtc"]["type"] == "image/pjpeg") || ($_FILES["slideimgtc"]["type"] == "image/PJEG") || ($_FILES["slideimgtc"]["type"] == "image/png") || ($_FILES["slideimgtc"]["type"] == "image/x-png") || ($_FILES["slideimgtc"]["type"] == "image/PNG") || ($_FILES["slideimgtc"]["type"] == "image/X-PNG")) { move_uploaded_file ($_FILES['slideimgtc']['tmp_name'], "../images/slideshow/id_".$slideid."_tc_".$_FILES['slideimgtc']['name']) or die ("Could not copy the file"); $slideimgtcimg = "../images/slideshow/id_".$slideid."_tc_".$_FILES['slideimgtc']['name']; //createthumb($slideimgtcimg, $slideimgtcimg, 980, 310); $slideimgtc = "id_".$slideid."_tc_".$_FILES['slideimgtc']['name']; } } else { // upload error ?> <script language="javascript"> alert("Files must be JPEG, GIF, or PNG and under 2MB in size"); history.back(); </script> <?php exit; }
} else { $slideimgtc = ""; }
// Modify $sql = "update slideshow set slidetype='$slidetype',slidelinksc='$slidelinksc', slidelinktc='$slidelinktc', lastupdate='$nowdate', lastupby='".$_SESSION['cmsloginid']."' "; if ($slideimgsc <> '' or $_POST['delimagesc'] > 0 ) $sql .= ", slideimgsc='$slideimgsc' "; if ($slideimgtc <> '' or $_POST['delimagetc'] > 0 ) $sql .= ", slideimgtc='$slideimgtc' "; $sql .= " where slideid=". $slideid ." "; mysql_query($sql);
if( mysql_errno() > 0 ){ echo 'Modify Home Slide Show Error:<br />'. mysql_error() .'<br />SQL: '. $sql; exit; }
mysql_close($dbh);
header("Location: slideshow_index.php?msg=Modify Successful"); ?>
|