0byt3m1n1
Path:
/
data
/
17
/
1
/
18
/
11
/
1670011
/
user
/
1801231
/
htdocs
/
admin
/
pages
/
[
Home
]
File: insert_onsale_image.php
<? if($_POST['Submit']=="Upload This Image") { if((!empty($_FILES["uploaded_file"]))&&(!empty($_FILES["uploaded_file2"]))) { $filename_small = basename($_FILES['uploaded_file']['name']); $ext_small = strtolower(substr($filename_small, strrpos($filename_small, '.') + 1)); $filename_large = basename($_FILES['uploaded_file']['name']); $ext_large = strtolower(substr($filename_large, strrpos($filename_large, '.') + 1)); if($_POST['image_name'] && !empty($_FILES["uploaded_file"]) && !empty($_FILES["uploaded_file2"])) { $image_name_small=stripslashes($_POST['image_name'])."-small.".$ext_small; $image_name_large=stripslashes($_POST['image_name'])."-large.".$ext_large; } else if($_POST['image_name']=="" && !empty($_FILES["uploaded_file"])) { $ins=explode(".",$filename_small); $inl=explode(".",$filename_large); $image_name_small=$ins[0]."-small.".$ins[1]; $image_name_large=$inl[0]."-large.".$inl[1]; } else { $image_name_small="no_image_small.jpg"; $image_name_large="no_image_large.jpg"; } $image_path_small="catalog_images/".$_POST['catalog_name']."/onsale/".$image_name_small; $image_path_large="catalog_images/".$_POST['catalog_name']."/onsale/".$image_name_large; //image uploading if((!empty($_FILES["uploaded_file"])) && ($_FILES['uploaded_file']['error'] == 0) && (!empty($_FILES["uploaded_file2"])) && ($_FILES['uploaded_file2']['error'] == 0)) { //Check if the file is JPEG image and it's size is less than 350Kb // $filename_small = basename($_FILES['uploaded_file']['name']); // $ext_small = strtolower(substr($filename_small, strrpos($filename_small, '.') + 1)); if((($ext_small == "jpg") || ($ext_small == "gif") || ($ext_small == "JPG") || ($ext_small == "jpeg")) && (($ext_large == "jpg") || ($ext_large == "gif") || ($ext_large == "JPG") || ($ext_large == "jpeg"))) { //$newname = '../catimages/'.$cathead.'/'.$picnm; $newname_small="../".$image_path_small; $newname_large="../".$image_path_large; //Check if the file with the same name is already exists on the server if (!file_exists($image_name_small) || !file_exists($image_name_large) ) { //Attempt to move the uploaded file to it's new place if ((move_uploaded_file($_FILES['uploaded_file']['tmp_name'], $newname_small)) && (move_uploaded_file($_FILES['uploaded_file2']['tmp_name'], $newname_large))) { chmod($newname_small, 0777); chmod($newname_large, 0777); echo "It's done!"; $q_upload_image="insert into onsale_product_images (`product_image_id`, `catalog_id`, `product_id`, `product_small_image_path`, `product_large_image_path`) values(NULL, '".$_POST['catalog_id']."', '".$_POST['product']."', '".$image_path_small."', '".$image_path_large."')"; $r_upload_image=mysql_query($q_upload_image); } else { echo "Error: A problem occurred during file upload!"; } } else { echo "Error: File ".$_FILES["uploaded_file"]["name"]." already exists"; } } else { echo "Error: Only .jpg images under 350Kb are accepted for upload"; } } else { echo "Error: No file uploaded"; } //End of image uploading } } $q_catalog_list="select * from catalog"; $r_catalog_list=mysql_query($q_catalog_list); ?> <link href="../css/admin-style.css" rel="stylesheet" type="text/css"> <table width="800" border="0" cellpadding="2" cellspacing="0"> <tr> <td align="left" valign="middle" style="padding-left:20px"><form name="form1" method="post" action="" enctype="multipart/form-data"> <table width="600" border="0" cellpadding="2" cellspacing="0" class="table-all-thin-border"> <tr align="left" valign="middle" class="create-catalog-header"> <td height="32" colspan="2"> </td> </tr> <tr align="left" valign="middle"> <td width="148"> </td> <td width="444"> </td> </tr> <tr align="left" valign="middle"> <td class="left-links" style="padding-left:15px">Select catalog name :</td> <td class="left-links"> <font color="#660000"> <? if($_POST['Submit']!="Select Catalog") { ?> <select name="catalog"> <? while($row_catalog_list=mysql_fetch_array($r_catalog_list)) { $option=str_replace("_"," ",$row_catalog_list['catalog_name']); ?> <option value="<?=$row_catalog_list['catalog_id']?>"> <?=$option?> </option> <? } ?> </select> <input type="submit" name="Submit" value="Select Catalog"> <? } else { $q_catalog_list2="select * from catalog where catalog_id='".$_POST['catalog']."'"; $r_catalog_list2=mysql_query($q_catalog_list2); $row_catalog_list2=mysql_fetch_array($r_catalog_list2); $catalog_name=$row_catalog_list2['catalog_name']; echo "<b>".$catalog_name."</b>"; ?> <input name="catalog_name" type="hidden" id="catalog_name" value="<?=$catalog_name?>"> <? } ?> <input name="catalog_id" type="hidden" id="catalog_id" value="<?=$row_catalog_list2['catalog_id']?>"> </font> </td> </tr> <? if($_POST['catalog']) { ?> <tr align="left" valign="middle"> <td class="left-links" style="padding-left:15px">Select Product name :</td> <td> <select name="product"> <? $q_select_product="select * from onsale_product_details where onsale_catalog_id='".$_POST['catalog']."'"; $r_select_product=mysql_query($q_select_product); while($row_select_product=mysql_fetch_array($r_select_product)) { ?> <option value="<?=$row_select_product['onsale_product_id']?>"> <?=$row_select_product['onsale_product_name']?> </option> <? } ?> </select> </td> </tr> <tr align="left" valign="middle" bgcolor="#E1FFF3"> <td class="left-links" style="padding-left:15px">Image Name</td> <td> <input name="image_name" type="text" id="image_name"> <span class="left-links"><font color="#660000">(optional)</font></span><font color="#660000"><span class="left-links"> </span></font></td> </tr> <tr align="left" valign="middle" bgcolor="#E1FFF3"> <td class="left-links" style="padding-left:15px">Browse Small-Image</td> <td> <input name="uploaded_file" type="file" size="40"></td> </tr> <tr align="left" valign="middle" bgcolor="#E1FFF3"> <td class="left-links" style="padding-left:15px">Browse Large-Image</td> <td><input name="uploaded_file2" type="file" size="40"></td> </tr> <tr align="left" valign="middle"> <td class="left-links" style="padding-left:15px"> </td> <td><input type="checkbox" name="checkbox" value="checkbox"> Check This for Onsale Product</td> </tr> <tr align="left" valign="middle"> <td class="left-links" style="padding-left:15px"> </td> <td><input name="Submit" type="submit" id="Submit" value="Upload This Image"></td> </tr> <? } ?> </table> </form></td> </tr> </table>