PK

ADDRLIN : /home/anibklip/msbhogalnsons.com/cms/
FLL :
Current File : /home/anibklip/msbhogalnsons.com/cms/add_team.php

<center>
<?php
if($_GET[action] == "delimg"){
	$query = "select * from staff where staff_id = '$_GET[staff_id]'";
	$query = mysql_query($query) or die(mysql_error());
	if($rr=mysql_fetch_array($query)){
		//echo $rr[img];
		@unlink("../site_data/images/$rr[img]");
		$query="update staff set img='' where staff_id = '$rr[staff_id]'";
		mysql_query($query) or die(mysql_error());
		echo "<script>window.location.href='main.php?paction=$_GET[paction]&staff_id=$rr[staff_id]'</script>";
	}
}

if($_POST[submt_btn] == 1){
	/////////////////////////////////// add record starts //////////////////////
	if($_POST[doAction] == "add"){
		$query="insert into staff set 
			name='".mysql_escape_string($_POST[name])."',
			desi='".mysql_escape_string($_POST[desi])."',
			details='".mysql_escape_string($_POST[details])."'
		";
		mysql_query($query) or die(mysql_error());
		$staff_id=mysql_insert_id();
		$msg="Record Added Successfully";
	}
	/////////////////////////////////// add record ends //////////////////////

	/////////////////////////////////// update record starts //////////////////////
	//print_r($_POST);
	if($_POST[doAction] == "edit") {
		$query="update staff set 
			name='".mysql_escape_string($_POST[name])."',
			desi='".mysql_escape_string($_POST[desi])."',
			details='".mysql_escape_string($_POST[details])."'
			where staff_id = '$_GET[staff_id]'
		";
		mysql_query($query) or die(mysql_error());
		$staff_id=$_GET[staff_id];
		$msg="Record Updated Successfully";
	}
	/////////////////////////////////// update record ends //////////////////////

	$uploads_dir = '../site_data/images/';
	if($_FILES["img"]["error"] == UPLOAD_ERR_OK) {
		$tmp_name = $_FILES["img"]["tmp_name"];
		$ext=substr($_FILES["img"]["name"],-3);
		$fname = $staff_id."_team.".$ext;

		$obj_img = new thumbnail_images();
		$obj_img->PathImgOld = $_FILES['img']['tmp_name'];
		$obj_img->PathImgNew = $uploads_dir.$fname;
		$obj_img->NewWidth = 322;
		$obj_img->NewHeight = 336;
		$obj_img->create_thumbnail_images();
		
		//move_uploaded_file($tmp_name, "$uploads_dir/$fname");
		
		//createthumb($_FILES['img']['tmp_name'],$fname,$uploads_dir,900,250);
		//createthumb($_FILES['img']['tmp_name'],"th_".$fname,$uploads_dir,120,120);
		$query="update staff set img='$fname' where staff_id = '$staff_id'";
		mysql_query($query) or die(mysql_error());
	}
}

//////////////////////  fetch data for edit starts ////////////////////////
if($_GET[staff_id]){
	$query = "select * from staff where staff_id = '$_GET[staff_id]'";
	$query = mysql_query($query) or die(mysql_error());
	if($editrow=mysql_fetch_array($query)){}
}
//////////////////////  fetch data for edit ends ////////////////////////
?>
</center>

<!-- BEGIN PAGE LEVEL STYLES -->
<link rel="stylesheet" type="text/css" href="assets/global/plugins/bootstrap-wysihtml5/bootstrap-wysihtml5.css"/>
<link rel="stylesheet" type="text/css" href="assets/global/plugins/bootstrap-markdown/css/bootstrap-markdown.min.css">
<link rel="stylesheet" type="text/css" href="assets/global/plugins/bootstrap-summernote/summernote.css">
<!-- END PAGE LEVEL STYLES -->


<div class="page-content-wrapper">
	<div class="page-content">
		<!-- BEGIN PAGE HEADER-->
		<h3 class="page-title"><?php echo($_GET[staff_id]?"Edit":"Add")?> Staff<small></small></h3>
		<div class="page-bar">
			<ul class="page-breadcrumb">
				<li>
					<i class="fa fa-home"></i>
					<a href="index.html">Home</a>
					<i class="fa fa-angle-right"></i>
				</li>
			</ul>
		</div>
		<!-- END PAGE HEADER-->
		<!-- BEGIN PAGE CONTENT-->
		<div class="row">
			<div class="col-md-12">
				<!-- BEGIN EXTRAS PORTLET-->
				<?php if($msg){?><div class="alert alert-success display-show"><button class="close" data-close="alert"></button><?=$msg?></div><?php }?>

				<div class="portlet box blue-hoki">
					<div class="portlet-title">
						<div class="caption">
							<i class="fa fa-gift"></i><?php echo($_GET[staff_id]?"Edit":"Add")?> Staff
						</div>
						 
					</div>
					<div class="portlet-body form">
						<form class="form-horizontal form-bordered" enctype="multipart/form-data" method="post" >
							<input type="hidden" name="doAction" value="<?php echo ($_GET[staff_id]!=""?"edit":"add")?>">
							<input type="hidden" name="parent_id" value="<?php echo ($_GET[staff_id]!=""?$editrow[parent_id]:"10")?>" />
							<div class="form-body">								
								<div class="form-group">
									<label class="control-label col-md-2">Name</label>
									<div class="col-md-10">
										<input type="text" class="form-control" required name="name" id="name" value="<?php echo $editrow[name];?>" />
									</div>
								</div>
								 
								<div class="form-group">
									<label class="control-label col-md-2">Designation</label>
									<div class="col-md-10">
										<input type="text" class="form-control" required name="desi" id="desi" value="<?php echo $editrow[desi];?>" />
									</div>
								</div>
								<div class="form-group">
									<label class="control-label col-md-2">Details</label>
									<div class="col-md-10">
										<textarea id="details" class="form-control" name="details"><?php echo $editrow[details];?></textarea>
									</div>
								</div>

								<div class="form-group">
									<label class="control-label col-md-2">Image <br /> <small>Size: 322px x 336px</small></label>
									<div class="col-md-10">
										<input type="file" style="height:auto;" class="form-control" name="img" id="img" />
										<?php if($editrow[img]){?><img src="../site_data/images/<?php echo $editrow[img];?>" width="150" style="border:1px solid #ccc; padding:1px;" /> <a href="main.php?paction=<?php echo $_GET[paction]?>&staff_id=<?php echo $editrow[staff_id]?>&action=delimg">Delete Image</a> <?php }?>
									</div>
								</div>

								<div class="form-actions">
									<div class="row">
										<div class="col-md-offset-2 col-md-10">
											<button type="submit" name="submt_btn" value="1" class="btn green"><i class="fa fa-check"></i> <?php echo ($_GET[staff_id]!=""?"Update":"Submit")?></button>
											<button type="button" class="btn default">Cancel</button>
										</div>
									</div>
								</div>

							</div>
						</form>
					</div>
				</div>
			</div>
		</div>
		 
		<!-- END PAGE CONTENT-->
	</div>
</div>
<!-- END CONTENT -->


PK 99