PK

ADDRLIN : /home/anibklip/aelogifts.com/cms/
FLL :
Current File : /home/anibklip/aelogifts.com/cms/slider.php

<?php
if($_GET['saction']=="del" && is_numeric($_GET['banner_id'])){
	$query = "DELETE from banners_site where banner_id = '$_GET[banner_id]' ";
	mysqli_query($conn, $query) or die(mysqli_error($conn));

	$_SESSION['errmsg']="Record deleted successfully.";

	echo "<script>window.location.href='main.php?action=slider'</script>";
	die;
}

if($_POST['doAction'] == "add" || $_POST['doAction'] == "edit") {
	$fields = " banners_site set
		link_url    = '" . mysqli_escape_string($conn, $_POST['link_url']) . "'
	";
	
	if ($_POST['doAction'] == "add") {
		$query = "INSERT into $fields";
		mysqli_query($conn, $query) or die(mysqli_error($conn));
		$banner_id=mysqli_insert_id($conn);

		$_SESSION['msg']="Record added successfully.";
	}elseif ($_POST['doAction'] == "edit") {
		$query = "UPDATE $fields
			where banner_id='".$_GET['banner_id']."'
		";
		mysqli_query($conn, $query) or die(mysqli_error($conn));
		$banner_id=$_GET['banner_id'];

		$_SESSION['msg']="Record updated successfully.";
	}
	//echo $query;

	if($_FILES['pic'.$i]['tmp_name']){
		$uploaddir = '../images/slider/';
		$ext2 = stristr($_FILES['pic']['name'], '.');
		$picname1 = $banner_id . "_slider".$ext2;
		
		$obj_img = new thumbnail_images();
		$obj_img->PathImgOld = $_FILES['pic'.$i]['tmp_name'];
		$obj_img->PathImgNew = $uploaddir."".$picname1;
		$obj_img->NewWidth = 1920;
		$obj_img->NewHeight	= 650;
		$obj_img->create_thumbnail_images();
		
		$q="UPDATE banners_site set pic='$picname1' where banner_id='".$banner_id."'";
		mysqli_query($conn, $q) or die(mysqli_error($conn));
	}
	
	echo "<script>window.location.href='main.php?action=slider'</script>";
	die;
}

if($_SESSION['msg']){$msg=$_SESSION['msg']; unset($_SESSION['msg']);}
if($_SESSION['errmsg']){$errmsg=$_SESSION['errmsg']; unset($_SESSION['errmsg']);}

$query = "SELECT * from banners_site where banner_id = '$_GET[banner_id]'";
$query = mysqli_query($conn, $query) or die(mysqli_error($conn));
if ($editrow = mysqli_fetch_array($query)) {
}
?>
<div class="content-wrapper">
	<!-- Content Header (Page header) -->
	<section class="content-header">
		<div class="container-fluid">
			<div class="row mb-2">
				<div class="col-sm-6">
					<h1>Add/Edit Slider</h1>
				</div>
				<div class="col-sm-6">
					<ol class="breadcrumb float-sm-right">
						<li class="breadcrumb-item"><a href="main.php">Home</a></li>
						<li class="breadcrumb-item active">Add/Edit Slider</li>
					</ol>
				</div>
			</div>
		</div><!-- /.container-fluid -->
	</section>

	<!-- Main content -->
	<section class="content">
		<div class="row">
			<div class="col-md-12">
				<?php if($msg){?><div class="alert alert-success"><strong>Success!</strong> <?php echo $msg;?></div><?php }?>
				<?php if($errmsg){?><div class="alert alert-danger"><strong>Success!</strong> <?php echo $errmsg;?></div><?php }?>

				<div class="card card-outline card-info">
					<!-- <div class="card-header">
						<h3 class="card-title">Body</h3>
					</div> -->
					<!-- /.card-header -->

					<form name="textEditor" style="margin:0; font-family: arial;" method="POST" action="" enctype="multipart/form-data">
						<input type="hidden" name="doAction" value="<?php if ($_GET['banner_id'] != "") { echo "edit"; } else { echo "add"; } ?>">

						<div class="card-body">
							<div class="form-group">
								<label for="pic">Image (1920 x 650px)</label>
								<input type="file" class="form-control" name="pic" id="pic" <?php echo($_GET['banner_id']?"":"required");?> />
								<?php
								if($editrow['pic']){
									?>
									<img src="../images/slider/<?php echo $editrow['pic'];?>" width="200" />
									<?php
								}
								?>
							</div>
							<div class="form-group">
								<label for="link_url">Link / URL</label>
								<input type="text" class="form-control" name="link_url" id="link_url" value="<?php echo $editrow['link_url']; ?>" required />
							</div>
							  
						</div>
						<!-- /.card-body -->

						<div class="card-footer">
							<button type="submit" value="1" name="sbmt_btn" class="btn btn-primary"><?php echo($_GET['banner_id']?"Update":"Add");?></button>
						</div>
					</form>
				</div>
			</div>
			<!-- /.col-->
		</div>
	</section>
	<!-- /.content -->


	<section class="content">

		<div class="row">
			<div class="col-md-12">
				<div class="card card-outline card-info">
					<!-- <div class="card-header">
						<h3 class="card-title">Body</h3>
					</div> -->
					<!-- /.card-header -->
					<!-- /.card-header -->
					<div class="card-body">
						<table id="example2" class="table table-bordered table-striped">
							<thead>
								<tr>
									<th>#</th>
									<th>Image</th>
									<th>Link</th>
									<th>Action(s)</th>
								</tr>
							</thead>
							<tbody>
								<?php
								$query = "SELECT * from banners_site ";
								$query = mysqli_query($conn, $query) or die(mysqli_error($conn));
								$cnt=1;
								while ($row = mysqli_fetch_array($query)) {
									?>
									<tr>
										<td width="60"><?php echo $cnt;?></td>
										<td><img src="../images/slider/<?php echo $row['pic'];?>" width="300" /></td>
										<td><?php echo $row['link_url'];?></td>
										<td width="130">
											<a href="main.php?action=slider&banner_id=<?php echo $row['banner_id'];?>" class="btn btn-info"><i class="fas fa-pencil-alt"></i></a>
											<a href="javascript:;" onclick="del('main.php?action=slider&saction=del&banner_id=<?php echo $row['banner_id'];?>')" class="btn btn-danger"><i class="fas fa-solid fa-trash"></i></a>
										</td>
									</tr>
									<?php
									$cnt++;
								}
								?>
							</tbody>
						</table>
					</div>
					<!-- /.card-body -->
				</div>
			</div>
			<!-- /.col-->
		</div>
	</section>
</div>


PK 99