Server IP : 162.214.80.37 / Your IP : 216.73.216.83 Web Server : Apache System : Linux sh013.webhostingservices.com 4.19.286-203.ELK.el7.x86_64 #1 SMP Wed Jun 14 04:33:55 CDT 2023 x86_64 User : imyrqtmy ( 2189) PHP Version : 8.2.18 Disable Function : NONE MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : ON Directory (0755) : /home2/imyrqtmy/public_html/mauryamarriagebureau/admin/ |
[ Home ] | [ C0mmand ] | [ Upload File ] |
---|
<?php include("includes/config.php"); if(isset($_POST['add_profile'])){ $name = $_POST['name']; $age = $_POST['age']; $dob = $_POST['dob']; $family_name = $_POST['family_name']; $weight = $_POST['weight']; $religion = $_POST['religion']; $height = $_POST['height']; $degree = $_POST['degree']; $profession = $_POST['profession']; $position = $_POST['position']; $mobile = $_POST['mobile']; $email = $_POST['email']; $address = $_POST['address']; $category_id = $_POST['category_id']; $about = $_POST['about']; $photo = $_FILES['photo']['name']; $allowed_image_extensions = array('gif','png','jpg','jpeg','webp','WEBP'); $photo_filename = $_FILES['photo']['name']; $photo_file_extension = pathinfo($photo_filename, PATHINFO_EXTENSION); if(!in_array($photo_file_extension, $allowed_image_extensions)){ $_SESSION['status'] = "The image file is not allowed. Please upload an image."; header('Location: profile.php'); exit; } else { $query = "INSERT INTO `profiles` (`name`, `age`, `dob`, `family_name`, `weight`, `religion` , `height` ,`degree` , `profession` , `position` , `mobile` , `email` , `address`, `category_id`, `about`, `photo`) VALUES ('$name', '$age', '$dob', '$family_name', '$weight' , '$religion' , '$height' , '$degree' , '$profession' , '$position', '$mobile', '$email' , '$address' , '$category_id' , '$about' , '$photo')"; $query_run = mysqli_query($conn, $query); if($query_run){ move_uploaded_file($_FILES["photo"]["tmp_name"], "profile/".$_FILES["photo"]["name"]); $_SESSION['status'] = "Uploaded Successfully"; echo "<script>window.location.href='view-profile.php';</script>"; exit; } else { $_SESSION['status'] = "Not Uploaded "; echo "<script>window.location.href='view-profile.php';</script>"; exit; } } } // update if(isset($_POST['update_profile'])){ $id = $_POST['id']; $name = $_POST['name']; $age = $_POST['age']; $dob = $_POST['dob']; $family_name = $_POST['family_name']; $weight = $_POST['weight']; $religion = $_POST['religion']; $height = $_POST['height']; $degree = $_POST['degree']; $profession = $_POST['profession']; $position = $_POST['position']; $mobile = $_POST['mobile']; $email = $_POST['email']; $address = $_POST['address']; $category_id = $_POST['category_id']; $about = $_POST['about']; $old_photo = $_POST['image_old']; $update_photo_filename = $_FILES["photo"]["name"] ? $_FILES["photo"]["name"] : $old_photo; $allowed_image_extensions = array('gif','png','jpg','jpeg','webp','WEBP'); $photo_file_extension = pathinfo($update_photo_filename, PATHINFO_EXTENSION); if(!in_array($photo_file_extension, $allowed_image_extensions)){ $_SESSION['status'] = "The image file is not allowed. Please upload an image."; header("Location: edit-profile.php?id=$id"); exit; } // Update the department information in the database $query = "UPDATE profiles SET name='$name', age='$age', dob='$dob', family_name='$family_name', weight='$weight' , religion='$religion' , height='$height' , degree='$degree' , profession='$profession', position='$position', mobile='$mobile' , email='$email' , address='$address', category_id='$category_id', about='$about', photo='$update_photo_filename' WHERE id ='$id' "; $query_run = mysqli_query($conn, $query); if($query_run){ if($_FILES["photo"]["name"] !='' && $_FILES["photo"]["name"] != $old_photo){ move_uploaded_file($_FILES["photo"]["tmp_name"], "profile/".$_FILES["photo"]["name"]); unlink("profile/". $old_photo); } $_SESSION['status'] = "Data Updated Successfully"; header('Location: view-profile.php'); } else { $_SESSION['status'] = "Data Not Updated Successfully"; header('Location: view-profile.php'); } } // delete if(isset($_POST['delete_profile'])){ $id = $_POST['delete_id']; $photo = $_POST['del_profile']; // $pdf = $_POST['del_pdf']; $query = "DELETE FROM profiles WHERE id = '$id'"; $query_run = mysqli_query($conn, $query); if($query_run){ if(unlink("profile/".$photo)) { $_SESSION['status'] = "Deleted Successfully"; header('Location: view-profile.php'); } else { $_SESSION['status'] = "Error deleting files"; header('Location: view-profile.php'); } } else { $_SESSION['status'] = "Not Deleted Successfully"; header('Location: view-profile.php'); } } ?>