| Server IP : 210.245.233.93 / Your IP : 216.73.216.226 Web Server : Apache/2.2.15 (CentOS) System : Linux webserver2.onesolution.com.hk 2.6.32-754.35.1.el6.x86_64 #1 SMP Sat Nov 7 12:42:14 UTC 2020 x86_64 User : apache ( 48) PHP Version : 5.3.3 Disable Function : exec, shell_exec, system, passthru, popen, proc_open, pcntl_exec MySQL : ON | cURL : ON | WGET : ON | Perl : ON | Python : ON | Sudo : ON | Pkexec : ON Directory : /var/www/hkosl.com/kelvin/webadmin/ |
Upload File : |
<?php
include 'config.php';
// Check if the user is logged in
if ((!isSet($_SESSION['loginname'])) || ($loggin <> '1'))
{
header("Location: login.php");
exit;
}
require("configure.php");
$pdcatid = check_input($_GET["pdcatid"]);
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<title>Content Management System (CMS)</title>
<link rel="stylesheet" type="text/css" href="css/style.css" />
<!-- Main Menu -->
<link rel="stylesheet" type="text/css" href="css/menu.css" />
<script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js"></script>
<script type="text/javascript" src="js/ddaccordion.js"></script>
<script type="text/javascript" src="js/menuddaccordion.js"></script>
<!-- End Main Menu -->
<script type="text/javascript">
function DeleteproductDetail(pdid)
{
if (confirm("Are you sure you want to delete?"))
{
window.location.href = 'product_detail_delete.php?pdid='+pdid;
}
}
</script>
<script type="text/JavaScript">
<!--
function MM_jumpMenu(targ,selObj,restore){ //v3.0
eval(targ+".location='"+selObj.options[selObj.selectedIndex].value+"'");
if (restore) selObj.selectedIndex=0;
}
//-->
</script>
</head>
<body>
<table width="1000" height="600" border="0" cellpadding="0" cellspacing="0">
<tr>
<td width="200" align="left" valign="top"><table width="200" border="0" cellpadding="0" cellspacing="0">
<tr>
<td height="70" align="left" valign="middle"> </td>
</tr>
<tr>
<td width="200" align="left" valign="top"><!-- Main Menu --><?php require("menu.php");?><!-- End Main Menu --></td>
</tr>
</table></td>
<td width="800" align="left" valign="top"><table width="800" border="0" cellpadding="0" cellspacing="0">
<tr>
<td><table width="800" border="0" cellspacing="0" cellpadding="0">
<tr>
<td height="70" class="pagetitletxt"> </td>
<td width="50" align="center" class="icontxt"><a href="product_detail_addform.php"><img src="images/iconNew.png" alt="Add" width="32" height="32" border="0" /><br /> Add </a></td>
</tr>
</table></td>
</tr>
<tr>
<td class="pagetitletxt"> <b><img src="images/iconList.jpg" width="48" height="48" align="absmiddle" /> Product Detail </b></td>
</tr>
<tr>
<td height="25" align="left" valign="middle" class="msg"><?php echo $_GET['msg']; ?></td>
</tr>
<tr>
<td height="35" align="left" valign="middle" class="content"> <strong>Product Category </strong>
<select name="pdcatid" onChange="MM_jumpMenu('self',this,0)">
<option value='product_detail_index.php'>All</option>
<?php echo getSubLevel(0, $_GET['pdcatid']); ?>
</select></td>
</tr>
<tr>
<td align="left" valign="middle"><form name="form1" method="post" action="product_detail_update.php"><table width="800" border="0" cellpadding="0" cellspacing="0">
<tr>
<td width="10" class="listtitletxt"></td>
<td width="40" class="listtitletxt">Sort</td>
<td width="400" class="listtitletxt">Product Name</td>
<td width="100" class="listtitletxt">Image</td>
<td width="20" class="listtitletxt"></td>
<td width="20" class="listtitletxt"></td>
<td width="20" class="listtitletxt"></td>
</tr>
<?php
if(empty($pdcatid)) {
$result = mysql_query("SELECT * FROM product_detail ORDER BY pdid ASC");
} else {
$result = mysql_query("SELECT * FROM product_detail pd INNER JOIN product_cat_item pdc ON pd.pdid = pdc.pdid WHERE pdc.pdcatid = '".$pdcatid."' ORDER BY pdc.pdcatid ASC,pdc.psort ASC ");
}
while ($row = mysql_fetch_array($result,MYSQL_ASSOC))
{
print "<tr>";
print "<td class='listtxt' style='padding-left:5'> </td>";
if(!empty($pdcatid)) {
print "<td class='listtxt' valign='middle' align='left'><input class='sortinput' type='text' name='idarraynumber[]' value='".$row{'psort'}."' size='2' />
<input type='hidden' name='idarray[]' value='".$row{'pdid'}."'><input type='hidden' name='pdcatid' value='".$row{'pdcatid'}."'></td>";
} else {
print "<td class='listtxt' style='padding-left:5'> </td>";
}
//print "<td class='listtxt' style='padding-left:5'>".$row{'pdcode'}."</td>";
print "<td class='listtxt' style='padding-left:5'>".$row{'pdtitleen'}."</td>";
print "<td class='listtxt' style='padding-left:5'><a href='product_image_index.php?pdid=".$row{'pdid'}."'>Edit Image</a></td>";
//Status
print "<td class='listtxt' align='center'>";
if ($row{'pdstatus'} == '1') // Enable
{
print "<a href='product_detail_status.php?pdid=".$row{'pdid'}."'>";
print "<img src='images/tick.png' title='Enable' alt='Enable' border='0' hspace='2'></a>";
}
else // Disable
{
print "<a href='product_detail_status.php?pdid=".$row{'pdid'}."'>";
print "<img src='images/cross.png' title='Disable' alt='Disable' border='0' hspace='2'></a>";
}
print "</td>";
// Modify
print "<td class='listtxt' align='center'><a href='#' onClick=\"window.location='product_detail_modifyform.php?pdid=".$row{'pdid'}."'\"><img src='images/btnModify.png' title='Modify' alt='Modify' hspace='2' border='0'></a></td>";
// Delete
print "<td class='listtxt' align='center'><a href='#' onClick=\"DeleteproductDetail(".$row{'pdid'}.")\"><img src='images/btnDelete.png' title='Delete' alt='Delete' hspace='2' border='0'></a></td>";
print "</tr>";
}
mysql_close($dbh);
?>
</table><?php
if(!empty($pdcatid)) {
?>
<input type="submit" value="Update Sort">
<?php
}
?></form></td>
</tr>
</table>
</td></tr>
</table>
</body>
</html>
<?php
function getSubLevel($p, $sel)
{
$n="";
$sql1 = "select * from product_cat where parentid = ". $p ." ";
$result1 = mysql_query($sql1);
while ($row1 = mysql_fetch_array($result1,MYSQL_ASSOC))
{
$sql2 = "select * from product_cat where parentid = ". $row1{"pdcatid"} ." ";
$rs2 = mysql_query($sql2);
if( mysql_num_rows($rs2) > 0 ){
$n .= "<option value='product_detail_index.php?pdcatid=". $row1{'pdcatid'} ."' ". getSelect($sel, $row1{'pdcatid'}) ." >". str_repeat(" - ", $row1["levelnum"]-1);
if ($row1{'pdcattitleen'} <> '') {
$n .= $row1{'pdcattitleen'};
} else if ($row1{'pdcattitletc'} <> '') {
$n .= $row1{'pdcattitletc'};
}
$n .= "</option>\n".getSubLevel($row1{'pdcatid'},$sel);
}
else{
$n .= "<option value='product_detail_index.php?pdcatid=". $row1{'pdcatid'} ."' ". getSelect($sel, $row1{'pdcatid'}) ." >". str_repeat(" - ", $row1["levelnum"]-1);
if ($row1{'pdcattitleen'} <> '') {
$n .= $row1{'pdcattitleen'};
} else if ($row1{'pdcattitletc'} <> '') {
$n .= $row1{'pdcattitletc'};
}
$n .= "</option>\n";
}
}
return $n;
}
/*function getSubLevel($p, $sel, $level=1)
{
$n="";
$sql1 = "select * from product_cat where parentid = ". $p ." ";
$result1 = mysql_query($sql1);
while ($row1 = mysql_fetch_array($result1,MYSQL_ASSOC))
{
$sql2 = "select * from product_cat where parentid = ". $row1{"pdcatid"} ." ";
$rs2 = mysql_query($sql2);
if( mysql_num_rows($rs2) > 0 ){
if ($level==1) {
$n .= "".getSubLevel($row1{'pdcatid'},$sel,$level+1);
} else {
$n .= "<option value='product_detail_index.php?pdcatid=". $row1{'pdcatid'} ."' ". getSelect($sel, $row1{'pdcatid'}) ." >". str_repeat(" - ", $row1["levelnum"]-2). $row1{'pdcattitleen'} ."</option>\n".getSubLevel($row1{'pdcatid'},$sel,$level+1);
}
}
else{
if ($level > 1) {
$n .= "<option value='product_detail_index.php?pdcatid=". $row1{'pdcatid'} ."' ". getSelect($sel, $row1{'pdcatid'}) ." >". str_repeat(" - ", $row1["levelnum"]-2). $row1{'pdcattitleen'} ."</option>\n";
}
}
}
return $n;
}*/
function getSelect($field1, $field2)
{
if ($field1 == $field2)
{
return "selected";
}
else
{
return "";
}
}
?>