File manager - Edit - /home/autoph/public_html/connect/home/PRF_UPLOADCANVASSFILE.php
Back
<?php include 'core/database/connect.php'; //$connect_error = 'Sorry, we\'re experiencing connection problem. Please try again later... Thank you!'; //mysql_connect('localhost','root','aee1024') or die ($connect_error); //mysql_select_db('db_vts') or die($connect_error); $myDate = date_create() ->format("Y-m-d"); error_reporting(1); //########################################################################## // ITEXMO SEND SMS API - PHP - CURL-LESS METHOD // Visit www.itexmo.com/developers.php for more info about this API //########################################################################## //$MyAPIcode = "TR-AUTOH331398_2V9R5"; //$MyPasswd = "36k)y3(915"; function itexmo($number,$message,$MyAPIcode,$MyPasswd){ $url = 'https://www.itexmo.com/php_api/api.php'; $itexmo = array('1' => $number, '2' => $message, '3' => $MyAPIcode, 'passwd' => $MyPasswd ); $param = array( 'http' => array( 'header' => "Content-type: application/x-www-form-urlencoded\r\n", 'method' => 'POST', 'content' => http_build_query($itexmo), ), ); $context = stream_context_create($param); return file_get_contents($url, false, $context); } //########################################################################## //########################################################################## $chkAttachment = $_FILES['file']; if(empty($chkAttachment)){ echo '<script>alert("ERROR: No file yas been selected.")</script>'; exit(); } if ( $_FILES['file']['error'] > 0 ){ echo 'Error: ' . $_FILES['file']['error'] . '<br>'; } else { $myFile =$_FILES['file']['name']; $fileEx =Explode(".", $myFile); $fileName = md5($fileEx[0]); $fileExt = $fileEx[1]; $myFilePath = $fileName .".".$fileExt; $canvassCode = mysql_escape_string($_POST['canvassCode']); $myNotes = mysql_escape_string($_POST['myNotes']); $userActiveID = mysql_escape_string($_POST['userActiveID']); $validityDate = mysql_escape_string($_POST['validityDate']); $vendorID = mysql_escape_string($_POST['vendorCode']); $vendorCode =mysql_result(mysql_query("SELECT `sup_code` FROM `prf_suppliers` WHERE `id`='$vendorID'"),0); $vendorName =mysql_result(mysql_query("SELECT `sup_name` FROM `prf_suppliers` WHERE `id`='$vendorID'"),0); $fullPath = $canvassCode . '_cv_' . $mySelFile; if(move_uploaded_file($_FILES['file']['tmp_name'], 'FILES/canvass/' .$myFilePath)) { echo '<script>alert("Upload complete.")</script>'; } } $FileLink = $myFilePath; //mysql_query("INSERT INTO prf_uploadedcanvass(ref_code,date_added,vendor_code,file_code,uploaded_by,validity_date,notes) VALUES('$canvassCode',$myDate','$vendorCode','$fullPath','$userActiveID','$validityDate','$myNotes')"); mysql_query("INSERT INTO prf_uploadedcanvass(ref_code,date_added,vendor_code,vendor_id,file_code,uploaded_by,validity_date,notes,vendor_name) VALUES('{$canvassCode}','{$myDate}','{$vendorCode}','{$vendorID}','{$FileLink}','{$userActiveID}','{$validityDate}','{$myNotes}','{$vendorName}')"); //mysql_query("UPDATE `cl_clearance_header` SET `cl_h_hr_approval`='CHECK CREATION',`cl_lastpay_check_request_date`='$myDate',`cl_second_wave`='CHECK CREATION',`cl_check_request_attachment`='$FileLink' WHERE `h_id`='$clearanceID'"); ?> <div style='width:100%;height:33px;background:white'> <table> <thead> <th style='width:5%'>REC. NO</th> <th style='width:7%'>REF. CODE</th> <th style='width:7%'>DATE ADDED</th> <th style='width:8%'>VENDOR CODE</th> <th style='width:34%'>VENDOR NAME</th> <th style='width:10%'>VALIDITY DATE</th> <th style='width:15%'>UPLAODED BY</th> <th style='width:5%'>FILE</th> </thead> </table> </div> <div class='PRFTableItems'> <table> <?php $getItemHdr = mysql_query("SELECT * FROM `prf_uploadedcanvass` WHERE `deleted`= 0 AND `validity_date` > '$myDate' ORDER BY id DESC"); //$getItemHdr = mysql_query("SELECT * FROM `prf_uploadedcanvass` WHERE `deleted`= 0 AND `validity_date` > '$validityDate' ORDER BY id DESC"); while($row=mysql_fetch_array($getItemHdr)){ $uploadedBy=$row['uploaded_by']; $vID=$row['vendor_id']; $myVendorName = mysql_result(mysql_query("SELECT sup_name FROM prf_suppliers WHERE id='$vID'"),0); $reqByFName = mysql_result(mysql_query("SELECT u_fname FROM vts_users WHERE u_id='$uploadedBy'"),0); $reqByLName = mysql_result(mysql_query("SELECT u_lname FROM vts_users WHERE u_id='$uploadedBy'"),0); ?><tr onclick="javascript:getInfo(this);" onDblclick="javascript:showCanvassOption(this);" ><?php echo "<td style='width:5%'>".$row['id']."</td>"; echo "<td style='width:7%'>".strtoupper($row['ref_code'])."</td>"; echo "<td style='width:7%'>".strtoupper($row['date_added'])."</td>"; echo "<td style='width:8%;text-align:left'>".strtoupper($row['vendor_code'])."</td>"; echo "<td style='width:34%;text-align:left'>".$myVendorName."</td>"; echo "<td style='width:10%;text-align:left'>".strtoupper($row['validity_date'])."</td>"; echo "<td style='width:15%'>".strtoupper($reqByLName).", ".strtoupper($reqByFName)."</td>"; echo "<td style='width:5%;text-align:center'><a href='https://www.autohub.ph/connect/home/FILES/canvass/".$row['file_code']."' target='_blank'>View</a></td>"; echo "</tr>"; } ?> <tr><td colspan='9' ><hr style='padding:0px;background:transparent;border:0px;border-bottom:1px solid gray'></td> <tr> <td colspan='3' style='background:white;font-family:Yu Gothic; font-size:13px;color: #f97d43 ;height:20px;font-weight:normal'>Selected Record:</td> <td colspan='6' style='background:white;'> <input type='text' id='selectedPRFHeaderID' class='TableBottomLabel'> </td> </tr> </table> </div>
| ver. 1.4 |
.
| PHP 7.3.33 | Generation time: 0 |
proxy
|
phpinfo
|
Settings