File manager - Edit - /home/autoph/public_html/connect/home/PRF_ATTACHMENT.php
Back
<?php include 'core/database/connect.php'; //$connect_error = 'Sorry, we\'re experiencing connection problem. Please try again later... Thank you!'; //mysql_connect('localhost','root','aee1024') or die ($connect_error); //mysql_select_db('db_vts') or die($connect_error); $myDate = date_create() ->format("Y-m-d"); $ranNum = Rand(10001,900009); error_reporting(1); //########################################################################## // ITEXMO SEND SMS API - PHP - CURL-LESS METHOD // Visit www.itexmo.com/developers.php for more info about this API //########################################################################## //$MyAPIcode = "TR-AUTOH331398_2V9R5"; //$MyPasswd = "36k)y3(915"; function itexmo($number,$message,$MyAPIcode,$MyPasswd){ $url = 'https://www.itexmo.com/php_api/api.php'; $itexmo = array('1' => $number, '2' => $message, '3' => $MyAPIcode, 'passwd' => $MyPasswd ); $param = array( 'http' => array( 'header' => "Content-type: application/x-www-form-urlencoded\r\n", 'method' => 'POST', 'content' => http_build_query($itexmo), ), ); $context = stream_context_create($param); return file_get_contents($url, false, $context); } //########################################################################## //########################################################################## $chkAttachment = $_FILES['file']; if(empty($chkAttachment)){ echo '<script>alert("ERROR: No file yas been selected.")</script>'; exit(); } if ( $_FILES['file']['error'] > 0 ){ echo 'Error: ' . $_FILES['file']['error'] . '<br>'; } else { $myFile =$_FILES['file']['name']; $fileEx =Explode(".", $myFile); $fileName = $fileEx[0]; $fileExt = $fileEx[1]; $PRFReferenceNumberXXX = mysql_escape_string($_POST['PRFReferenceNumber']); $PRFReferenceNumber = str_replace(' ','',$PRFReferenceNumberXXX); $myNotes = mysql_escape_string($_POST['myNotes']); $userActiveID = mysql_escape_string($_POST['userActiveID']); $myFilePath = $ranNum."_".$fileName .".".$fileExt; //$myFilePath = $PRFReferenceNumber."-".$fileName .".".$fileExt; //$validityDate = mysql_escape_string($_POST['validityDate']); //$vendorID = mysql_escape_string($_POST['vendorCode']); //$vendorCode =mysql_result(mysql_query("SELECT `sup_code` FROM `prf_suppliers` WHERE `id`='$vendorID'"),0); //$vendorName =mysql_result(mysql_query("SELECT `sup_name` FROM `prf_suppliers` WHERE `id`='$vendorID'"),0); //$fullPath = $userActiveID . '_prf_' . $mySelFile; if(move_uploaded_file($_FILES['file']['tmp_name'], 'FILES/prfdoc/' .$myFilePath)) { echo '<script>alert("Upload complete.")</script>'; } $FileLink = $myFilePath; //mysql_query("INSERT INTO prf_uploadedcanvass(ref_code,date_added,vendor_code,file_code,uploaded_by,validity_date,notes) VALUES('$canvassCode',$myDate','$vendorCode','$fullPath','$userActiveID','$validityDate','$myNotes')"); $chkAttachmentIfExist = mysql_result(mysql_query("SELECT COUNT(id) FROM `prf_attachment` WHERE `prf_number`='$PRFReferenceNumber' "),0); if($chkAttachmentIfExist == 0){ mysql_query("INSERT INTO prf_attachment(prf_number,date_added,document_name,added_by,notes) VALUES('{$PRFReferenceNumber}','{$myDate}','{$FileLink}','{$userActiveID}','{$myNotes}')"); }else{ mysql_query("UPDATE `prf_attachment` SET `document_name`='$myFilePath' WHERE `prf_number`='$PRFReferenceNumber'"); } echo $FileLink; } ?>
| ver. 1.4 |
.
| PHP 7.3.33 | Generation time: 0 |
proxy
|
phpinfo
|
Settings