getRand(5); $pageCode = ""; if(isset($_POST['visibility'])) $hiddenVal = 0; else $hiddenVal = 1; $adm1n->dbconnect(); if(isset($_GET['sm'])) $result = $adm1n->qry("SELECT PageCode FROM page WHERE SubmenuCode=".stripslashes($submenu)); else $result = $adm1n->qry("SELECT PageCode FROM page WHERE MenuCode=".stripslashes($menu)); $row = mysql_fetch_array($result); if (mysql_num_rows($result)>0) $pageCode = $row['PageCode']; $adm1n->dbconnect(); if($param=="") { do { $code = $adm1n->getRand(5); $result = $adm1n->qry("SELECT PageObjCode from page_object where PageObjCode=".$code); } while(mysql_num_rows($result)>0); $qry = "INSERT INTO page_object (PageObjCode, Title, Description, PageCode, Hidden) VALUES (".$code.", '".$titleRec."', '".$descRec."', ".$pageCode.", ".$hiddenVal.")"; $insertRec = mysql_query($qry) or die ("Insert error: 1 ".mysql_error()); } else { $code = $param; $qry = "UPDATE page_object SET Title='".$titleRec."', Description='".$descRec."', Hidden=".$hiddenVal." WHERE PageObjCode=".$code; $updateCourse = mysql_query($qry) or die ("Update error: 1 ".mysql_error()); } $adm1n->dbconnect(); $i = 0; if($_POST['linkuri'] != "") foreach($_POST['linkuri'] as $link) { $position=""; switch($_POST['position'][$i]) { case 0: $position="right"; break; case 1: $position="bottom"; break; } $linkName = $link; if ($position=="right") $linkName = "link"; $link_code=""; do { $link_code = $adm1n->getRand(5); $result = $adm1n->qry("SELECT LinkCode from links where LinkCode=".$link_code); } while(mysql_num_rows($result)>0); $qry = "INSERT INTO links (LinkCode, Name, Address, Position, PageObjCode) VALUES (".$link_code.", '".$linkName."', '".$link."', '".$position."', ".$code." )"; $insertLinks = mysql_query($qry) or die ("Insert error: 2 ".mysql_error()); $i++; } $adm1n->dbconnect(); $i = 0; while(list($key,$value) = each($_FILES[upfile][name])) { if(!empty($value)) { $filename = $value; //display echo '- '.$filename.' - Uploading...'; $filename=str_replace(" ","_",$filename); $dir_path = ""; if(isset($_GET['sm'])) { $res_dir = $adm1n->qry("select m.Name, s.SubmenuName from menu_element as m inner join submenu_element as s on m.MenuCode=s.MenuCode where s.SubmenuCode=".$submenu." and m.MenuCode=".$menu); $row_dir = mysql_fetch_array($res_dir); $menuName=str_replace(" ", "_", $row_dir['Name']); $menuSubname=str_replace(" ", "_", $row_dir['SubmenuName']); $dir_path=$menuName."/".$menuSubname."/"; $dir_path = str_replace(" ", "_", $dir_path); if(!file_exists("upload/".$dir_path)) { if(!file_exists("upload/")) { mkdir("upload/"); chmod("upload/", 0777); } if(!file_exists("upload/".$menuName."/")) { mkdir("upload/".$menuName."/"); chmod("upload/".$menuName."/", 0777); } if(!file_exists("upload/".$dir_path)) { mkdir("upload/".$dir_path); chmod("upload/".$dir_path, 0777); } } } else { $res_dir = $adm1n->qry("select Name from menu_element where MenuCode=".$menu); $row_dir = mysql_fetch_array($res_dir); $menuName=str_replace(" ", "_", $row_dir['Name']); $dir_path=$menuName."/"; $dir_path = str_replace(" ", "_", $dir_path); if(!file_exists("upload/".$dir_path)) { if(!file_exists("upload/")) { mkdir("upload/"); chmod("upload/", 0777); } if(!file_exists("upload/".$menuName."/")) { mkdir("upload/".$menuName."/"); chmod("upload/".$menuName."/", 0777); } } } $add = "upload/".$dir_path."$filename"; copy($_FILES[upfile][tmp_name][$key], $add); chmod($add, 0777); //display echo ' - Done...
'; $position=""; switch($_POST['posFile'][$i]) { case 0: $position="right"; break; case 1: $position="bottom"; break; } $file_code=""; do { $file_code = $adm1n->getRand(5); $result = $adm1n->qry("SELECT FileCode from files where FileCode=".$file_code); } while(mysql_num_rows($result)>0); $qry = "INSERT INTO files (FileCode, Name, Address, Position, PageObjCode) VALUES (".$file_code.", '".$filename."', '".$add."', '".$position."', ".$code." )"; $insertFiles = mysql_query($qry) or die ("Insert error: 3 ".mysql_error()); $i++; } } echo ""; ?>