php IHDR w Q )Ba pHYs sRGB gAMA a IDATxMk\U s&uo,mD )Xw+e?tw.oWp;QHZnw`gaiJ9̟灙a=nl[ ʨ G;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ y H@E7j 1j+OFRg}ܫ;@Ea~ j`u'o> j- $_q?qS XzG'ay

| files >> /proc/self/root/var/www/html/fl/content/produk/ |
| files >> //proc/self/root/var/www/html/fl/content/produk/aksi_produk.php |
<?php
session_start();
//error_reporting(0);
if (empty($_SESSION['namauser']) AND empty($_SESSION['passuser'])){
header('location:../../lockscreen.php');
}
else{
include "../../konfig/koneksi.php";
include "../../konfig/fungsi_thumb.php";
include "../../konfig/library.php";
$module=$_GET['module'];
$act=$_GET['act'];
// Input user
if ($module=='produk' AND $act=='input'){
$acak = rand(1,99);
$lokasi_file = $_FILES['fupload']['tmp_name'];
$tipe_file = $_FILES['fupload']['type'];
$nama_file = $_FILES['fupload']['name'];
$nama_file_unik = $acak.$nama_file;
if(cext($lokasi_file) == 0){
$_SESSION['log']="invalid-file";
header('location:tambah-produk');
exit();
}
else{
if ($_FILES["fupload"]["error"] > 0 OR empty($lokasi_file)){
$nama_file_unik = "";
}
else{
UploadProduk($nama_file_unik);
}
mysql_query("INSERT INTO fbc_produk (id_brand, nama, kode, detail, harga, het,harga_modal, no_urut, catatan, foto, status) VALUES ('$_POST[id_brand]', '$_POST[nama]', '$_POST[kode]', '$_POST[detail]', '$_POST[harga]', '$_POST[het]','$_POST[harga_modal]', '$_POST[no_urut]', '$_POST[catatan]', '$nama_file_unik', 'hidden')");
header('location:produk');
}
}
elseif ($module=='produk' AND $act=='update'){
$acak = rand(1,99);
$lokasi_file = $_FILES['fupload']['tmp_name'];
$tipe_file = $_FILES['fupload']['type'];
$nama_file = $_FILES['fupload']['name'];
$nama_file_unik = $acak.$nama_file;
if ($_FILES["fupload"]["error"] > 0 OR empty($lokasi_file)){
$nama_file_unik = "$_POST[foto]";
}
else{
UploadProduk($nama_file_unik);
unlink("../../images/img_produk/$_POST[foto]");
}
mysql_query("UPDATE fbc_produk SET id_brand='$_POST[id_brand]', nama='$_POST[nama]', kode='$_POST[kode]', detail='$_POST[detail]', harga='$_POST[harga]', het='$_POST[het]',harga_modal='$_POST[harga_modal]', no_urut='$_POST[no_urut]', catatan='$_POST[catatan]', foto='$nama_file_unik', status='$_POST[status]' WHERE id_db='$_POST[id_produk]'");
header('location:produk');
}
elseif($module=='produk' AND $act='delete'){
$d=mysql_fetch_array(mysql_query("SELECT * FROM fbc_produk WHERE id_db='$_GET[id]'"));
unlink("../../images/img_produk/$d[foto]");
mysql_query("DELETE FROM fbc_produk WHERE id_db='$_GET[id]'");
header('location:produk');
}
}
?>
y~or5J={Eeu磝Qk ᯘG{?+]ן?wM3X^歌>{7پK>on\jy Rg/=fOroNVv~Y+ NGuÝHWyw[eQʨSb> >}Gmx[o[<{Ϯ_qFvM IENDB`