Server IP : 103.191.208.50 / Your IP : 216.73.216.53 Web Server : LiteSpeed System : Linux orion.herosite.pro 4.18.0-553.53.1.lve.el8.x86_64 #1 SMP Wed May 28 17:01:02 UTC 2025 x86_64 User : celkcksm ( 1031) PHP Version : 7.4.33 Disable Function : show_source, system, shell_exec, passthru, popen, exec MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : ON Directory (0755) : /home/celkcksm/demo.ncriptech.com/../bmtrust.org.in/admin/ |
[ Home ] | [ C0mmand ] | [ Upload File ] |
---|
<?php include("include/config.php"); include("include/session.php"); $do=mysqli_real_escape_string($con,$_REQUEST['do']); $doid=mysqli_real_escape_string($con,$_REQUEST['doid']); switch($do){ case "ContactUs": $title=mysqli_real_escape_string($con,$_POST['title']); $content=mysqli_real_escape_string($con,$_POST['content']); $q=mysqli_query($con,"insert into contact_us(title,content) values('".$title."','".$content."')"); if($q){ $_SESSION['msg']="Data Added Successfully"; }else{ $_SESSION['msg']="Data Adding failed."; } header("location:contact_us.php"); break; case "EditContactUs": $title=mysqli_real_escape_string($con,$_POST['title']); $content=mysqli_real_escape_string($con,$_POST['content']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $q=mysqli_query($con,"update contact_us set title='".$title."',content='".$content."' where id='".$doid."'"); if($q){ $_SESSION['msg']="Data Updated Successfully"; }else{ $_SESSION['msg']="Data Updated failed."; } header("location:contact_us.php"); break; case "AboutUs": $content=mysqli_real_escape_string($con,$_POST['content']); $image=""; if($_FILES['image']['name']!= NULL){ $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); } $query=mysqli_query($con,"insert into about_us(content,image) values('".$content."','".$image."')"); if($query){ $_SESSION['msg']="Data Added Successfully"; }else{ $_SESSION['msg']="Data Adding failed."; } header("location:about_us.php"); break; case "EditAboutUs": $content=mysqli_real_escape_string($con,$_POST['content']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $image=""; if($_FILES['image']['name']!= NULL){ $image=mysqli_fetch_array(mysqli_query($con,"select image from about_us where id='".$doid."'"))['image']; unlink("images/".$image); $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); $update=mysqli_query($con,"update about_us set image='".$image."' where id='".$doid."'"); } $query=mysqli_query($con,"update about_us set content='".$content."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Data Updated Successfully"; }else{ $_SESSION['msg']="Data Updated failed."; } header("location:about_us.php"); break; case "Chairman": $name=mysqli_real_escape_string($con,$_POST['name']); $qualification=mysqli_real_escape_string($con,$_POST['qualification']); $content=mysqli_real_escape_string($con,$_POST['content']); $image=""; if($_FILES['image']['name']!= NULL){ $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); } $query=mysqli_query($con,"insert into chairman(name,qualification,content,image) values('".$name."','".$qualification."','".$content."','".$image."')"); if($query){ $_SESSION['msg']="Chairman Added Successfully"; }else{ $_SESSION['msg']="Chairman Adding failed."; } header("location:chairman.php"); break; case "EditChairman": $name=mysqli_real_escape_string($con,$_POST['name']); $qualification=mysqli_real_escape_string($con,$_POST['qualification']); $content=mysqli_real_escape_string($con,$_POST['content']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $image=""; if($_FILES['image']['name']!= NULL){ $image=mysqli_fetch_array(mysqli_query($con,"select image from chairman where id='".$doid."'"))['image']; unlink("images/".$image); $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); $update=mysqli_query($con,"update chairman set image='".$image."' where id='".$doid."'"); } $query=mysqli_query($con,"update chairman set name='".$name."',qualification='".$qualification."',content='".$content."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Chairman Updated Successfully"; }else{ $_SESSION['msg']="Chairman Updated failed."; } header("location:chairman.php"); break; case "Principal": $name=mysqli_real_escape_string($con,$_POST['name']); $qualification=mysqli_real_escape_string($con,$_POST['qualification']); $content=mysqli_real_escape_string($con,$_POST['content']); $image=""; if($_FILES['image']['name']!= NULL){ $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); } $query=mysqli_query($con,"insert into principal(name,qualification,content,image) values('".$name."','".$qualification."','".$content."','".$image."')"); if($query){ $_SESSION['msg']="Principal Added Successfully"; }else{ $_SESSION['msg']="Principal Adding failed."; } header("location:principal.php"); break; case "EditPrincipal": $name=mysqli_real_escape_string($con,$_POST['name']); $qualification=mysqli_real_escape_string($con,$_POST['qualification']); $content=mysqli_real_escape_string($con,$_POST['content']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $image=""; if($_FILES['image']['name']!= NULL){ $image=mysqli_fetch_array(mysqli_query($con,"select image from principal where id='".$doid."'"))['image']; unlink("images/".$image); $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); $update=mysqli_query($con,"update principal set image='".$image."' where id='".$doid."'"); } $query=mysqli_query($con,"update principal set name='".$name."',qualification='".$qualification."',content='".$content."' where id='".$doid."'"); if($query) { $_SESSION['msg']="Principal Updated Successfully"; }else{ $_SESSION['msg']="Principal Updated failed."; } header("location:principal.php"); break; case "Director": $name=mysqli_real_escape_string($con,$_POST['name']); $qualification=mysqli_real_escape_string($con,$_POST['qualification']); $content=mysqli_real_escape_string($con,$_POST['content']); $image=""; if($_FILES['image']['name']!= NULL){ $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); } $query=mysqli_query($con,"insert into director(name,qualification,content,image) values('".$name."','".$qualification."','".$content."','".$image."')"); if($query){ $_SESSION['msg']="Director Added Successfully"; }else{ $_SESSION['msg']="Director Adding failed."; } header("location:director.php"); break; case "EditDirector": $name=mysqli_real_escape_string($con,$_POST['name']); $qualification=mysqli_real_escape_string($con,$_POST['qualification']); $content=mysqli_real_escape_string($con,$_POST['content']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $image=""; if($_FILES['image']['name']!= NULL){ $image=mysqli_fetch_array(mysqli_query($con,"select image from director where id='".$doid."'"))['image']; unlink("images/".$image); $image = time().'_'.$_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'],"images/".$image); $update=mysqli_query($con,"update director set image='".$image."' where id='".$doid."'"); } $query=mysqli_query($con,"update director set name='".$name."',qualification='".$qualification."',content='".$content."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Director Updated Successfully"; }else{ $_SESSION['msg']="Director Updated failed."; } header("location:director.php"); break; case "Management": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into management(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Management Added Successfully"; }else{ $_SESSION['msg']="Management Adding failed."; } header("location:management.php"); break; case "EditManagement": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from management where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update management set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update management set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Management Updated Successfully"; }else{ $_SESSION['msg']="Management Updated failed."; } header("location:management.php"); break; case "TeachingStaff": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into teaching_staff(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Teaching Staff Added Successfully"; }else{ $_SESSION['msg']="Teaching Staff Adding failed."; } header("location:teaching_staff.php"); break; case "EditTeachingStaff": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from teaching_staff where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update teaching_staff set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update teaching_staff set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Teaching Staff Updated Successfully"; }else{ $_SESSION['msg']="Teaching Staff Updated failed."; } header("location:teaching_staff.php"); break; case "NonTeachingStaff": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into non_teaching_staff(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Non Teaching Staff Added Successfully"; }else{ $_SESSION['msg']="Non Teaching Staff Adding failed."; } header("location:non_teaching_staff.php"); break; case "EditNonTeachingStaff": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from non_teaching_staff where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update non_teaching_staff set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update non_teaching_staff set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Non Teaching Staff Updated Successfully"; }else{ $_SESSION['msg']="Non Teaching Staff Updated failed."; } header("location:non_teaching_staff.php"); break; case "TechnicalSupportStaff": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into technical_support_staff(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Technical Support Staff Added Successfully"; }else{ $_SESSION['msg']="Technical Support Staff Adding failed."; } header("location:technical_support_staff.php"); break; case "EditTechnicalSupportStaff": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from technical_support_staff where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update technical_support_staff set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update technical_support_staff set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Technical Support Staff Updated Successfully"; }else{ $_SESSION['msg']="Technical Support Staff Updated failed."; } header("location:technical_support_staff.php"); break; case "Documents": $bpharma=""; if($_FILES['bpharma']['name']!= NULL){ $bpharma = time().'_'.$_FILES['bpharma']['name']; move_uploaded_file($_FILES['bpharma']['tmp_name'],"images/".$bpharma); } $dpharma=""; if($_FILES['dpharma']['name']!= NULL){ $dpharma = time().'_'.$_FILES['dpharma']['name']; move_uploaded_file($_FILES['dpharma']['tmp_name'],"images/".$dpharma); } $query=mysqli_query($con,"insert into documents(bpharma,dpharma) values('".$bpharma."','".$dpharma."')"); if($query){ $_SESSION['msg']="Documents Added Successfully"; }else{ $_SESSION['msg']="Documents Adding failed."; } header("location:documents.php"); break; case "EditDocuments": $doid=mysqli_real_escape_string($con,$_POST['doid']); $bpharma=""; if($_FILES['bpharma']['name']!= NULL){ $bpharma=mysqli_fetch_array(mysqli_query($con,"select bpharma from documents where id='".$doid."'"))['bpharma']; unlink("images/".$bpharma); $bpharma = time().'_'.$_FILES['bpharma']['name']; move_uploaded_file($_FILES['bpharma']['tmp_name'],"images/".$bpharma); $update=mysqli_query($con,"update documents set bpharma='".$bpharma."' where id='".$doid."'"); } $dpharma=""; if($_FILES['dpharma']['name']!= NULL){ $dpharma=mysqli_fetch_array(mysqli_query($con,"select dpharma from documents where id='".$doid."'"))['dpharma']; unlink("images/".$dpharma); $dpharma = time().'_'.$_FILES['dpharma']['name']; move_uploaded_file($_FILES['dpharma']['tmp_name'],"images/".$dpharma); $update=mysqli_query($con,"update documents set dpharma='".$dpharma."' where id='".$doid."'"); } if($query){ $_SESSION['msg']="Documents Updated Successfully"; }else{ $_SESSION['msg']="Documents Updated failed."; } header("location:documents.php"); break; case "StudentList": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into student_list(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Student List Added Successfully"; }else{ $_SESSION['msg']="Student List Staff Adding failed."; } header("location:student_list.php"); break; case "EditStudentList": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from student_list where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update student_list set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update student_list set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Student List Updated Successfully"; }else{ $_SESSION['msg']="Student List Updated failed."; } header("location:student_list.php"); break; case "AcademicCalendar": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into academic_calendar(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Academic Calendar Added Successfully"; }else{ $_SESSION['msg']="Academic Calendar Adding failed."; } header("location:academic_calendar.php"); break; case "EditAcademicCalendar": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from academic_calendar where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update academic_calendar set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update academic_calendar set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Academic Calendar Updated Successfully"; }else{ $_SESSION['msg']="Academic Calendar Updated failed."; } header("location:academic_calendar.php"); break; case "Gallery": $name=mysqli_real_escape_string($con,$_POST['name']); $query=mysqli_query($con,"insert into gallery(name) values('".$name."')"); if($query){ $_SESSION['msg']="Gallery Name Added Successfully"; }else{ $_SESSION['msg']="Failed to add Gallery Name"; } header("location:gallery.php"); break; case "EditGallery": $name=mysqli_real_escape_string($con,$_POST['name']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $query=mysqli_query($con,"update gallery set name='".$name."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Gallery Name Updated Successfully"; }else{ $_SESSION['msg']="Failed to Update Gallery Name"; } header("location:gallery.php"); break; case "ImageofGallery" : $gallery_id=mysqli_escape_string($con,$_REQUEST['gallery_id']); $allowed=true; $allowedFileType = ['image/*']; for($i=0;$i<count($_FILES['image']['name']);$i++){ if(in_array($_FILES["image"]["type"][$i],$allowedFileType)){ $allowed=false; } } if($allowed){ // $q=mysqli_query($con,"insert into image_of_gallery (gallery_id,image) values ('$gallery_id','$name')"); // $gallery_id=$con->insert_id; for($i=0;$i<count($_FILES['image']['name']);$i++){ $image=""; if($_FILES['image']['name'][$i]!= NULL){ $image = time().'_'.$_FILES['image']['name'][$i]; move_uploaded_file($_FILES['image']['tmp_name'][$i],"images/".$image); } $q=mysqli_query($con,"insert into image_of_gallery (gallery_id,image) values ('$gallery_id','$image')"); } if($q){ $_SESSION['msg']="Images Added Successfully"; }else{ $_SESSION['msg']="Images Adding failed $gallery_id !"; } }else{ $_SESSION['msg']="Invalid file, Upload a valid Image file"; } header("location:image_of_gallery.php"); break; case "News": $content=mysqli_real_escape_string($con,$_POST['content']); $date=mysqli_real_escape_string($con,$_POST['date']); $subject=mysqli_real_escape_string($con,$_POST['subject']); $query=mysqli_query($con,"insert into news(content,date,subject) values('".$content."','".$date."','".$subject."')"); if($query){ $_SESSION['msg']="News Added Successfully"; }else{ $_SESSION['msg']="News Adding failed."; } header("location:news.php"); break; case "EditNews": $content=mysqli_real_escape_string($con,$_POST['content']); $date=mysqli_real_escape_string($con,$_POST['date']); $subject=mysqli_real_escape_string($con,$_POST['subject']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $query=mysqli_query($con,"update news set content='".$content."',date='".$date."',subject='".$subject."' where id='".$doid."'"); if($query){ $_SESSION['msg']="News Updated Successfully"; }else{ $_SESSION['msg']="News Updated failed."; } header("location:news.php"); break; case "Affidavit": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into affidavit(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Affidavit Added Successfully"; }else{ $_SESSION['msg']="Affidavit Adding failed."; } header("location:affidavit.php"); break; case "EditAffidavit": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from affidavit where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update affidavit set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update affidavit set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Affidavit Updated Successfully"; }else{ $_SESSION['msg']="Affidavit Updated failed."; } header("location:affidavit.php"); break; case "Mandatory_disclosure": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into mandatory_disclosure(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Mandatory_disclosure Added Successfully"; }else{ $_SESSION['msg']="Mandatory_disclosure Adding failed."; } header("location:mandatory_disclosure.php"); break; case "EditMandatory_disclosure": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from mandatory_disclosure where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update mandatory_disclosure set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update mandatory_disclosure set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Mandatory_disclosure Updated Successfully"; }else{ $_SESSION['msg']="Mandatory_disclosure Updated failed."; } header("location:mandatory_disclosure.php"); break; case "Balance_sheet": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into balance_sheet(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Balance_sheet Added Successfully"; }else{ $_SESSION['msg']="Balance_sheet Adding failed."; } header("location:balance_sheet.php"); break; case "EditBalance_sheet": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from balance_sheet where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update balance_sheet set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update balance_sheet set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Balance_sheet Updated Successfully"; }else{ $_SESSION['msg']="Balance_sheet Updated failed."; } header("location:balance_sheet.php"); break; case "Income_and_expense": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into income_and_expense(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Income_and_expense Added Successfully"; }else{ $_SESSION['msg']="Income_and_expense Adding failed."; } header("location:income_and_expense.php"); break; case "EditIncome_and_expense": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from income_and_expense where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update income_and_expense set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update income_and_expense set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Income_and_expense Updated Successfully"; }else{ $_SESSION['msg']="Income_and_expense Updated failed."; } header("location:income_and_expense.php"); break; case "Receipt_and_payment": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into receipt_and_payment(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Receipt_and_payment Added Successfully"; }else{ $_SESSION['msg']="Receipt_and_payment Adding failed."; } header("location:receipt_and_payment.php"); break; case "EditReceipt_and_payment": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from receipt_and_payment where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update receipt_and_payment set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update receipt_and_payment set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Receipt_and_payment Updated Successfully"; }else{ $_SESSION['msg']="Receipt_and_payment Updated failed."; } header("location:receipt_and_payment.php"); break; case "Teacher_attendance": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into teacher_attendance(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Teacher_attendance Added Successfully"; }else{ $_SESSION['msg']="Teacher_attendance Adding failed."; } header("location:teacher_attendance.php"); break; case "EditTeacher_attendance": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from teacher_attendance where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update teacher_attendance set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update teacher_attendance set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Teacher_attendance Updated Successfully"; }else{ $_SESSION['msg']="Teacher_attendance Updated failed."; } header("location:teacher_attendance.php"); break; case "Student_attendance": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into student_attendance(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Student_attendance Added Successfully"; }else{ $_SESSION['msg']="Student_attendance Adding failed."; } header("location:student_attendance.php"); break; case "EditStudent_attendance": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from student_attendance where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update student_attendance set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update student_attendance set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Student_attendance Updated Successfully"; }else{ $_SESSION['msg']="Student_attendance Updated failed."; } header("location:student_attendance.php"); break; case "Infrastructure": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into infrastructure(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Infrastructure Added Successfully"; }else{ $_SESSION['msg']="Infrastructure Adding failed."; } header("location:infrastructure.php"); break; case "EditInfrastructure": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from infrastructure where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update infrastructure set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update infrastructure set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Infrastructure Updated Successfully"; }else{ $_SESSION['msg']="Infrastructure Updated failed."; } header("location:infrastructure.php"); break; case "Library": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into library(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Library Added Successfully"; }else{ $_SESSION['msg']="Library Adding failed."; } header("location:library.php"); break; case "EditLibrary": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from library where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update library set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update library set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Library Updated Successfully"; }else{ $_SESSION['msg']="Library Updated failed."; } header("location:library.php"); break; case "Fee_structure": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into fee_structure(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Fee_structure Added Successfully"; }else{ $_SESSION['msg']="Fee_structure Adding failed."; } header("location:fee_structure.php"); break; case "EditFee_structure": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from fee_structure where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update fee_structure set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update fee_structure set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Fee_structure Updated Successfully"; }else{ $_SESSION['msg']="Fee_structure Updated failed."; } header("location:fee_structure.php"); break; case "Lab": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into lab(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Lab Added Successfully"; }else{ $_SESSION['msg']="Lab Adding failed."; } header("location:lab.php"); break; case "EditLab": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from lab where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update lab set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update lab set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Lab Updated Successfully"; }else{ $_SESSION['msg']="Lab Updated failed."; } header("location:lab.php"); break; case "Course": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into course(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Course Added Successfully"; }else{ $_SESSION['msg']="Course Adding failed."; } header("location:course.php"); break; case "EditCourse": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from course where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update course set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update course set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Course Updated Successfully"; }else{ $_SESSION['msg']="Course Updated failed."; } header("location:course.php"); break; case "Query": $name=mysqli_real_escape_string($con,$_POST['name']); $email=mysqli_real_escape_string($con,$_POST['email']); $mobile=mysqli_real_escape_string($con,$_POST['mobile']); $subject=mysqli_real_escape_string($con,$_POST['subject']); $message=mysqli_real_escape_string($con,$_POST['message']); $q=mysqli_query($con,"insert into query (name,email,mobile,subject,message) values ('$name','$email','$mobile','$subject','$message')"); if($q){ $_SESSION['msg']="Data Inserted"; }else{ $_SESSION['msg']="Data Insertion Failed"; } if($_REQUEST['red']=="us"){ $x=""; if( isset($_SERVER["HTTPS"])) $x=s; header("location:http$x://".$_SERVER['HTTP_HOST']); }else{ header("location:query.php"); } break; case "CrudSample2": $name=mysqli_real_escape_string($con,$_POST['name']); $email=mysqli_real_escape_string($con,$_POST['email']); $mobile=mysqli_real_escape_string($con,$_POST['mobile']); $city=mysqli_real_escape_string($con,$_POST['city']); $q=mysqli_query($con,"insert into crud_sample2 (name,email,mobile,city) values ('$name','$email','$mobile','$city')"); if($q){ $_SESSION['msg']="Data Inserted"; }else{ $_SESSION['msg']="Data Insertion Failed"; } header("location:crud_sample2_report.php"); break; case "EditCrudSample2": $name=mysqli_real_escape_string($con,$_POST['name']); $email=mysqli_real_escape_string($con,$_POST['email']); $mobile=mysqli_real_escape_string($con,$_POST['mobile']); $city=mysqli_real_escape_string($con,$_POST['city']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $q=mysqli_query($con,"update crud_sample2 set name='$name',email='$email',mobile='$mobile',city='$city' where id=$doid"); if($q){ $_SESSION['msg']="Data Updated"; }else{ $_SESSION['msg']="Data Update Failed"; } header("location:crud_sample2_report.php"); break; case "Admin": $name=mysqli_real_escape_string($con,$_POST['name']); $username=mysqli_real_escape_string($con,$_POST['username']); $mobile=mysqli_real_escape_string($con,$_POST['mobile']); $email=mysqli_real_escape_string($con,$_POST['email']); $password=mysqli_real_escape_string($con,$_POST['password']); $q=mysqli_query($con,"insert into admin (name,username,mobile,email,password) values ('$name','$username','$mobile','$email','$password')"); if($q){ $_SESSION['msg']="Data Inserted"; }else{ $_SESSION['msg']="Data Insertion Failed"; } header("location:admin.php"); break; case "EditAdmin": $name=mysqli_real_escape_string($con,$_POST['name']); $username=mysqli_real_escape_string($con,$_POST['username']); $mobile=mysqli_real_escape_string($con,$_POST['mobile']); $email=mysqli_real_escape_string($con,$_POST['email']); $password=mysqli_real_escape_string($con,$_POST['password']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $q=mysqli_query($con,"update admin set name='$name',username='$username',mobile='$mobile',email='$email',password='$password' where id=$doid"); if($q){ $_SESSION['msg']="Data Updated"; }else{ $_SESSION['msg']="Data Update Failed"; } header("location:admin.php"); break; case "Information": $facebook=mysqli_real_escape_string($con,$_POST['facebook']); $twitter=mysqli_real_escape_string($con,$_POST['twitter']); $instagram=mysqli_real_escape_string($con,$_POST['instagram']); $pinterest=mysqli_real_escape_string($con,$_POST['pinterest']); $youtube=mysqli_real_escape_string($con,$_POST['youtube']); $name=mysqli_real_escape_string($con,$_POST['name']); $address_line_1=mysqli_real_escape_string($con,$_POST['address_line_1']); $address_line_2=mysqli_real_escape_string($con,$_POST['address_line_2']); $mobile=mysqli_real_escape_string($con,$_POST['mobile']); $email=mysqli_real_escape_string($con,$_POST['email']); $map=mysqli_real_escape_string($con,$_POST['map']); $header_logo = ""; if (($_FILES['header_logo']['name'] != NULL) && (strpos(strtolower($_FILES["header_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["header_logo"]["name"]), '.js') == null)) { $header_logo = time() . '_' . $_FILES['header_logo']['name']; move_uploaded_file($_FILES['header_logo']['tmp_name'], "images/" . $header_logo); } $footer_logo = ""; if (($_FILES['footer_logo']['name'] != NULL) && (strpos(strtolower($_FILES["footer_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["footer_logo"]["name"]), '.js') == null)) { $footer_logo = time() . '_' . $_FILES['footer_logo']['name']; move_uploaded_file($_FILES['footer_logo']['tmp_name'], "images/" . $footer_logo); } $mobile_logo = ""; if (($_FILES['mobile_logo']['name'] != NULL) && (strpos(strtolower($_FILES["mobile_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["mobile_logo"]["name"]), '.js') == null)) { $mobile_logo = time() . '_' . $_FILES['mobile_logo']['name']; move_uploaded_file($_FILES['mobile_logo']['tmp_name'], "images/" . $mobile_logo); } $footer_mobile_logo = ""; if (($_FILES['footer_mobile_logo']['name'] != NULL) && (strpos(strtolower($_FILES["footer_mobile_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["footer_mobile_logo"]["name"]), '.js') == null)) { $footer_mobile_logo = time() . '_' . $_FILES['footer_mobile_logo']['name']; move_uploaded_file($_FILES['footer_mobile_logo']['tmp_name'], "images/" . $footer_mobile_logo); } $favicon = ""; if (($_FILES['favicon']['name'] != NULL) && (strpos(strtolower($_FILES["favicon"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["favicon"]["name"]), '.js') == null)) { $favicon = time() . '_' . $_FILES['favicon']['name']; move_uploaded_file($_FILES['favicon']['tmp_name'], "images/" . $favicon); } $bg = ""; if (($_FILES['bg']['name'] != NULL) && (strpos(strtolower($_FILES["bg"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["bg"]["name"]), '.js') == null)) { $bg = time() . '_' . $_FILES['bg']['name']; move_uploaded_file($_FILES['bg']['tmp_name'], "images/" . $bg); } $q=mysqli_query($con,"insert into information (facebook,twitter,instagram,pinterest,youtube,name,header_logo,footer_logo, mobile_logo,footer_mobile_logo,favicon,footer_lines,address_line_1,address_line_2,mobile,email,map,bg) values ('$facebook','$twitter','$instagram','$pinterest','$youtube','$name','$header_logo','$footer_logo','$mobile_logo', '$footer_mobile_logo',$favicon','$footer_lines','$address_line_1','$address_line_2','$mobile','$email','$map','$bg')"); if($q){ $_SESSION['msg']="Data Inserted"; }else{ $_SESSION['msg']="Data Insertion Failed"; } header("location:information.php"); break; case "EditInformation": $facebook=mysqli_real_escape_string($con,$_POST['facebook']); $twitter=mysqli_real_escape_string($con,$_POST['twitter']); $instagram=mysqli_real_escape_string($con,$_POST['instagram']); $pinterest=mysqli_real_escape_string($con,$_POST['pinterest']); $youtube=mysqli_real_escape_string($con,$_POST['youtube']); $name=mysqli_real_escape_string($con,$_POST['name']); $address_line_1=mysqli_real_escape_string($con,$_POST['address_line_1']); $address_line_2=mysqli_real_escape_string($con,$_POST['address_line_2']); $mobile=mysqli_real_escape_string($con,$_POST['mobile']); $email=mysqli_real_escape_string($con,$_POST['email']); $map=mysqli_real_escape_string($con,$_POST['map']); $doid=mysqli_real_escape_string($con,$_POST['doid']); if (($_FILES['header_logo']['name'] != NULL) && (strpos(strtolower($_FILES["header_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["header_logo"]["name"]), '.js') == null)) { $header_logo = mysqli_fetch_array(mysqli_query($con,"select header_logo from events where id=" . (int)$doid)) ['header_logo']; unlink("images/" . $header_logo); $header_logo = time() . '_' . $_FILES['header_logo']['name']; move_uploaded_file($_FILES['header_logo']['tmp_name'], "images/" . $header_logo); mysqli_query($con, "update information set header_logo='" . $header_logo . "' where id='" . $doid . "'"); } if (($_FILES['footer_logo']['name'] != NULL) && (strpos(strtolower($_FILES["footer_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["footer_logo"]["name"]), '.js') == null)) { $footer_logo = mysqli_fetch_array(mysqli_query($con,"select footer_logo from information where id=" . (int)$doid)) ['footer_logo']; unlink("images/" . $footer_logo); $footer_logo = time() . '_' . $_FILES['footer_logo']['name']; move_uploaded_file($_FILES['footer_logo']['tmp_name'], "images/" . $footer_logo); mysqli_query($con, "update information set footer_logo='" . $footer_logo . "' where id='" . $doid . "'"); } if (($_FILES['mobile_logo']['name'] != NULL) && (strpos(strtolower($_FILES["mobile_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["mobile_logo"]["name"]), '.js') == null)) { $mobile_logo = mysqli_fetch_array(mysqli_query($con,"select mobile_logo from information where id=" . (int)$doid)) ['mobile_logo']; unlink("images/" . $mobile_logo); $mobile_logo = time() . '_' . $_FILES['mobile_logo']['name']; move_uploaded_file($_FILES['mobile_logo']['tmp_name'], "images/" . $mobile_logo); mysqli_query($con, "update information set mobile_logo='" . $mobile_logo . "' where id='" . $doid . "'"); } if (($_FILES['footer_mobile_logo']['name'] != NULL) && (strpos(strtolower($_FILES["footer_mobile_logo"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["footer_mobile_logo"]["name"]), '.js') == null)) { $footer_mobile_logo = mysqli_fetch_array(mysqli_query($con,"select footer_mobile_logo from information where id=" . (int)$doid)) ['footer_mobile_logo']; unlink("images/" . $footer_mobile_logo); $footer_mobile_logo = time() . '_' . $_FILES['footer_mobile_logo']['name']; move_uploaded_file($_FILES['footer_mobile_logo']['tmp_name'], "images/" . $footer_mobile_logo); mysqli_query($con, "update information set footer_mobile_logo='" . $footer_mobile_logo . "' where id='" . $doid . "'"); } if (($_FILES['favicon']['name'] != NULL) && (strpos(strtolower($_FILES["favicon"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["favicon"]["name"]), '.js') == null)) { $favicon = mysqli_fetch_array(mysqli_query($con,"select favicon from information where id=" . (int)$doid)) ['favicon']; unlink("images/" . $favicon); $favicon = time() . '_' . $_FILES['favicon']['name']; move_uploaded_file($_FILES['favicon']['tmp_name'], "images/" . $favicon); mysqli_query($con, "update information set favicon='" . $favicon . "' where id='" . $doid . "'"); } if (($_FILES['bg']['name'] != NULL) && (strpos(strtolower($_FILES["bg"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["bg"]["name"]), '.js') == null)) { // $bg = mysqli_fetch_array(mysqli_query($con,"select bg from information where id=" . (int)$doid)) ['bg']; // if(!empty($bg)) // unlink("images/".$bg); $bg = time() . '_' . $_FILES['bg']['name']; move_uploaded_file($_FILES['bg']['tmp_name'], "images/" . $bg); mysqli_query($con, "update information set bg='" . $bg . "' where id='" . $doid . "'"); } $q=mysqli_query($con,"update information set facebook='$facebook',twitter='$twitter',instagram='$instagram',pinterest='$pinterest',youtube='$youtube', name='$name',address_line_1='$address_line_1',address_line_2='$address_line_2', mobile='$mobile',email='$email',map='$map' where id=$doid"); if($q){ $_SESSION['msg']="Data Updated"; }else{ $_SESSION['msg']="Data Update Failed"; } header("location:information.php?upid=$doid"); break; case "Slider": $image = ""; if (($_FILES['image']['name'] != NULL) && (strpos(strtolower($_FILES["image"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["image"]["name"]), '.js') == null)) { $image = time() . '_' . $_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'], "images/" . $image); } $mobile_image = ""; if (($_FILES['mobile_image']['name'] != NULL) && (strpos(strtolower($_FILES["mobile_image"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["mobile_image"]["name"]), '.js') == null)) { $mobile_image = time() . '_' . $_FILES['mobile_image']['name']; move_uploaded_file($_FILES['mobile_image']['tmp_name'], "images/" . $mobile_image); } $q=mysqli_query($con,"insert into slider (image,mobile_image) values ('$image','$mobile_image')"); if($q){ $_SESSION['msg']="Data Inserted"; }else{ $_SESSION['msg']="Data Insertion Failed"; } header("location:slider.php"); break; case "EditSlider": $doid=mysqli_real_escape_string($con,$_REQUEST['doid']); if (($_FILES['image']['name'] != NULL) && (strpos(strtolower($_FILES["image"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["image"]["name"]), '.js') == null)) { $image=mysqli_fetch_array(mysqli_query($con,"select image from slider where id=$doid"))['image']; if(!empty($image)){ unlink("images/$image"); } $image = time() . '_' . $_FILES['image']['name']; move_uploaded_file($_FILES['image']['tmp_name'], "images/" . $image); $q=mysqli_query($con,"update slider set image='$image' where id=$doid"); } if (($_FILES['mobile_image']['name'] != NULL) && (strpos(strtolower($_FILES["mobile_image"]["name"]), '.php') == null) && (strpos(strtolower($_FILES["mobile_image"]["name"]), '.js') == null)) { $mobile_image=mysqli_fetch_array(mysqli_query($con,"select mobile_image from slider where id=$doid"))['mobile_image']; if(!empty($mobile_image)){ unlink("images/$mobile_image"); } $mobile_image = time() . '_' . $_FILES['mobile_image']['name']; move_uploaded_file($_FILES['mobile_image']['tmp_name'], "images/" . $mobile_image); $q=mysqli_query($con,"update slider set mobile_image='$mobile_image' where id=$doid"); } if($q){ $_SESSION['msg']="Data Inserted"; }else{ $_SESSION['msg']="Data Insertion Failed"; } header("location:slider.php"); break; case "Download_area": $title=mysqli_real_escape_string($con,$_POST['title']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into download_area (title,pdf) values('".$title."','".$pdf."')"); if($query){ $_SESSION['msg']="Download Area Added Successfully"; }else{ $_SESSION['msg']="Download Area Adding failed."; } header("location:download_area.php"); break; case "EditDownload_area": $title=mysqli_real_escape_string($con,$_POST['title']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from download_area where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update download_area set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update download_area set title='".$title."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Download Area Updated Successfully"; }else{ $_SESSION['msg']="Download Area Updated failed."; } header("location:download_area.php"); break; case "Time": $mon_fri=mysqli_real_escape_string($con,$_POST['mon_fri']); $sat=mysqli_real_escape_string($con,$_POST['sat']); $sun=mysqli_real_escape_string($con,$_POST['sun']); $query=mysqli_query($con,"insert into time (mon_fri,sat,sun) values('".$mon_fri."','".$sat."','".$sun."')"); if($query){ $_SESSION['msg']="Time Added Successfully"; }else{ $_SESSION['msg']="Time Adding failed."; } header("location:time.php"); break; case "EditTime": $mon_fri=mysqli_real_escape_string($con,$_POST['mon_fri']); $sat=mysqli_real_escape_string($con,$_POST['sat']); $sun=mysqli_real_escape_string($con,$_POST['sun']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $query=mysqli_query($con,"update time set mon_fri='".$mon_fri."',sat='$sat',sun='$sun' where id='".$doid."'"); if($query){ $_SESSION['msg']="Time Updated Successfully"; }else{ $_SESSION['msg']="Time Updated failed."; } header("location:time.php"); break; case "Intake": $course_name=mysqli_real_escape_string($con,$_POST['course_name']); $capacity=mysqli_real_escape_string($con,$_POST['capacity']); $query=mysqli_query($con,"insert into intake (course_name,capacity) values('".$course_name."','".$capacity."')"); if($query){ $_SESSION['msg']="Course Intake Added Successfully"; }else{ $_SESSION['msg']="Course Intake Adding failed."; } header("location:intake.php"); break; case "EditIntake": $course_name=mysqli_real_escape_string($con,$_POST['course_name']); $capacity=mysqli_real_escape_string($con,$_POST['capacity']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $query=mysqli_query($con,"update intake set course_name='".$course_name."',capacity='$capacity' where id='".$doid."'"); if($query){ $_SESSION['msg']="Course Intake Updated Successfully"; }else{ $_SESSION['msg']="Course Intake Updated failed."; } header("location:intake.php"); break; case "Video": $video=mysqli_real_escape_string($con,$_POST['video']); $query=mysqli_query($con,"insert into video (video) values('$video')"); if($query){ $_SESSION['msg']="Video Added Successfully"; }else{ $_SESSION['msg']="Video Adding failed."; } header("location:video.php"); break; case "EditVideo": $video=mysqli_real_escape_string($con,$_POST['video']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $query=mysqli_query($con,"update video set video='".$video."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Video Updated Successfully"; }else{ $_SESSION['msg']="Video Updating failed."; } header("location:video.php"); break; case "SelfDeclaration": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into self_declaration(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Self Declaration Added Successfully"; }else{ $_SESSION['msg']="Self Declaration Adding failed."; } header("location:self_declaration.php"); break; case "EditSelfDeclaration": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from self_declaration where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update self_declaration set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update self_declaration set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Self Declaration Updated Successfully"; }else{ $_SESSION['msg']="Self Declaration Updated failed."; } header("location:self_declaration.php"); break; case "RecognitionFromNcteDeled": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into recognition_from_ncte_deled(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Recognition From Ncte Deled Added Successfully"; }else{ $_SESSION['msg']="Recognition From Ncte Deled Adding failed."; } header("location:recognition_from_ncte_deled.php"); break; case "EditRecognitionFromNcteDeled": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from recognition_from_ncte_deled where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update recognition_from_ncte_deled set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update recognition_from_ncte_deled set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Recognition From Ncte Deled Updated Successfully"; }else{ $_SESSION['msg']="Recognition From Ncte Deled Updated failed."; } header("location:recognition_from_ncte_deled.php"); break; case "RecognitionFromNcteBed": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into recognition_from_ncte_bed(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Recognition From Ncte Bed Added Successfully"; }else{ $_SESSION['msg']="Recognition From Ncte Bed Adding failed."; } header("location:recognition_from_ncte_bed.php"); break; case "EditRecognitionFromNcteBed": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from recognition_from_ncte_bed where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update recognition_from_ncte_bed set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update recognition_from_ncte_bed set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Recognition From Ncte Bed Updated Successfully"; }else{ $_SESSION['msg']="Recognition From Ncte Bed Updated failed."; } header("location:recognition_from_ncte_bed.php"); break; case "BankFdr": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into bank_fdr(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="Bank FDR Added Successfully"; }else{ $_SESSION['msg']="Bank FDR Adding failed."; } header("location:bank_fdr.php"); break; case "EditBankFdr": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from bank_fdr where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update bank_fdr set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update bank_fdr set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="Bank FDR Updated Successfully"; }else{ $_SESSION['msg']="Bank FDR Updated failed."; } header("location:bank_fdr.php"); break; case "AffiliationFromWbuttepa": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into affiliation_from_wbuttepa(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="DATA Added Successfully"; }else{ $_SESSION['msg']="DATA Adding failed."; } header("location:affiliation_from_wbuttepa.php"); break; case "EditAffiliationFromWbuttepa": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from affiliation_from_wbuttepa where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update affiliation_from_wbuttepa set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update affiliation_from_wbuttepa set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="DATA Updated Successfully"; }else{ $_SESSION['msg']="DATA Update failed."; } header("location:affiliation_from_wbuttepa.php"); break; case "AffiliationFromWbsu": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into affiliation_from_wbsu(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="DATA Added Successfully"; }else{ $_SESSION['msg']="DATA Adding failed."; } header("location:affiliation_from_wbsu.php"); break; case "EditAffiliationFromWbsu": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from affiliation_from_wbsu where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update affiliation_from_wbsu set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update affiliation_from_wbsu set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="DATA Updated Successfully"; }else{ $_SESSION['msg']="DATA Update failed."; } header("location:affiliation_from_wbsu.php"); break; case "AffiliationFromWbbpe": $session=mysqli_real_escape_string($con,$_POST['session']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); } $query=mysqli_query($con,"insert into affiliation_from_wbbpe(session,pdf) values('".$session."','".$pdf."')"); if($query){ $_SESSION['msg']="DATA Added Successfully"; }else{ $_SESSION['msg']="DATA Adding failed."; } header("location:affiliation_from_wbbpe.php"); break; case "EditAffiliationFromWbbpe": $session=mysqli_real_escape_string($con,$_POST['session']); $doid=mysqli_real_escape_string($con,$_POST['doid']); $pdf=""; if($_FILES['pdf']['name']!= NULL){ $pdf=mysqli_fetch_array(mysqli_query($con,"select pdf from affiliation_from_wbbpe where id='".$doid."'"))['pdf']; unlink("images/".$pdf); $pdf = time().'_'.$_FILES['pdf']['name']; move_uploaded_file($_FILES['pdf']['tmp_name'],"images/".$pdf); $update=mysqli_query($con,"update affiliation_from_wbbpe set pdf='".$pdf."' where id='".$doid."'"); } $query=mysqli_query($con,"update affiliation_from_wbbpe set session='".$session."' where id='".$doid."'"); if($query){ $_SESSION['msg']="DATA Updated Successfully"; }else{ $_SESSION['msg']="DATA Update failed."; } header("location:affiliation_from_wbbpe.php"); break; } function random_num($size) { $alpha_key = '';$alpha_key1=''; $keys = range('A', 'Z'); for ($i = 0; $i < 3; $i++) { $alpha_key .= $keys[array_rand($keys)]; } for ($i = 0; $i < 2; $i++) { $alpha_key1 .= $keys[array_rand($keys)]; } $length = $size - 3; $key = ''; $keys = range(0, 9); for ($i = 0; $i < $length; $i++) { $key .= $keys[array_rand($keys)]; } return $alpha_key . $key . $alpha_key1; } ?>