Server IP : 103.191.208.50 / Your IP : 216.73.216.53 Web Server : LiteSpeed System : Linux orion.herosite.pro 4.18.0-553.53.1.lve.el8.x86_64 #1 SMP Wed May 28 17:01:02 UTC 2025 x86_64 User : celkcksm ( 1031) PHP Version : 7.4.33 Disable Function : show_source, system, shell_exec, passthru, popen, exec MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : ON Directory (0750) : /home/celkcksm/ecampus.ncriptech.com/../websites/vtti.e-campus.co.in/ |
[ Home ] | [ C0mmand ] | [ Upload File ] |
---|
<?php session_start(); include_once('include/config.inc.php'); include_once('sendmessage.php'); include_once('include/function.php'); switch($_REQUEST['do']) { case "Credentials": $username=mysqli_escape_string($con,$_REQUEST['username']); $password=mysqli_escape_string($con,$_REQUEST['password']); $doid=mysqli_escape_string($con,$_REQUEST['doid']); $Q=mysqli_query($con,"select id,student_id from admission_enquiry_form where username='".$username."'"); $R=mysqli_fetch_array($Q); $check=mysqli_num_rows($Q); if(empty($check)||$R['student_id']==$doid){ $q=mysqli_query($con,"update admission_enquiry_form set username='".$username."',password='".$password."' where student_id='".$doid."'"); } if($q){ $_SESSION['msg']="Credentials Updated!"; header("Location:AdmissionEnquiryReports.php"); }else{ $_SESSION['msg']="Username already taken!"; header("Location:credentials.php?upid=".$doid); } break; case "AdminSMS": $mobile1=mysqli_escape_string($con,$_REQUEST['mobile1']); $mobile2=mysqli_escape_string($con,$_REQUEST['mobile2']); $mobile3=mysqli_escape_string($con,$_REQUEST['mobile3']); mysqli_query($con,"update collageinfo set mobile1='$mobile1',mobile2='$mobile2',mobile3='$mobile3' where id=1"); $_SESSION['msg']="Mobile Numbers Updated!"; header("Location:smsadmin.php"); break; case "StudentEnquiryEntry" : $StudentName = mysqli_escape_string($con,$_REQUEST['StudentName']); $Mobile = mysqli_escape_string($con,$_REQUEST['Mobile']); $LastQualification = mysqli_escape_string($con,$_REQUEST['LastQualification']); $Marks = mysqli_escape_string($con,$_REQUEST['Marks']); $course = mysqli_escape_string($con,$_REQUEST['course']); $BookingAmount = mysqli_escape_string($con,$_REQUEST['BookingAmount']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $StudentEmail= mysqli_escape_string($con,$_REQUEST['studentemail']); $GuardianName= mysqli_escape_string($con,$_REQUEST['GuardianName']); $DateOfBirth= mysqli_escape_string($con,$_REQUEST['DateOfBirth']); $age= mysqli_escape_string($con,$_REQUEST['age']); $address= mysqli_escape_string($con,$_REQUEST['address']); $PaymentType= mysqli_escape_string($con,$_REQUEST['PaymentType']); $chequeno= mysqli_escape_string($con,$_REQUEST['chequeno']); $BankName= mysqli_escape_string($con,$_REQUEST['BankName']); $DepositTo= mysqli_escape_string($con,$_REQUEST['DepositTo']); $DdNo= mysqli_escape_string($con,$_REQUEST['DdNo']); $POSTransaction= mysqli_escape_string($con,$_REQUEST['POSTransaction']); $mobiles=mysqli_query($con,"select * from student_enqury_form where mobile='".$Mobile."'"); $mobil=mysqli_num_rows($mobiles); if($mobil>0){ $_SESSION['msg']=' Mobile No Allready Exits ! '; header("Location:StudentEnquiryReport.php"); }else{ $check=mysqli_query($con,"insert into student_enqury_form(user_id,name,mobile,last_qualification,last_qualification_per,course_id,email_id,GuardianName,DateOfBirth,age,address,PaymentType,chequeno,BankName,DepositTo,DdNo,POSTransaction) values('".$UserID."','".$StudentName."','".$Mobile."','".$LastQualification."','".$Marks."','".$course."','".$StudentEmail."','".$GuardianName."','".$DateOfBirth."','".$age."','".$address."','".$PaymentType."','".$chequeno."','".$BankName."','".$DepositTo."','".$DdNo."','".$POSTransaction."')"); $last_id = $con->insert_id; if($check){ $last_id = $con->insert_id; function random_num($size) { $alpha_key = ''; $keys = range('A', 'Z'); for ($i = 0; $i < 2; $i++) { $alpha_key .= $keys[array_rand($keys)]; } $length = $size - 2; $key = ''; $keys = range(0, 9); for ($i = 0; $i < $length; $i++) { $key .= $keys[array_rand($keys)]; } return $alpha_key . $key; } $student_id=random_num(9); $check1=mysqli_query($con,"update student_enqury_form set student_id='".$student_id."' where id=".$last_id); if($PaymentType=="Cheque"){ $chequequery=mysqli_query($con,"insert into checktransaction (user_id,sem_no,student_id,approve,cheque_for,amount, bank_id,bank_name,checkno) values ('".$UserID."',1,'".$last_id."','0','booking','".$BookingAmount."','".$BankName."', '".$DepositTo."','".$chequeno."')"); }else{ mysqli_query($con,"update student_enqury_form set booking_amount='".$BookingAmount."' where id=".$last_id); } $collage=mysqli_query($con,"select * from collageinfo where id='1'"); $collage=mysqli_fetch_array($collage); $smss="WELCOME TO ".$collage['collagename']." THANK YOU FOR CONTACT WITH US YOUR ENQUIRY NO IS ".$student_id."."; sendsms($con,$Mobile,$smss); //sms end $_SESSION['msg']='Record Add Successfully Enquiry Id :'. $student_id; } } header("Location:StudentEnquiryReport.php"); break; case "EditStudentEnquiryEntry" : // $StudentName = mysqli_escape_string($con,$_REQUEST['StudentName']); // $Mobile = mysqli_escape_string($con,$_REQUEST['Mobile']); // $LastQualification = mysqli_escape_string($con,$_REQUEST['LastQualification']); // $Marks = mysqli_escape_string($con,$_REQUEST['Marks']); // $course = mysqli_escape_string($con,$_REQUEST['course']); // $BookingAmount = mysqli_escape_string($con,$_REQUEST['BookingAmount']); // $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); // $StudentEmail= mysqli_escape_string($con,$_REQUEST['studentemail']); $StudentName = mysqli_escape_string($con,$_REQUEST['StudentName']); $Mobile = mysqli_escape_string($con,$_REQUEST['Mobile']); $LastQualification = mysqli_escape_string($con,$_REQUEST['LastQualification']); $Marks = mysqli_escape_string($con,$_REQUEST['Marks']); $course = mysqli_escape_string($con,$_REQUEST['course']); $BookingAmount = mysqli_escape_string($con,$_REQUEST['BookingAmount']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $StudentEmail= mysqli_escape_string($con,$_REQUEST['studentemail']); $GuardianName= mysqli_escape_string($con,$_REQUEST['GuardianName']); $DateOfBirth= mysqli_escape_string($con,$_REQUEST['DateOfBirth']); $age= mysqli_escape_string($con,$_REQUEST['age']); $address= mysqli_escape_string($con,$_REQUEST['address']); $PaymentType= mysqli_escape_string($con,$_REQUEST['PaymentType']); $amount= mysqli_escape_string($con,$_REQUEST['amount']); $chequeno= mysqli_escape_string($con,$_REQUEST['chequeno']); $BankName= mysqli_escape_string($con,$_REQUEST['BankName']); $DepositTo= mysqli_escape_string($con,$_REQUEST['DepositTo']); $DdNo= mysqli_escape_string($con,$_REQUEST['DdNo']); $POSTransaction= mysqli_escape_string($con,$_REQUEST['POSTransaction']); $ckeck=mysqli_query($con,"update student_enqury_form set name = '".$StudentName."', mobile='".$Mobile."' , last_qualification='".$LastQualification."', last_qualification_per='".$Marks."', course_id = '".$course."', booking_amount='".$BookingAmount."', email_id = '".$StudentEmail."', GuardianName='".$GuardianName."', DateOfBirth='".$DateOfBirth."', age='".$age."', address='".$address."', PaymentType='".$PaymentType."', amount='".$amount."', chequeno='".$chequeno."', BankName='".$BankName."', DepositTo='".$DepositTo."', DdNo='".$DdNo."', POSTransaction='".$POSTransaction."' where id=".(int)$_REQUEST['doid']); if($check){ $_SESSION['msg']='Record Updated Successfully'; } header("Location:StudentEnquiryReport.php"); break; case "EditStudentEnquiryEntry" : $LanguageTitle = mysqli_escape_string($con,$_REQUEST['LanguageTitle']); mysqli_query($con,"update language set LanguageName='".$LanguageTitle."' where LanguageID=".(int)$_REQUEST['doid']); header("Location:Language.php"); break; case "LanguageEntry" : $LanguageTitle = mysqli_escape_string($con,$_REQUEST['LanguageTitle']); mysqli_query($con,"insert into language(LanguageName) values('".$LanguageTitle."')"); header("Location:Language.php"); break; case "EditLanguageEntry" : $LanguageTitle = mysqli_escape_string($con,$_REQUEST['LanguageTitle']); mysqli_query($con,"update language set LanguageName='".$LanguageTitle."' where LanguageID=".(int)$_REQUEST['doid']); header("Location:Language.php"); break; case "CourseEntry" : $CourseTitle = mysqli_escape_string($con,$_REQUEST['CourseTitle']); $CourseDuration = mysqli_escape_string($con,$_REQUEST['CourseDuration']); mysqli_query($con,"insert into course(c_name,course_duration) values('".$CourseTitle."','".$CourseDuration."')"); header("Location:course.php"); break; case "EditCourseEntry" : $CourseTitle = mysqli_escape_string($con,$_REQUEST['CourseTitle']); $CourseDuration = mysqli_escape_string($con,$_REQUEST['CourseDuration']); mysqli_query($con,"update course set c_name='".$CourseTitle."',course_duration='".$CourseDuration."' where id=".(int)$_REQUEST['doid']); header("Location:course.php"); break; case "ReligionEntry" : $ReligionTitle = mysqli_escape_string($con,$_REQUEST['ReligionTitle']); mysqli_query($con,"insert into religion(ReligionName) values('".$ReligionTitle."')"); header("Location:Religion.php"); break; case "EditReligionEntry" : $ReligionTitle = mysqli_escape_string($con,$_REQUEST['ReligionTitle']); mysqli_query($con,"update religion set ReligionName='".$ReligionTitle."' where ReligionID=".(int)$_REQUEST['doid']); header("Location:Religion.php"); break; case "CasteEntry" : $CasteTitle = mysqli_escape_string($con,$_REQUEST['CasteTitle']); mysqli_query($con,"insert into caste(CasteName) values('".$CasteTitle."')"); header("Location:Caste.php"); break; case "EditCasteEntry" : $CasteTitle = mysqli_escape_string($con,$_REQUEST['CasteTitle']); mysqli_query($con,"update caste set CasteName='".$CasteTitle."' where CasteID=".(int)$_REQUEST['doid']); header("Location:Caste.php"); break; case "GenderEntry" : $GenderTitle = mysqli_escape_string($con,$_REQUEST['GenderTitle']); mysqli_query($con,"insert into gender(GenderName) values('".$GenderTitle."')"); header("Location:Gender.php"); break; case "EditGenderEntry" : $GenderTitle = mysqli_escape_string($con,$_REQUEST['GenderTitle']); mysqli_query($con,"update gender set GenderName='".$GenderTitle."' where GenderID=".(int)$_REQUEST['doid']); header("Location:Gender.php"); break; case "CommunicationEntry" : $CommunicationTitle = mysqli_escape_string($con,$_REQUEST['CommunicationTitle']); mysqli_query($con,"insert into communication(CommunicationName) values('".$CommunicationTitle."')"); header("Location:Communication.php"); break; case "EditCommunicationEntry" : $CommunicationTitle = mysqli_escape_string($con,$_REQUEST['CommunicationTitle']); mysqli_query($con,"update communication set CommunicationName='".$CommunicationTitle."' where CommunicationID=".(int)$_REQUEST['doid']); header("Location:Communication.php"); break; case "BEDSubjectEntry" : $SubjectTitle = mysqli_escape_string($con,$_REQUEST['SubjectTitle']); $SubjectCode = mysqli_escape_string($con,$_REQUEST['SubjectCode']); $Subjectperiod = mysqli_escape_string($con,$_REQUEST['Subjectperiod']); mysqli_query($con,"insert into subject(SubjectTitle,SubjectCode,TotalPeriod,Status) values('".$SubjectTitle."','".$SubjectCode."','".$Subjectperiod."','1')"); header("Location:BEDSubjectEntry.php"); break; case "EditBEDSubjectEntry" : $SubjectTitle = mysqli_escape_string($con,$_REQUEST['SubjectTitle']); $SubjectCode = mysqli_escape_string($con,$_REQUEST['SubjectCode']); $Subjectperiod = mysqli_escape_string($con,$_REQUEST['Subjectperiod']); mysqli_query($con,"update subject set SubjectTitle='".$SubjectTitle."',SubjectCode='".$SubjectCode."',TotalPeriod='".$Subjectperiod."' where SubjectID=".(int)$_REQUEST['doid']); header("Location:BEDSubjectEntry.php"); break; case "BEDAcademicYearEntry" : $Degree = mysqli_escape_string($con,$_REQUEST['Degree']); $AcademicTitle = mysqli_escape_string($con,$_REQUEST['AcademicTitle']); $AcademicStartDate = mysqli_escape_string($con,$_REQUEST['AcademicStartDate']); $AcademicEndDate = mysqli_escape_string($con,$_REQUEST['AcademicEndDate']); $currentyear = mysqli_escape_string($con,$_REQUEST['currentyear']); mysqli_query($con,"insert into academicyear(Degree,AcademicTitle,AcademicStartDate,AcademicEndDate,CurrentYear,Status) values('".$Degree."','".$AcademicTitle."','".$AcademicStartDate."','".$AcademicEndDate."','".$currentyear."','1')"); header("Location:BEDAcademicYearEntry.php"); break; case "EditBEDAcademicYearEntry" : $AcademicTitle = mysqli_escape_string($con,$_REQUEST['AcademicTitle']); $AcademicStartDate = mysqli_escape_string($con,$_REQUEST['AcademicStartDate']); $AcademicEndDate = mysqli_escape_string($con,$_REQUEST['AcademicEndDate']); $currentyear = mysqli_escape_string($con,$_REQUEST['currentyear']); mysqli_query($con,"update academicyear set AcademicTitle='".$AcademicTitle."',AcademicStartDate='".$AcademicStartDate."',AcademicEndDate='".$AcademicEndDate."',CurrentYear='".$currentyear."' where AcademicYearID=".(int)$_REQUEST['doid']); header("Location:BEDAcademicYearEntry.php"); break; case "ConsultantEntry" : $Degree = mysqli_escape_string($con,$_REQUEST['Degree']); $PersonName = mysqli_escape_string($con,$_REQUEST['PersonName']); $ContactNo = mysqli_escape_string($con,$_REQUEST['ContactNo']); mysqli_query($con,"insert into consultant(Degree,PersonName,ContactNo,Status) values('".$Degree."','".$PersonName."','".$ContactNo."','1')"); header("Location:BEDConsultantMaster.php"); break; case "EditConsultantEntry" : $PersonName = mysqli_escape_string($con,$_REQUEST['PersonName']); $ContactNo = mysqli_escape_string($con,$_REQUEST['ContactNo']); mysqli_query($con,"update consultant set PersonName='".$PersonName."',ContactNo='".$ContactNo."' where ConsultantID=".(int)$_REQUEST['doid']); header("Location:BEDConsultantMaster.php"); break; case "ApplicationEntry" : $ApplicantType = mysqli_escape_string($con,$_REQUEST['ApplicantType']); mysqli_query($con,"insert into applicant(ApplicationTypeName,Status) values('".$ApplicantType."','1')"); header("Location:ApplicantType.php"); break; case "EditApplicationEntry" : $ApplicantType = mysqli_escape_string($con,$_REQUEST['ApplicantType']); mysqli_query($con,"update applicant set ApplicationTypeName='".$ApplicantType."' where ApplicantID=".(int)$_REQUEST['doid']); header("Location:ApplicantType.php"); break; case "BEDMarksheetUploadEntry" : $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); $Semester = mysqli_escape_string($con,$_REQUEST['Semester']); $SubjectName = mysqli_escape_string($con,$_REQUEST['SubjectName']); $MarksheetPhoto = ''; if($_FILES['MarksheetPhoto']['name']!= NULL){ $MarksheetPhoto = time().'_'.$_FILES['MarksheetPhoto']['name']; move_uploaded_file($_FILES['MarksheetPhoto']['tmp_name'],"images/MarksheetPhoto/".$MarksheetPhoto); } mysqli_query($con,"insert into studentmarksheetupload(StudentCode,Semester,SubjectName,MarksheetPhoto) values('".$StudentCode."','".$Semester."','".$SubjectName."','".$MarksheetPhoto."')"); header("Location:BEDMarksheetUpload.php"); break; case "EditBEDMarksheetUploadEntry" : $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); $Semester = mysqli_escape_string($con,$_REQUEST['Semester']); $SubjectName = mysqli_escape_string($con,$_REQUEST['SubjectName']); if($_FILES['MarksheetPhoto']['name']!= NULL){ $MarksheetPhoto = time().'_'.$_FILES['MarksheetPhoto']['name']; move_uploaded_file($_FILES['MarksheetPhoto']['tmp_name'],"images/MarksheetPhoto/".$MarksheetPhoto); }else{$MarksheetPhoto = mysqli_escape_string($con,$_REQUEST['OldMarksheetPhoto']);} mysqli_query($con,"update studentmarksheetupload set StudentCode='".$StudentCode."',Semester='".$Semester."',SubjectName='".$SubjectName."',MarksheetPhoto='".$MarksheetPhoto."' where SMUID=".(int)$_REQUEST['doid']); header("Location:BEDMarksheetUpload.php"); break; case "AdmissionFormEntry" : header("Location:OnlyAdmissionForm.php"); echo '<pre>'; //print_r($_REQUEST); echo '</pre>'; // exit; $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); $EnrollmentNo = mysqli_escape_string($con,$_REQUEST['EnrollmentNo']); $DegreeName = mysqli_escape_string($con,$_REQUEST['Degree']); $ApplicationTypeName = mysqli_escape_string($con,$_REQUEST['rdbappllicant']); $AcademicYear = mysqli_escape_string($con,$_REQUEST['AcademicYear']); $UniversityLastAttended = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $RNULU = mysqli_escape_string($con,$_REQUEST['RNOTULA']); $Language = mysqli_escape_string($con,$_REQUEST['Language']); $Religion = mysqli_escape_string($con,$_REQUEST['Religion']); $Cast = mysqli_escape_string($con,$_REQUEST['Caste']); $OBCdetails = mysqli_escape_string($con,$_REQUEST['Gender']); $Gender = mysqli_escape_string($con,$_REQUEST['Nationality']); $Nationality = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $StudentFirstName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $StudentLastName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $DOB = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $PlaceofBirth = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $BloodGroup = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $IdentificationMarks = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $FatherFirstName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $FatherLastName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $MotherFirstName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $MotherLastName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianFirstName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianLastName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianRelationship = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianLandLineNo = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianMobileNo = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianAddress = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianCity = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianDistrict = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianState = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GuardianPinCode = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $HTCDistance = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $SourceName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $ConsultantName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $ContactNo = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $SubjectName = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $RegistrationDate = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $StudentPhoto = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $StudentSignature = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $AADHAAR_CARD = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $MADHYAMICK_REGISTRATION = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $GRADUATION_MARKSHEET = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $MASTERS_MARKSHEET = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $MC_RESOLUTION = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $DI_PERMISION = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $CAST_CERTIFICATE = mysqli_escape_string($con,$_REQUEST['UniversityLastAttended']); $MarksheetPhoto = ''; if($_FILES['MarksheetPhoto']['name']!= NULL){ $MarksheetPhoto = time().'_'.$_FILES['MarksheetPhoto']['name']; move_uploaded_file($_FILES['MarksheetPhoto']['tmp_name'],"images/MarksheetPhoto/".$MarksheetPhoto); } mysqli_query($con,"insert into studentmarksheetupload(StudentCode,Semester,SubjectName,MarksheetPhoto) values('".$StudentCode."','".$Semester."','".$SubjectName."','".$MarksheetPhoto."')"); header("Location:BEDMarksheetUpload.php"); break; case "EditAdmissionFormEntry" : $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); $Semester = mysqli_escape_string($con,$_REQUEST['Semester']); $SubjectName = mysqli_escape_string($con,$_REQUEST['SubjectName']); if($_FILES['MarksheetPhoto']['name']!= NULL){ $MarksheetPhoto = time().'_'.$_FILES['MarksheetPhoto']['name']; move_uploaded_file($_FILES['MarksheetPhoto']['tmp_name'],"images/MarksheetPhoto/".$MarksheetPhoto); }else{$MarksheetPhoto = mysqli_escape_string($con,$_REQUEST['OldMarksheetPhoto']);} mysqli_query($con,"update studentmarksheetupload set StudentCode='".$StudentCode."',Semester='".$Semester."',SubjectName='".$SubjectName."',MarksheetPhoto='".$MarksheetPhoto."' where SMUID=".(int)$_REQUEST['doid']); header("Location:OnlyAdmissionForm.php"); break; case "FeesHeadEntry" : $FeesHead = mysqli_escape_string($con,$_REQUEST['FeesHead']); $Amount = mysqli_escape_string($con,$_REQUEST['Amount']); mysqli_query($con,"insert into FeesHead(FeesHeadTitle,Amount) values('".$FeesHead."','".$Amount."')"); header("Location:BEDFeesHeadMaster.php"); break; case "EditFeesHeadEntry" : $FeesHead = mysqli_escape_string($con,$_REQUEST['FeesHead']); $Amount = mysqli_escape_string($con,$_REQUEST['Amount']); mysqli_query($con,"update FeesHead set FeesHeadTitle='".$FeesHead."',Amount='".$Amount."' where FeesHeadID=".(int)$_REQUEST['doid']); header("Location:BEDFeesHeadMaster.php"); break; case "MEDSubjectEntry" : $SubjectTitle = mysqli_escape_string($con,$_REQUEST['SubjectTitle']); $SubjectCode = mysqli_escape_string($con,$_REQUEST['SubjectCode']); $Subjectperiod = mysqli_escape_string($con,$_REQUEST['Subjectperiod']); mysqli_query($con,"insert into medsubject(SubjectTitle,SubjectCode,TotalPeriod,Status) values('".$SubjectTitle."','".$SubjectCode."','".$Subjectperiod."','1')"); header("Location:MEDSubjectEntry.php"); break; case "EditMEDSubjectEntry" : $SubjectTitle = mysqli_escape_string($con,$_REQUEST['SubjectTitle']); $SubjectCode = mysqli_escape_string($con,$_REQUEST['SubjectCode']); $Subjectperiod = mysqli_escape_string($con,$_REQUEST['Subjectperiod']); mysqli_query($con,"update medsubject set SubjectTitle='".$SubjectTitle."',SubjectCode='".$SubjectCode."',TotalPeriod='".$Subjectperiod."' where SubjectID=".(int)$_REQUEST['doid']); header("Location:MEDSubjectEntry.php"); break; case "SectionEntry" : $ddlSubject = mysqli_escape_string($con,$_REQUEST['ddlSubject']); $Year = mysqli_escape_string($con,$_REQUEST['Year']); $TotalPeriod = mysqli_escape_string($con,$_REQUEST['TotalPeriod']); mysqli_query($con,"insert into sectionyear(Subject,Year,TotalPeriod) values('".$ddlSubject."','".$Year."','".$TotalPeriod."')"); header("Location:SectionEntry.php"); break; case "EditSectionEntry" : $ddlSubject = mysqli_escape_string($con,$_REQUEST['ddlSubject']); $Year = mysqli_escape_string($con,$_REQUEST['Year']); $TotalPeriod = mysqli_escape_string($con,$_REQUEST['TotalPeriod']); mysqli_query($con,"update sectionyear set Subject='".$ddlSubject."',Year='".$Year."',TotalPeriod='".$TotalPeriod."' where YearID=".(int)$_REQUEST['doid']); header("Location:SectionEntry.php"); break; case "MEDAcademicYearEntry" : $Degree = mysqli_escape_string($con,$_REQUEST['Degree']); $AcademicTitle = mysqli_escape_string($con,$_REQUEST['AcademicTitle']); $AcademicStartDate = mysqli_escape_string($con,$_REQUEST['AcademicStartDate']); $AcademicEndDate = mysqli_escape_string($con,$_REQUEST['AcademicEndDate']); $currentyear = mysqli_escape_string($con,$_REQUEST['currentyear']); mysqli_query($con,"insert into medacademicyear(Degree,AcademicTitle,AcademicStartDate,AcademicEndDate,CurrentYear,Status) values('".$Degree."','".$AcademicTitle."','".$AcademicStartDate."','".$AcademicEndDate."','".$currentyear."','1')"); header("Location:MEDAcademicYearEntry.php"); break; case "EditMEDAcademicYearEntry" : $AcademicTitle = mysqli_escape_string($con,$_REQUEST['AcademicTitle']); $AcademicStartDate = mysqli_escape_string($con,$_REQUEST['AcademicStartDate']); $AcademicEndDate = mysqli_escape_string($con,$_REQUEST['AcademicEndDate']); $currentyear = mysqli_escape_string($con,$_REQUEST['currentyear']); mysqli_query($con,"update medacademicyear set AcademicTitle='".$AcademicTitle."',AcademicStartDate='".$AcademicStartDate."',AcademicEndDate='".$AcademicEndDate."',CurrentYear='".$currentyear."' where AcademicYearID=".(int)$_REQUEST['doid']); header("Location:MEDAcademicYearEntry.php"); break; case "MEDConsultantEntry" : $Degree = mysqli_escape_string($con,$_REQUEST['Degree']); $PersonName = mysqli_escape_string($con,$_REQUEST['PersonName']); $ContactNo = mysqli_escape_string($con,$_REQUEST['ContactNo']); mysqli_query($con,"insert into medconsultant(Degree,PersonName,ContactNo,Status) values('".$Degree."','".$PersonName."','".$ContactNo."','1')"); header("Location:MEDConsultantMaster.php"); break; case "EditMEDConsultantEntry" : $PersonName = mysqli_escape_string($con,$_REQUEST['PersonName']); $ContactNo = mysqli_escape_string($con,$_REQUEST['ContactNo']); mysqli_query($con,"update medconsultant set PersonName='".$PersonName."',ContactNo='".$ContactNo."' where ConsultantID=".(int)$_REQUEST['doid']); header("Location:MEDConsultantMaster.php"); break; case "MEDMarksheetUploadEntry" : $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); $Semester = mysqli_escape_string($con,$_REQUEST['Semester']); $SubjectName = mysqli_escape_string($con,$_REQUEST['SubjectName']); $MarksheetPhoto = ''; if($_FILES['MarksheetPhoto']['name']!= NULL){ $MarksheetPhoto = time().'_'.$_FILES['MarksheetPhoto']['name']; move_uploaded_file($_FILES['MarksheetPhoto']['tmp_name'],"images/MarksheetPhoto/".$MarksheetPhoto); } mysqli_query($con,"insert into medstudentmarksheetupload(StudentCode,Semester,SubjectName,MarksheetPhoto) values('".$StudentCode."','".$Semester."','".$SubjectName."','".$MarksheetPhoto."')"); header("Location:MEDMarksheetUpload.php"); break; case "EditMEDMarksheetUploadEntry" : $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); $Semester = mysqli_escape_string($con,$_REQUEST['Semester']); $SubjectName = mysqli_escape_string($con,$_REQUEST['SubjectName']); if($_FILES['MarksheetPhoto']['name']!= NULL){ $MarksheetPhoto = time().'_'.$_FILES['MarksheetPhoto']['name']; move_uploaded_file($_FILES['MarksheetPhoto']['tmp_name'],"images/MarksheetPhoto/".$MarksheetPhoto); }else{$MarksheetPhoto = mysqli_escape_string($con,$_REQUEST['OldMarksheetPhoto']);} mysqli_query($con,"update medstudentmarksheetupload set StudentCode='".$StudentCode."',Semester='".$Semester."',SubjectName='".$SubjectName."',MarksheetPhoto='".$MarksheetPhoto."' where SMUID=".(int)$_REQUEST['doid']); header("Location:MEDMarksheetUpload.php"); break; case "MEDStudentAdmitUploadEntry" : $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); $AdmitPhoto = ''; if($_FILES['AdmitPhoto']['name']!= NULL){ $AdmitPhoto = time().'_'.$_FILES['AdmitPhoto']['name']; move_uploaded_file($_FILES['AdmitPhoto']['tmp_name'],"images/AdmitPhoto/".$AdmitPhoto); } mysqli_query($con,"insert into studentadmitupload(StudentCode,AdmitPhoto) values('".$StudentCode."','".$AdmitPhoto."')"); header("Location:MEDAdmitUpload.php"); break; case "EditMEDStudentAdmitUploadEntry" : $StudentCode = mysqli_escape_string($con,$_REQUEST['StudentCode']); if($_FILES['AdmitPhoto']['name']!= NULL){ $AdmitPhoto = time().'_'.$_FILES['AdmitPhoto']['name']; move_uploaded_file($_FILES['AdmitPhoto']['tmp_name'],"images/AdmitPhoto/".$AdmitPhoto); }else{$AdmitPhoto = mysqli_escape_string($con,$_REQUEST['OldAdmitPhoto']);} mysqli_query($con,"update studentadmitupload set StudentCode='".$StudentCode."',AdmitPhoto='".$AdmitPhoto."' where StudentAdmitUploadID=".(int)$_REQUEST['doid']); header("Location:MEDAdmitUpload.php"); break; case "MEDFeesHeadEntry" : $FeesHead = mysqli_escape_string($con,$_REQUEST['FeesHead']); $Amount = mysqli_escape_string($con,$_REQUEST['Amount']); mysqli_query($con,"insert into medfeeshead(FeesHeadTitle,Amount) values('".$FeesHead."','".$Amount."')"); header("Location:MEDFeesHeadMaster.php"); break; case "MEDEditFeesHeadEntry" : $FeesHead = mysqli_escape_string($con,$_REQUEST['FeesHead']); $Amount = mysqli_escape_string($con,$_REQUEST['Amount']); mysqli_query($con,"update medfeeshead set FeesHeadTitle='".$FeesHead."',Amount='".$Amount."' where FeesHeadID=".(int)$_REQUEST['doid']); header("Location:MEDFeesHeadMaster.php"); break; case "DepartmentEntry" : $DepartmentName = mysqli_escape_string($con,$_REQUEST['DepartmentName']); $EntryUser = mysqli_escape_string($con,$_REQUEST['EntryUser']); mysqli_query($con,"insert into departmentmaster(DepartmentName,EntryUser) values('".$DepartmentName."','".$EntryUser."')"); header("Location:DepartmentMaster.php"); break; case "EditDepartmentEntry" : $DepartmentName = mysqli_escape_string($con,$_REQUEST['DepartmentName']); mysqli_query($con,"update departmentmaster set DepartmentName='".$DepartmentName."' where DepartmentID=".(int)$_REQUEST['doid']); header("Location:DepartmentMaster.php"); break; case "DesignationEntry" : $DesignationName = mysqli_escape_string($con,$_REQUEST['DesignationName']); $EntryUser = mysqli_escape_string($con,$_REQUEST['EntryUser']); mysqli_query($con,"insert into designationmaster(DesignationName,EntryUser) values('".$DesignationName."','".$EntryUser."')"); header("Location:DesignationMaster.php"); break; case "EditDesignationEntry" : $DesignationName = mysqli_escape_string($con,$_REQUEST['DesignationName']); mysqli_query($con,"update designationmaster set DesignationName='".$DesignationName."' where DesignationID=".(int)$_REQUEST['doid']); header("Location:DesignationMaster.php"); break; case "EmployeeTypeEntry" : $EmployeeTypeName = mysqli_escape_string($con,$_REQUEST['EmployeeTypeName']); $EntryUser = mysqli_escape_string($con,$_REQUEST['EntryUser']); mysqli_query($con,"insert into employeetype(EmployeeTypeName,EntryUser) values('".$EmployeeTypeName."','".$EntryUser."')"); header("Location:EmployeeType.php"); break; case "EditEmployeeTypeEntry" : $EmployeeTypeName = mysqli_escape_string($con,$_REQUEST['EmployeeTypeName']); mysqli_query($con,"update employeetype set EmployeeTypeName='".$EmployeeTypeName."' where EmployeeTypeID=".(int)$_REQUEST['doid']); header("Location:EmployeeType.php"); break; case "EmployeeSalaryPayment" : $EmployeeId = mysqli_escape_string($con,$_REQUEST['EmployeeId']); $paidsalary = mysqli_escape_string($con,$_REQUEST['paidsalary']); $EnterMonth = mysqli_escape_string($con,$_REQUEST['EnterMonth']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $EnterYear = mysqli_escape_string($con,$_REQUEST['EnterYear']); $Latedays = mysqli_escape_string($con,$_REQUEST['Latedays']); $LateDeduction = mysqli_escape_string($con,$_REQUEST['LateDeduction']); $ExtraLeaves = mysqli_escape_string($con,$_REQUEST['ExtraLeaves']); $LeaveDeduction = mysqli_escape_string($con,$_REQUEST['LeaveDeduction']); $PaymentMode = mysqli_escape_string($con,$_REQUEST['PaymentMode']); $bank = mysqli_escape_string($con,$_REQUEST['bank']); $checkno = mysqli_escape_string($con,$_REQUEST['checkno']); $upuserresult=mysqli_query($con,"select * from employeesalarypayment where EmployeeId='".$EmployeeId."' and EnterMonth='".$EnterMonth."' and EnterYear='".$EnterYear."' "); $rowd=mysqli_num_rows($upuserresult); if($rowd>0){ $_SESSION['msg']='Payment is allready exits for the particular month !'; header("Location:EmployeeSalaryPaymentReports.php"); }else{ $check= mysqli_query($con,"insert into employeesalarypayment(EmployeeId,EnterMonth,EnterYear,Latedays,LateDeduction,ExtraLeaves,LeaveDeduction,PaymentMode,paidsalary,user_id,bank,checkno) values('".$EmployeeId."','".$EnterMonth."','".$EnterYear."','".$Latedays."','".$LateDeduction."','".$ExtraLeaves."','".$LeaveDeduction."','".$PaymentMode."','".$paidsalary."','".$UserID."','".$bank."','".$checkno."')"); $last_id = $con->insert_id; function random_num($size) { $alpha_key = ''; $keys = range('A', 'Z'); for ($i = 0; $i < 2; $i++) { $alpha_key .= $keys[array_rand($keys)]; } $length = $size - 2; $key = ''; $keys = range(0, 9); for ($i = 0; $i < $length; $i++) { $key .= $keys[array_rand($keys)]; } return $alpha_key . $key; } $recipt_no=random_num(5); $recipt_no=$recipt_no; $check1=mysqli_query($con,"update employeesalarypayment set recipt_no='".$recipt_no."' where EmployeeSalaryPaymentID=".$last_id); if($check){ $_SESSION['msg']=' Salary Payment Successfully .'; }else{ $_SESSION['msg']='Salary Payment Failed! '; } header("Location:EmployeeSalaryPaymentReports.php"); } break; case "EditEmployeeSalaryPayment" : $paidsalary = mysqli_escape_string($con,$_REQUEST['paidsalary']); $EmployeeId = mysqli_escape_string($con,$_REQUEST['EmployeeId']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $EnterMonth = mysqli_escape_string($con,$_REQUEST['EnterMonth']); $EnterYear = mysqli_escape_string($con,$_REQUEST['EnterYear']); $Latedays = mysqli_escape_string($con,$_REQUEST['Latedays']); $LateDeduction = mysqli_escape_string($con,$_REQUEST['LateDeduction']); $ExtraLeaves = mysqli_escape_string($con,$_REQUEST['ExtraLeaves']); $LeaveDeduction = mysqli_escape_string($con,$_REQUEST['LeaveDeduction']); $PaymentMode = mysqli_escape_string($con,$_REQUEST['PaymentMode']); $bank = mysqli_escape_string($con,$_REQUEST['bank']); $checkno = mysqli_escape_string($con,$_REQUEST['checkno']); $check=mysqli_query($con,"update employeesalarypayment set EmployeeId='".$EmployeeId."',EnterMonth='".$EnterMonth."',EnterYear='".$EnterYear."',Latedays='".$Latedays."',LateDeduction='".$LateDeduction."',ExtraLeaves='".$ExtraLeaves."',LeaveDeduction='".$LeaveDeduction."',PaymentMode='".$PaymentMode."',paidsalary='".$paidsalary."',user_id='".$UserID."',bank='".$bank."',checkno='".$checkno."' where EmployeeSalaryPaymentID=".(int)$_REQUEST['doid']); if($check){ $_SESSION['msg']=' Salary Payment Update Successfully .'; }else{ $_SESSION['msg']='Salary Payment Update Failed! '; } header("Location:EmployeeSalaryPaymentReports.php"); break; case "MEDEmployeeEntryForm" : $email = mysqli_escape_string($con,$_REQUEST['email']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $qualification = mysqli_escape_string($con,$_REQUEST['qualification']); $subject = mysqli_escape_string($con,$_REQUEST['subject']); $days = mysqli_escape_string($con,$_REQUEST['days']); $months = mysqli_escape_string($con,$_REQUEST['months']); $years = mysqli_escape_string($con,$_REQUEST['years']); $ML = mysqli_escape_string($con,$_REQUEST['ML']); $basic = mysqli_escape_string($con,$_REQUEST['basic']); $hra = mysqli_escape_string($con,$_REQUEST['hra']); $ta = mysqli_escape_string($con,$_REQUEST['ta']); $da = mysqli_escape_string($con,$_REQUEST['da']); $pf = mysqli_escape_string($con,$_REQUEST['pf']); $itax = mysqli_escape_string($con,$_REQUEST['itax']); $ptax = mysqli_escape_string($con,$_REQUEST['ptax']); $course = mysqli_escape_string($con,$_REQUEST['course']); $incomeorexpence = mysqli_escape_string($con,$_REQUEST['incomeorexpence']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $EmployeeName = mysqli_escape_string($con,$_REQUEST['EmployeeName']); $EmployeeAddress = mysqli_escape_string($con,$_REQUEST['EmployeeAddress']); $ContactNo = mysqli_escape_string($con,$_REQUEST['ContactNo']); $DepartmentName = mysqli_escape_string($con,$_REQUEST['DepartmentName']); $DesignationName = mysqli_escape_string($con,$_REQUEST['DesignationName']); $EmployeeType = mysqli_escape_string($con,$_REQUEST['EmployeeType']); $PanNo = mysqli_escape_string($con,$_REQUEST['PanNo']); $AdharNo = mysqli_escape_string($con,$_REQUEST['AdharNo']); $DOB = mysqli_escape_string($con,$_REQUEST['DOB']); $DOJ = mysqli_escape_string($con,$_REQUEST['DOJ']); $ConfirmationDate = mysqli_escape_string($con,$_REQUEST['ConfirmationDate']); $CL = mysqli_escape_string($con,$_REQUEST['CL']); $EL = mysqli_escape_string($con,$_REQUEST['EL']); $Medical = mysqli_escape_string($con,$_REQUEST['Medical']); $PFNo = mysqli_escape_string($con,$_REQUEST['PFNo']); $BankAccNo = mysqli_escape_string($con,$_REQUEST['BankAccNo']); $AccountHolderName = mysqli_escape_string($con,$_REQUEST['AccountHolderName']); $BankName = mysqli_escape_string($con,$_REQUEST['BankName']); $BankBranchName = mysqli_escape_string($con,$_REQUEST['BankBranchName']); $IFSCCode = mysqli_escape_string($con,$_REQUEST['IFSCCode']); $AccountType = mysqli_escape_string($con,$_REQUEST['AccountType']); $BloodGroup = mysqli_escape_string($con,$_REQUEST['BloodGroup']); $LastCompanyJob = mysqli_escape_string($con,$_REQUEST['LastCompanyJob']); $EmergencyContactNo = mysqli_escape_string($con,$_REQUEST['EmergencyContactNo']); if($_FILES['Photo']['name']!= NULL){ $Photo = time().'_'.$_FILES['Photo']['name']; move_uploaded_file($_FILES['Photo']['tmp_name'],"images/MarksheetPhoto/".$Photo); } if($_FILES['LastCompanyReleleseLatter']['name']!= NULL){ $LastCompanyReleleseLatter = time().'_'.$_FILES['LastCompanyReleleseLatter']['name']; move_uploaded_file($_FILES['LastCompanyReleleseLatter']['tmp_name'],"images/MarksheetPhoto/".$LastCompanyReleleseLatter); } if($_FILES['PanCard']['name']!= NULL){ $PanCard = time().'_'.$_FILES['PanCard']['name']; move_uploaded_file($_FILES['PanCard']['tmp_name'],"images/MarksheetPhoto/".$PanCard); } if($_FILES['AadhaarCard']['name']!= NULL){ $AadhaarCard = time().'_'.$_FILES['AadhaarCard']['name']; move_uploaded_file($_FILES['AadhaarCard']['tmp_name'],"images/MarksheetPhoto/".$AadhaarCard); } $check=mysqli_query($con,"insert into employeeentryform( EmployeeName,EmployeeAddress,ContactNo,DepartmentName, DesignationName,EmployeeType,PanNo,AdharNo,DOB,DOJ,ConfirmationDate,CL,EL,Medical, PFNo,BankAccNo,AccountHolderName,BankName,BankBranchName,IFSCCode,AccountType,BloodGroup, LastCompanyJob,EmergencyContactNo,Photo,LastCompanyReleleseLatter,PanCard,AadhaarCard,email,mobileno,qualification ,subject,days,months,years,ML,basic,hra,ta,da,pf ,itax,ptax,user_id,course,incomeorexpence) values('".$EmployeeName."','".$EmployeeAddress."','".$ContactNo."','".$DepartmentName."','".$DesignationName."', '".$EmployeeType."','".$PanNo."','".$AdharNo."','".$DOB."','".$DOJ."','".$ConfirmationDate."','".$CL."', '".$EL."','".$Medical."','".$PFNo."','".$BankAccNo."','".$AccountHolderName."','".$BankName."', '".$BankBranchName."','".$IFSCCode."','".$AccountType."','".$BloodGroup."','".$LastCompanyJob."', '".$EmergencyContactNo."','".$Photo."','".$LastCompanyReleleseLatter."','".$PanCard."','".$AadhaarCard."' ,'".$email."','".$mobileno."','".$qualification."','".$subject."','".$days."','".$months."' ,'".$years."','".$ML."','".$basic."','".$hra."','".$ta."','".$da."' ,'".$pf."','".$itax."','".$ptax."','".$UserID."','".$course."','".$incomeorexpence."')"); $last_id = $con->insert_id; function random_num($size) { $alpha_key = ''; $keys = range('A', 'Z'); for ($i = 0; $i < 2; $i++) { $alpha_key .= $keys[array_rand($keys)]; } $length = $size - 2; $key = ''; $keys = range(0, 9); for ($i = 0; $i < $length; $i++) { $key .= $keys[array_rand($keys)]; } return $alpha_key . $key; } $empid=random_num(3); $empid='EMP'.$empid; $check1=mysqli_query($con,"update employeeentryform set empid='".$empid."' where EmployeeEntryFormID=".$last_id); if($check){ $smss="DEAR ".$EmployeeName." YOUR NAME IS SUCCESSFULLY ADDED IN OUR SYSTEM AS FACULTY ON ".$ConfirmationDate." YOU EMPLOYEE NUMBER IS ".$empid."."; sendsms($con,$mobileno,$smss); $message='Congratulations Add Faculty Successfully !'; $_SESSION['msg']=' Record Add Successfully .'; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:medemployeereports.php"); break; case "EditMEDEmployeeEntryForm" : /*$EmployeeId = mysqli_escape_string($con,$_REQUEST['EmployeeId']); $EnterMonth = mysqli_escape_string($con,$_REQUEST['EnterMonth']); $EnterYear = mysqli_escape_string($con,$_REQUEST['EnterYear']); $Latedays = mysqli_escape_string($con,$_REQUEST['Latedays']); $LateDeduction = mysqli_escape_string($con,$_REQUEST['LateDeduction']); $ExtraLeaves = mysqli_escape_string($con,$_REQUEST['ExtraLeaves']); $LeaveDeduction = mysqli_escape_string($con,$_REQUEST['LeaveDeduction']); $PaymentMode = mysqli_escape_string($con,$_REQUEST['PaymentMode']); mysqli_query($con,"update employeeentryform set EmployeeId='".$EmployeeId."', EnterMonth='".$EnterMonth."',EnterYear='".$EnterYear."',Latedays='".$Latedays. "',LateDeduction='".$LateDeduction."',ExtraLeaves='".$ExtraLeaves."',LeaveDeduction= '".$LeaveDeduction."',PaymentMode='".$PaymentMode."' where EmployeeSalaryPaymentID=". (int)$_REQUEST['doid']); */ $email = mysqli_escape_string($con,$_REQUEST['email']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $qualification = mysqli_escape_string($con,$_REQUEST['qualification']); $subject = mysqli_escape_string($con,$_REQUEST['subject']); $days = mysqli_escape_string($con,$_REQUEST['days']); $months = mysqli_escape_string($con,$_REQUEST['months']); $years = mysqli_escape_string($con,$_REQUEST['years']); $ML = mysqli_escape_string($con,$_REQUEST['ML']); $basic = mysqli_escape_string($con,$_REQUEST['basic']); $hra = mysqli_escape_string($con,$_REQUEST['hra']); $ta = mysqli_escape_string($con,$_REQUEST['ta']); $da = mysqli_escape_string($con,$_REQUEST['da']); $pf = mysqli_escape_string($con,$_REQUEST['pf']); $itax = mysqli_escape_string($con,$_REQUEST['itax']); $ptax = mysqli_escape_string($con,$_REQUEST['ptax']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $course = mysqli_escape_string($con,$_REQUEST['course']); $incomeorexpence = mysqli_escape_string($con,$_REQUEST['incomeorexpence']); $EmployeeName = mysqli_escape_string($con,$_REQUEST['EmployeeName']); $EmployeeAddress = mysqli_escape_string($con,$_REQUEST['EmployeeAddress']); $ContactNo = mysqli_escape_string($con,$_REQUEST['ContactNo']); $DepartmentName = mysqli_escape_string($con,$_REQUEST['DepartmentName']); $DesignationName = mysqli_escape_string($con,$_REQUEST['DesignationName']); $EmployeeType = mysqli_escape_string($con,$_REQUEST['EmployeeType']); $PanNo = mysqli_escape_string($con,$_REQUEST['PanNo']); $AdharNo = mysqli_escape_string($con,$_REQUEST['AdharNo']); $DOB = mysqli_escape_string($con,$_REQUEST['DOB']); $DOJ = mysqli_escape_string($con,$_REQUEST['DOJ']); $ConfirmationDate = mysqli_escape_string($con,$_REQUEST['ConfirmationDate']); $CL = mysqli_escape_string($con,$_REQUEST['CL']); $EL = mysqli_escape_string($con,$_REQUEST['EL']); $Medical = mysqli_escape_string($con,$_REQUEST['Medical']); $PFNo = mysqli_escape_string($con,$_REQUEST['PFNo']); $BankAccNo = mysqli_escape_string($con,$_REQUEST['BankAccNo']); $AccountHolderName = mysqli_escape_string($con,$_REQUEST['AccountHolderName']); $BankName = mysqli_escape_string($con,$_REQUEST['BankName']); $BankBranchName = mysqli_escape_string($con,$_REQUEST['BankBranchName']); $IFSCCode = mysqli_escape_string($con,$_REQUEST['IFSCCode']); $AccountType = mysqli_escape_string($con,$_REQUEST['AccountType']); $BloodGroup = mysqli_escape_string($con,$_REQUEST['BloodGroup']); $LastCompanyJob = mysqli_escape_string($con,$_REQUEST['LastCompanyJob']); $EmergencyContactNo = mysqli_escape_string($con,$_REQUEST['EmergencyContactNo']); $check1=mysqli_query($con,"update employeeentryform set EmployeeName='".$EmployeeName."', EmployeeAddress='".$EmployeeAddress."',ContactNo='".$ContactNo."',DepartmentName='".$DepartmentName."', DesignationName='".$DesignationName."',EmployeeType='".$EmployeeType."', PanNo='".$PanNo."',AdharNo='".$AdharNo."',DOB='".$DOB."',DOJ='".$DOJ."',ConfirmationDate='".$ConfirmationDate."' ,CL='".$CL."',EL='".$EL."',Medical='".$Medical."',PFNo='".$PFNo."',BankAccNo='".$BankAccNo."' ,AccountHolderName='".$AccountHolderName."',BankName='".$BankName."',BankBranchName='".$BankBranchName."' ,IFSCCode='".$IFSCCode."',AccountType='".$AccountType."',BloodGroup='".$BloodGroup."',LastCompanyJob='".$LastCompanyJob."' ,EmergencyContactNo='".$EmergencyContactNo."',email='".$email."',mobileno='".$mobileno."', qualification='".$qualification."',subject='".$subject."',days='".$days."',months='".$months."' ,years='".$years."',ML='".$ML."',basic='".$basic."',hra='".$hra."',ta='".$ta."',da='".$da."',pf='".$pf."' ,itax='".$itax."',ptax='".$ptax."',course='".$course."',incomeorexpence='".$incomeorexpence."' where `EmployeeEntryFormID`=".(int)$_REQUEST['doid']); if($_FILES['Photo']['name']!= NULL){ $Photo = time().'_'.$_FILES['Photo']['name']; move_uploaded_file($_FILES['Photo']['tmp_name'],"images/MarksheetPhoto/".$Photo); $check=mysqli_query($con,"update employeeentryform set Photo='".$Photo."' where `EmployeeEntryFormID`=".(int)$_REQUEST['doid']); } if($_FILES['LastCompanyReleleseLatter']['name']!= NULL){ $LastCompanyReleleseLatter = time().'_'.$_FILES['LastCompanyReleleseLatter']['name']; move_uploaded_file($_FILES['LastCompanyReleleseLatter']['tmp_name'],"images/MarksheetPhoto/".$LastCompanyReleleseLatter); $check=mysqli_query($con,"update employeeentryform set LastCompanyReleleseLatter='".$LastCompanyReleleseLatter."' where `EmployeeEntryFormID`=".(int)$_REQUEST['doid']); } if($_FILES['PanCard']['name']!= NULL){ $PanCard = time().'_'.$_FILES['PanCard']['name']; move_uploaded_file($_FILES['PanCard']['tmp_name'],"images/MarksheetPhoto/".$PanCard); $check=mysqli_query($con,"update employeeentryform set PanCard='".$PanCard."' where `EmployeeEntryFormID`=".(int)$_REQUEST['doid']); } if($_FILES['AadhaarCard']['name']!= NULL){ $AadhaarCard = time().'_'.$_FILES['AadhaarCard']['name']; move_uploaded_file($_FILES['AadhaarCard']['tmp_name'],"images/MarksheetPhoto/".$AadhaarCard); $check=mysqli_query($con,"update employeeentryform set AadhaarCard='".$AadhaarCard."' where `EmployeeEntryFormID`=".(int)$_REQUEST['doid']); } if($check1){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:medemployeereports.php"); break; case "SubjectEntry" : $SubjectTitle = mysqli_escape_string($con,$_REQUEST['SubjectTitle']); $ddlcourse = mysqli_escape_string($con,$_REQUEST['ddlcourse']); mysqli_query($con,"insert into student_subject(SubjectName,CourseID) values('".$SubjectTitle."','".$ddlcourse."')"); header("Location:StudentSubject.php"); break; case "EditSubjectEntry" : $EmployeeTypeName = mysqli_escape_string($con,$_REQUEST['EmployeeTypeName']); mysqli_query($con,"update student_subject set SubjectName='".$SubjectTitle."' ,CourseID= '".$ddlcourse."'where CourseID=".(int)$_REQUEST['doid']); header("Location:StudentSubject.php"); break; case "ConsultantEntryForm" : $name = mysqli_escape_string($con,$_REQUEST['name']); $email = mysqli_escape_string($con,$_REQUEST['email']); $phone = mysqli_escape_string($con,$_REQUEST['phone']); $address = mysqli_escape_string($con,$_REQUEST['address']); $incomeorexpence = mysqli_escape_string($con,$_REQUEST['incomeorexpence']); $upuserresult=mysqli_query($con,"select * from consultants where email='".$email."' "); $row=mysqli_num_rows($upuserresult); $mobiles=mysqli_query($con,"select * from consultants where phone='".$phone."'"); $mobil=mysqli_num_rows($mobiles); if($row>0){ $_SESSION['msg']='Email Id Allready Exits ! '; header("Location:consultantentry.php"); }else if($mobil>0){ $_SESSION['msg']=' Phone No Allready Exits ! '; header("Location:consultantentry.php"); }else{ $check=mysqli_query($con,"insert into consultants(name,email,phone,address,incomeorexpence) values('".$name."','".$email."','".$phone."','".$address."','".$incomeorexpence."')"); if($check){ $ms='DEAR '.$name.' CONGRATULATION YOU ARE REGISTRAD WITH US AS CONSULTANT . '; sendsms($con,$phone,$ms); $_SESSION['msg']=' Record Add Successfully .'; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:consultantentry.php"); } break; case "ConsultantEditForm" : $name = mysqli_escape_string($con,$_REQUEST['name']); $email = mysqli_escape_string($con,$_REQUEST['email']); $phone = mysqli_escape_string($con,$_REQUEST['phone']); $address = mysqli_escape_string($con,$_REQUEST['address']); $incomeorexpence = mysqli_escape_string($con,$_REQUEST['incomeorexpence']); $check=mysqli_query($con,"update consultants set name='".$name."' ,email= '".$email."',phone= '".$phone."',address= '".$address."',incomeorexpence= '".$incomeorexpence."' where id=".(int)$_REQUEST['doid']); if($check){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:consultantentry.php"); break; case "AdmissionFormEnquiry" : $AdmissionType = mysqli_escape_string($con,$_REQUEST['AdmissionType']); $consultants_amount = mysqli_escape_string($con,$_REQUEST['consultants_amount']); $checkno = mysqli_escape_string($con,$_REQUEST['checkno']); $adhar_card_number = mysqli_escape_string($con,$_REQUEST['adhar_card_number']); $academicyear = mysqli_escape_string($con,$_REQUEST['academicyear']); $applicationtype = mysqli_escape_string($con,$_REQUEST['applicationtype']); $admissionamount = mysqli_escape_string($con,$_REQUEST['admissionamount']); $enquiryid = mysqli_escape_string($con,$_REQUEST['enquiryid']); $consultants = mysqli_escape_string($con,$_REQUEST['consultants']); $local_guardian = mysqli_escape_string($con,$_REQUEST['local_guardian']); $enquiry_id = mysqli_escape_string($con,$_REQUEST['enquiry_id']); $name = mysqli_escape_string($con,$_REQUEST['name']); $fname = mysqli_escape_string($con,$_REQUEST['fname']); $mname = mysqli_escape_string($con,$_REQUEST['mname']); $dob = mysqli_escape_string($con,$_REQUEST['dob']); $gender = mysqli_escape_string($con,$_REQUEST['gender']); $caste = mysqli_escape_string($con,$_REQUEST['caste']); $religion = mysqli_escape_string($con,$_REQUEST['religion']); $nationality = mysqli_escape_string($con,$_REQUEST['nationality']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $email = mysqli_escape_string($con,$_REQUEST['email']); $address = mysqli_escape_string($con,$_REQUEST['address']); $course = mysqli_escape_string($con,$_REQUEST['course']); $course_ids = mysqli_escape_string($con,$_REQUEST['course']); $subject = mysqli_escape_string($con,$_REQUEST['subject']); $lastqualification = mysqli_escape_string($con,$_REQUEST['lastqualification']); $lastqualificationper = mysqli_escape_string($con,$_REQUEST['lastqualificationper']); $bookingamount = mysqli_escape_string($con,$_REQUEST['bookingamount']); $totalfee = mysqli_escape_string($con,$_REQUEST['totalfee']); $lessdiscount = mysqli_escape_string($con,$_REQUEST['lessdiscount']); $wremarks = mysqli_escape_string($con,$_REQUEST['wremarks']); $paymentmode = mysqli_escape_string($con,$_REQUEST['paymentmode']); $admissiondate = mysqli_escape_string($con,$_REQUEST['admissiondate']); $upload1 = mysqli_escape_string($con,$_FILES['upload1']); $upload2 = mysqli_escape_string($con,$_FILES['upload2']); $upload3 = mysqli_escape_string($con,$_FILES['upload3']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $submitfee = mysqli_escape_string($con,$_REQUEST['submitfee']); $bank_name = mysqli_escape_string($con,$_REQUEST['bank_name']); $bank = mysqli_escape_string($con,$_REQUEST['bank']); $transaction_no = mysqli_escape_string($con,$_REQUEST['transaction_no']); //$dueamountss=$submitfee+$lessdiscount; $dueamountsa=$submitfee; $AdmitPhoto = ''; $adharcard = ''; $mark = ''; $cast_certificate =''; $signature=''; if($_FILES['upload1']['name']!= NULL){ $AdmitPhoto = time().'_'.$_FILES['upload1']['name']; move_uploaded_file($_FILES['upload1']['tmp_name'],"images/StudentEnquiry/".$AdmitPhoto); } if($_FILES['upload2']['name']!= NULL){ $adharcard = time().'_'.$_FILES['upload2']['name']; move_uploaded_file($_FILES['upload2']['tmp_name'],"images/StudentEnquiry/".$adharcard); } if($_FILES['upload3']['name']!= NULL){ $mark = time().'_'.$_FILES['upload3']['name']; move_uploaded_file($_FILES['upload3']['tmp_name'],"images/StudentEnquiry/".$mark); } if($_FILES['cast_certificate']['name']!= NULL){ $cast_certificate = time().'_'.$_FILES['cast_certificate']['name']; move_uploaded_file($_FILES['cast_certificate']['tmp_name'],"images/StudentEnquiry/".$cast_certificate); } if($_FILES['signature']['name']!= NULL){ $signature = time().'_'.$_FILES['signature']['name']; move_uploaded_file($_FILES['signature']['tmp_name'],"images/StudentEnquiry/".$signature); } if($_FILES['madhyamicreg']['name']!= NULL){ $madhyamicreg = time().'_'.$_FILES['madhyamicreg']['name']; move_uploaded_file($_FILES['madhyamicreg']['tmp_name'],"images/StudentEnquiry/".$madhyamicreg); } if($_FILES['graduationmark']['name']!= NULL){ $graduationmark = time().'_'.$_FILES['graduationmark']['name']; move_uploaded_file($_FILES['graduationmark']['tmp_name'],"images/StudentEnquiry/".$graduationmark); } if($_FILES['mastermark']['name']!= NULL){ $mastermark = time().'_'.$_FILES['mastermark']['name']; move_uploaded_file($_FILES['mastermark']['tmp_name'],"images/StudentEnquiry/".$mastermark); } if($_FILES['mcresolation']['name']!= NULL){ $mcresolation = time().'_'.$_FILES['mcresolation']['name']; move_uploaded_file($_FILES['mcresolation']['tmp_name'],"images/StudentEnquiry/".$mcresolation); } if($_FILES['dipermission']['name']!= NULL){ $dipermission = time().'_'.$_FILES['dipermission']['name']; move_uploaded_file($_FILES['dipermission']['tmp_name'],"images/StudentEnquiry/".$dipermission); } if($_FILES['madhymicmarksheet']['name']!= NULL){ $madhymicmarksheet = time().'_'.$_FILES['madhymicmarksheet']['name']; move_uploaded_file($_FILES['madhymicmarksheet']['tmp_name'],"images/StudentEnquiry/".$madhymicmarksheet); } if(!empty($email)){ $upuserresult=mysqli_query($con,"select * from admission_enquiry_form where email='".$email."' "); $row=mysqli_num_rows($upuserresult); }else{ $row=0; } $mobiles=mysqli_query($con,"select * from admission_enquiry_form where mobileno='".$mobileno."'"); $mobil=mysqli_num_rows($mobiles); if($row>0){ $_SESSION['msg']='Email Id Allready Exits ! '; if($AdmissionType=='Enquiry'){ header("Location:admission_form_enquiry.php"); }else{ header("Location:direct_admission.php"); } }else if($mobil>0){ $_SESSION['msg']=' Mobile No Allready Exits ! '; if($AdmissionType=='Enquiry'){ header("Location:admission_form_enquiry.php"); }else{ header("Location:direct_admission.php"); } }else{ $check=mysqli_query($con,"insert into admission_enquiry_form(enquiry_id,name,fname,mname,user_id,dob,gender,caste,religion, nationality,mobileno,email,address,course,subject,lastqualification,lastqualificationper,bookingamount, totalfee,lessdiscount,wremarks,paymentmode,admissiondate,photos,adharcard,studentdoc,cast_certificate,signature, check_no,adhar_card_number,academicyear,applicationtype,madhyamicreg,graduationmark,mcresolation, dipermission,mastermark,dueamount,admissiontype,consultants,consultants_amount,madhymicmarksheet ,gaveinstallment,bank_name,bank,transaction_no,local_guardian) values('".$enquiryid."','".$name."','".$fname."','".$mname."','".$UserID."','".$dob."','".$gender."','".$caste."', '".$religion."','".$nationality."','".$mobileno."','".$email."','".$address."','".$course."','".$subject."', '".$lastqualification."','".$lastqualificationper."','".$bookingamount."','".$totalfee."','".$lessdiscount."', '".$wremarks."','".$paymentmode."','".$admissiondate."','".$AdmitPhoto."','".$adharcard."','".$mark."', '".$cast_certificate."','".$signature."','".$checkno."','".$adhar_card_number."','".$academicyear."' ,'".$applicationtype."','".$madhyamicreg."','".$graduationmark."','".$mcresolation."','".$dipermission."' ,'".$mastermark."','".$dueamountsa."','".$AdmissionType."','".$consultants."' ,'".$consultants_amount."','".$madhymicmarksheet."','".$submitfee."','".$bank_name."','".$bank."','".$transaction_no."', '".$local_guardian."')"); if($check){ $last_id = $con->insert_id; $last_id =$last_id-1 ; $collage=mysqli_query($con,"select * from collageinfo where id='1'"); $collage=mysqli_fetch_array($collage); $idsi="ARP/D.El.Ed/2018-2019/1"; $CasteQuery=mysqli_query($con,"select * from course where id='".$course."'"); $CasteRow=mysqli_fetch_array($CasteQuery); $course=$CasteRow['c_name']; $academicyearf=mysqli_query($con,"select * from commenacademicyear where id='".$academicyear."'"); $academicyearf=mysqli_fetch_array($academicyearf); $academictitle=$academicyearf['academictitle']; $student_id=substr($collage['collagename'],0,3).'/'.$course.'/'.$academictitle.'/'; $newstudent_id=substr("VTTI",0,4).'/'.$course.'/'.$academictitle.'/'; $stu_id=mysqli_query($con,"select * from admission_enquiry_form where student_id LIKE '$newstudent_id%' order by id desc limit 1"); $stu_id=mysqli_fetch_array($stu_id); $sydts=$stu_id['student_id']; $implodestr=explode("/",$sydts); $couser=$implodestr[1]; $intgerid=$implodestr[3]; if($intgerid){ $number = $intgerid; $number++; $ide=str_pad($number,3 , "0", STR_PAD_LEFT); // echo $ide; }else { $ide='001'; } /* function random_num($size) { $alpha_key = ''; $keys = range('A', 'Z'); for ($i = 0; $i < 2; $i++) { $alpha_key .= $keys[array_rand($keys)]; } $length = $size; $key = ''; $keys = range(0, 9); for ($i = 0; $i < $length; $i++) { $key .= $keys[array_rand($keys)]; } return $key; } $student_id=random_num(4); */ $student_id=$newstudent_id.$ide; if($AdmissionType=='Enquiry'){ $student_id=$student_id; }else{ $student_id=$student_id; mysqli_query($con,"insert into consultants_payments(user_id,student_id,consultants_id,totalamount,due) values('".$UserID."','".$student_id."','".$consultants."','".$consultants_amount."','".$consultants_amount."')"); } $last_id=$last_id+1; $check1=mysqli_query($con,"update admission_enquiry_form set student_id='".$student_id."' where id='".$last_id."'"); //Payment: if($paymentmode=="Cheque"){ $chequequery=mysqli_query($con,"insert into checktransaction (user_id,sem_no,student_id,approve,cheque_for,amount, bank_id,bank_name,checkno) values ('".$UserID."',1,'".$last_id."','0','admission','".$admissionamount."','".$bank_name."', '".$bank."','".$checkno."')"); }else{ mysqli_query($con,"update admission_enquiry_form set submitfee='".$admissionamount."' where student_id='".$student_id."'"); } $sms="DEAR ".$name." YOUR STUDENT NUMBER IS ".$student_id." KEEP IT SAFE FOR FURTHER COMUNICATION ."; sendsms($con,$mobileno,$sms); $_SESSION['msg']=' Record Add Successfully ID is :'.$student_id; header("Location:AdmissionEnquiryReports.php"); }else{ $_SESSION['msg']='Record Not Add Failed! '; header("Location:AdmissionEnquiryReports.php"); } //header("Location:AdmissionEnquiryReports.php"); } break; case "EditAdmissionFormEnquiry" : $adhar_card_number = mysqli_escape_string($con,$_REQUEST['adhar_card_number']); $check_no = mysqli_escape_string($con,$_REQUEST['checkno']); $academicyear = mysqli_escape_string($con,$_REQUEST['academicyear']); $applicationtype = mysqli_escape_string($con,$_REQUEST['applicationtype']); $admissionamount = mysqli_escape_string($con,$_REQUEST['admissionamount']); $consultants_amount = mysqli_escape_string($con,$_REQUEST['consultants_amount']); $name = mysqli_escape_string($con,$_REQUEST['name']); $fname = mysqli_escape_string($con,$_REQUEST['fname']); $mname = mysqli_escape_string($con,$_REQUEST['mname']); $dob = mysqli_escape_string($con,$_REQUEST['dob']); $gender = mysqli_escape_string($con,$_REQUEST['gender']); $local_guardian = mysqli_escape_string($con,$_REQUEST['local_guardian']); $caste = mysqli_escape_string($con,$_REQUEST['caste']); $religion = mysqli_escape_string($con,$_REQUEST['religion']); $nationality = mysqli_escape_string($con,$_REQUEST['nationality']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $email = mysqli_escape_string($con,$_REQUEST['email']); $address = mysqli_escape_string($con,$_REQUEST['address']); $course = mysqli_escape_string($con,$_REQUEST['course']); $subject = mysqli_escape_string($con,$_REQUEST['subject']); $lastqualification = mysqli_escape_string($con,$_REQUEST['lastqualification']); $lastqualificationper = mysqli_escape_string($con,$_REQUEST['lastqualificationper']); $bookingamount = mysqli_escape_string($con,$_REQUEST['bookingamount']); $totalfee = mysqli_escape_string($con,$_REQUEST['totalfee']); $lessdiscount = mysqli_escape_string($con,$_REQUEST['lessdiscount']); $wremarks = mysqli_escape_string($con,$_REQUEST['wremarks']); $paymentmode = mysqli_escape_string($con,$_REQUEST['paymentmode']); $admissiondate = mysqli_escape_string($con,$_REQUEST['admissiondate']); $upload1 = mysqli_escape_string($con,$_FILES['upload1']); $consultants = mysqli_escape_string($con,$_REQUEST['consultants']); $AdmissionType = mysqli_escape_string($con,$_REQUEST['AdmissionType']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $submitfee = mysqli_escape_string($con,$_REQUEST['submitfee']); $bank_name = mysqli_escape_string($con,$_REQUEST['bank_name']); $bank = mysqli_escape_string($con,$_REQUEST['bank']); $transaction_no = mysqli_escape_string($con,$_REQUEST['transaction_no']); $dueamountsa=$submitfee; if($AdmissionType=='Direct'){ $check1=mysqli_query($con,"update admission_enquiry_form set name='".$name."',fname='".$fname."' ,mname='".$mname."',user_id='".$UserID."',dob='".$dob."',gender='".$gender."',caste='".$caste."', religion='".$religion."',nationality='".$nationality."',mobileno='".$mobileno."',address='".$address."', course='".$course."',subject='".$subject."',lastqualification='".$lastqualification."',lastqualificationper= '".$lastqualificationper."',bookingamount='".$bookingamount."',totalfee='".$totalfee."',lessdiscount='".$lessdiscount."' ,wremarks='".$wremarks."',paymentmode='".$paymentmode."',admissiondate='".$admissiondate."' ,check_no='".$check_no."',adhar_card_number='".$adhar_card_number."',academicyear='".$academicyear."' ,applicationtype='".$applicationtype."',submitfee='".$admissionamount."' ,dueamount='".$dueamountsa."',consultants='".$consultants."',consultants_amount='".$consultants_amount."' ,gaveinstallment='".$gaveinstallment."',bank_name='".$bank_name."' ,bank='".$bank."',dueamount='".$dueamountsa."',local_guardian='".$local_guardian."' where id=".(int)$_REQUEST['doid']); }else{ $check1=mysqli_query($con,"update admission_enquiry_form set name='".$name."',fname='".$fname."' ,mname='".$mname."',user_id='".$UserID."',dob='".$dob."',gender='".$gender."',caste='".$caste."', religion='".$religion."',nationality='".$nationality."',mobileno='".$mobileno."',address='".$address."', course='".$course."',subject='".$subject."',lastqualification='".$lastqualification."',lastqualificationper= '".$lastqualificationper."',bookingamount='".$bookingamount."',totalfee='".$totalfee."',lessdiscount='".$lessdiscount."' ,wremarks='".$wremarks."',paymentmode='".$paymentmode."',admissiondate='".$admissiondate."' ,check_no='".$check_no."',adhar_card_number='".$adhar_card_number."',academicyear='".$academicyear."' ,applicationtype='".$applicationtype."',submitfee='".$admissionamount."' ,dueamount='".$dueamountsa."',gaveinstallment='".$gaveinstallment."',bank_name='".$bank_name."' ,bank='".$bank."',dueamount='".$dueamountsa."',local_guardian='".$local_guardian."' where id=".(int)$_REQUEST['doid']); } $STUDENT=mysqli_fetch_array(mysqli_query($con,"select student_id from admission_enquiry_form where id=".(int)$_REQUEST['doid']))['student_id']; mysqli_query($con,"update consultants_payments set user_id='".$UserID."',consultants_id='".$consultants."', totalamount='".$consultants_amount."' where student_id='".$STUDENT."'"); $AdmitPhoto = ''; $adharcard = ''; $mark = ''; $signature=''; $cast_certificate=''; $upload1=''; $upload2=''; $upload3=''; if($_FILES['upload1']['name']!= NULL){ $AdmitPhoto = time().'_'.$_FILES['upload1']['name']; move_uploaded_file($_FILES['upload1']['tmp_name'],"images/StudentEnquiry/".$AdmitPhoto); $check=mysqli_query($con,"update admission_enquiry_form set photos='".$AdmitPhoto."' where id=".(int)$_REQUEST['doid']); } if($_FILES['signature']['name']!= NULL){ $signature = time().'_'.$_FILES['signature']['name']; move_uploaded_file($_FILES['signature']['tmp_name'],"images/StudentEnquiry/".$signature); $check=mysqli_query($con,"update admission_enquiry_form set signature='".$signature."' where id=".(int)$_REQUEST['doid']); } if($_FILES['madhymicmarksheet']['name']!= NULL){ $madhymicmarksheet = time().'_'.$_FILES['madhymicmarksheet']['name']; move_uploaded_file($_FILES['madhymicmarksheet']['tmp_name'],"images/StudentEnquiry/".$madhymicmarksheet); $check=mysqli_query($con,"update admission_enquiry_form set signature='".$madhymicmarksheet."' where id=".(int)$_REQUEST['doid']); } if($_FILES['upload2']['name']!= NULL){ $upload2 = time().'_'.$_FILES['upload2']['name']; move_uploaded_file($_FILES['upload2']['tmp_name'],"images/StudentEnquiry/".$upload2); $check=mysqli_query($con,"update admission_enquiry_form set adharcard='".$upload2."' where id=".(int)$_REQUEST['doid']); } if($_FILES['upload3']['name']!= NULL){ $upload3 = time().'_'.$_FILES['upload3']['name']; move_uploaded_file($_FILES['upload3']['tmp_name'],"images/StudentEnquiry/".$upload3); $check=mysqli_query($con,"update admission_enquiry_form set studentdoc='".$upload3."' where id=".(int)$_REQUEST['doid']); } if($_FILES['cast_certificate']['name']!= NULL){ $cast_certificate = time().'_'.$_FILES['cast_certificate']['name']; move_uploaded_file($_FILES['cast_certificate']['tmp_name'],"images/StudentEnquiry/".$cast_certificate); $check=mysqli_query($con,"update admission_enquiry_form set cast_certificate='".$cast_certificate."' where id=".(int)$_REQUEST['doid']); } if($_FILES['madhyamicreg']['name']!= NULL){ $madhyamicreg = time().'_'.$_FILES['madhyamicreg']['name']; move_uploaded_file($_FILES['madhyamicreg']['tmp_name'],"images/StudentEnquiry/".$madhyamicreg); $check=mysqli_query($con,"update admission_enquiry_form set madhyamicreg='".$madhyamicreg."' where id=".(int)$_REQUEST['doid']); } if($_FILES['graduationmark']['name']!= NULL){ $graduationmark = time().'_'.$_FILES['graduationmark']['name']; move_uploaded_file($_FILES['graduationmark']['tmp_name'],"images/StudentEnquiry/".$graduationmark); $check=mysqli_query($con,"update admission_enquiry_form set graduationmark='".$graduationmark."' where id=".(int)$_REQUEST['doid']); } if($_FILES['mastermark']['name']!= NULL){ $mastermark = time().'_'.$_FILES['mastermark']['name']; move_uploaded_file($_FILES['mastermark']['tmp_name'],"images/StudentEnquiry/".$mastermark); $check=mysqli_query($con,"update admission_enquiry_form set mastermark='".$mastermark."' where id=".(int)$_REQUEST['doid']); } if($_FILES['mcresolation']['name']!= NULL){ $mcresolation = time().'_'.$_FILES['mcresolation']['name']; move_uploaded_file($_FILES['mcresolation']['tmp_name'],"images/StudentEnquiry/".$mcresolation); $check=mysqli_query($con,"update admission_enquiry_form set mcresolation='".$mcresolation."' where id=".(int)$_REQUEST['doid']); } if($_FILES['dipermission']['name']!= NULL){ $dipermission = time().'_'.$_FILES['dipermission']['name']; move_uploaded_file($_FILES['dipermission']['tmp_name'],"images/StudentEnquiry/".$dipermission); $check=mysqli_query($con,"update admission_enquiry_form set dipermission='".$dipermission."' where id=".(int)$_REQUEST['doid']); } if($privous_amount>$dueamountsa){ $submitfee=$privous_amount-$dueamountsa; }else{ $submitfee=$dueamountsa-$privous_amount; } if($paymentmode=='Cash'){ $privous_amount = mysqli_escape_string($con,$_REQUEST['privous_amount']); $check=mysqli_query($con,"Update totalcash set user_id='".$UserID."',income=income+'".$submitfee."' where id='1'"); }else{ mysqli_query($con,"update bankdetails set income=income+'".$submitfee."' where id='".$bank_name."'"); } if($check1){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:AdmissionEnquiryReports.php"); break; case "DireectAdmission" : $adhar_card_number = mysqli_escape_string($con,$_REQUEST['adhar_card_number']); $consultants = mysqli_escape_string($con,$_REQUEST['consultants']); $acadmicyear = mysqli_escape_string($con,$_REQUEST['acadmicyear']); $checkno = mysqli_escape_string($con,$_REQUEST['checkno']); $consultants_amount = mysqli_escape_string($con,$_REQUEST['consultants_amount']); $applicationtype = mysqli_escape_string($con,$_REQUEST['applicationtype']); $submitfee = mysqli_escape_string($con,$_REQUEST['submitfee']); $name = mysqli_escape_string($con,$_REQUEST['name']); $fname = mysqli_escape_string($con,$_REQUEST['fname']); $mname = mysqli_escape_string($con,$_REQUEST['mname']); $dob = mysqli_escape_string($con,$_REQUEST['dob']); $gender = mysqli_escape_string($con,$_REQUEST['gender']); $caste = mysqli_escape_string($con,$_REQUEST['caste']); $religion = mysqli_escape_string($con,$_REQUEST['religion']); $nationality = mysqli_escape_string($con,$_REQUEST['nationality']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $email = mysqli_escape_string($con,$_REQUEST['email']); $address = mysqli_escape_string($con,$_REQUEST['address']); $course = mysqli_escape_string($con,$_REQUEST['course']); $subject = mysqli_escape_string($con,$_REQUEST['subject']); $lastqualification = mysqli_escape_string($con,$_REQUEST['lastqualification']); $lastqualificationper = mysqli_escape_string($con,$_REQUEST['lastqualificationper']); $bookingamount = mysqli_escape_string($con,$_REQUEST['bookingamount']); $totalfee = mysqli_escape_string($con,$_REQUEST['totalfee']); $lessdiscount = mysqli_escape_string($con,$_REQUEST['lessdiscount']); $wremarks = mysqli_escape_string($con,$_REQUEST['wremarks']); $paymentmode = mysqli_escape_string($con,$_REQUEST['paymentmode']); $admissiondate = mysqli_escape_string($con,$_REQUEST['admissiondate']); $upload1 = mysqli_escape_string($con,$_FILES['upload1']); $upload2 = mysqli_escape_string($con,$_FILES['upload2']); $upload3 = mysqli_escape_string($con,$_FILES['upload3']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $dueamountss=$submitfee+$lessdiscount+$bookingamount; $dueamountsa=$totalfee-$dueamountss; $AdmitPhoto = ''; $adharcard = ''; $mark = ''; $cast_certificate =''; $signature=''; if($_FILES['upload1']['name']!= NULL){ $AdmitPhoto = time().'_'.$_FILES['upload1']['name']; move_uploaded_file($_FILES['upload1']['tmp_name'],"images/StudentEnquiry/".$AdmitPhoto); } if($_FILES['upload2']['name']!= NULL){ $adharcard = time().'_'.$_FILES['upload2']['name']; move_uploaded_file($_FILES['upload2']['tmp_name'],"images/StudentEnquiry/".$adharcard); } if($_FILES['upload3']['name']!= NULL){ $mark = time().'_'.$_FILES['upload3']['name']; move_uploaded_file($_FILES['upload3']['tmp_name'],"images/StudentEnquiry/".$mark); } if($_FILES['cast_certificate']['name']!= NULL){ $cast_certificate = time().'_'.$_FILES['cast_certificate']['name']; move_uploaded_file($_FILES['cast_certificate']['tmp_name'],"images/StudentEnquiry/".$cast_certificate); } if($_FILES['signature']['name']!= NULL){ $signature = time().'_'.$_FILES['signature']['name']; move_uploaded_file($_FILES['signature']['tmp_name'],"images/StudentEnquiry/".$signature); } if($_FILES['madhyamicreg']['name']!= NULL){ $madhyamicreg = time().'_'.$_FILES['madhyamicreg']['name']; move_uploaded_file($_FILES['madhyamicreg']['tmp_name'],"images/StudentEnquiry/".$madhyamicreg); } if($_FILES['graduationmark']['name']!= NULL){ $graduationmark = time().'_'.$_FILES['graduationmark']['name']; move_uploaded_file($_FILES['graduationmark']['tmp_name'],"images/StudentEnquiry/".$graduationmark); } if($_FILES['mastermark']['name']!= NULL){ $mastermark = time().'_'.$_FILES['mastermark']['name']; move_uploaded_file($_FILES['mastermark']['tmp_name'],"images/StudentEnquiry/".$mastermark); } if($_FILES['mcresolation']['name']!= NULL){ $mcresolation = time().'_'.$_FILES['mcresolation']['name']; move_uploaded_file($_FILES['mcresolation']['tmp_name'],"images/StudentEnquiry/".$mcresolation); } if($_FILES['dipermission']['name']!= NULL){ $dipermission = time().'_'.$_FILES['dipermission']['name']; move_uploaded_file($_FILES['dipermission']['tmp_name'],"images/StudentEnquiry/".$dipermission); } $check=mysqli_query($con,"insert into direct_admission(name,fname,mname,user_id,dob,gender,caste,religion, nationality,mobileno,email,address,course,consultants,subject,lastqualification,lastqualificationper, bookingamount,totalfee,lessdiscount,wremarks,paymentmode,admissiondate,acadmicyear,checkno,photos,adharcard, studentdoc,consultants_payments,signature,cast_certificate,adhar_card_number,applicationtype,madhyamicreg,graduationmark,mcresolation, dipermission,mastermark,submitfee,dueamount) values('".$name."','".$fname."','".$mname."','".$UserID."','".$dob."','".$gender."','".$caste."', '".$religion."','".$nationality."','".$mobileno."','".$email."','".$address."','".$course."','".$consultants."', '".$subject."','".$lastqualification."','".$lastqualificationper."','".$bookingamount."','".$totalfee."', '".$lessdiscount."','".$wremarks."','".$paymentmode."','".$admissiondate."','".$acadmicyear."','".$checkno."', '".$AdmitPhoto."','".$adharcard."','".$mark."','".$consultants_amount."','".$signature."' ,'".$cast_certificate."','".$adhar_card_number."','".$applicationtype."','".$madhyamicreg."', '".$graduationmark."','".$mcresolation."','".$dipermission."' ,'".$mastermark."','".$submitfee."','".$dueamountsa."')"); if($check){ $last_id = $con->insert_id; function random_num($size) { $alpha_key = ''; $keys = range('A', 'Z'); for ($i = 0; $i < 2; $i++) { $alpha_key .= $keys[array_rand($keys)]; } $length = $size - 2; $key = ''; $keys = range(0, 9); for ($i = 0; $i < $length; $i++) { $key .= $keys[array_rand($keys)]; } return $alpha_key . $key; } $student_id=random_num(9); mysqli_query($con,"insert into consultants_payments(user_id,student_id,consultants_id,totalamount) values('".$UserID."','".$student_id."','".$consultants."','".$consultants_amount."')"); $check1=mysqli_query($con,"update direct_admission set student_id='".$student_id."' where id=".$last_id); $_SESSION['msg']=' Record Add Successfully ID Is :'.$student_id; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:AdmissionEnquiryReports.php"); break; case "EditDirectAdmission" : $adhar_card_number = mysqli_escape_string($con,$_REQUEST['adhar_card_number']); $consultants = mysqli_escape_string($con,$_REQUEST['consultants']); $acadmicyear = mysqli_escape_string($con,$_REQUEST['acadmicyear']); $checkno = mysqli_escape_string($con,$_REQUEST['checkno']); $consultants_amount = mysqli_escape_string($con,$_REQUEST['consultants_amount']); $applicationtype = mysqli_escape_string($con,$_REQUEST['applicationtype']); $submitfee = mysqli_escape_string($con,$_REQUEST['submitfee']); $name = mysqli_escape_string($con,$_REQUEST['name']); $fname = mysqli_escape_string($con,$_REQUEST['fname']); $mname = mysqli_escape_string($con,$_REQUEST['mname']); $dob = mysqli_escape_string($con,$_REQUEST['dob']); $gender = mysqli_escape_string($con,$_REQUEST['gender']); $caste = mysqli_escape_string($con,$_REQUEST['caste']); $religion = mysqli_escape_string($con,$_REQUEST['religion']); $nationality = mysqli_escape_string($con,$_REQUEST['nationality']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $email = mysqli_escape_string($con,$_REQUEST['email']); $address = mysqli_escape_string($con,$_REQUEST['address']); $course = mysqli_escape_string($con,$_REQUEST['course']); $subject = mysqli_escape_string($con,$_REQUEST['subject']); $lastqualification = mysqli_escape_string($con,$_REQUEST['lastqualification']); $lastqualificationper = mysqli_escape_string($con,$_REQUEST['lastqualificationper']); $bookingamount = mysqli_escape_string($con,$_REQUEST['bookingamount']); $totalfee = mysqli_escape_string($con,$_REQUEST['totalfee']); $lessdiscount = mysqli_escape_string($con,$_REQUEST['lessdiscount']); $wremarks = mysqli_escape_string($con,$_REQUEST['wremarks']); $paymentmode = mysqli_escape_string($con,$_REQUEST['paymentmode']); $admissiondate = mysqli_escape_string($con,$_REQUEST['admissiondate']); $upload1 = mysqli_escape_string($con,$_FILES['upload1']); $Students_ids = mysqli_escape_string($con,$_REQUEST['Students_ids']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $dueamountss=$submitfee+$lessdiscount+$bookingamount; $dueamountsa=$totalfee-$dueamountss; $check1=mysqli_query($con,"update direct_admission set name='".$name."',fname='".$fname."',mname='".$mname."',user_id='".$UserID."',dob='".$dob."' ,gender='".$gender."',caste='".$caste."',religion='".$religion."',nationality='".$nationality."' ,mobileno='".$mobileno."',address='".$address."',course='".$course."',subject='".$subject."' ,lastqualification='".$lastqualification."',lastqualificationper='".$lastqualificationper."' ,bookingamount='".$bookingamount."',totalfee='".$totalfee."',lessdiscount='".$lessdiscount."' ,wremarks='".$wremarks."',paymentmode='".$paymentmode."',admissiondate='".$admissiondate."' ,consultants='".$consultants."',checkno='".$checkno."' ,consultants_payments='".$consultants_amount."',adhar_card_number='".$adhar_card_number."' ,acadmicyear='".$acadmicyear."',applicationtype='".$applicationtype."',submitfee='".$submitfee."' ,dueamount='".$dueamountsa."' where id=".(int)$_REQUEST['doid']); mysqli_query($con,"update consultants_payments set user_id='".$UserID."',consultants_id='".$consultants."', totalamount='".$consultants_amount."' where student_id=".(int)$_REQUEST['Students_ids']); $AdmitPhoto = ''; $adharcard = ''; $mark = ''; $cast_certificate =''; $signature=''; if($_FILES['upload1']['name']!= NULL){ $AdmitPhoto = time().'_'.$_FILES['upload1']['name']; move_uploaded_file($_FILES['upload1']['tmp_name'],"images/StudentEnquiry/".$AdmitPhoto); $check1=mysqli_query($con,"update direct_admission set photos='".$AdmitPhoto."' where id=".(int)$_REQUEST['doid']); } if($_FILES['upload2']['name']!= NULL){ $adharcard = time().'_'.$_FILES['upload2']['name']; move_uploaded_file($_FILES['upload2']['tmp_name'],"images/StudentEnquiry/".$adharcard); $check=mysqli_query($con,"update direct_admission set adharcard='".$adharcard."' where id=".(int)$_REQUEST['doid']); } if($_FILES['upload3']['name']!= NULL){ $mark = time().'_'.$_FILES['upload3']['name']; move_uploaded_file($_FILES['upload3']['tmp_name'],"images/StudentEnquiry/".$mark); $check=mysqli_query($con,"update direct_admission set studentdoc='".$mark."' where id=".(int)$_REQUEST['doid']); } if($_FILES['cast_certificate']['name']!= NULL){ $cast_certificate = time().'_'.$_FILES['cast_certificate']['name']; move_uploaded_file($_FILES['cast_certificate']['tmp_name'],"images/StudentEnquiry/".$cast_certificate); $check=mysqli_query($con,"update direct_admission set cast_certificate='".$cast_certificate."' where id=".(int)$_REQUEST['doid']); } if($_FILES['signature']['name']!= NULL){ $signature = time().'_'.$_FILES['signature']['name']; move_uploaded_file($_FILES['signature']['tmp_name'],"images/StudentEnquiry/".$signature); $check=mysqli_query($con,"update direct_admission set signature='".$signature."' where id=".(int)$_REQUEST['doid']); } if($_FILES['madhyamicreg']['name']!= NULL){ $madhyamicreg = time().'_'.$_FILES['madhyamicreg']['name']; move_uploaded_file($_FILES['madhyamicreg']['tmp_name'],"images/StudentEnquiry/".$madhyamicreg); $check=mysqli_query($con,"update admission_enquiry_form set madhyamicreg='".$madhyamicreg."' where id=".(int)$_REQUEST['doid']); } if($_FILES['graduationmark']['name']!= NULL){ $graduationmark = time().'_'.$_FILES['graduationmark']['name']; move_uploaded_file($_FILES['graduationmark']['tmp_name'],"images/StudentEnquiry/".$graduationmark); $check=mysqli_query($con,"update admission_enquiry_form set graduationmark='".$graduationmark."' where id=".(int)$_REQUEST['doid']); } if($_FILES['mastermark']['name']!= NULL){ $mastermark = time().'_'.$_FILES['mastermark']['name']; move_uploaded_file($_FILES['mastermark']['tmp_name'],"images/StudentEnquiry/".$mastermark); $check=mysqli_query($con,"update admission_enquiry_form set mastermark='".$mastermark."' where id=".(int)$_REQUEST['doid']); } if($_FILES['mcresolation']['name']!= NULL){ $mcresolation = time().'_'.$_FILES['mcresolation']['name']; move_uploaded_file($_FILES['mcresolation']['tmp_name'],"images/StudentEnquiry/".$mcresolation); $check=mysqli_query($con,"update admission_enquiry_form set mcresolation='".$mcresolation."' where id=".(int)$_REQUEST['doid']); } if($_FILES['dipermission']['name']!= NULL){ $dipermission = time().'_'.$_FILES['dipermission']['name']; move_uploaded_file($_FILES['dipermission']['tmp_name'],"images/StudentEnquiry/".$dipermission); $check=mysqli_query($con,"update admission_enquiry_form set dipermission='".$dipermission."' where id=".(int)$_REQUEST['doid']); } if($check1){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:AdmissionEnquiryReports.php"); break; case "AddBankDetails" : $bankname = mysqli_escape_string($con,$_REQUEST['bankname']); $branch = mysqli_escape_string($con,$_REQUEST['branch']); $description = mysqli_escape_string($con,$_REQUEST['desc']); $address = mysqli_escape_string($con,$_REQUEST['address']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $check=mysqli_query($con,"insert into bankdetails(bankname,branch,user_id,description,address) values('".$bankname."','".$branch."','".$UserID."','".$description."','".$address."')"); if($check){ $_SESSION['msg']=' Record Add Successfully .'; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:bankDetails.php"); break; case "EditBankDetails" : $bankname = mysqli_escape_string($con,$_REQUEST['bankname']); $branch = mysqli_escape_string($con,$_REQUEST['branch']); $description = mysqli_escape_string($con,$_REQUEST['desc']); $address = mysqli_escape_string($con,$_REQUEST['address']); $check=mysqli_query($con,"update bankdetails set bankname='".$bankname."',branch='".$branch."',description='".$description."',address='".$address."' where id=".(int)$_REQUEST['doid']); if($check){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:bankDetails.php"); break; case "AddBankOpeningBal" : $bankname = mysqli_escape_string($con,$_REQUEST['bank']); $op_bal = mysqli_escape_string($con,$_REQUEST['op_bal']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $upuserresult=mysqli_query($con,"select * from bank_opening_balence where bank_id='".$bankname."' "); $row=mysqli_num_rows($upuserresult); if($row>0){ $_SESSION['msg']='Bank Opening Balance Allready Exits ! '; header("Location:addbankopeningbalance.php"); }else{ $check=mysqli_query($con,"insert into bank_opening_balence(bank_id,user_id,opening_balance) values('".$bankname."','".$UserID."','".$op_bal."')"); if($check){ $_SESSION['msg']=' Record Add Successfully .'; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:addbankopeningbalance.php"); } break; case "EditBankOpeningBal" : $bankname = mysqli_escape_string($con,$_REQUEST['bank']); $op_bal = mysqli_escape_string($con,$_REQUEST['op_bal']); $check=mysqli_query($con,"update bank_opening_balence set bank_id='".$bankname."',opening_balance='".$op_bal."' where id=".(int)$_REQUEST['doid']); if($check){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:addbankopeningbalance.php"); break; case "AddCashOpeningBal" : $bankname = mysqli_escape_string($con,$_REQUEST['bankname']); $op_bal = mysqli_escape_string($con,$_REQUEST['op_bal']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $upuserresult=mysqli_query($con,"select * from opening_balance_to_cash where bank_name='".$bankname."' "); $row=mysqli_num_rows($upuserresult); if($row>0){ $_SESSION['msg']='Bank Opening Balance Allready Exits ! '; header("Location:addcashopeningbalance.php"); }else{ $check=mysqli_query($con,"insert into opening_balance_to_cash(bank_name,user_id,cach_balance) values('".$bankname."','".$UserID."','".$op_bal."')"); if($check){ $_SESSION['msg']=' Record Add Successfully .'; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:addcashopeningbalance.php"); } break; case "EditCashOpeningBal" : $bankname = mysqli_escape_string($con,$_REQUEST['bankname']); $op_bal = mysqli_escape_string($con,$_REQUEST['op_bal']); $check=mysqli_query($con,"update opening_balance_to_cash set bank_name='".$bankname."',cach_balance='".$op_bal."' where id=".(int)$_REQUEST['doid']); if($check){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:addcashopeningbalance.php"); break; case "PartyEntry" : //$partyentry = mysqli_escape_string($con,$_REQUEST['partyentry']); $party_name = mysqli_escape_string($con,$_REQUEST['party_name']); $cretaeparty = mysqli_escape_string($con,$_REQUEST['cretaeparty']); $partyname = mysqli_escape_string($con,$_REQUEST['partyname']); $partytype = mysqli_escape_string($con,$_REQUEST['partytype']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $email = mysqli_escape_string($con,$_REQUEST['email']); $nature = mysqli_escape_string($con,$_REQUEST['nature']); $address = mysqli_escape_string($con,$_REQUEST['address']); $remarks = mysqli_escape_string($con,$_REQUEST['remarks']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $check=mysqli_query($con,"insert into party_entry(partyentry,cretaeparty,partyname,partytype,mobileno,email, nature,address,remarks,user_id) values('".$party_name."','".$cretaeparty."','".$partyname."','".$partytype."' ,'".$mobileno."','".$email."','".$nature."','".$address."','".$remarks."','".$UserID."')"); if($check){ $_SESSION['msg']=' Record Add Successfully .'; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:partycreationreports.php"); break; case "EditPartyEntry" : $party_name = mysqli_escape_string($con,$_REQUEST['party_name']); //$partyentry = mysqli_escape_string($con,$_REQUEST['partyentry']); $cretaeparty = mysqli_escape_string($con,$_REQUEST['cretaeparty']); $partyname = mysqli_escape_string($con,$_REQUEST['partyname']); $partytype = mysqli_escape_string($con,$_REQUEST['partytype']); $mobileno = mysqli_escape_string($con,$_REQUEST['mobileno']); $email = mysqli_escape_string($con,$_REQUEST['email']); $nature = mysqli_escape_string($con,$_REQUEST['nature']); $address = mysqli_escape_string($con,$_REQUEST['address']); $remarks = mysqli_escape_string($con,$_REQUEST['remarks']); $check=mysqli_query($con,"update party_entry set partyentry='".$party_name."',cretaeparty='".$cretaeparty."',partyname='".$partyname."' ,partytype='".$partytype."',mobileno='".$mobileno."',nature='".$nature."',address='".$address."' ,remarks='".$remarks."',email='".$email."' where id=".(int)$_REQUEST['doid']); if($check){ $_SESSION['msg']=' Record Update Successfully .'; }else{ $_SESSION['msg']='Record Not Update Failed! '; } header("Location:partycreationreports.php"); break; case "SendSMSAdd" : $types = mysqli_escape_string($con,$_REQUEST['types']); $coursetype = mysqli_escape_string($con,$_REQUEST['coursetype']); $facultytype = mysqli_escape_string($con,$_REQUEST['facultytype']); $contacts = mysqli_escape_string($con,$_REQUEST['contacts']); $sms = mysqli_escape_string($con,$_REQUEST['sms']); $UserID = mysqli_escape_string($con,$_REQUEST['UserID']); $check=mysqli_query($con,"insert into sendsms( types,course,faculty,contacts,sms,user_id) values('".$types."','".$coursetype."','".$facultytype."','".$contacts."','".$sms."' ,'".$UserID."')"); if($check){ //echo count($cons); $cons=explode(',',$contacts); for($i=0; $i<count($cons); $i++){ sendsms($con,$cons[$i],$sms); } $_SESSION['msg']=' Record Add Successfully .'; }else{ $_SESSION['msg']='Record Not Add Failed! '; } header("Location:smsreports.php"); break; } ?>