| Server IP : 103.234.187.230 / Your IP : 216.73.216.216 Web Server : Apache System : Linux lserver42043-ind.megavelocity.net 3.10.0-1160.108.1.el7.x86_64 #1 SMP Thu Jan 25 16:17:31 UTC 2024 x86_64 User : apache ( 48) PHP Version : 7.4.33 Disable Function : NONE MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : ON | Sudo : ON | Pkexec : ON Directory : /var/www/html/rsdgroup/adminPanel/ |
Upload File : |
<?php
foreach ($_REQUEST as $key => $value)
{
$$key = $value;
}
@$action = "";
if(@$action=="passwordchange")
{
$sql=mysql_query("select * from `tblUsers` where `username`='$username' and `password`='$old_password'");
if(mysql_num_rows($sql)>0)
{
mysql_query("update `tblUsers` set `password`='$new_password' where `username`='$username'");
$msg="Password has been changed";
}
else
{
$msg="Password Mismatch";
}
return $msg;
}
if($action=="DeleteFaq")
{
mysql_query("delete from `tblFaq` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteOpportunity")
{
mysql_query("delete from `tblOpportunity` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteNewsLetter")
{
mysql_query("delete from `tblNewsLetter` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="deletedistributors")
{
mysql_query("delete from `tblDistributors` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteBOD")
{
mysql_query("delete from `tblBoardOfDirectors` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteSpecification")
{
mysql_query("delete from `tblSpecification` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteTreasure")
{
mysql_query("delete from `tblTreasureOfNature` where `Treasure_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteCategory")
{
mysql_query("delete from `tblCategory` where `Category_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteNewPage")
{
mysql_query("delete from `tblnewcategory` where `category_id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeletePage")
{
mysql_query("delete from `tblTextElement` where `id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteRepresentation")
{
if($file!="") {
$file="../cat_images/".$file;
unlink($file);
}
mysql_query("delete from `tblRepresntation` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteSpecies")
{
if($file!="") {
$file="../cat_images/".$file;
unlink($file);
}
mysql_query("delete from `tblSpecies` where `Species_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteProduct")
{
if($file!="") {
$file="../cat_images/".$file;
unlink($file);
}
mysql_query("delete from `tblProduct` where `Product_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteWinner")
{
$winner_id = $_REQUEST['winner_id'];
$file = $_REQUEST['image'];
if($file!="") {
$file="../cat_images/".$file;
unlink($file);
}
mysql_query("delete from `winner_table` where `winner_id`='$winner_id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteTestimonial")
{
mysql_query("delete from `tblTestimonial` where `Testimonial_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteNews")
{
mysql_query("delete from `tblNews` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="deletejobs")
{
mysql_query("delete from `tblCareer` where `id`='$id'");
$msg="Deleted successfully";
return $msg;
}
function get_record_data($table_name, $primary_key, $primary_value,$field)
{
$field_value=0;
$query = "select `$field` from `$table_name` where `$primary_key` like '$primary_value' limit 0,1";
$query;
$result= mysql_query($query);
if ($result)
{
$row=mysql_fetch_row($result);
$field_value = stripslashes($row[0]);
}
else
{
echo "no record found";
}
// echo $field_value;
return stripslashes($field_value);
}
function listdisplaydropdownvalues($dropdownname,$dropdownid,$tablename,$columnname,$field_value)
{
$function_query= "Select `$dropdownid`,`$columnname` from `$tablename` order by `$columnname` ASC";
$result = mysql_query($function_query);
//echo $function_query;
//echo $field_value;
if (!$result)
{
die('Invalid formation of select query in listdisplaydropdownvalues(): ' . mysql_error());
}
echo "<select id=\"" . $dropdownid . "\" class=\"textfield\" style=\"width:165px\" name=\"" . $dropdownname . "\">";
echo "<option class=\"textfield\" value=\"\">" . " -- Select --". "</option>";
while ($row = mysql_fetch_array($result, MYSQL_BOTH))
{
if ($row[0] == $field_value)
{
echo "<option value=\"" . $row[0] . "\" SELECTED class=\"textfield\">" . $row[1] . "</option>";
}
else
{
echo "<option class=\"textfield\" value=\"" . $row[0] . "\">" . $row[1] . "</option>";
}
}
echo "</select>";
}
function listdisplaydropdownvaluesspecies($dropdownid,$field_value,$id1)
{
$function_query= "Select `Species_Id`,`Species_Name` from `tblSpecies` order by `Species_Name` ASC";
$result = mysql_query($function_query);
if (!$result)
{
die('Invalid formation of select query in listdisplaydropdownvalues(): ' . mysql_error());
}
$id1=$id1;
echo "<select id=\"" . $dropdownid . "\" class=\"generaltxt\" style=\"width:180px\" name=\"" . $dropdownid . "\" onChange=\"javaScript:getRequest('category.php?id=$id1&Species_Id='+ document.getElementById('".$dropdownid."').value ,'".$id1."','')\" >";
echo "<option class=\"generaltxt\" value=\"\">" . " -- Select --". "</option>";
while ($row = mysql_fetch_array($result, MYSQL_BOTH))
{
if ($row[0] == $field_value)
{
echo "<option value=\"" . $row[0] . "\" SELECTED class=\"generaltxt\">" . $row[1] . "</option>";
}
else
{
echo "<option class=\"generaltxt\" value=\"" . $row[0] . "\">" . $row[1] . "</option>";
}
}
echo "</select>";
}
function listdisplaydropdownvaluescataegory($dropdownid,$field_value,$Species_Id)
{
$function_query= "Select `Category_Id`,`Category_Name` from `tblCategory` where `Species_Id`='$Species_Id' order by `Category_Name` ASC";
$result = mysql_query($function_query);
echo "<select id=\"" . $dropdownid . "\" class=\"generaltxt\" style=\"width:180px\" name=\"" . $dropdownid . "\" >";
echo "<option class=\"generaltxt\" value=\"\">" . " -- Select --". "</option>";
while ($row = mysql_fetch_array($result, MYSQL_BOTH))
{
if ($row[0] == $field_value)
{
echo "<option value=\"" . $row[0] . "\" SELECTED class=\"generaltxt\">" . $row[1] . "</option>";
}
else
{
echo "<option class=\"generaltxt\" value=\"" . $row[0] . "\">" . $row[1] . "</option>";
}
}
echo "</select>";
}
if($action=="deletecareer"){
$sql = "SELECT * FROM `tblCareer` where id = ".$id."";
$result = mysql_query($sql) or die (mysql_error());
$row=mysql_fetch_assoc($result);
@unlink("../uploadedResumes/".$row['resume']);
mysql_query("delete from `tblCareer` where `id`='$id'");
$msg = "Deleted successfully";
return $msg;
}
if($action=="DeleteRecipeCat"){
mysql_query("UPDATE `tblRecipeCate` SET `isDeleted` = 'yes', `createdOn`= unix_timestamp() WHERE `id` ='$id' LIMIT 1") or die (mysql_error());
$msg = "Deleted successfully";
return $msg;
}
if($action=="DeleteRecipe"){
$sql = "SELECT * FROM `tblRecipe` where Category_Id = ".$id."";
$result = mysql_query($sql) or die (mysql_error());
$row=mysql_fetch_assoc($result);
@unlink("../cat_images/recipe/".$row['Category_Image']);
mysql_query("delete from `tblRecipe` where `Category_Id`=".$id."") or die (mysql_error());
$msg = "Deleted successfully";
return $msg;
}
?>