01.
<?
02.
$path
=
"myfile/"
;
03.
04.
$valid_formats
=
array
(
"jpg"
,
"png"
,
"gif"
,
"bmp"
);
05.
if
(isset(
$_POST
)
and
$_SERVER
[
'REQUEST_METHOD'
] ==
"POST"
)
06.
{
07.
$name
=
$_FILES
[
'filUpload'
][
'name'
];
08.
$size
=
$_FILES
[
'filUpload'
][
'size'
];
09.
10.
if
(
strlen
(
$name
))
11.
{
12.
list(
$txt
,
$ext
) =
explode
(
"."
,
$name
);
13.
if
(in_array(
$ext
,
$valid_formats
))
14.
{
15.
if
(
$size
<(1024*1024))
16.
{
17.
$actual_image_name
= time().
substr
(
str_replace
(
" "
,
"_"
,
$txt
), 5).
"."
.
$ext
;
18.
$tmp
=
$_FILES
[
'filUpload'
][
'tmp_name'
];
19.
if
(move_uploaded_file(
$tmp
,
$path
.
$actual_image_name
))
20.
{
21.
$objConnect
= mysql_connect(
"localhost"
,
"root"
,
"root"
)
or
die
(
"Error Connect to Database"
);
22.
$objDB
= mysql_select_db(
"mydatabase"
);
23.
$strSQL
=
"INSERT INTO files "
;
24.
$strSQL
.=
"(Name,FilesName) VALUES ('"
.
$_POST
[
"txtName"
].
"','"
.
$actual_image_name
.
"')"
;
25.
$objQuery
= mysql_query(
$strSQL
);
26.
if
(
$sql
){
27.
echo
(
"<meta Http-equiv='refresh' Content='1; Url=../'>"
);
28.
}
29.
echo
"<img src='myfile/"
.
$actual_image_name
.
"'>"
;
30.
}
31.
else
32.
echo
"failed"
;
33.
}
34.
else
35.
echo
"Image file size max 1 MB"
;
36.
}
37.
else
38.
echo
"Invalid file format.."
;
39.
}
40.
41.
else
42.
echo
"Please select image..!"
;
43.
44.
exit
;
45.
}
46.
?>