01.
<?
02.
switch
(
$command
){
03.
case
"ADD_Sec"
:
04.
if
(
$_FILES
[
'file'
][
'size'
]>0) {
05.
06.
$JFile
=
$_FILES
[
'file'
][
'name'
];
07.
$realname
=
date
(
"dmYss"
).
$JFile
;
08.
if
(
copy
(
$_FILES
[
'file'
][
'tmp_name'
],
"files/$realname"
)) {}
09.
}
10.
$sql1
=
"SELECT * FROM omp ORDER BY sort DESC "
;
11.
$query
=mysql_query(
$sql1
);
12.
$row
=mysql_fetch_array(
$query
);
13.
$SORTID
=
$row
[sort]+1 ;
14.
$sql
=
"INSERT INTO opm SET name_b='$name_b',Position='$Position',url='$url',file='$realname',sort ='$SORTID',add_date=NOW()"
;
15.
$query
=mysql_query(
$sql
);
16.
if
(
$query
){
17.
echo
"<script>alert('บันทึกข้อมูลเรียบร้อยแล้วค่ะ');window.opener.location.reload(); window.close();</script>"
;
18.
}
else
{
19.
echo
"<script>alert('ไม่สามารถบันทึกข้อมูลได้ค่ะ');window.opener.location.reload(); window.close();</script>"
;
20.
}
21.
break
;
22.
case
"EDIT_Sec"
:
23.
if
(
$_FILES
[
'file'
][
'size'
]>0) {
24.
$JFile2
=
$_FILES
[
'file'
][
'name'
];
25.
26.
$realname2
=
date
(
"dsmssYs"
).
$JFile2
;
27.
if
(
copy
(
$_FILES
[
'file'
][
'tmp_name'
],
"files/$realname2"
)) {
$where_2
=
" , file='$realname2' "
;}
28.
}
29.
$sql
=
"UPDATE omp SET name_b='$name_b',Position='$Position',url='$url' WHERE idb ='"
.mysql_real_escape_string(
$idb
).
"'"
;
30.
31.
$query
=mysql_query(
$sql
);
32.
if
(
$query
){
33.
echo
"<script>alert('แก้ไขข้อมูลเรียบร้อยแล้วค่ะ');window.opener.location.reload(); window.close();</script>"
;
34.
}
else
{
35.
echo
"<script>alert('ไม่สามารถแก้ไขข้อมูลได้ค่ะ');window.opener.location.reload(); window.close();</script>"
;
36.
}
37.
break
;
38.
case
"DELSEC"
:
39.
$sql
=
"DELETE FROM omp WHERE idb ='"
.mysql_real_escape_string(
$idb
).
"'"
;
40.
$query
=mysql_query(
$sql
);
41.
if
(
$query
){
42.
@unlink(
"files/$file"
);
43.
showMessage(
"ลบข้อมูลเรียบร้อยแล้วค่ะ"
,
"list_menu_cat.php?Position=$Position"
);
44.
}
else
{
45.
showMessage(
"ไม่สามารถลบข้อมูลได้ค่ะ"
,
"list_menu_cat.php?idb=$idb"
);
46.
}
47.
break
;
48.
case
"UPDATESTATUS"
:
49.
if
(
$now_status
==
"Y"
){
50.
$new_status
=
"N"
;
51.
}
else
{
52.
$new_status
=
"Y"
;
53.
}
54.
$sql
=
"UPDATE omp SET h_show='$new_status' WHERE idb ='"
.mysql_real_escape_string(
$idb
).
"'"
;
55.
$query
=mysql_query(
$sql
);
56.
if
(
$query
){
57.
echo
"<script>alert('เปลี่ยนสถานนะเรียบร้อยแล้วค่ะ');window.opener.location.reload(); window.close();</script>"
;
58.
}
else
{
59.
echo
"<script>alert('ไม่สามารถเปลี่ยนสถานะได้ค่ะ');window.opener.location.reload(); window.close();</script>"
;
60.
}
61.
}
62.
63.
?>