Server IP : 103.233.192.212 / Your IP : 18.227.209.41 Web Server : Apache/2 System : Linux sv1.inde.co.th 3.10.0-1160.36.2.el7.x86_64 #1 SMP Wed Jul 21 11:57:15 UTC 2021 x86_64 User : sumpatuan ( 1058) PHP Version : 5.5.38 Disable Function : symlink,shell_exec,exec,proc_close,proc_open,popen,system,dl,putenv,passthru,escapeshellarg,escapeshellcmd,pcntl_exec,proc_get_status,proc_nice,proc_terminate,pclose,ini_alter,virtual,openlog,ini_restore MySQL : ON | cURL : ON | WGET : OFF | Perl : OFF | Python : OFF | Sudo : OFF | Pkexec : OFF Directory : /home/sumpatuan/public_html/admin/data/action/ |
Upload File : |
<?php require_once('session_backend_administrator.php'); header('Content-Type: text/html; charset=UTF-8'); date_default_timezone_set("Asia/Bangkok"); $datetime = date('d/m/Y H.i'); if($STT_login=="admin_login_true"){ if( !isset($_POST['txt_name']) or !isset($_POST['txt_type']) ){ echo "<SCRIPT type='text/javascript'> alert('กรุณากรอกข้อมูลให้ครบ'); window.location.replace(document.referrer); </SCRIPT>"; exit; }else{ $data_nameabout = trim($con_db_administrator->real_escape_string($_POST['txt_name'])); $data_typeabout = $con_db_administrator->real_escape_string($_POST['txt_type']); $data_sttabout = $con_db_administrator->real_escape_string($_POST['statusshow']); $data_linkabout = $con_db_administrator->real_escape_string($_POST['linkabout']); $data_about = $con_db_administrator->real_escape_string($_POST['txt_data']); $date = $_POST['txt_date']; $lastupdate_about = date("d/m/Y",strtotime($date)); /////// insert DATA to SQL $insert_about = " INSERT INTO `data_about`(`name_about`, `type_about`, `data_about`, `stt_about`, `lastupdate_about`) VALUES ( '$data_nameabout', '$data_typeabout', '$data_about', '$data_sttabout ', '$lastupdate_about' )"; $action_about = $con_db_administrator->query($insert_about); if(!$action_about){ echo "<SCRIPT type='text/javascript'> alert('เพิ่มข้อมูลไม่สำเร็จ กรุณาลองใหม่อีกครั้ง'); window.location.replace('../$data_linkabout'); </SCRIPT>"; exit; }else{ $sql_data = " SELECT `id_about` FROM `data_about` WHERE `name_about`='$data_nameabout' AND `lastupdate_about`='$lastupdate_about' ORDER BY `id_about` DESC LIMIT 1 "; $qr_data = mysqli_query($con_db_administrator, $sql_data); $rs_data = mysqli_fetch_assoc($qr_data); $id_data = $rs_data['id_about']; echo "<SCRIPT type='text/javascript'> alert('เพิ่มข้อมูลใหม่ สำเร็จ'); window.location.replace('../About-edit?id=$id_data&type=$data_typeabout&link=$data_linkabout'); </SCRIPT>"; exit; } } }else{ echo "<SCRIPT type='text/javascript'> alert('กรุณาเข้าสู่ระบบ'); window.location.replace('../../index'); </SCRIPT>"; exit; } mysqli_close($con_db_administrator); ?>