GIF89a php
Current File : /home/hencockfreshchic/public_html/admin.cpanel/addProduct.php
<?php
ob_start();
ini_set('error_reporting', E_STRICT);
include("connect.php");
mysqli_set_charset($conn,'utf8');

$cat=str_replace("'","\'",$_POST['cat']);
$subcat=str_replace("'","\'",$_POST['subcat']);

$qty=$_POST['qty'];
$pcode=$_POST['pcode'];
$mff=str_replace("'","\'",$_POST['mff']);
$s_charge=$_POST['s_charge'];
$prod_cod=$_POST['prod_cod'];
$desc=mysqli_real_escape_string($conn,$_POST['desc']);
$uid=rand(10004545,100000);
$user_id=$_COOKIE["user_idd"];
$user_type=$_COOKIE["user_typee"];
$gst=$_POST['gst'];
$counter=$_POST["counter"];
$rating=$_POST['rating'];
$rate_p=$_POST['rate_p'];


// target directory
$subcat_size=count($subcat);
for($y=0;$y<$subcat_size;$y++)
{
  
for($i=1;$i<=$counter;$i++)
{
  $pname=str_replace("'","\'",$_POST['pname'.$i]);
  $rprice=$_POST['rprice'.$i];
  $sprice=$_POST['sprice'.$i];
  $colors=$_POST['colors'.$i];
  $sizes=$_POST['sizes'.$i];

  $link_size="";
  $sizesCount = count($sizes);
  for($x=0; $x < $sizesCount; $x++)
  {
    if($link_size=="")
    {
      $link_size=$_POST['sizes'.$i][$x];
    }
    else
    {
      $link_size .=','.$_POST['sizes'.$i][$x];
    }
  }

  $target_dir='prod_image/'.trim($_FILES["image".$i]["name"]);
  move_uploaded_file($_FILES["image".$i]["tmp_name"],$target_dir);
                          
  

  
  if($_FILES["image".$i]["name"]=="")
  {
    
    $prod_id=insertProd($conn,$cat,$subcat[$y],$pname,$qty,$rprice,$sprice,$pcode,$mff,$desc,'NA',date('Y-m-d'),$s_charge,$prod_cod,'1',$user_id,$user_type,'0',$colors,$link_size,$gst,$rating,$rate_p);


        $fileCount = count($_FILES["images".$i]['name']);
        for($x=0; $x < $fileCount; $x++)
        {         
              $target_dir2='prod_image/'.trim($_FILES["images".$i]["name"][$x]);              
              $FileType = strtolower(pathinfo($target_dir2,PATHINFO_EXTENSION));
              if($FileType != "png" && $FileType != "jpg" && $FileType != "jpeg" )
              {                 
              }
              else
              {
              move_uploaded_file($_FILES["images".$i]["tmp_name"][$x],$target_dir2);
              $sql2="INSERT INTO `multi_images`(`cat_name`, `subcat_name`, `prod_id`, `image`) VALUES ('".$cat."','".$subcat[$y]."','".$prod_id."','".$target_dir2."')";
              $rs2=mysqli_query($conn,$sql2);
              }
            
        }
        $ss=$subcat_size-1;
        if($i==$counter && $y==$ss)
        {
        findRs($prod_id);
        }
    
     
  }
  else
  {
    

    $prod_id=insertProd($conn,$cat,$subcat[$y],$pname,$qty,$rprice,$sprice,$pcode,$mff,$desc,$target_dir,date('Y-m-d'),$s_charge,$prod_cod,'1',$user_id,$user_type,'1',$colors,$link_size,$gst,$rating,$rate_p);

        $fileCount = count($_FILES["images".$i]['name']);
        for($x=0; $x < $fileCount; $x++)
        {
          $target_dir2='prod_image/'.trim($_FILES["images".$i]["name"][$x]);
          $FileType = strtolower(pathinfo($target_dir2,PATHINFO_EXTENSION));
          if($FileType != "png" && $FileType != "jpg" && $FileType != "jpeg" )
          {
          }
          else
          {
            move_uploaded_file($_FILES["images".$i]["tmp_name"][$x],$target_dir2);
            $sql2="INSERT INTO `multi_images`(`cat_name`,`subcat_name`, `prod_id`, `image`) VALUES ('".$cat."','".$subcat[$y]."','".$prod_id."','".$target_dir2."')";
            $rs2=mysqli_query($conn,$sql2);
                                
          }
        }
        $ss=$subcat_size-1;
        if($i==$counter && $y==$ss)
        {
          findRs($prod_id);
        }
  }
} }


function findRs($rs)
{
  if($rs>0)
  {
     //echo '<script>alert("Product saved successfully");</script>';
      echo '<script>window.location.href="addremoveproduct.php";</script>';
    // header("Location: cardMe.php?uid=".$uid."");
  }
  else
  {
       echo '<script>alert("Unable to save products");</script>';
     echo '<script>window.location.href="addremoveproduct.php";</script>';
  }
}



?>


<?php
function insertProd($conn,$cat,$subcat,$pname,$qty,$rprice,$sprice,$pcode,$mff,$desc,$target_dir,$datee,$s_charge,$prod_cod,$approve,$user_id,$user_type,$priority,$colors,$link_size,$gst,$rating,$rate_p)
  {
    $sql="INSERT INTO `products`(`cat_name`, `subcat_name`, `p_name`, `qty`, `real_price`, `sale_price`, `p_code`, `manufacturer`, `p_desc`, `image`, `datee`,`ship_chrg`,`cod`,`prod_approval`,`user_id`,`user_type`,`priority`,`p_color`, `p_size`,`gst`,`rating`,`rate_p`) VALUES ('".$cat."','".$subcat."','".$pname."','".$qty."','".$rprice."','".$sprice."','".$pcode."','".$mff."','".$desc."','".$target_dir."','".$datee."','".$s_charge."','".$prod_cod."','".$approve."','".$user_id."','".$user_type."','".$priority."','".$colors."','".$link_size."','".$gst."','".$rating."','".$rate_p."')";
    $rs=mysqli_query($conn,$sql);
    $prod_id = mysqli_insert_id($conn);

    return $prod_id;
  }

?>