6-1
admin.php
require "loginheader.php" ; |
require_once 'header.php' ; |
$op = isset( $_REQUEST [ 'op' ]) ? filter_var( $_REQUEST [ 'op' ]) : '' ; |
$sn = isset( $_REQUEST [ 'sn' ]) ? (int) $_REQUEST [ 'sn' ] : 0; |
header( "location: index.php?sn={$sn}" ); |
header( "location: index.php" ); |
require_once 'footer.php' ; |
function insert_article() |
$title = $db ->real_escape_string( $_POST [ 'title' ]); |
$content = $db ->real_escape_string( $_POST [ 'content' ]); |
$username = $db ->real_escape_string( $_POST [ 'username' ]); |
$sql = "INSERT INTO `article` (`title`, `content`, `username`, `create_time`, `update_time`) VALUES ('{$title}', '{$content}', '{$username}', NOW(), NOW())" ; |
$db ->query( $sql ) or die ( $db ->error); |
require_once 'class.upload.php' ; |
$foo = new Upload( $_FILES [ 'pic' ]); |
$foo ->file_new_name_body = 'cover_' . $sn ; |
$foo ->image_resize = true; |
$foo ->image_convert = png; |
$foo ->image_ratio_y = true; |
$foo ->Process( 'uploads/' ); |
$foo ->file_new_name_body = 'thumb_' . $sn ; |
$foo ->image_resize = true; |
$foo ->image_convert = png; |
$foo ->image_ratio_y = true; |
$foo ->Process( 'uploads/' ); |
function delete_article( $sn ) |
$sql = "DELETE FROM `article` WHERE sn='{$sn}' and username='{$_SESSION['username']}'" ; |
$db ->query( $sql ) or die ( $db ->error); |