Файл: vkolhoze.com/inc/admin.quest.php
Строк: 156
<?
if(isset($_GET['add']))
{
echo "<div class='event'><h1><a href='?admin=$admin'>$admin_name</a> / Добавить</h1><title>$admin_name / Добавить</title></div>";
echo '<div class="content"><div class="block">';
if(isset($_POST['ok']))
{
$id_plant=$_POST['id_plant'];
$count=$_POST['count'];
$priz=$_POST['priz'];
$level=$_POST['level'];
mysql_query("INSERT INTO `zadaniy` SET `id_plant` = '$id_plant', `count` = '$count', `priz` = '$priz', `level` = '$level' ");
header("location: ?admin=$admin");
}
echo "<form method="post">n";
echo "ID растения:<br /><input name="id_plant" type="text" maxlength='32' style='width: 98%; padding: 3px;' value=''/><br />n";
echo "Требуемое количество:<br /><input name="count" type="text" maxlength='32' style='width: 98%; padding: 3px;' value='' /><br />n";
echo "Приз:<br /><input name="priz" type="text" maxlength='32' style='width: 98%; padding: 3px;' value='' /><br />n";
echo "Доступный уровень:<br /><input name="level" type="text" maxlength='32' style='width: 98%; padding: 3px;' value='' /><br />n";
echo "<input value='Добавить' type='submit' name='ok' /><br />n";
echo "</form>n";
echo "</div>";
include_once 'inc/foot.php';
exit;
}
if(isset($_GET['edit']) && intval($_GET['edit'])!=NULL && mysql_result(mysql_query("SELECT COUNT(*) FROM `zadaniy` WHERE `id` = '".intval($_GET['edit'])."'"),0)!=0)
{
echo "<div class='event'><h1><a href='?admin=$admin'>$admin_name</a> / Редактировать</h1> <title>$admin_name / Редактировать</title></div>";
echo '<div class="content"><div class="block">';
$edit=mysql_fetch_array(mysql_query("SELECT * FROM `zadaniy` WHERE `id` = '".intval($_GET['edit'])."'"));
if(isset($_POST['ok']))
{
$id_plant=$_POST['id_plant'];
$count=$_POST['count'];
$priz=$_POST['priz'];
$level=$_POST['level'];
mysql_query("UPDATE `zadaniy` SET `id_plant` = '$id_plant', `count` = '$count', `priz` = '$priz', `level` = '$level' WHERE `id` = '$edit[id]'");
header("Location:?admin=$admin");
}
echo "<li style='padding-bottom:8px'>";
echo "<img width='48' height='48' src='images/plants/$edit[id_plant].png' alt='o' class='portrait'>";
echo "<div class='small'>";
echo "<form method="post">n";
echo "<br>ID растения:<br /><input name="id_plant" type="text" maxlength='32' style='width: 98%; padding: 3px;' value='$edit[id_plant]'/><br />n";
echo "Требуемое количество:<br /><input name="count" type="text" maxlength='32' style='width: 98%; padding: 3px;' value='$edit[count]' /><br />n";
echo "Приз:<br /><input name="priz" type="text" maxlength='32' style='width: 98%; padding: 3px;' value='$edit[priz]'/><br />n";
echo "Доступный уровень:<br /><input name="level" type="text" maxlength='32' style='width: 98%; padding: 3px;' value='$edit[level]' /><br />n";
echo "<input value='Сохранить' type='submit' name='ok' /></form>n";
echo "<div><br/><img width='16' height='16' src='images/icons/delete.png' alt=''><a href='?admin=$admin&del=$edit[id]'>Удалить</a></div>";
echo "</div>";
include_once 'inc/foot.php';
exit;
}
if(isset($_GET['del']) && mysql_result(mysql_query("SELECT COUNT(*) FROM `zadaniy` WHERE `id` = '".intval($_GET['del'])."'"),0)!=0)
{
$del=mysql_fetch_array(mysql_query("SELECT * FROM `zadaniy` WHERE `id` = '".intval($_GET['del'])."'"));
if(isset($_GET['ok']))
{
mysql_query("DELETE FROM `zadaniy` WHERE `id` = '$del[id]'");
header("Location:?admin=$admin");
}
podtv("?admin=$admin&del=$del[id]&ok","?admin=$admin");
echo "</div>";
include_once 'inc/foot.php';
exit;
}
echo "<div class='event'><h1><a href='?admin=list'>Админка</a> / $admin_name</h1> <title> $admin_name</title></div>";
echo '<div class="content"><div class="block">';
$k_post = mysql_result(mysql_query("SELECT COUNT(*) FROM `zadaniy`"),0);
if ($k_post==0)
{
echo "Список пуст...";
}
$k_page=k_page($k_post,$set['p_str']);
$page=page($k_page);
$start=$set['p_str']*$page-$set['p_str'];
$q=mysql_query("SELECT * FROM `zadaniy` ORDER BY `id` DESC LIMIT $start, $set[p_str]");
while($post=mysql_fetch_array($q))
{
echo "<li><img src='/images/icons/center.png'> <a href='?admin=$admin&edit=$post[id]'><span>$post[id] </span></a></li>";
}
if ($k_page>1)str("?admin=$admin&",$k_page,$page); // Вывод страниц
echo "<div><a href='?admin=$admin&add'>Добавить задание</a></div>";
echo "</ul></div>";
include_once 'inc/foot.php';
exit;
?>