Domain: amberpublishers.in
Server Adress: 86.38.243.169
privdayz.com
<?php
require 'PHPHelper.php';
// ------------------------------------------ Update Service --------------------------------------------
if (isset($_POST['serviceName']) && isset($_POST['serviceDescription']) && isset($_POST['serviceBullet1']) && isset($_POST['serviceBullet2']) && isset($_POST['serviceBullet3']) && isset($_POST['serviceBullet4']) && isset($_POST['serviceBullet5']) && isset($_POST['serviceIcon'])) {
$msg = "";
$id = mysqli_real_escape_string($conn, trim($_POST['id']));
$serviceName = mysqli_real_escape_string($conn, trim($_POST['serviceName']));
$serviceDescription = mysqli_real_escape_string($conn, trim($_POST['serviceDescription']));
$serviceBullet1 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet1']));
$serviceBullet2 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet2']));
$serviceBullet3 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet3']));
$serviceBullet4 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet4']));
$serviceBullet5 = mysqli_real_escape_string($conn, trim($_POST['serviceBullet5']));
$serviceBulletArray = array($serviceBullet1, $serviceBullet2, $serviceBullet3, $serviceBullet4, $serviceBullet5);
$icon = $_POST['serviceIcon'];
$sql = "UPDATE `services` SET `serviceName` = '$serviceName', `serviceDescription` = '$serviceDescription', `serviceBullet1` = '$serviceBullet1', `serviceBullet2` = '$serviceBullet2', `serviceBullet3` = '$serviceBullet3', `serviceBullet4` = '$serviceBullet4', `serviceBullet5` = '$serviceBullet5', `icon` = '$icon' WHERE `id` = '$id'";
$result = mysqli_query($conn, $sql);
if ($result) {
echo '<script>alert("' . $serviceName . ' Updated Successfully")</script>';
} else {
echo '<script>alert("Service Not Updated")</script>';
}
}
// ------------------------------------------ Update Sector --------------------------------------------
if (isset($_POST['sectorName']) && isset($_POST['sectorDescription']) && isset($_POST['sectorIcon'])) {
$id = mysqli_real_escape_string($conn, trim($_POST['id']));
$sectorName = mysqli_real_escape_string($conn, trim($_POST['sectorName']));
$sectorDescription = mysqli_real_escape_string($conn, trim($_POST['sectorDescription']));
$sectorIcon = mysqli_real_escape_string($conn, trim($_POST['sectorIcon']));
$sql = "UPDATE `sectors` SET `sectorName` = '$sectorName', `sectorDescription` = '$sectorDescription', `icon` = '$sectorIcon' WHERE `id` = '$id'";
$result = mysqli_query($conn, $sql);
if ($result) {
echo '
<script>alert("' . $sectorName . ' Updated Successfully");</script>
';
} else {
echo '<script>alert("Sector Not Updated")</script>';
}
}
// handle deletion with file:
if ($_SERVER["REQUEST_METHOD"] === "POST") {
$table = $_POST["table"];
$id = $_POST["id"];
// Check if the table name is "sectors" or "services" (where image deletion is required)
if ($table === "sectors" || $table === "services") {
// Get the image file path from the database (adjust the column name accordingly)
$sql = "SELECT image FROM $table WHERE id = $id";
$result = mysqli_query($conn, $sql);
if ($result && $row = mysqli_fetch_assoc($result)) {
$imagePath = $row['image'];
// Delete the image file if it exists
if (file_exists("../assets/img/$table/$imagePath")) {
unlink("../assets/img/$table/$imagePath");
}
}
}
// Perform the deletion query for all tables (including "contactrequest" and "quotationrequest")
$deleteSql = "DELETE FROM $table WHERE id = $id";
if (mysqli_query($conn, $deleteSql)) {
echo "Data and related image deleted successfully!";
} else {
echo "Error deleting data: " . mysqli_error($conn);
}
}
