
Untitled
By: a guest on
Jun 16th, 2012 | syntax:
None | size: 0.91 KB | hits: 17 | expires: Never
<?PHP
include 'sql.php';
$datestamp = date("YdmHis");
$topic = $_POST['topic'];
$content = $_POST['content'];
if($_POST['option'] == 'update'){
mysql_query("
INSERT INTO blog_updates (topic, content, datestamp)
VALUES ('".mysql_real_escape_string($topic)."','".mysql_real_escape_string($content)."','$datestamp');
") or die(mysql_error());
} elseif($_POST['option'] == 'blog'){
$blogCategory = $_POST['blogCategory'];
$relatedWebsite = $_POST['relatedWebsite'];
$outcome = $_POST['outcome'];
mysql_query("
INSERT INTO blog_blogs (blogCategory, outcome, topic, content, timestamp, relatedWebsite)
VALUES ('$blogCategory','$outcome','".mysql_real_escape_string($topic)."','".mysql_real_escape_string($content)."','$datestamp','".mysql_real_escape_string($relatedWebsite)."');
") or die(mysql_error());
}
header("Location: http://www.banreality.net/?p=admin");
?>