Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- include ('mysql_connect.php');
- //define a maxim size for the uploaded images in Kb
- define ("MAX_SIZE","1000");
- //This function reads the extension of the file. It is used to determine if the file is an image by checking the extension.
- function getExtension($str) {
- $i = strrpos($str,".");
- if (!$i) { return ""; }
- $l = strlen($str) - $i;
- $ext = substr($str,$i+1,$l);
- return $ext;
- }
- //This variable is used as a flag. The value is initialized with 0 (meaning no error found)
- //and it will be changed to 1 if an errro occures.
- //If the error occures the file will not be uploaded.
- $errors=0;
- //checks if the form has been submitted
- if(isset($_POST['Submit']))
- {
- //reads the name of the file the user submitted for uploading
- $image=$_FILES['image']['name'];
- //if it is not empty
- if ($image)
- {
- //get the original name of the file from the clients machine
- $filename = stripslashes($_FILES['image']['name']);
- //get the extension of the file in a lower case format
- $extension = getExtension($filename);
- $extension = strtolower($extension);
- //if it is not a known extension, we will suppose it is an error and will not upload the file,
- //otherwise we will do more tests
- if (($extension != "jpg") && ($extension != "jpeg") && ($extension != "png") && ($extension != "gif"))
- {
- //print error message
- echo '<h2>Unknown extension!</h2>';
- $errors=1;
- }
- else
- {
- //get the size of the image in bytes
- //$_FILES['image']['tmp_name'] is the temporary filename of the file
- //in which the uploaded file was stored on the server
- $size=filesize($_FILES['image']['tmp_name']);
- //compare the size with the maxim size we defined and print error if bigger
- if ($size > MAX_SIZE*1024)
- {
- echo '<h2>You have exceeded the size limit! Limit is 1000kb!</h2>';
- $errors=1;
- }
- //we will give an unique name, for example the time in unix time format
- $image_name=time().'.'.$extension;
- //the new name will be containing the full path where will be stored (images folder)
- $newname="images/".$image_name;
- //we verify if the image has been uploaded, and print error instead
- $copied = copy($_FILES['image']['tmp_name'], $newname);
- if (!$copied)
- {
- echo '<h2>Copy unsuccessfull!</h2>';
- $errors=1;
- }}}}
- //If no errors registred, print the success message
- if(isset($_POST['Submit']) && !$errors)
- {
- echo "<h2>File Uploaded Successfully!</h2>";
- //This gets all the other information from the form
- $name=$_POST['strainname'];
- $author=$_POST['author'];
- $source=$_POST['source'];
- $type=$_POST['type'];
- $looks=$_POST['looks'];
- $smell=$_POST['smell'];
- $taste=$_POST['taste'];
- $effect=$_POST['effect'];
- $potency=$_POST['potency'];
- $review=$_POST['review'];
- $date=$_POST['date'];
- //Writes the information to the database
- $query = "INSERT INTO strain_review (strainname, author, source, type, looks, smell, taste, effect, potency, imagelink, review, date) VALUES ('$strainname', '$author', '$source', '$type', '$looks', '$smell', '$taste', '$effect', '$potency', '$newname', '$review', NOW())";
- $result = @mysql_query($query);
- //Writes the photo to the server
- if(move_uploaded_file($_FILES['image']['newname'], "/images/"))
- {
- //Tells you if its all ok
- echo "The file ". basename( $_FILES['uploadedfile']['name']). " has been uploaded, and your information has been added to the directory";
- }
- else {
- //Gives and error if its not
- echo "Sorry, there was a problem uploading your file.";
- }
- }
- ?>
Advertisement
Add Comment
Please, Sign In to add comment