Advertisement
Guest User

Untitled

a guest
May 3rd, 2016
66
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. router.use('/', jwtCheck);
  2.  
  3. router.put('/', function(req, res) {
  4.   var sql="UPDATE stagiaire SET nom = "+mysql.escape(req.body.nom)+","+
  5.           "prenom = "+mysql.escape(req.body.prenom)+","+
  6.           "datenaissance = "+mysql.escape(req.body.datenaissance)+","+
  7.           "numeromatricule = "+mysql.escape(req.body.matricule)+","+
  8.           "titre = "+mysql.escape(req.body.civilite)+" "+
  9.           "WHERE stagiaire.idstagiaireextranet = "+mysql.escape(req.body.id);
  10.   connection.query(sql, function(err, rows, fields) {
  11.     if (!err)
  12.       res.send('The solution is: ', rows);
  13.     else
  14.       res.send('Error while performing Query.',err);
  15.   });
  16. });
  17.  
  18. router.delete('/:idsession/:idparticipant', function(req, res){
  19.   var sql="DELETE FROM stagestagiaire WHERE stagestagiaire.idstagiaireextranet = '"+mysql.escape(req.params.idparticipant)+"' "+
  20.           "AND stagestagiaire.idsession = '"+mysql.escape(req.params.idsession)+"'";
  21.   connection.query(sql, function(err, rows, fields) {
  22.     if (!err)
  23.       res.send('The solution is: ', rows);
  24.     else
  25.       res.send('Error while performing Query.',err);
  26.   });
  27. });
  28.  
  29. router.post('/session/', function(req,res){
  30.   var sql="INSERT INTO stagestagiaire (idclientprospect, idsession, idsessionidclientprospect, idstagiaireextranet) "+
  31.           "VALUES ("+mysql.escape(req.user.id)+","+mysql.escape(req.body.idsession)+","+mysql.escape(req.body.idsession+req.user.id)+","+
  32.           mysql.escape(req.body.idparticipant)+")";
  33.   connection.query(sql, function(err, rows, fields) {
  34.     if (!err)
  35.       res.send('The solution is: ', rows);
  36.     else
  37.       res.send('Error while performing Query.',err);
  38.   });
  39. });
  40.  
  41. router.post('/', function(req,res){
  42.   var sql="INSERT INTO stagiaire (nom, prenom, datenaissance, datecreation, numeromatricule, titre, idclientprospect) "+
  43.           "VALUES ("+mysql.escape(req.body.nom)+","+mysql.escape(req.body.prenom)+","+mysql.escape(req.body.datenaissance)+
  44.           ", CURDATE(), "+mysql.escape(req.body.matricule)+","+mysql.escape(req.body.civilite)+","+mysql.escape(req.user.id)+"); "+
  45.           "INSERT INTO stagestagiaire (idclientprospect, idsession, idsessionidclientprospect, idstagiaireextranet) "+
  46.           "VALUES ("+mysql.escape(req.user.id)+","+mysql.escape(req.body.idsession)+","+mysql.escape(req.body.idsession+req.user.id)+
  47.           ", LAST_INSERT_ID()); SELECT max(idstagiaireextranet) as id FROM stagiaire;";
  48.   connection.query(sql, function(err, rows, fields) {
  49.     if (!err)
  50.      res.send('The solution is: ', rows);
  51.     else
  52.       res.send('Error while performing Query.'+err,err);
  53.   });
  54. });
  55.  
  56. module.exports = router;
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement