Advertisement
Guest User

Untitled

a guest
Dec 6th, 2017
104
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.82 KB | None | 0 0
  1. <?php session_start() ?>
  2. <html>
  3. <head>
  4. <link rel ="stylesheet" href = "BookieCSS.css">
  5. <title> More Details</title>
  6. </head>
  7. <body>
  8. <?php
  9. $user = "s4924120";
  10. $pass = "5b50422e33ba6259a49866513b21f3d3";
  11. $host = "127.0.0.1";
  12. $db = $user;
  13.  
  14. $conn = mysqli_connect($host, $user, $pass, $db);
  15.  
  16. if(mysqli_connect_error()) {
  17. echo "Failed to connect to MySQL: " . mysqli_connect_error();
  18. }
  19. ?>
  20. <h1>Bookie</h1>
  21. <?php
  22. if (isset($_SESSION["nameUser"])):?>
  23. <h2>Logged in as <?php echo $_SESSION["nameUser"] ?> </h2>
  24. <?php else:?>
  25. <h2> Logged in as a Guest</h2>
  26. <?php endif;?>
  27. <hr>
  28. <br>
  29. <form action = "ViewMoreDetails.php" method = "POST">
  30. <?php
  31. if (isset($_GET["bookID"])){
  32. $viewChoice = $_GET["bookID"];
  33. $query = "SELECT * FROM s4924120.book_tbl WHERE ISBN = '".$viewChoice."';";
  34. $result = mysqli_query($conn, $query);
  35. if (mysqli_num_rows($result) == 1){
  36. $row = mysqli_fetch_assoc($result);
  37. echo "<h2>".$row["book_name"]."</h2>";
  38. echo "<p>By ".$row["author"]."</p>";
  39. echo "<hr><br><br>";
  40. echo "<p>Category: ".$row["book_cat"]."<p>";
  41. echo "<br>";
  42. echo "<p>".$row["book_info"]."</p>";
  43. echo "<br>";
  44. echo "<p>Price: £".$row["book_price"]."</p>";
  45. echo "<br>";
  46. echo "<p>Stock Available: ".$row["book_stock"]."</p>";
  47. echo "<br>";
  48. echo "<p>Stock to order: ";
  49. echo "<br>";
  50. echo "<input type = 'number' name = 'stockPurchase'>";
  51. echo "<br>";
  52. echo "<input type = 'submit' id = 'mainButCss' name = 'orderBtn' value = 'Order'>";
  53. if (isset($_POST["orderBtn"])){
  54. $stockPurchase = $_POST["stockPurchase"];
  55. $storedStock = $row["book_stock"];
  56. if ($stockPurchase > $storedStock){
  57. echo "<script type = 'text/javascript'> alert('Cannot order more stock than is available'); </script>";
  58. $orderVal = false;
  59. }else{
  60. $orderVal = true;
  61. }
  62. if ($orderVal){
  63. $newStock = $row["book_stock"] - $stockPurchase;
  64. $query = "UPDATE s4924120.book_tbl SET book_stock = '".$newStock."' WHERE ISBN = '".$row["ISBN"]."';";
  65. $result = mysqli_query($conn, $query);
  66. if ($result) {
  67. $isbn = $row["ISBN"];
  68. $userID = $_SESSION["userID"];
  69. $query = "INSERT INTO s4924120.order_tbl (cust_id, ISBN, order_stock) VALUES ('$userID', '$isbn', $stockPurchase);";
  70. $result = mysqli_query($conn, $query);
  71. if ($result){
  72. mysqli_close($conn);
  73. header("Location: BookieHomepage.php");
  74. }
  75. }
  76. }
  77. }
  78.  
  79. }
  80. }
  81. ?>
  82. </form>
  83. <form action = "BookieHomepage.php"><input type = "submit" name = "returnToPortalButton" id = "mainButCss" value = "Return to Main Page">
  84. </body>
  85. </html>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement