Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- include "dblogin.php";
- if (isset($_POST['submitlogin'])) {
- if (($_POST['username']) && ($_POST['password'])) {
- $username = $_POST['username'];
- $password = $_POST['password'];
- if ($username==($db_user||$db_user2)&&$password==$db_pass) {
- if (isset($_POST['submitimg'])) {
- $location = $_POST['location'];
- $imgtitle = $_POST['imgtitle'];
- $description = $_POST['description'];
- $part = $_POST['part'];
- if (!$part)
- $part = '0';
- $newsubject = $_POST['newsubject'];
- $subject = $_POST['subject'];
- if ($location && ($part && ((!$newsubject && $subject) || ($newsubject && !$subject)))) {
- $location = mysql_real_escape_string($location);
- $imgtitle = mysql_real_escape_string($imgtitle);
- $description = mysql_real_escape_string($description);
- $newsubject = mysql_real_escape_string($newsubject);
- $imgFetch = mysql_query("SELECT * FROM photos WHERE id=$part ORDER BY subid DESC");
- $row = mysql_fetch_assoc($imgFetch);
- $subID = $row['subid'];
- if (!$subID)
- $subID = 1;
- else $subID++;
- $sqlIMG = "INSERT INTO photos VALUES ('$part','$subID','$newsubject$subject','$location','$imgtitle','$description')";
- mysql_query($sqlIMG);
- echo "<pred>Een ogenblik geduld...</pred> <meta http-equiv='refresh' content='0.2'>";
- }
- else echo "<pred>Vul alsjeblieft alle velden in!</pred>";
- }
- elseif (isset($_POST['submitnews'])) {
- $title = $_POST['title'];
- $content = $_POST['content'];
- $date = date("l j F Y \o\m H:i:s");
- $date2 = date("d/m");
- $newsFetch = mysql_query("SELECT * FROM news ORDER BY id DESC");
- $row = mysql_fetch_assoc($newsFetch);
- $postID = $row['id'];
- if (!$postID)
- $postID = 1;
- else $postID++;
- if ($title && $content) {
- $title = mysql_real_escape_string($title);
- $content = mysql_real_escape_string($content);
- $sqlNews = "INSERT INTO news VALUES ('$postID','$title','$content','$date','$date2')";
- mysql_query($sqlNews);
- echo "<pred>Een ogenblik geduld...</pred> <meta http-equiv='refresh' content='2'>";
- }
- else echo "<pred>Vul alsjeblieft alle velden juist in!</pred>";
- }
- elseif (isset($_POST['submitvid'])) {
- $vtitle = $_POST['vtitle'];
- $code = $_POST['code'];
- $vidFetch = mysql_query("SELECT * FROM videos ORDER BY id DESC");
- $row = mysql_fetch_assoc($vidFetch);
- $postID = $row['id'];
- if (!$postID)
- $postID = 1;
- else $postID++;
- if ($vtitle && $code) {
- $title = mysql_real_escape_string($title);
- $content = mysql_real_escape_string($content);
- $sqlVid = "INSERT INTO videos VALUES ('$postID','$code','$vtitle')";
- mysql_query($sqlVid);
- echo "<pred>Een ogenblik geduld...</pred> <meta http-equiv='refresh' content='0.2'>";
- }
- else echo "<pred>Vul alsjeblieft alle velden juist in!</pred>";
- }
- elseif (isset($_GET['action']) && $_GET['action'] == 'vidupload') {?>
- <h1>Upload video's</h1>
- <form action="#" method='post'>
- <table width='100%'>
- <tr>
- <td width='15%' align="left" valign='top'><p>Titel:</p></td>
- <td>
- <input type='text' width='200px' name='vtitle' maxlength='50' />
- </td>
- </tr>
- <tr>
- <td width='15%' align="left" valign='top'><p>Videocode:</p></td>
- <td>
- <input type='text' width='200px' name='code' maxlength='50' />
- </td>
- </tr>
- <tr>
- <td>
- </td>
- <td>
- <input type='submit' name='submitvid' value='Post' />
- </td>
- </tr>
- </table>
- <?php }
- elseif (isset($_GET['action']) && $_GET['action'] == 'newsupload') {?>
- <h1>Upload nieuws</h1>
- <form action="admin.php" method='post'>
- <table width='100%'>
- <tr>
- <td width='15%' align="left" valign='top'><p>Titel:</p></td>
- <td>
- <input type='text' width='200px' name='title' maxlength='50' />
- </td>
- </tr>
- <tr>
- <td align="left" valign='top'><p>Inhoud:</p></td>
- <td>
- <textarea cols='77' rows='20' name='content'></textarea>
- </td>
- </tr>
- <tr>
- <td>
- </td>
- <td>
- <input type='submit' name='submitnews' value='Post' />
- </td>
- </tr>
- </table>
- <?php }
- elseif (isset($_GET['action']) && $_GET['action'] == 'imgupload') {?>
- <h1>Upload foto's</h1>
- <form action="#" method='post'>
- <table width='100%'>
- <tr>
- <td width='10%' align="left" valign='top'><p>Afbeelding:</p></td>
- <td width="90%">
- <input type='text' width='200px' name='imgtitle' maxlength="50">
- </td>
- </tr>
- <tr>
- <td width='15%' align="left" valign='top'><p>Map images:</p></td>
- <td>
- <select name="subject">
- <option></option>
- <?php
- $subjget = mysql_query("SELECT DISTINCT subject FROM photos");
- while ($subjrow = mysql_fetch_assoc($subjget)) {
- $subject = $subjrow['subject'];
- echo "<option value=\"$subject\">$subject</option>";
- }?>
- </select><br />
- </td>
- </tr>
- <tr>
- <td><p>Nieuwe map images:</td><td>
- <input type='text' width='200px' name='newsubject' maxlength='30' /></p>
- </td>
- </tr>
- <tr>
- <td align="left" valign='top'><p>Deel:</p></td>
- <td width="90%">
- <select name="part">
- <option></option>
- <?php
- $queryget = mysql_query("SELECT * FROM news ORDER BY id DESC");
- while ($row = mysql_fetch_assoc($queryget)) {
- $idPost = $row['id'];
- $title = $row['title'];
- echo "<option value=\"$idPost\">$title</option>";
- }?>
- </select>
- </td>
- </tr>
- <tr>
- <td align="left" valign='top'><p>Beschrijving:</p></td>
- <td>
- <textarea cols='45' rows='5' name='description'></textarea>
- </td>
- </tr>
- <tr>
- <td align="left" valign='top'><p>Locatie:</p></td>
- <td>
- <input type='file' width='500' name='location'>
- </td>
- </tr>
- <tr>
- <td>
- </td>
- <td>
- <input type='submit' name='submitimg' value='Post' />
- </td>
- </tr>
- </table>
- <?php }
- else {?>
- <h1>Adminpaneel</h1>
- <p>Klik op de volgende links om foto's of nieuws te uploaden naar de website.<br /><br />
- <strong><a href="admin.php?action=newsupload" title="Upload nieuws" style="color:#333; text-decoration:none" onmouseover="this.style.color='black' "onmouseout="this.style.color='#333'">Upload nieuws</a><br />
- <a href="admin.php?action=imgupload" title="Upload foto's" style="color:#333; text-decoration:none" onmouseover="this.style.color='black' "onmouseout="this.style.color='#333'">Upload foto's</a><br />
- <a href="admin.php?action=vidupload" title="Upload video's" style="color:#333; text-decoration:none" onmouseover="this.style.color='black' "onmouseout="this.style.color='#333'">Upload video's</a></strong></p><?php
- }
- }
- else echo "<pred>Onjuist ingevuld! Probeer opnieuw...</pred> <meta http-equiv='refresh' content='2'>";
- }
- }
- else {
- ?>
- <h1>Log in</h1>
- <form action="#" method='post'>
- <table width='100%'>
- <tr>
- <td width='15%' align="left" valign='top'><p>Gebruikersnaam</p></td>
- <td>
- <input type='text' width='200px' name='username' maxlength='50' />
- </td>
- </tr>
- <tr>
- <td width='15%' align="left" valign='top'><p>Password:</p></td>
- <td>
- <input type="password" width='200px' name='password' maxlength='60' />
- </td>
- </tr>
- <tr>
- <td>
- </td>
- <td>
- <input type='submit' name='submitlogin' value='Post' />
- </td>
- </tr>
- </table>
- <?php
- }
- ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement