Advertisement
Guest User

Untitled

a guest
Jun 26th, 2017
94
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 7.18 KB | None | 0 0
  1. <?php
  2.  
  3. include "dblogin.php";
  4.  
  5. if (isset($_POST['submitlogin'])) {
  6. if (($_POST['username']) && ($_POST['password'])) {
  7.    
  8.     $username = $_POST['username'];
  9.     $password = $_POST['password'];
  10.    
  11.     if ($username==($db_user||$db_user2)&&$password==$db_pass) {
  12.         if (isset($_POST['submitimg'])) {
  13.        
  14.         $location = $_POST['location'];
  15.         $imgtitle = $_POST['imgtitle'];
  16.         $description = $_POST['description'];
  17.         $part = $_POST['part'];
  18.         if (!$part)
  19.         $part = '0';
  20.         $newsubject = $_POST['newsubject'];
  21.         $subject = $_POST['subject'];
  22.        
  23.         if ($location && ($part && ((!$newsubject && $subject) || ($newsubject && !$subject)))) {
  24.        
  25.             $location = mysql_real_escape_string($location);
  26.             $imgtitle = mysql_real_escape_string($imgtitle);
  27.             $description = mysql_real_escape_string($description);
  28.             $newsubject = mysql_real_escape_string($newsubject);
  29.            
  30.             $imgFetch = mysql_query("SELECT * FROM photos WHERE id=$part ORDER BY subid DESC");
  31.             $row = mysql_fetch_assoc($imgFetch);
  32.             $subID = $row['subid'];
  33.             if (!$subID)
  34.                 $subID = 1;
  35.             else $subID++;
  36.            
  37.             $sqlIMG = "INSERT INTO photos VALUES ('$part','$subID','$newsubject$subject','$location','$imgtitle','$description')";
  38.            
  39.             mysql_query($sqlIMG);
  40.             echo "<pred>Een ogenblik geduld...</pred> <meta http-equiv='refresh' content='0.2'>";
  41.         }  
  42.         else echo "<pred>Vul alsjeblieft alle velden in!</pred>";
  43.     }
  44.    
  45.     elseif (isset($_POST['submitnews'])) {
  46.        
  47.         $title = $_POST['title'];
  48.         $content = $_POST['content'];
  49.         $date = date("l j F Y \o\m H:i:s");
  50.         $date2 = date("d/m");
  51.        
  52.         $newsFetch = mysql_query("SELECT * FROM news ORDER BY id DESC");
  53.         $row = mysql_fetch_assoc($newsFetch);
  54.         $postID = $row['id'];
  55.         if (!$postID)
  56.             $postID = 1;
  57.         else $postID++;
  58.    
  59.         if ($title && $content) {
  60.        
  61.             $title = mysql_real_escape_string($title);
  62.             $content = mysql_real_escape_string($content);
  63.        
  64.             $sqlNews = "INSERT INTO news VALUES ('$postID','$title','$content','$date','$date2')";
  65.    
  66.             mysql_query($sqlNews);
  67.             echo "<pred>Een ogenblik geduld...</pred> <meta http-equiv='refresh' content='2'>";
  68.         }
  69.        
  70.         else echo "<pred>Vul alsjeblieft alle velden juist in!</pred>";
  71.     }
  72.     elseif (isset($_POST['submitvid'])) {
  73.    
  74.     $vtitle = $_POST['vtitle'];
  75.     $code = $_POST['code'];
  76.     $vidFetch = mysql_query("SELECT * FROM videos ORDER BY id DESC");
  77.     $row = mysql_fetch_assoc($vidFetch);
  78.     $postID = $row['id'];
  79.     if (!$postID)
  80.         $postID = 1;
  81.     else $postID++;
  82.    
  83.     if ($vtitle && $code) {
  84.         $title = mysql_real_escape_string($title);
  85.         $content = mysql_real_escape_string($content);
  86.        
  87.         $sqlVid = "INSERT INTO videos VALUES ('$postID','$code','$vtitle')";
  88.    
  89.         mysql_query($sqlVid);
  90.         echo "<pred>Een ogenblik geduld...</pred> <meta http-equiv='refresh' content='0.2'>";
  91.     }
  92.        
  93.     else echo "<pred>Vul alsjeblieft alle velden juist in!</pred>";
  94.     }
  95.     elseif (isset($_GET['action']) && $_GET['action'] == 'vidupload') {?>
  96.     <h1>Upload video's</h1>
  97.     <form action="#" method='post'>
  98.     <table width='100%'>
  99.     <tr>
  100.         <td width='15%' align="left" valign='top'><p>Titel:</p></td>
  101.         <td>
  102.         <input type='text' width='200px' name='vtitle' maxlength='50' />
  103.         </td>
  104.     </tr>
  105.     <tr>
  106.         <td width='15%' align="left" valign='top'><p>Videocode:</p></td>
  107.         <td>
  108.         <input type='text' width='200px' name='code' maxlength='50' />
  109.         </td>
  110.     </tr>
  111.     <tr>
  112.         <td>
  113.         </td>
  114.         <td>
  115.         <input type='submit' name='submitvid' value='Post' />
  116.         </td>
  117.     </tr>
  118.     </table>
  119.     <?php }
  120.     elseif (isset($_GET['action']) && $_GET['action'] == 'newsupload') {?>
  121.         <h1>Upload nieuws</h1>
  122.         <form action="admin.php" method='post'>
  123. <table width='100%'>
  124.     <tr>
  125.         <td width='15%' align="left" valign='top'><p>Titel:</p></td>
  126.         <td>
  127.         <input type='text' width='200px' name='title' maxlength='50' />
  128.         </td>
  129.     </tr>
  130.     <tr>
  131.         <td align="left" valign='top'><p>Inhoud:</p></td>
  132.         <td>
  133.         <textarea cols='77' rows='20' name='content'></textarea>
  134.         </td>
  135.     </tr>
  136.     <tr>
  137.         <td>
  138.         </td>
  139.         <td>
  140.         <input type='submit' name='submitnews' value='Post' />
  141.         </td>
  142.     </tr>
  143. </table>
  144.     <?php }
  145.    
  146.     elseif (isset($_GET['action']) && $_GET['action'] == 'imgupload') {?>
  147.         <h1>Upload foto's</h1>
  148.         <form action="#" method='post'>
  149. <table width='100%'>
  150.     <tr>
  151.         <td width='10%' align="left" valign='top'><p>Afbeelding:</p></td>
  152.         <td width="90%">
  153.         <input type='text' width='200px' name='imgtitle' maxlength="50">
  154.         </td>
  155.     </tr>
  156.     <tr>
  157.         <td width='15%' align="left" valign='top'><p>Map images:</p></td>
  158.         <td>
  159.         <select name="subject">
  160.         <option></option>
  161.         <?php
  162.        
  163. $subjget = mysql_query("SELECT DISTINCT subject FROM photos");
  164.  
  165. while ($subjrow = mysql_fetch_assoc($subjget)) {
  166.     $subject = $subjrow['subject'];
  167.     echo "<option value=\"$subject\">$subject</option>";
  168. }?>
  169.         </select><br />
  170.         </td>
  171.         </tr>
  172.         <tr>
  173.         <td><p>Nieuwe map images:</td><td>
  174.         <input type='text' width='200px' name='newsubject' maxlength='30' /></p>
  175.         </td>
  176.     </tr>
  177.     <tr>
  178.         <td align="left" valign='top'><p>Deel:</p></td>
  179.         <td width="90%">
  180.         <select name="part">
  181.         <option></option>
  182.         <?php
  183.        
  184. $queryget = mysql_query("SELECT * FROM news ORDER BY id DESC");
  185.  
  186. while ($row = mysql_fetch_assoc($queryget)) {
  187.     $idPost = $row['id'];
  188.     $title = $row['title'];
  189.     echo "<option value=\"$idPost\">$title</option>";
  190. }?>
  191.         </select>
  192.         </td>
  193.     </tr>
  194.     <tr>
  195.         <td align="left" valign='top'><p>Beschrijving:</p></td>
  196.         <td>
  197.         <textarea cols='45' rows='5' name='description'></textarea>
  198.         </td>
  199.     </tr>
  200.     <tr>
  201.         <td align="left" valign='top'><p>Locatie:</p></td>
  202.         <td>
  203.         <input type='file' width='500' name='location'>
  204.         </td>
  205.     </tr>
  206.     <tr>
  207.         <td>
  208.         </td>
  209.         <td>
  210.         <input type='submit' name='submitimg' value='Post' />
  211.         </td>
  212.     </tr>
  213. </table>
  214.     <?php }
  215.    
  216.     else {?>
  217.         <h1>Adminpaneel</h1>
  218.         <p>Klik op de volgende links om foto's of nieuws te uploaden naar de website.<br /><br />
  219.         <strong><a href="admin.php?action=newsupload" title="Upload nieuws" style="color:#333; text-decoration:none" onmouseover="this.style.color='black' "onmouseout="this.style.color='#333'">Upload nieuws</a><br />
  220.         <a href="admin.php?action=imgupload" title="Upload foto's" style="color:#333; text-decoration:none" onmouseover="this.style.color='black' "onmouseout="this.style.color='#333'">Upload foto's</a><br />
  221.         <a href="admin.php?action=vidupload" title="Upload video's" style="color:#333; text-decoration:none" onmouseover="this.style.color='black' "onmouseout="this.style.color='#333'">Upload video's</a></strong></p><?php
  222. }
  223.     }
  224.     else echo "<pred>Onjuist ingevuld! Probeer opnieuw...</pred> <meta http-equiv='refresh' content='2'>";
  225. }
  226. }
  227.  
  228. else {
  229. ?>
  230.  
  231. <h1>Log in</h1>
  232.     <form action="#" method='post'>
  233.     <table width='100%'>
  234.     <tr>
  235.         <td width='15%' align="left" valign='top'><p>Gebruikersnaam</p></td>
  236.         <td>
  237.         <input type='text' width='200px' name='username' maxlength='50' />
  238.         </td>
  239.     </tr>
  240.     <tr>
  241.         <td width='15%' align="left" valign='top'><p>Password:</p></td>
  242.         <td>
  243.         <input type="password" width='200px' name='password' maxlength='60' />
  244.         </td>
  245.     </tr>
  246.     <tr>
  247.         <td>
  248.         </td>
  249.         <td>
  250.         <input type='submit' name='submitlogin' value='Post' />
  251.         </td>
  252.     </tr>
  253.     </table>
  254.    
  255. <?php
  256. }
  257.  
  258.  
  259.    
  260. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement