Advertisement
Guest User

Untitled

a guest
Aug 9th, 2017
91
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.84 KB | None | 0 0
  1. <section>
  2. <div class="headline" id="commentMessageArea">
  3. <h2><span class="ai ai-pencil2"></span> Leave a Comment</h2>
  4. </div>
  5. <form role="form">
  6. <div class="row">
  7. <div class="col-sm-12 col-md-6">
  8. <input type="name" class="form-control" id="name_entered" placeholder="Name">
  9. </div>
  10. <div class="col-sm-12 col-md-6">
  11. <input type="email" class="form-control" id="inputEmail" placeholder="Email">
  12. </div>
  13. <div class="col-xs-12" style="margin-top: 15px">
  14. <textarea class="form-control" id="comment_entered" placeholder="Comment" style="height:200px !important"></textarea>
  15. </div>
  16. </div>
  17. <div class="row" style="margin-top: 15px">
  18. <div class="col-xs-12">
  19. <button type="submit" value="Comment" class="btn btn-primary" onclick="submitcomment();">Submit</button>
  20. <div class="checkbox">
  21. <label>
  22. <input type="checkbox"> Notify me of new comments
  23. </label>
  24. </div>
  25. </div>
  26. </div>
  27. </form>
  28. <div id="showcomments"></div>
  29. <script>
  30. function submitcomment() {
  31. var request;
  32. try {request= new XMLHttpRequest();
  33. }
  34. catch (tryMicrosoft) {
  35. try {request= new ActiveXObject("Msxml2.XMLHTTP");
  36. }
  37. catch (otherMicrosoft)
  38. {try {
  39. request= new ActiveXObject("Microsoft.XMLHTTP");
  40. }
  41. catch (failed) {request= null;
  42. }
  43. }
  44. }
  45. var webpage= location.href;
  46. position= webpage.lastIndexOf("/");
  47. var lastpart= webpage.substring(position + 1);
  48. var period= lastpart.indexOf(".");
  49. var complete= lastpart.substring(0, period);
  50. complete= complete.replace(/-/g, "_");
  51. var url= "usercomments.php";
  52. var username= document.getElementById("name_entered").value;
  53. var usercomment= document.getElementById("comment_entered").value;
  54. var vars= "name="+username+"&comment="+usercomment+"&webpage="+complete;
  55. request.open("POST", url, true);
  56. request.setRequestHeader("Content-type", "application/x-www-form-urlencoded");
  57. request.onreadystatechange= function() {
  58. if (request.readyState == 4 && request.status == 200) {
  59. var return_data= request.responseText;
  60. document.getElementById("showcomments").innerHTML= return_data;
  61. }
  62. }
  63. request.send(vars);
  64. }
  65. </script>
  66. </div>
  67. </section>
  68.  
  69. <?php
  70. $name_entered= $_POST['name'];
  71. $comment_entered= $_POST['comment'];
  72. $table= $_POST['webpage'];
  73. $date= date("m-d-Y");
  74. $user = "sample";
  75. $password = "sample";
  76. $host = "sample";
  77. $dbase = "sample";
  78. $connection= mysqli_connect ($host, $user, $password);
  79. if (!$connection)
  80. {
  81. die ('Could not connect:' . mysqli_error());
  82. }
  83. mysqli_select_db($dbase, $connection);
  84. $val = mysqli_query("select 1 from $table");
  85. if($val !== FALSE)
  86. {
  87. if ((!empty($name_entered)) && (!empty($comment_entered)))
  88. {
  89. mysqli_query("INSERT INTO $table (name, date, comments)
  90. VALUES ('$name_entered', '$date', '$comment_entered')");
  91. }
  92. $result= mysqli_query( "SELECT * FROM $table ORDER BY ID DESC" )
  93. or die("SELECT Error: ".mysqli_error());
  94. while ($row = mysqli_fetch_array($result)){
  95. $name_field= $row['name'];
  96. $date_field= $row['date'];
  97. $comment_field= $row['comments'];
  98. echo "$name_field wrote: ($date_field) <br>";
  99. echo "$comment_field";
  100. echo "<br><hr><br>";
  101. }
  102. }
  103. else
  104. {
  105. $createtable= "CREATE TABLE $table
  106. ( ".
  107. "ID INT NOT NULL AUTO_INCREMENT, ".
  108. "name VARCHAR(50) NOT NULL, ".
  109. "date VARCHAR(50) NOT NULL, ".
  110. "comments VARCHAR(60000) NOT NULL, ".
  111. "PRIMARY KEY (ID)
  112. );
  113. ";
  114. $create= mysqli_query($createtable, $connection);
  115. if ($create)
  116. {
  117. if ((!empty($name_entered)) && (!empty($comment_entered)))
  118. {
  119. mysqli_query("INSERT INTO $table (name, date, comments)
  120. VALUES ('$name_entered', '$date', '$comment_entered')");
  121. }
  122. $result= mysqli_query( "SELECT * FROM $table ORDER BY ID DESC" )
  123. or die("SELECT Error: ".mysqli_error());
  124. while ($row = mysqli_fetch_array($result)){
  125. $name_field= $row['name'];
  126. $date_field= $row['date'];
  127. $comment_field= $row['comments'];
  128. echo "$name_field wrote: ($date_field) <br>";
  129. echo "$comment_field";
  130. echo "<br><hr><br>";
  131. }
  132. }//if createtable
  133. }//else
  134. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement