Advertisement
Guest User

Untitled

a guest
Dec 22nd, 2016
119
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.61 KB | None | 0 0
  1. <?php
  2. $server = "tcp:shirfisher.database.windows.net,1433";
  3. $user = "shirfisher";
  4. $pass = "Q1W2r4e3";
  5. $database = "shirfisher";
  6. $c = array("Database" => $database, "UID" => $user, "PWD" => $pass);
  7. sqlsrv_configure('WarningsReturnAsErrors', 0);
  8. $conn = sqlsrv_connect($server, $c);
  9. if($conn === false)
  10. {
  11. echo "error";
  12. die(print_r(sqlsrv_errors(), true));
  13. }
  14. $sql = "SELECT car_parts.Part_id
  15. FROM car_parts;";
  16. $result = sqlsrv_query($conn, $sql);
  17. while($row = sqlsrv_fetch_array($result, SQLSRV_FETCH_ASSOC))
  18. {
  19. echo "<option value=".$row["car_parts.Part_id"].">".$row["car_parts.Part_name"]."</option>";
  20. }
  21.  
  22. if ($_SERVER["REQUEST_METHOD"] == "POST") {
  23. if (empty($_POST["CAR_ID"])) {
  24. $caridErr = "car ID is required";
  25. }
  26. else {
  27. $carid = test_input($_POST["CAR_ID"]);
  28. if ($_POST["CAR_ID"]<=9999999 & $_POST["CAR_ID"]>=1000000){
  29. $sql = "INSERT INTO cars(Car_id)
  30. VALUES (".$_POST["CAR_ID"].");";
  31. $result = sqlsrv_query($conn, $sql);
  32. }
  33. else {
  34. $caridErr = "7 digits required";
  35. }
  36. }
  37. if (empty($_POST["MODEL"])) {
  38. $modelErr = "Car Model is required";
  39. }
  40. else {
  41. $model = test_input($_POST["MODEL"]);
  42. $sql = "INSERT INTO cars(Model)
  43. VALUES ('".$_POST["MODEL"]."');";
  44. $result = sqlsrv_query($conn, $sql);
  45. }
  46. $sql = "INSERT INTO cars(Sub_model)
  47. VALUES ('".$_POST["SUB_MODEL"]."');"; // should we reset the sum model variable? because if it doesnt get any value what are we inserting the database?
  48. $result = sqlsrv_query($conn, $sql);
  49. if (empty($_POST["YEAR_CAR"])) {
  50. $caryearErr = "Car Year is required";
  51. }
  52. else {
  53. $caryear = test_input($_POST["YEAR_CAR"]);
  54. if ($_POST["YEAR_CAR"]<=9999 & $_POST["YEAR_CAR"]>=1000){
  55. $sql = "INSERT INTO cars(Car_year)
  56. VALUES (".$_POST["YEAR_CAR"].");";
  57. $result = sqlsrv_query($conn, $sql);
  58. }
  59. else {
  60. $caryearErr = "4 digits required";
  61. }
  62. }
  63.  
  64. if (empty($_POST["ENGINE_CAPACITY"])) {
  65. $enginecapacityErr = "Engine Capacity is required";
  66. }
  67. else {
  68. $enginecapacity = test_input($_POST["ENGINE_CAPACITY"]);
  69. if ($_POST["ENGINE_CAPACITY"]<=10000) {
  70. $sql = "INSERT INTO cars(Engine_capacity)
  71. VALUES (".$_POST["ENGINE_CAPACITY"].");";
  72. $result = sqlsrv_query($conn, $sql);
  73. }
  74. else {
  75. $enginecapacityErr = "Engine Capacity sould be under 10,000";
  76. }
  77. }
  78. }
  79.  
  80. function test_input($data) {
  81. $data = trim($data);
  82. $data = stripslashes($data);
  83. $data = htmlspecialchars($data);
  84. return $data;
  85. }
  86.  
  87. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement