Advertisement
Guest User

Untitled

a guest
Jun 16th, 2019
108
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.41 KB | None | 0 0
  1. if($_SERVER["REQUEST_METHOD"] == "POST") {
  2. // username and password sent from form
  3.  
  4. $username = mysqli_real_escape_string($link,$_POST['username']);
  5. $password = mysqli_real_escape_string($link,$_POST['password']);
  6.  
  7. $sql = "SELECT ID_Klient FROM klienti WHERE Username = '$username' and
  8. Password = '$password'";
  9. $result = mysqli_query($link,$sql);
  10.  
  11. $row = mysqli_fetch_array($result,MYSQLI_ASSOC);
  12. $active = $row['active'];
  13.  
  14. $count = mysqli_num_rows($result);
  15. if($count == 1) {
  16. $_SESSION['username'] = $username;
  17. $_SESSION['success'] = "Jeni i loguar";
  18. header('location: clientmainpage.php');
  19. }else {
  20. $error = "Your Login Name or Password is invalid";
  21. }
  22. }
  23. ?>
  24.  
  25. session_start();
  26.  
  27. $data = date('d/m/Y');
  28. $bileta = mysqli_real_escape_string($link, $_REQUEST['numri_bileta']);
  29. $pagesa = mysqli_real_escape_string($link, $_REQUEST['pagesa']);
  30. $id_udhetimi=mysqli_real_escape_string($link, $_REQUEST['id_udhetim']);
  31. $username= $_SESSION['username'];
  32. $query="SELECT ID_Klient FROM klienti WHERE Username=$username";
  33. $id_klienti= mysqli_query($link,$query);
  34.  
  35. $sql = "INSERT INTO rezervimi (Date_Rez, N_Bileta, Paguar,
  36. ID_Klient,ID_Udhetim) VALUES ('$data', '$bileta',
  37. '$pagesa','$id_klienti','$id_udhetimi')";
  38. if(mysqli_query($link, $sql)){
  39. header('location: clientmainpage.php');
  40. } else{
  41. echo "ERROR: Could not able to execute $sql. " . mysqli_error($link);
  42. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement