Guest User

Untitled

a guest
Feb 13th, 2019
153
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.40 KB | None | 0 0
  1. @foreach(var row in db.Query(getKamers))
  2. {
  3. <form id="@row.id" action='_DataConn.php' method='post' class='ajaxform'>
  4. <input type="text" value="@row.id" name="id" id="td-id" />
  5. <input type="text" value="@row.oppervlakte" name="oppervlakte" id="td-opp" />
  6. <input type="text" value="@row.locatie" name="locatie" id="td-loc" />
  7. <input type="text" value="@row.type" name="type" id="td-type" />
  8. <input type="text" value="@row.kamernr" name="nummer" id="td-kamernr" />
  9. <input type="text" value="@row.vrij" name="vrij" id="td-vrij" />
  10. <input type="submit" value="opslaan" name="opslaan" id="@row.id" />
  11. </form>
  12. }
  13.  
  14. $(document).ready(function () {
  15. $('.ajaxform').submit(function () {
  16. $.ajax({
  17. url: $(this).attr('action'),
  18. type: $(this).attr('method'),
  19. dataType: 'json',
  20. data: $(this).serialize(),
  21. success: function (data) {
  22. console.log(data);
  23. }
  24. });
  25.  
  26. return false;
  27. });
  28.  
  29. <?php
  30. $dbhost = "localhost";
  31. $dbuser = "root";
  32. $dbpass = "root";
  33. $dbname = "Studentenkamers";
  34. //Connect to MySQL Server
  35. mysql_connect($dbhost, $dbuser, $dbpass);
  36. //Select Database
  37. mysql_select_db($dbname) or die(mysql_error());
  38. // Retrieve data from Query String
  39.  
  40.  
  41. $id = $_POST['id'];
  42. $oppervlakte = $_POST['oppervlakte'];
  43. $locatie = $_POST['locatie'];
  44. $kamernr = $_POST['nummer'];
  45. $type = $_POST['type'];
  46. $vrij = $_POST['vrij'];
  47. echo 'ok'
  48. // Escape User Input to help prevent SQL Injection
  49.  
  50. $id = mysql_real_escape_string($id);
  51. $oppervlakte = mysql_real_escape_string($oppervlakte);
  52. $locatie = mysql_real_escape_string($locatie);
  53. $kamernr = mysql_real_escape_string($kamernr);
  54. $type = mysql_real_escape_string($type);
  55. $vrij = mysql_real_escape_string($vrij);
  56. //build query
  57. //"UPDATE Studentkamer SET oppervlakte='" + room[1] + "', locatie='" + room[2] + "', type='" + room[3] + "', vrij='" + room[4] + "' WHERE id='" + room[0] + "'";
  58. $query = "UPDATE Studentkamer SET oppervlakte = '$id', locatie = '$locatie', type='$type', kamernr = '$kamernr', vrij = '$vrij' WHERE id='$id'";
  59.  
  60. //Execute query
  61. $qry_result = mysql_query($query) or die(mysql_error());
  62. ?>
  63.  
  64. ID and NAME tokens must begin with a letter ([A-Za-z]) and may be followed by any number
  65. of letters, digits ([0-9]), hyphens ("-"), underscores ("_"), colons (":"), and periods (".").
Add Comment
Please, Sign In to add comment