uawdijnntqw1x1x1
IP : 216.73.216.26
Hostname : server.wtmmart.in
Kernel : Linux server.wtmmart.in 4.18.0-553.45.1.el8_10.x86_64 #1 SMP Wed Mar 19 09:44:46 EDT 2025 x86_64
Disable Function : exec,passthru,shell_exec,system
OS : Linux
PATH:
/
home2
/
wtmwscom
/
.subaccounts
/
..
/
www
/
admin
/
product_page_model.php
/
/
<?php session_start(); include('../connection.php'); include '../function_lib.php'; include('imageresize.php'); if (isset($_POST['submit'])) { if (!empty($_FILES['file']) && isset($_FILES['file']['name']) && array_search($_FILES['file']['type'], array("image/gif", "image/jpeg", "image/png", "image/jpg")) !== FALSE) { $resize = new resizeImage(); // upload image in three dimesions //$largePath = "uploads/news/large/"; //$largeImage = $resize->do_resize(500,400 ,$_FILES['file'],$largePath,0,"large"); $smallPath = "./images/product_gallary/"; // print_r($_FILES['file']); // echo $_FILES['file']['name']; $smallImage = $resize->do_resize(800, 500, $_FILES['file'], $smallPath, 0, "thumb", 90); //mysqli_query($connection,"INSERT INTO `photo_gallery` (filename, datetime) VALUES " // . "('" . $smallImage . "','" . date('Y-m-d H:i:s') . "')"); $rs = mysqli_query($connection,"INSERT INTO `product_kit`(`product_cat_id`,`pcode`, `pname`, `mrp`, `pv`, `pcost`, `quantity`, `datetime`, `description`, `filename` ,`is_active`,`real_filename`) VALUES ('".$_POST['product_cat']."','" . $_POST['product_code'] . "','" . $_POST['product_name'] . "','" . $_POST['mrp'] . "','" . $_POST['product_pv'] . "','" . $_POST['product_cost'] . "','" . $_POST['quantity'] . "','" . date('Y-m-d H:i:s') . "','" . $_POST['description'] . "','" . $smallImage . "','" . $_POST['is_active'] . "','" . $_FILES['file']['name'] . "') "); setMessage('Image successfully uploaded.', 'alert-success'); //redirect('product_page.php'); // echo "image successfully uploaded"; } else { setMessage('Some error occured please try again later.', 'alert-success'); redirect('product_page.php'); } } redirect('product_page.php'); ?> <?php // //{ //if (!empty($_FILES['file']) && isset($_FILES['file']['name']) && array_search($_FILES['file']['type'], array("image/gif", "image/jpeg", "image/png", "image/jpg")) !== FALSE) { // $resize = new resizeImage(); // // upload image in three dimesions // //$largePath = "uploads/news/large/"; // //$largeImage = $resize->do_resize(500,400 ,$_FILES['receipt'],$largePath,0,"large"); // // $smallPath = "product_images/product/"; // // print_r($_FILES['receipt']); // // echo $_FILES['receipt']['name']; // $smallImage = $resize->do_resize(800, 500, $_FILES['receipt'], $smallPath, 0, "thumb", 90); // // // //redirect('product_package_model1.php'); // echo "image successfully uploaded"; // //redirect('product_package_model1.php'); // } // // else { // //setMessage('Some error occured please try again later.', 'alert-msg success'); // //redirect('product_add.php'); // echo "image successfully not uploaded"; //} //} /* if(isset($_POST['submit'])){ $allow = array("jpg", "jpeg", "gif", "png"); $todir = 'product_images/'; $rs = mysqli_query($connection,"INSERT INTO `product_kit`(`pcode`, `pname`, `mrp`, `pv`, `pcost`, `quantity`, `datetime`, `description`, `filename` ,`is_active`,`real_filename`) VALUES ('" . $_POST['product_code'] . "','" . $_POST['product_name'] . "','" . $_POST['mrp'] . "','" . $_POST['product_pv'] . "','" . $_POST['product_cost'] . "','" . $_POST['quantity'] . "','" . date('Y-m-d H:i:s') . "','" . $_POST['description'] . "','" . $file . "','" . $_POST['is_active'] . "','" . $smallImage . "') "); } if (! $_FILES['file']['tmp_name']) { // is the file uploaded yet? $info = explode('.', strtolower($_FILES['file']['name'])); // whats the extension of the file if ($_FILES['file']['size'] > 10485760) { echo 'File too big'; } else { echo 'File within size restrictions'; } $newfilename = round(microtime(true)) . '.' . end($info); if (in_array(end($info), $allow)) { // is this file allowed if (move_uploaded_file($_FILES['file']['tmp_name'], $todir . $newfilename)) { echo "the file has been moved correctly"; $smallImage = $_FILES['file']['name']; $file = $newfilename; //echo $rs= "INSERT INTO `product_kit`(`pcode`, `pname`, `mrp`, `pv`, `pcost`, `quantity`, `date`, `description`, `filename` ,`is_active`,`real_filename`) //VALUES ('".$_POST['product_code']."','".$_POST['product_name']."','".$_POST['mrp']."','".$_POST['product_pv']."','".$_POST['product_cost']."','".$_POST['quantity']."','".date("Y-m-d")."','".$_POST['description']."','".$file."','".$_POST['is_active']."','".$smallImage."') "; } } else { setMessage('Something went wrong', 'alert-msg error'); } } if($rs){ setMessage('Saved successfully.', 'alert-msg success'); } else { setMessage('Something went wrong', 'alert-msg error'); } redirect('product_page.php'); * * */ ?>
/home2/wtmwscom/.subaccounts/../www/admin/product_page_model.php