WebShell: t.me/oghbnz


Current Path : /home/sreemitragroup/public_html/admin/
Upload File :
Current File : /home/sreemitragroup/public_html/admin/add_videos.php

<?php require("header.php"); ?>


<?php require("sub_header.php"); 





$a=$_GET['id'];





$query= $conn->query("SELECT * FROM add_videos WHERE id='$a' ");


$title=$query->fetch(PDO::FETCH_ASSOC);


?>




















<div class="main">





    <div class="container">





      <div class="row">


      	


      	<div class="span10">      		


      		


      		<div class="widget stacked ">














<div class="widget-header" align="center">


      			<a href="video_settings.php" style="float: left;margin-top: 5px;margin-left:5px" class="btn btn-success"><< Back</a>


      			<h3>Add Videos's</h3>


      			


  				</div> <!-- /widget-header -->


				


				<div class="widget-content">


					


					


					


					<div class="tabbable">


						<div class="tab-content">


							<div class="tab-pane active" id="profile">








		<form name="form" id="form" action="" method="POST" class="form-horizontal" enctype='multipart/form-data'>


		


		


			


			<div class="login-fields">





					<?php if($_GET['msg']=='error'){?>


					<h3 style="color: green" style="padding-left: 182px;">Unable to update please try again</h3>


					<?php } ?>


						


						<!-- <div class="control-group">


							<label class="control-label col-md-4" for="name">Name :</label>


								<div class="controls">


									<input type="text" id="name" name="name" value="<?php echo $title['name']; ?>" class="login username-field" />


								</div>


						</div> -->





						<div class="control-group">


							<label class="control-label col-md-4" for="link">Link - Id :</label>


								<div class="controls">


									<input type="text" id="link" name="link" value="<?php echo $title['link']; ?>" class="span5" />


								</div>


						</div>








						<!-- <div class="control-group">


								<label class="control-label" for="pic">video pic :</label> &nbsp;


								<?php if($title['pic']){


										$f=$title['pic'];


										echo "<img height='500' width='350' src='images/pics_videos/Videos/".$f."'>";


							} ?>


							<div class="controls">


								<input type="FILE" id="pic" name="pic" multiple="multiple" class="login username-field" />


							</div>


						</div> -->








						<div class=class="controls" style="padding-left: 182px;" >





					<button class="btn btn-primary"  name='update'>Update</button>			





				</div>





			</form>





			


								


			</div> <!-- /login-fields -->


			


		


				


													


			


					</div>


							</div>


						</div>





					</div>


					


					


				</div> <!-- /widget-content -->


					


			</div> <!-- /widget -->


      		


	    </div> <!-- /span8 -->


      	


</div> <!-- /row -->





    </div> <!-- /container -->


    


</div> <!-- /main -->











<?php


extract($_POST);





if(isset($_GET['id'])){





if (isset($_POST['update'])){





$a=$_GET['id'];


	$query=$conn->query("SELECT * FROM add_videos WHERE id='$a' ");


$title=$query->fetch(PDO::FETCH_ASSOC);





		// if(isset($_FILES['pic']) && $_FILES['pic']['size']>0){


		// 			$tmp = $_FILES['pic']['tmp_name'];


		// 				if(is_uploaded_file($tmp)){


		// 					$oname=$_FILES['pic']['name'];


				


		// 					$sname=getRand().'-'.$oname; //use this if you want to randamise the name write a function to it.


		// 					$desc="images/pics_videos/Videos/".$sname;


		


		// 					move_uploaded_file($tmp,$desc);


		// 					}


		// 		}else{


		// 				$sname=$title['pic'];


			


		// 			}





$sql1=$conn->prepare("UPDATE  add_videos SET link=:link WHERE id='$a' ");


$sql1->bindValue(':link',$link, PDO::PARAM_STR);





											if($sql1->execute()){


												echo "<script>document.location.href='video_settings.php?msg=update'</script>";


													}else{


												echo "<script>document.location.href='add_videos.php?msg=error'</script>";


												}


												}





}


if (isset($_POST['update']) && $_GET['id'] == ""){





		// if(isset($_FILES['pic']) && $_FILES['pic']['size']>0){


		// 			$tmp = $_FILES['pic']['tmp_name'];


		// 				if(is_uploaded_file($tmp)){


		// 					$oname=$_FILES['pic']['name'];


		// 					$sname=getRand().'-'.$oname; //use this if you want to randamise the name write a function to it.


		// 					$desc="images/pics_videos/Videos/".$sname;


		


		// 					move_uploaded_file($tmp,$desc);


		// 					}


		// 		}else{


		// 				echo "File is Empty";


		// 			}





			$sql1=$conn->prepare("INSERT INTO add_videos (`link`) values (:link) ");


			$sql1->bindValue(':link',$link, PDO::PARAM_STR);


	         							


											if($sql1->execute()){


														echo "<script>document.location.href='video_settings.php?msg=update'</script>";


												}else{


													echo "<script>document.location.href='add_videos.php?msg=error'</script>";	


					}	





	}








function getRand(){


	$str=str_shuffle("abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ1234567890$%@^");


		return sha1(str_shuffle(crypt($str)));


	}





?>








<?php include_once("foter.php"); ?>