Initial commit
This commit is contained in:
33
indexes/process/modify/item_add.php
Normal file
33
indexes/process/modify/item_add.php
Normal file
@@ -0,0 +1,33 @@
|
||||
<?php
|
||||
include "../../ConnectDB.php";
|
||||
session_start();
|
||||
$username = mysqli_real_escape_string($conn, $_SESSION['username']);
|
||||
$usertype = mysqli_real_escape_string($conn, $_SESSION['user_type']);
|
||||
|
||||
if(isset($_GET["name"])) {
|
||||
$name = $_GET["name"];
|
||||
//seller cannot add more than 100kg
|
||||
if($usertype == "seller"){
|
||||
$sql_check = "SELECT $name FROM seller WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $sql_check);
|
||||
$num = mysqli_fetch_array($res);
|
||||
if($num[$name] + 1 > 100){
|
||||
echo "<script type='text/javascript'>
|
||||
alert('You cannot sell more than 100kg/fruit one time!');
|
||||
window.location.href = '../cart_index.php';
|
||||
</script>";
|
||||
exit();
|
||||
}
|
||||
}
|
||||
|
||||
$add = "UPDATE $usertype SET $name = $name + 1 WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $add);
|
||||
if(!$res){
|
||||
echo "<script type='text/javascript'>
|
||||
alert('Error occurred!');
|
||||
</script>";
|
||||
}
|
||||
}
|
||||
|
||||
header('Location: ../cart_index.php');
|
||||
?>
|
||||
34
indexes/process/modify/item_checkup_add.php
Normal file
34
indexes/process/modify/item_checkup_add.php
Normal file
@@ -0,0 +1,34 @@
|
||||
<?php
|
||||
include "../../ConnectDB.php";
|
||||
session_start();
|
||||
$username = mysqli_real_escape_string($conn, $_SESSION['username']);
|
||||
$usertype = mysqli_real_escape_string($conn, $_SESSION['user_type']);
|
||||
|
||||
if(isset($_GET["name"])) {
|
||||
$name = $_GET["name"];
|
||||
//seller cannot add more than 100kg
|
||||
//seller cannot add more than 100kg
|
||||
if($usertype == "seller"){
|
||||
$sql_check = "SELECT $name FROM seller WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $sql_check);
|
||||
$num = mysqli_fetch_array($res);
|
||||
if($num[$name] + 1 > 100){
|
||||
echo "<script type='text/javascript'>
|
||||
alert('You cannot sell more than 100kg/fruit one time!');
|
||||
window.location.href = '../cart_index.php';
|
||||
</script>";
|
||||
exit();
|
||||
}
|
||||
}
|
||||
|
||||
$add = "UPDATE $usertype SET $name = $name + 1 WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $add);
|
||||
if(!$res){
|
||||
echo "<script type='text/javascript'>
|
||||
alert('Error occurred!');
|
||||
</script>";
|
||||
}
|
||||
}
|
||||
|
||||
header('Location: ../checkup.php');
|
||||
?>
|
||||
34
indexes/process/modify/item_checkup_modify.php
Normal file
34
indexes/process/modify/item_checkup_modify.php
Normal file
@@ -0,0 +1,34 @@
|
||||
<?php
|
||||
include "../../ConnectDB.php";
|
||||
session_start();
|
||||
$username = mysqli_real_escape_string($conn, $_SESSION['username']);
|
||||
$usertype = mysqli_real_escape_string($conn, $_SESSION['user_type']);
|
||||
|
||||
if (isset($_GET["name"], $_GET["quantity"])) {
|
||||
if ($_GET["quantity"] > 0 && ($_GET["quantity"] <= 100 || $usertype == "buyer")) {
|
||||
$quantity = $_GET["quantity"];
|
||||
$name = mysqli_real_escape_string($conn, $_GET["name"]);
|
||||
$add = "UPDATE $usertype SET `$name` = $quantity WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $add);
|
||||
if (!$res) {
|
||||
echo "<script type='text/javascript'>
|
||||
alert('Error occurred!');
|
||||
</script>";
|
||||
}
|
||||
}
|
||||
else if ($_GET["quantity"] > 100 && $usertype == "seller") {
|
||||
echo "<script type='text/javascript'>
|
||||
alert('You can only buy 100kg of each type of fruit at a time!');
|
||||
</script>";
|
||||
}
|
||||
else{
|
||||
echo "<script type='text/javascript'>
|
||||
alert('You cannot buy nothing!');
|
||||
</script>";
|
||||
}
|
||||
}
|
||||
|
||||
echo "<script type='text/javascript'>
|
||||
window.location.href = '../checkup.php';
|
||||
</script>";
|
||||
?>
|
||||
34
indexes/process/modify/item_checkup_subtract.php
Normal file
34
indexes/process/modify/item_checkup_subtract.php
Normal file
@@ -0,0 +1,34 @@
|
||||
<?php
|
||||
include "../../ConnectDB.php";
|
||||
session_start();
|
||||
$username = mysqli_real_escape_string($conn, $_SESSION['username']);
|
||||
$usertype = mysqli_real_escape_string($conn, $_SESSION['user_type']);
|
||||
|
||||
if (isset($_GET["name"])) {
|
||||
$name = $_GET["name"];
|
||||
$sql_quant = "SELECT $name FROM $usertype WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $sql_quant);
|
||||
|
||||
if ($res) {
|
||||
$num = mysqli_fetch_array($res);
|
||||
|
||||
if ($num[$name] > 1) {
|
||||
$add = "UPDATE $usertype SET `$name` = `$name` - 1 WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $add);
|
||||
}
|
||||
else {
|
||||
echo "<script type='text/javascript'>
|
||||
alert('You cannot buy for nothing!');
|
||||
</script>";
|
||||
}
|
||||
}
|
||||
else {
|
||||
// Handle the SQL query error
|
||||
echo "Error: " . mysqli_error($conn);
|
||||
}
|
||||
}
|
||||
|
||||
echo "<script type='text/javascript'>
|
||||
window.location.href = '../checkup.php';
|
||||
</script>";
|
||||
?>
|
||||
14
indexes/process/modify/item_del.php
Normal file
14
indexes/process/modify/item_del.php
Normal file
@@ -0,0 +1,14 @@
|
||||
<?php
|
||||
include "../../ConnectDB.php";
|
||||
session_start();
|
||||
$username = mysqli_real_escape_string($conn, $_SESSION['username']);
|
||||
$usertype = mysqli_real_escape_string($conn, $_SESSION['user_type']);
|
||||
|
||||
if(isset($_GET["name"])) {
|
||||
$name = $_GET["name"];
|
||||
$add = "UPDATE $usertype SET $name = 0 WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $add);
|
||||
}
|
||||
|
||||
header('Location: ../cart_index.php');
|
||||
?>
|
||||
23
indexes/process/modify/item_modify.php
Normal file
23
indexes/process/modify/item_modify.php
Normal file
@@ -0,0 +1,23 @@
|
||||
<?php
|
||||
include "../../ConnectDB.php";
|
||||
session_start();
|
||||
$username = mysqli_real_escape_string($conn, $_SESSION['username']);
|
||||
$usertype = mysqli_real_escape_string($conn, $_SESSION['user_type']);
|
||||
|
||||
if(isset($_GET["name"], $_GET["quantity"])) {
|
||||
$name = $_GET["name"];
|
||||
$quantity = $_GET["quantity"];
|
||||
|
||||
if(($usertype == "seller" && $quantity >= 0 && $quantity <= 100) || ($usertype == "buyer" && $quantity >= 0)){
|
||||
$add = "UPDATE $usertype SET $name = $quantity WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $add);
|
||||
}
|
||||
else{
|
||||
echo "<script type='text/javascript'>
|
||||
alert('Please input a valid amount of fruit!');
|
||||
</script>";
|
||||
}
|
||||
}
|
||||
header('Location: ../cart_index.php');
|
||||
?>
|
||||
|
||||
13
indexes/process/modify/item_subtract.php
Normal file
13
indexes/process/modify/item_subtract.php
Normal file
@@ -0,0 +1,13 @@
|
||||
<?php
|
||||
include "../../ConnectDB.php";
|
||||
session_start();
|
||||
$username = mysqli_real_escape_string($conn, $_SESSION['username']);
|
||||
$usertype = mysqli_real_escape_string($conn, $_SESSION['user_type']);
|
||||
|
||||
if(isset($_GET["name"])) {
|
||||
$name = $_GET["name"];
|
||||
$add = "UPDATE $usertype SET $name = $name-1 WHERE name='$username'";
|
||||
$res = mysqli_query($conn, $add);
|
||||
}
|
||||
header('Location: ../cart_index.php');
|
||||
?>
|
||||
Reference in New Issue
Block a user