CasperSecurity
<?php
include("../includes/connection.php");
// if (!isset($_SESSION['nm']) or $Banners==0):
// header("location:index.php");
// endif;
$page1 = "setting";
$section_heading=$connect->real_escape_string($_POST['section_heading']);
$left_content=$connect->real_escape_string($_POST['left_content']);
$right_content = $connect->real_escape_string($_POST['right_content']);
$allowed_extensions = array('gif', 'jpg','jpeg', 'png','bmp', 'GIF', 'JPG', 'PNG', 'JPEG','BMP');
$stage = $connect->real_escape_string($_POST['stage']);
if ($stage == 2) {
if ($_FILES['bannerimage']['name'] != "") {
$filenamenew = $_FILES['bannerimage']['name'];
$path_info = pathinfo($filenamenew);
$is_valid = in_array($path_info['extension'], $allowed_extensions);
if (empty($is_valid)) {
//die('File #'.$i.': Incorrent file extension.');
$msg = "Incorrent file extension, Please upload a valid image file";
setcookie("msg", $msg, time() + 3);
print "<script>";
print "self.location = 'mng_footer.php';";
print "</script>";
exit;
} else {
$path2 = "uploads";
$s1 = rand();
$realname = removeSpchar($_FILES['bannerimage']['name']);
$realname = $s1 . "_" . $realname;
$dest = $path2 . "/" . $realname;
copy($_FILES['bannerimage']['tmp_name'], $dest);
$bannerimage = trim($realname);
$path3 = "uploads";
$delpath1 = $path3 . "/" . $_POST['T2'];
@unlink($delpath1);
}
} else {
$bannerimage = $connect->real_escape_string(trim($_POST['T2']));
}
$bannersql = db_query("SELECT * FROM footer_section");
$bannerrow = mysqli_num_rows($bannersql);
if($bannerrow > 0){
$sql2="update footer_section set left_content='".$left_content."', heading='".$section_heading."', image='".$bannerimage."', right_content='".$right_content."'";
// print_r($sql2);
// die();
$result2 = db_query($sql2);
}else{
$sql = "INSERT INTO `footer_section`(`left_content`, `heading`, `image`,`right_content`) VALUES ('$left_content','$section_heading','$bannerimage','$right_content')";
db_query($sql);
}
//include('pagemanipulate.php');
$msg = "Content Added Successfully.";
setcookie("msg", $msg, time() + 3);
print "<script>";
print "self.location = 'mng_footer.php';";
print "</script>";
exit;
}
// print_r($sql);
/*SELECT BANNER*/
$sql="SELECT * FROM footer_section";
$result = db_query($sql);
$row = $result->fetch_assoc();
// print_r($row['page_image']);
// die();
?>
<!DOCTYPE html>
<html lang="en">
<head>
<title>Labbsvar Admin Panel</title>
<?php include("css.php"); ?>
<script src="tinymce/tinymce.min.js" referrerpolicy="origin"></script>
<script>
tinymce.init({
selector: '#buyers,#sellers,#content',
height: 300,
plugins: 'print preview paste importcss searchreplace autolink autosave save directionality code visualblocks visualchars fullscreen image link media template codesample table charmap hr pagebreak nonbreaking anchor toc insertdatetime advlist lists wordcount imagetools textpattern noneditable help charmap emoticons',
menubar: 'file edit view insert format tools table help',
toolbar: 'undo redo | bold italic underline strikethrough | fontselect fontsizeselect formatselect | alignleft aligncenter alignright alignjustify | outdent indent | numlist bullist | forecolor backcolor removeformat | pagebreak | charmap emoticons | fullscreen preview save print | insertfile image media template link anchor codesample | ltr rtl',
toolbar_sticky: false,
image_advtab: true,
external_filemanager_path:"filemanager/",
filemanager_title:"Filemanager" ,
external_plugins: { "filemanager" : "../filemanager/plugin.min.js"},
content_css: [
'//fonts.googleapis.com/css?family=Lato:300,300i,400,400i',
'//www.tiny.cloud/css/codepen.min.css'
],
extended_valid_elements: 'span[class=]',
importcss_append: false,
});
function chnageLang(val){
self.location = 'mng_aboutme.php';
}
</script>
</head>
<body class="sidebar-pinned">
<?php include("left.php") ?>
<main class="admin-main">
<!--site header begins-->
<?php include("admin_header.php");?>
<!--site header ends -->
<section class="admin-content ">
<div class="bg-dark">
<div class="container m-b-30">
<div class="row">
<div class="col-12 text-white p-t-40 p-b-90">
<h4 class="">Manage Footer Section</h4>
<p class="opacity-75 "></p>
</div>
</div>
</div>
</div>
<div class="container pull-up">
<div class="row" style="margin: 0 auto; width:100%; align-items: center;
justify-content: center;">
<!--message-->
<?php if ($_COOKIE['msg']) { ?>
<div class="clearfix"></div>
<div class="col-lg-8">
<div class="alert alert-success">
<a href="#" class="close" data-dismiss="alert" onClick="$('.alert').hide('slow');">×</a>
<?php print str_replace("+", " ", $_COOKIE['msg']); ?>
</div>
</div>
<?php } ?>
<!--message-->
<div class="col-lg-12">
<div class="card m-b-30">
<div class="card-header">
<h5 class="m-b-0">
</h5>
<p class="m-b-0 text-muted">
</p>
</div>
<form method="POST" name="cms" action="" enctype="multipart/form-data">
<input type="hidden" name="stage" value="2">
<input type="hidden" name="recaptchaResponse" id="recaptchaResponse">
<div class="card-body ">
<div class="form-row m-b-20">
<label for="buyers">Right Section Heading</label>
<input type="text" class="form-control" id="heading" name="section_heading" value="<?php print $row['heading']; ?>">
</div>
<div class="form-row m-b-20">
<label for="buyers">Right Section Content</label>
<textarea class="form-control" name="right_content" ><?php print $row['right_content'];?></textarea>
</div>
<div class="form-row form-group">
<label for="category">Left Section Image</label>
<input type="file" class="form-control" id="bannerimage" name="bannerimage" placeholder="Banner">
<b><font color="red"> Size : (1920px X 500px)</font></b>
</div>
<?php if ($row['image'] != "") { ?>
<div class="clearfix"></div>
<div class="form-row">
<img src="uploads/<?php print $row['image']; ?>" class="img-responsive" style="width: 150px;height:150px;" />
</div>
<?php } ?>
<input type="hidden" name="T2" value="<?php print $row['image']; ?>">
<div class="form-row m-b-20">
<label for="heading" >Left Section Content</label>
<textarea class="form-control" name="left_content" ><?php print $row['left_content'];?></textarea>
</div>
<div class="form-row m-b-20">
<!-- <label for="heading" >Button Link</label>
<input type="text" class="form-control" id="heading" name="button_link" value="<?php print $row['button_link']; ?>" required >
</div> -->
<div class="form-group">
<button type="submit" class="btn btn-primary">Submit</button>
</div>
</div>
</form>
</div>
</div>
</div>
</div>
</section>
</main>
<?php include("js.php"); ?>
<!--Additional Page includes-->
<script src="assets/vendor/apexchart/apexcharts.min.js"></script>
<!--chart data for current dashboard-->
<script src="assets/js/dashboard-01.js" type="text/javascript"></script>
<script src="https://www.google.com/recaptcha/api.js?render=<?php print $sitekey; ?>"></script>
<script>
grecaptcha.ready(function () {
grecaptcha.execute('<?php print $sitekey; ?>',{action:'login'}).then(function(token){
var recaptchaResponse = document.getElementById('recaptchaResponse');
recaptchaResponse.value = token;
});
});
</script>
</body>
</html>