www/includes/db_inventory_miscs.php

changeset 21
acb2d8098f19
child 37
9362eb9e9e5b
equal deleted inserted replaced
20:22271f3598ac 21:acb2d8098f19
1 <?php
2
3 require($_SERVER['DOCUMENT_ROOT']."/config.php");
4 require($_SERVER['DOCUMENT_ROOT']."/version.php");
5
6 #Connect to the database
7 $connect = mysqli_connect(DBASE_HOST, DBASE_USER, DBASE_PASS, DBASE_NAME);
8 if (! $connect) {
9 die('Connect Error (' . mysqli_connect_errno() . ') ' . mysqli_connect_error());
10 }
11
12 // get data and store in a json array
13 $query = "SELECT * FROM inventory_miscs";
14 if (isset($_GET['insert'])) {
15 // INSERT COMMAND
16 $sql = "INSERT INTO `inventory_miscs` SET name='" . mysqli_real_escape_string($connect, $_GET['name']);
17 $sql .= "', type='" . $_GET['type'];
18 $sql .= "', use_use='" . $_GET['use_use'];
19 $sql .= "', time='" . $_GET['time'];
20 ($_GET['amount_is_weight'] == 'true') ? $sql .= "', amount_is_weight='1" : $sql .= "', amount_is_weight='0";
21 $sql .= "', use_for='" . mysqli_real_escape_string($connect, $_GET['use_for']);
22 $sql .= "', notes='" . mysqli_real_escape_string($connect, $_GET['notes']);
23 ($_GET['always_on_stock'] == 'true') ? $sql .= "', always_on_stock='1" : $sql .= "', always_on_stock='0";
24 $sql .= "', inventory='" . $_GET['inventory'];
25 $sql .= "', cost='" . $_GET['cost'];
26 $sql .= "', production_date='" . $_GET['production_date'];
27 $sql .= "', tht_date='" . $_GET['tht_date'];
28 $sql .= "';";
29 $result = mysqli_query($connect, $sql);
30 if (! $result) {
31 syslog(LOG_NOTICE, "db_inventory_miscs: ".$sql." result: ".mysqli_error($connect));
32 } else {
33 syslog(LOG_NOTICE, "db_inventory_miscs: inserted ".$_GET['name']);
34 }
35 echo $result;
36
37 } else if (isset($_GET['update'])) {
38 // UPDATE COMMAND
39 $sql = "UPDATE `inventory_miscs` SET name='" . mysqli_real_escape_string($connect, $_GET['name']);
40 $sql .= "', type='" . $_GET['type'];
41 $sql .= "', use_use='" . $_GET['use_use'];
42 $sql .= "', time='" . $_GET['time'];
43 ($_GET['amount_is_weight'] == 'true') ? $sql .= "', amount_is_weight='1" : $sql .= "', amount_is_weight='0";
44 $sql .= "', use_for='" . mysqli_real_escape_string($connect, $_GET['use_for']);
45 $sql .= "', notes='" . mysqli_real_escape_string($connect, $_GET['notes']);
46 ($_GET['always_on_stock'] == 'true') ? $sql .= "', always_on_stock='1" : $sql .= "', always_on_stock='0";
47 $sql .= "', inventory='" . $_GET['inventory'];
48 $sql .= "', cost='" . $_GET['cost'];
49 $sql .= "', production_date='" . $_GET['production_date'];
50 $sql .= "', tht_date='" . $_GET['tht_date'];
51 $sql .= "' WHERE record='" . $_GET['record'] . "';";
52 $result = mysqli_query($connect, $sql);
53 if (! $result) {
54 syslog(LOG_NOTICE, "db_inventory_miscs: ".$sql." result: ".mysqli_error($connect));
55 } else {
56 syslog(LOG_NOTICE, "db_inventory_miscs: updated record ".$_GET['record']);
57 }
58 echo $result;
59
60 } else if (isset($_GET['delete'])) {
61 // DELETE COMMAND
62 $sql = "DELETE FROM `inventory_miscs` WHERE record='".$_GET['record']."';";
63 $result = mysqli_query($connect, $sql);
64 if (! $result) {
65 syslog(LOG_NOTICE, "db_inventory_miscs: ".$sql." result: ".mysqli_error($connect));
66 } else {
67 syslog(LOG_NOTICE, "db_inventory_miscs: deleted record ".$_GET['record']);
68 }
69 echo $result;
70
71 } else {
72 // SELECT COMMAND
73 $result = mysqli_query($connect, $query) or die("SQL Error 1: " . mysqli_error($connect));
74 while ($row = mysqli_fetch_array($result, MYSQLI_ASSOC)) {
75 $miscs[] = array(
76 'record' => $row['record'],
77 'name' => $row['name'],
78 'type' => $row['type'],
79 'use_use' => $row['use_use'],
80 'time' => $row['time'],
81 'amount_is_weight' => $row['amount_is_weight'],
82 'use_for' => $row['use_for'],
83 'notes' => $row['notes'],
84 'always_on_stock' => $row['always_on_stock'],
85 'inventory' => $row['inventory'],
86 'cost' => $row['cost'],
87 'production_date' => $row['production_date'],
88 'tht_date' => $row['tht_date']
89 );
90 }
91 echo json_encode($miscs);
92 }
93 ?>

mercurial