i have the folowing code:
<?
session_start();
include 'db.php';
$search = $user;
$query = "select * from mail WHERE touser='$search'";
$result = mysql_db_query("ss", $query);
$sql_username_check = mysql_query("SELECT touser FROM mail WHERE touser='$username'");
$mails = mysql_num_rows($sql_username_check);
if ($mails>0)
{
echo "<table width=100% id='result' align=left <table border=1 cellpadding=1 cellspacing=0 class=borderTable bordercolor=#FFFFFF><tr>
<td align=center bgcolor=#EDEDED width=10%><p class=style35><input id='allbox' name='box0' onClick=\"Checkall(this.form);\" type='checkbox' />
</td>
<td align=left bgcolor=#EDEDED width=30%><p class=style35>From</td>
<td align=left bgcolor=#EDEDED><p class=style35>Subject</td>
<td align=center bgcolor=#EDEDED width=20%><p class=style35>Date</td>
</tr></font>";
$i = 1;
while ($r = mysql_fetch_array($result)) { // Begin while
$fromuser = $r["fromuser"];
$idnumber = mysql_query("SELECT * FROM users WHERE username='$fromuser'");// for profile display
$userid = mysql_result($idnumber,0,"userid");
$sub = $r["sub"];
$date = $r["date"];
$id = $r["id"];
$message = $r["message"];
$read = $r["beenread"];
if ($read==1) { $colour = "#FFFFFF";} else { $colour = "#EDEDED"; }
$Text = "<p class=style35><a href=profile.php?id=$userid; style=color:#0099FF>$fromuser</a>";
$Text2 = "<p class=style35><a href=mail_readmsg.php?msg=$r[id] style=color:#0099FF>$sub</a>";
echo "<p class=style35><tr>
<td align=center bgcolor=$colour><input type='checkbox' name='box$i' value='$id'></td>
<td align=left bgcolor=$colour>$Text</td>
<td align=left bgcolor=$colour>$Text2</td>
<td align=center bgcolor=$colour><p class=style35>$date</td>";
$i++;
} // end while
echo "</table>";
echo "
<script language=\"JavaScript\">
function Checkall(form){
for (var i = 1; i < ($mails+1); i++){
eval(\"form2.box\" + i + \".checked = form2.box0.checked\");
}
}
</script>";
} else { echo "<p class=style35><strong>-You have no messages.-"; }
?>
which submits to:
<?php
session_start();
include 'db.php';
$username = $_SESSION['username'];
$message = '<font face="verdana"><font color="#FF0000"><font size="1">Please select an action to perform.<br />';
$message2 = '<font face="verdana"><font color="#FF0000"><font size="1">Please select one or more private messages to operate on.<br />';
if ($_POST['menu'] == '-Select-') {
$fail = 1;
include 'mail_read.php';
exit();
}
$query = "select * from mail WHERE touser='$search'";
$result = mysql_db_query("ss", $query);
$i = 1;
while ($r = mysql_fetch_array($result)) {
if ($_POST['menu'] == 'Delete') {
if ($_POST['box$i'] == true) {
mysql_query("UPDATE mail SET touser='delete-$username' AND id='$r[id]'")or die (mysql_error());
}
}
if ($_POST['menu'] == 'Mark As Unread') {
if ($_POST['box$i'] == true) {
mysql_query("UPDATE mail SET beenread='0' WHERE id='$r[id]'")or die (mysql_error());
}
}
$i++;
}
include 'mail_read.php';
exit(); ?>
iv tried for ages to find the problem but it isnt really working for some reason. thanx in advance