Ok... So lets see what I get.
Well here is my code
Head:
<?php require_once('../../Connections/ControlPanel.php'); ?>
<?php
$imgfilenameout = "";
if ($_SERVER['REQUEST_METHOD'] == "POST")
{
$uploaddir = ".";
$pext = getFileExtension($imgfile_name);
$pext = strtolower($pext);
if (($pext != "jpg") && ($pext != "jpeg"))
{
print "<h1>ERROR</h1>Image Extension Unknown.<br>";
print "<p>Please upload only a JPEG image with the extension .jpg or .jpeg ONLY<br><br>";
print "The file you uploaded had the following extension: $pext</p>\n";
unlink($imgfile);
exit();
}
$imgsize = GetImageSize($imgfile);
if (($imgsize[0] > 250) || ($imgsize[1] > 200))
{
$tmpimg = tempnam("/tmp", "MKUP");
system("djpeg $imgfile >$tmpimg");
system("pnmscale -xy 250 200 $tmpimg | cjpeg -smoo 10 -qual 50 >$imgfile");
unlink($tmpimg);
}
$final_filename = str_replace(" ", "_", $imgfile_name);
$newfile = $uploaddir . "/$final_filename";
$imgfilenameout = $newfile;
if (is_uploaded_file($imgfile))
{
if (!copy($imgfile,"$newfile"))
{
print "Error Uploading File.";
exit();
}
}
unlink($imgfile);
$editFormAction = $_SERVER['PHP_SELF'];
if (isset($_SERVER['QUERY_STRING'])) {
$editFormAction .= "?" . htmlentities($_SERVER['QUERY_STRING']);
}
}
if ((isset($_POST["MM_insert"])) && ($_POST["MM_insert"] == "form1")) {
$insertSQL = sprintf("INSERT INTO c_4Sale (title, address, `description`, units, moRent, appFee, deposit, pets, sqft, bed, bath, petDeposit, petFee, elecPaid, watPaid, sewPaid, yardPaid, parking, features, img_1) VALUES (%s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s, %s)",
GetSQLValueString($_POST['title'], "text"),
GetSQLValueString($_POST['Address'], "text"),
GetSQLValueString($_POST['description'], "text"),
GetSQLValueString($_POST['units'], "text"),
GetSQLValueString($_POST['moRent'], "text"),
GetSQLValueString($_POST['appFee'], "text"),
GetSQLValueString($_POST['deposit'], "text"),
GetSQLValueString($_POST['pets'], "text"),
GetSQLValueString($_POST['sqft'], "text"),
GetSQLValueString($_POST['bed'], "text"),
GetSQLValueString($_POST['bath'], "text"),
GetSQLValueString($_POST['petDeposit'], "text"),
GetSQLValueString($_POST['petFee'], "text"),
GetSQLValueString($_POST['elecPaid'], "text"),
GetSQLValueString($_POST['watPaid'], "text"),
GetSQLValueString($_POST['sewPaid'], "text"),
GetSQLValueString($_POST['yardPaid'], "text"),
GetSQLValueString($_POST['parking'], "text"),
GetSQLValueString($_POST['features'], "text"),
GetSQLValueString($_POST['img_1'], "text"));
mysql_select_db($database_ControlPanel, $ControlPanel);
$Result1 = mysql_query($insertSQL, $ControlPanel) or die(mysql_error());
$insertGoTo = "../main.php";
if (isset($_SERVER['QUERY_STRING'])) {
$insertGoTo .= (strpos($insertGoTo, '?')) ? "&" : "?";
$insertGoTo .= $_SERVER['QUERY_STRING'];
}
header(sprintf("Location: %s", $insertGoTo));
}
mysql_select_db($database_ControlPanel, $ControlPanel);
$query_Recordset1 = "SELECT * FROM c_4Sale ORDER BY id ASC";
$Recordset1 = mysql_query($query_Recordset1, $ControlPanel) or die(mysql_error());
$row_Recordset1 = mysql_fetch_assoc($Recordset1);
$totalRows_Recordset1 = mysql_num_rows($Recordset1);
?>
HTML:
<table width="750" border="0" cellpadding="0" cellspacing="0">
<tr>
<td height="75" colspan="3" bgcolor="#003366" class="nav">Add A Property For Sale </td>
</tr>
<tr>
<td bgcolor="#003366" width="26%" valign="top"><table>
<tr>
<td class="nav"> Please Fill Out The Information to the right. </td>
</tr>
</table></td>
<td valign="top"><form action="<?php echo $_SERVER['PHP_SELF']; ?>" method="POST" enctype="multipart/form-data" name="form1"><input type="hidden" name="img_1" value="<?php echo $imgfilenameout; ?>" />
<table cellspacing="1" cellpadding="1" style="margin-left: 10px;" class="input_style">
<tr>
<td align="right">Title</td>
<td><input name="title" type="text" value="Testing" />
</td>
</tr>
<tr>
<td align="right">Address:</td>
<td><input name="Address" type="text" value="Testing" />
</td>
</tr>
<tr>
<td align="right" valign="top">Description:</td>
<td><textarea name="description" cols="40" rows="5">Testing
</textarea></td>
</tr>
<tr>
<td align="right">Available Units: </td>
<td><input name="units" type="text" value="Testing" />
</td>
</tr>
<tr>
<td align="right">Monthly Rent:</td>
<td><input name="moRent" type="text" value="Testing" />
</td>
</tr>
<tr>
<td align="right">Non-Refundable <br />
Application Fee:</td>
<td><input name="appFee" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Security Deposit:</td>
<td><input name="deposit" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Pets:</td>
<td><input name="pets" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right"><span class="style1">Sqft</span>:</td>
<td><input name="sqft" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Bedrooms:</td>
<td><input name="bed" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Bathrooms:</td>
<td><input name="bath" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Pet Deposit:</td>
<td><input name="petDeposit" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Non-Refundable Fee:</td>
<td><input name="petFee" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Electricity Paid by:</td>
<td><input name="elecPaid" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Water Paid by:</td>
<td><input name="watPaid" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Sewer Paid by:</td>
<td><input name="sewPaid" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Yard Kept by:</td>
<td><input name="yardPaid" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right">Parking:</td>
<td><input name="parking" type="text" value="Testing" /></td>
</tr>
<tr>
<td align="right" valign="top">Features:</td>
<td><textarea name="features" cols="40" rows="5">Testing
</textarea></td>
</tr>
<tr>
<td></td>
<td>
<input type="hidden" name="MAX_FILE_SIZE" value="50000">
<p>Upload Image: <input type="file" name="imgfile"><br>
<font size="1">Click browse to upload a local file</font><br>
<br>
</td>
</tr>
<tr><td colspan="2" align="center"><input type="submit" value="Insert Data"></td></tr>
</table>
<input type="hidden" name="MM_insert" value="form1">
</form></td>
<td bgcolor="#003366" width="1%"></td>
</tr>
<tr>
<td height="20" colspan="3" bgcolor="#003366"></td>
</tr>
</table>
FOOTER:
<?php
/*== FUNCTIONS ==*/
function getFileExtension($str) {
$i = strrpos($str,".");
if (!$i) { return ""; }
$l = strlen($str) - $i;
$ext = substr($str,$i+1,$l);
return $ext;
}
?>
<?php
mysql_free_result($Recordset1);
?>