-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathsave_attribute.php
More file actions
62 lines (48 loc) · 2.23 KB
/
Copy pathsave_attribute.php
File metadata and controls
62 lines (48 loc) · 2.23 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
<?php
require('../../config.php');
// include class.secure.php to protect this file and the whole CMS!
if (defined('WB_PATH')) {
include(WB_PATH.'/framework/class.secure.php');
} elseif (file_exists($_SERVER['DOCUMENT_ROOT'].'/framework/class.secure.php')) {
include($_SERVER['DOCUMENT_ROOT'].'/framework/class.secure.php');
} else {
$subs = explode('/', dirname($_SERVER['SCRIPT_NAME'])); $dir = $_SERVER['DOCUMENT_ROOT'];
$inc = false;
foreach ($subs as $sub) {
if (empty($sub)) continue; $dir .= '/'.$sub;
if (file_exists($dir.'/framework/class.secure.php')) {
include($dir.'/framework/class.secure.php'); $inc = true; break;
}
}
if (!$inc) trigger_error(sprintf("[ <b>%s</b> ] Can't include class.secure.php!", $_SERVER['SCRIPT_NAME']), E_USER_ERROR);
}
// end include class.secure.php
// Include WB admin wrapper script
$update_when_modified = true; // Tells script to update when this page was last updated
require(WB_PATH.'/modules/admin.php');
if ($_POST['attribute_name'] != "") {
// Insert new attribute name into db
if ($_POST['attribute_id'] == "") {
$option_id = $admin->add_slashes(strip_tags($_POST['option_id']));
$attribute_name = $admin->add_slashes(strip_tags($_POST['attribute_name']));
$database->query("INSERT INTO ".TABLE_PREFIX."mod_bakery_attributes (option_id, attribute_name) VALUES ('$option_id', '$attribute_name')");
}
// Update attribute name
else {
$option_id = $admin->add_slashes(strip_tags($_POST['option_id']));
$attribute_name = $admin->add_slashes(strip_tags($_POST['attribute_name']));
$attribute_id = $_POST['attribute_id'];
$database->query("UPDATE ".TABLE_PREFIX."mod_bakery_attributes SET option_id = '$option_id', attribute_name = '$attribute_name' WHERE attribute_id = '$attribute_id'");
}
} else {
$admin->print_error($MESSAGE['MEDIA']['BLANK_NAME'], WB_URL.'/modules/bakery/modify_options.php?page_id='.$page_id);
}
// Check if there is a db error, otherwise say successful
if ($database->is_error()) {
$admin->print_error($database->get_error(), WB_URL.'/modules/bakery/modify_options.php?page_id='.$page_id);
} else {
$admin->print_success($TEXT['SUCCESS'], WB_URL.'/modules/bakery/modify_options.php?page_id='.$page_id);
}
// Print admin footer
$admin->print_footer();
?>