File: /home/bibuzptr/elearning.bibu-edu.us/admin/app/schools.php
<?php
session_start();
ini_set('display_errors', 1);
ini_set('display_startup_errors', 1);
error_reporting(E_ALL);
include_once('../../includes/db_connect.php');
header("Content-Type:application/json");
$date = date("Y-m-d H:i:s");
$year = date("Y");
// if(isset($_SESSION["OPENUNI^###DHSG"])){
// $email = $_SESSION["OPENUNI^###DHSG"];
// $chkuser = mysqli_query($con,"SELECT * FROM admins WHERE admin_email='$email'");
// while($row = mysqli_fetch_assoc($chkuser)){
// $uid = $row["id"];
// $name = $row["admin_name"];
// }
/*<===========================school Management=================================>*/
if(isset($_POST["name"])){
extract($_POST);
$id = trim(mysqli_real_escape_string($con, $_POST["schoolid"]));
$name = trim(mysqli_real_escape_string($con, $_POST["name"]));
$description = trim(mysqli_real_escape_string($con, $_POST["description"]));
$url = strtolower(preg_replace("#[^0-9a-zA-Z()!,.?'\"]#i","-",$name));
if($_FILES['image']['name']!=""){
$image = str_replace(" ","",$_FILES['image']['name']);
$file_tmp =$_FILES['image']['tmp_name'];
move_uploaded_file($file_tmp,"../../school-images/".$image);
}else{
$image="ic_launcher.png";
}
if($_FILES['deanimage']['name']!=""){
$deanimage = str_replace(" ","",$_FILES['deanimage']['name']);
$file_tmp =$_FILES['deanimage']['tmp_name'];
move_uploaded_file($file_tmp,"../../school-images/".$deanimage);
}else{
$deanimage="ic_launcher.png";
}
//New school
if($id == ""){
if(mysqli_query($con,"INSERT INTO schools(name,icon,url,description,deanname,deanimage,deandescription) VALUES('$name','$image','$url','$description','$deanname','$deanimage','$deandescription')")){
echo json_encode(array("status" => 200, "message" => "SUCCESS"));
}
else{
echo json_encode(array('status' => 300,'message' => mysqli_error($con)));
}
}
else{
if(mysqli_query($con,"UPDATE schools SET name='$name',description='$description',deanname='$deanname',deandescription='$deandescription' WHERE id = '$id'")){
echo json_encode(array('status' => 200,'message' => 'SUCCESS'));
}
else{
echo json_encode(array('status' => 300,'message' => 'ERROR'));
}
}
}
//}
?>
<?php mysqli_close($con) ?>