kohjhjhصثقصثقصثقgdfgdg
Ele57885fddfgdfgfghgقفغفغفقhfg555434536
/
home
/
u402332945
/
domains
/
simmar.co.in
/
public_html
/
Admin-Panel
/
Upload FileeE
HOME
<?php //ALTER TABLE `orders` ADD `payment_place` INT NOT NULL AFTER `payment_status`; //TER TABLE `orders` ADD `gstn` VARCHAR(255) NOT NULL AFTER `payment_place`; require_once 'db.php'; $valid['success'] = array('success' => false, 'messages' => array(), 'order_id' => ''); // print_r($valid); if($_POST) { date_default_timezone_set('Asia/Kolkata'); $time = date( 'd-m-Y h:i:s A', time () ); $cidz=$_POST['cid']; $cid=str_replace("'","\'",$cidz); $namez=$_POST['name']; $name=str_replace("'","\'",$namez); $name1z=$_POST['name1']; $name1=str_replace("'","\'",$name1z); $name2z=$_POST['name2']; $name2=str_replace("'","\'",$name2z); $name3z=$_POST['name3']; $name3=str_replace("'","\'",$name3z); $name4z=$_POST['name4']; $name4=str_replace("'","\'",$name4z); $name5z=$_POST['name5']; $name5=str_replace("'","\'",$name5z); $name6z=$_POST['name6']; $name6=str_replace("'","\'",$name6z); $name7z=$_POST['name7']; $name7=str_replace("'","\'",$name7z); $name8z=$_POST['name8']; $name8=str_replace("'","\'",$name8z); $name9z=$_POST['name9']; $name9=str_replace("'","\'",$name9z); $dantime = date( 'h:i:s A', time () ); $discountz=$_POST['discount']; $discount=str_replace("'","\'",$discountz); $amountwtz=$_POST['amountwt']; $amountwt=str_replace("'","\'",$amountwtz); $totalatz=$_POST['totalat']; $totalat=str_replace("'","\'",$totalatz); $awntz=$_POST['awnt']; $awnt=str_replace("'","\'",$awntz); $orderItemSqlw = "SELECT name,id,name4 FROM p3 where name4 ='$name6'"; $orderItemResult = $db->query($orderItemSqlw); $orderResult = $db->query($orderItemSqlw); $orderData = $orderResult->fetch_array(); $cid1= $orderData[1]; $name4w= $orderData[2]; $orderItemSql1 = "SELECT name,id FROM p3 ORDER BY id DESC LIMIT 1"; $orderItemResult1 = $db->query($orderItemSql1); $orderResult1 = $db->query($orderItemSql1); $orderData1 = $orderResult1->fetch_array(); $cid2= $orderData1[1]+1; if($name3=="cash") { if($name=="") { if($name4w==$name6) { $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$cid1."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."','".$name9."',0,1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; $insert = $db->query("INSERT into p9 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,name13,name14,name15) VALUES ('".$cid1."','".$cid."','".$name4."','".$name9."','".$name9."',0,'".$name9."','".$name1."','".$time."','".$name1."','".$name5."','".$name6."','".$name9."',0,'cash','cashpay')"); } else { $insert1 = $db->query("INSERT into p3 (name,name1,name2,name3,name4) VALUES ('".$cid2."','".$name1."','".$name4."','".$name5."','".$name6."')"); $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$cid2."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."','".$name9."',0,1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; $insert = $db->query("INSERT into p9 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,name13,name14,name15) VALUES ('".$cid2."','".$cid."','".$name4."','".$name9."','".$name9."',0,'".$name9."','".$name1."','".$time."','".$name1."','".$name5."','".$name6."','".$name9."',0,'cash','cashpay')"); } } else { $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$name."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."','".$name9."',0,1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; $insert = $db->query("INSERT into p9 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,name13,name14,name15) VALUES ('".$name."','".$cid."','".$name4."','".$name9."','".$name9."',0,'".$name9."','".$name1."','".$time."','".$name1."','".$name5."','".$name6."','".$name9."',0,'cash','cashpay')"); } } elseif ($name3=="bank") { if($name=="") { if($name4w==$name6) { $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$cid1."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."','".$name9."',0,1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; $insert = $db->query("INSERT into p9 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,name13,name14,name15) VALUES ('".$cid1."','".$cid."','".$name4."','".$name9."','".$name9."',0,'".$name9."','".$name1."','".$time."','".$name1."','".$name5."','".$name6."','".$name9."',0,'bank','bankpay')"); } else { $insert1 = $db->query("INSERT into p3 (name,name1,name2,name3,name4) VALUES ('".$cid2."','".$name1."','".$name4."','".$name5."','".$name6."')"); $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$cid2."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."','".$name9."',0,1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; $insert = $db->query("INSERT into p9 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,name13,name14,name15) VALUES ('".$cid2."','".$cid."','".$name4."','".$name9."','".$name9."',0,'".$name9."','".$name1."','".$time."','".$name1."','".$name5."','".$name6."','".$name9."',0,'bank','bankpay')"); } } else { $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$name."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."','".$name9."',0,1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; $insert = $db->query("INSERT into p9 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,name13,name14,name15) VALUES ('".$name."','".$cid."','".$name4."','".$name9."','".$name9."',0,'".$name9."','".$name1."','".$time."','".$name1."','".$name5."','".$name6."','".$name9."',0,'bank','bankpay')"); } } elseif ($name3=="credit") { if($name=="") { if($name4w==$name6) { $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$cid1."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."',0,'".$name9."',1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; } else { $insert1 = $db->query("INSERT into p3 (name,name1,name2,name3,name4) VALUES ('".$cid2."','".$name1."','".$name4."','".$name5."','".$name6."')"); $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$cid2."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."',0,'".$name9."',1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; } } else { $sql = "INSERT INTO p6 (name,name1,name2,name3,name4,name5,name6,name7,name8,name9,name10,name11,name12,dantime,discount,totalamt,amountwt,awnt) VALUES ('".$name."','".$name1."','".$name2."','".$name3."','".$name4."','".$name5."','".$name6."','".$name7."','".$name8."','".$name9."',0,'".$name9."',1,'".$dantime."','".$discount."','".$totalat."','".$amountwt."','".$awnt."')"; } } $order_id; $orderStatus = false; if($db->query($sql) === true) { $order_id = $db->insert_id; $valid['order_id'] = $order_id; $orderStatus = true; } // echo $_POST['productName']; $orderItemStatus = false; for($x = 0; $x < count($_POST['productName']); $x++) { // add into order_item $amntwtnt=$_POST['productName'][$x]; $orderItemSql = "SELECT id,name FROM p15 WHERE id = '$amntwtnt'"; $orderItemResult = $db->query($orderItemSql); $orderResult = $db->query($orderItemSql); $orderData = $orderResult->fetch_array(); $qunt= $orderData[1]; if($name=="") { if($name4w==$name6) { $orderItemSql = "INSERT INTO p7 (name,name1,name2,name3,name4,name5,name6,name7,name8,hsn,totalamnt,totalamntwt,nameamntwtnt,totalwtntwtntwtnt) VALUES ('$cid1','$order_id', '".$_POST['productName'][$x]."', '".$_POST['quantity'][$x]."','".$_POST['quantity1'][$x]."','".$_POST['quantity2'][$x]."', '".$_POST['rate'][$x]."', '".$_POST['total'][$x]."', '".$name2."', '".$_POST['hsn'][$x]."', '".$_POST['totalamnt'][$x]."','$qunt','".$_POST['nameamntwtnt'][$x]."','".$_POST['totalwtntwtntwtnt'][$x]."')"; } else { $orderItemSql = "INSERT INTO p7 (name,name1,name2,name3,name4,name5,name6,name7,name8,hsn,totalamnt,totalamntwt,nameamntwtnt,totalwtntwtntwtnt) VALUES ('$cid2','$order_id', '".$_POST['productName'][$x]."', '".$_POST['quantity'][$x]."','".$_POST['quantity1'][$x]."','".$_POST['quantity2'][$x]."', '".$_POST['rate'][$x]."', '".$_POST['total'][$x]."', '".$name2."', '".$_POST['hsn'][$x]."', '".$_POST['totalamnt'][$x]."','$qunt','".$_POST['nameamntwtnt'][$x]."','".$_POST['totalwtntwtntwtnt'][$x]."')"; } } else { $orderItemSql = "INSERT INTO p7 (name,name1,name2,name3,name4,name5,name6,name7,name8,hsn,totalamnt,totalamntwt,nameamntwtnt,totalwtntwtntwtnt) VALUES ('$name','$order_id', '".$_POST['productName'][$x]."', '".$_POST['quantity'][$x]."','".$_POST['quantity1'][$x]."','".$_POST['quantity2'][$x]."', '".$_POST['rate'][$x]."', '".$_POST['total'][$x]."', '".$name2."', '".$_POST['hsn'][$x]."', '".$_POST['totalamnt'][$x]."','$qunt','".$_POST['nameamntwtnt'][$x]."','".$_POST['totalwtntwtntwtnt'][$x]."')"; } $db->query($orderItemSql); if($x == count($_POST['productName'])) { $orderItemStatus = true; } // while } // /for quantity echo "<script>document.location='purchase.php'</script>"; $valid['success'] = true; $valid['messages'] = "Successfully Added"; $db->close(); echo json_encode($valid); } // /if $_POST // echo json_encode($valid);