session_start();
include 'back/settings.php';
mysql_connect(HostName,UserName,Password) or die("
Can not connect to MySql server! ");
mysql_select_db (DBName) or die ("Could not select database ".DBName." ");
//login process
if ($act=='1') {
$res=mysql_query("SELECT * FROM `gal_student` WHERE login='".$flogin."' AND password='".$fpassword."'") or die (mysql_error());
if (mysql_num_rows($res)>0) {
$_SESSION['logged'] = 'yes';
} else {
$error = 'Incorrect login or password!';
};};
//creation of new gallery
if ($act=='2') {
$ftitle=addslashes($ftitle);
$res=mysql_query("INSERT INTO `gal_cats` (`title`, `approved`) VALUES ('$ftitle', '0')") or die (mysql_error());
$id=mysql_insert_id();
$filename=$_FILES['ffile']['tmp_name'];
if ($filename!="") {
if (file_exists('back/cats/photo_'.$id.'.jpg')) {unlink ('back/cats/photo_'.$id.'.jpg');};
copy ($filename, 'back/cats/photo_'.$id.'.jpg');
};
$error = 'New gallery has been successfully created and waits for admin\'s approval!';
};
//creation of new photo
if ($act=='3') {
$ftitle=addslashes($ftitle);
$fvideo=addslashes($fvideo);
$query=mysql_query("INSERT INTO `gal_photos` (`cat_id`, `title`, `approved`, `video`) VALUES ('$fcat_id', '$ftitle', '0', '$fvideo')") or die (mysql_error());
$photo_id=mysql_insert_id();
$filename=$_FILES['ffile']['tmp_name'];
if ($filename!="") {
if (file_exists('back/photos/photo_'.$photo_id.'.jpg')) {unlink ('back/photos/photo_'.$photo_id.'.jpg');};
copy ($filename, 'back/photos/photo_'.$photo_id.'.jpg');
};
$error = 'New photo has been successfully added and waits for admin\'s approval!';
};
?>
UCSI - Gallery
if ($_SESSION['logged']!='yes') {?>
Student Login
=$error?>
} else {?>
=$error?>
Create New Gallery
Upload New Photo
New Galleries/Photos Preview
$query=mysql_query("SELECT * FROM `gal_cats` WHERE approved='0' ORDER BY `title`") or die (mysql_error());
$i=1;
while ($f=mysql_fetch_array($query)) {?>