OverLord Shell

Path : G:/PleskVhosts/jaincensus.com/macciaweb.ultraliant.com/businessforum/
File Upload :
Current File : G:/PleskVhosts/jaincensus.com/macciaweb.ultraliant.com/businessforum/multicompadd_save.php

<?php
session_start();
include("db/conn.php");

if(!isset($_SESSION['company_id'])){session_destroy(); echo "login.php";exit;}
if(!in_array($_SESSION['loggedin_user'],array('admin','company'))){echo "404.php";exit;}
if($_SERVER['REQUEST_METHOD']!='POST' || empty($_POST)){echo "404.php";exit;}

$target_dir = "uploads/";
//code to upload logo
if(!empty($_FILES["company_logo_path"]["name"]))
{
	 if($_FILES['company_logo_path']['size']  < 2 * 1024 * 1024){
	 $target_logo_file = $target_dir ."company_logo/".time()."_".clean($company_name)."_".basename($_FILES["company_logo_path"]["name"]);
	if (move_uploaded_file($_FILES["company_logo_path"]["tmp_name"], $target_logo_file)) {
    } else {
        echo "Sorry, there was an error uploading company logo.";exit;
    }
	 }else{echo "Logo size error. Max size is 2 MB.";exit;}
}
else
{
 	$target_logo_file = $_POST["old_company_logo_path"];
}

//code to upload banner
if(!empty($_FILES["company_banner_path"]["name"]))
{
	$target_banner_file = $target_dir ."company_banner/".time()."_".clean($company_name)."_".basename($_FILES["company_banner_path"]["name"]);
  if($_FILES['company_logo_path']['size']  < 2 * 1024 * 1024){
	if (move_uploaded_file($_FILES["company_banner_path"]["tmp_name"], $target_banner_file)) {
    } else {
        echo "Sorry, there was an error uploading company banner.";exit;
    }
	 }else{echo "Logo size error. Max size is 2 MB.";exit;}
}
else
{
 	$target_banner_file = $_POST["old_company_banner_path"];
}




$sasa=explode("~",$_POST['country_id']);
$cname=$sasa[1];
$sasa1=explode("~",$_POST['state_id']);
$sname=$sasa1[1];
$sasa2=explode("~",$_POST['dist_id']);
$dname=$sasa2[1];	
if($sasa[0]!='101'){
	$sname_main=$_POST['company_other_state'];
	
}else
{
	$sname_main=$sname;
	$dist_main=$dname;
}

$ds=$_POST['company_other_state'];
$dd=$_POST['state_id'];

if($dd==''&& $ds==''){
	$sname_main=$_POST['def_state_id'];
	$dist_main=$_POST['def_dist_id'];
}
$gmap = $_POST['gmap'];
$active = $_POST['active'];
$createdby =$_SESSION['company_id'];
$createdon = date('Y-m-d H:i:s');
$modifiedby = $_SESSION['company_id'];
$modifiedon = date('Y-m-d H:i:s');
$company_addres = $_POST['company_address'];
$company_pinno = $_POST['company_pinno'];

$my_company_id=$_POST['my_company_id'];

$facebook=$_POST['facebook'];
$linkedin=$_POST['linkedin'];
$twitter=$_POST['twitter'];


$data = array(
		'my_company_id' => $_POST['my_company_id'],
        'keyword' => $_POST['keyword'],
		'company_id' => $_SESSION['company_id'],
		'company_name' => $_POST['company_name'],
		'company_address' => $_POST['company_address'],
		'company_website' => $_POST['company_website'],
		'company_country' => $cname,
		'company_state' => $sname_main,
		'company_district' => $dist_main,
		'company_city' => $_POST['company_city'],
		'company_pinno' => $_POST['company_pinno'],
		'company_phone' => $_POST['company_phone'],
		'company_mobile' => $_POST['company_mobile'],
		'company_fax' => $_POST['company_fax'],
		'company_ceoname' => $_POST['company_ceoname'],
		'company_email' => $_POST['company_email'],
		'company_enquiry_email' => $_POST['company_enquiry_email'],
		'company_logo_path' => $target_logo_file,
		'company_banner_path' => $target_banner_file,
		'contact_person_name' => $_POST['contact_person_name'],
		'contact_person_phone' => $_POST['contact_person_phone'],
		'contact_person_email' => $_POST['contact_person_email'],
		'Gmap' => $_POST['gmap'],
		'token' => $_POST['token'],
		'approved' => $_POST['approved'],
		'verified' => $_POST['verified'],
		'plan_srno' =>0,
		'deleted' =>'n',
		'active' =>'y',
		'createdby' =>$_SESSION['company_id'],
		'createdon' => date('Y-m-d H:i:s')
		);
    $insertresult = dbRowInsert('busdir_mst_all_company', $data);
	$insertresultarr = explode("-",$insertresult);
	 
	 
     $last_inserted_id=$insertresultarr[1];

	 $addloc="INSERT INTO `busdir_mst_company_location`(`company_id`, `my_company_id`, `company_address`, `company_country`, `company_state`, `company_district`, `company_pinno`, `active`, `createdby`, `createdon`, `modifiedby`, `modifiedon`) VALUES ('".$_SESSION['company_id']."',	'$last_inserted_id','$company_address','$cname','$sname_main','$dist_main','$company_pinno','$active','$createdby','$createdon','$modifiedby','$modifiedon')";
	
$addr=$connection->query($addloc);

	$addsocial="INSERT INTO `busdir_mst_social`(`my_company_id`, `facebook`, `twitter`, `linkedin`, `active`, `createdby`, `createdon`, `modifiedby`, `modifiedon`) 
	VALUES ( '$last_inserted_id','$facebook','$twitter','$linkedin','y','$createdby','$createdon','$modifiedby','$modifiedon')";
	echo $insertresultarr[0];  
$ads=$connection->query($addsocial);
	

?>

xRyukZ - Copyright 2k19