casting_registration.php
Expand|Select|Wrap|Line Numbers
- <table>
- <tr>
- <td>
- <form enctype="multipart/form-data" action="thankyou.php" method="post" name="registrationform">
- Choose a shows:
- </td>
- <td> <select name="shows">
- <option selected value="no show selected">Select a show</option>
- <option value="Bad Girls">Bad Girls</option>
- <option value="Real World">Real World</option>
- <option value="Road Rules">Road Rules</option>
- <option value="Murder">Murder</option>
- <option value="Steveo">Steveo</option>
- <option value="The Simple Life">The Simple Life</option>
- </select>
- </td>
- <td>
- Gender:
- </td>
- <td>
- <select name="gender">
- <option selected value="no gender selected">Select your gender</option>
- <option value="Female">Female</option>
- <option value="Male">Male</option>
- </select>
- </td>
- <td>
- Age:
- </td>
- <td colspan="7">
- <select name="age">
- <option selected value="no age selected">What is your age</option>
- <option value="18">18</option>
- <option value="19">19</option>
- <option value="20">20</option>
- <option value="21">21</option>
- <option value="22">22</option>
- <option value="23">23</option>
- <option value="24">24</option>
- <option value="25">25</option>
- <option value="26">26</option>
- <option value="27">27</option>
- <option value="28">28</option>
- </select>
- </td>
- </tr>
- <tr>
- <td>
- First Name:
- </td>
- <td>
- <input type="text" name="first_name" />
- </td>
- <td>
- Last Name:
- </td>
- <td>
- <input type="text" name="last_name" />
- </td>
- <td>
- Email Address:
- </td>
- <td>
- <input type="text" name="email_address" />
- </td>
- </tr>
- <tr>
- <td>
- Phone:
- </td>
- <td>
- <input type="text" name="phone_number" />
- </td>
- <td>
- City:
- </td>
- <td>
- <input type="text" name="city" />
- </td>
- <td>
- State:
- </td>
- <td>
- <input type="text" name="state" />
- </td>
- <td>
- Zip:
- </td>
- <td>
- <input type="text" name="zip" />
- </td>
- </tr>
- <tr>
- <td colspan="7">
- Please choose an image to upload: <input type="file" name="imgdata" id="imgdata"><br>
- <input type="hidden" name="MAX_FILE_SIZE" value="2000000">
- <input type="submit" name="upload" id="upload" value="Add Record" />
- </form>
- </td>
- </tr>
- </table>
Expand|Select|Wrap|Line Numbers
- if(isset($_POST['upload']) && $_FILES['imgdata']['size'] > 0)
- {
- $fileName = $_FILES['imgdata']['name'];
- $tmpName = $_FILES['imgdata']['tmp_name'];
- $fileSize = $_FILES['imgdata']['size'];
- $fileType = $_FILES['imgdata']['type'];
- $fp = fopen($tmpName, 'r');
- $content = fread($fp, filesize($tmpName));
- $content = addslashes($content);
- fclose($fp);
- $encoded = chunk_split(base64_encode($content));
- $decoded = chunk_split(base64_decode($content));
- if(!get_magic_quotes_gpc())
- {
- $fileName = addslashes($fileName);
- }
- }
- function my_insert_to_mysql_function($encoded)
- {
- $con = mysql_connect("localhost","kronus","gohomE2k");
- if (!$con)
- {
- die('Could not connect: ' . mysql_error());
- }
- else
- {
- mysql_select_db("kronus", $con);
- $my_sql_string = "INSERT INTO casting_registration
- (SHOWS, GENDER, AGE, FIRST_NAME, LAST_NAME, EMAIL_ADDRESS, PHONE_NUMBER, CITY, STATE, ZIP, PICTURE)
- VALUES
- ('$_REQUEST[shows]', '$_REQUEST[gender]', '$_REQUEST[age]', '$_REQUEST[first_name]', '$_REQUEST[last_name]', '$_REQUEST[email_address]', '$_REQUEST[phone_number]', '$_REQUEST[city]', '$_REQUEST[state]', '$_REQUEST[zip]', '$encoded')";
- if (!mysql_query($my_sql_string,$con))
- {
- // echo '<br /> Your SQL query is: ' .$my_sql_string;
- die('Error: ' . mysql_error());
- // echo '<br /> Your SQL query is: ' .$my_sql_string;
- }
- // echo 'Errors reported' . mysql_error();
- // echo '<br /> Your SQL query is: ' .$my_sql_string;
- }
- mysql_close($con);
- }
- </script>
- <script language="php">
- function my_select_to_mysql_function($encoded)
- {
- $con = mysql_connect("localhost","kronus","gohomE2k");
- if (!$con)
- {
- die('Could not connect: ' . mysql_error());
- }
- mysql_select_db("kronus", $con);
- $my_sql_string = "SELECT * FROM casting_registration
- WHERE SHOWS='" . $_REQUEST[shows] . "' AND GENDER= '" . $_REQUEST[gender] . "' AND AGE= '" . $_REQUEST[age] . "' AND FIRST_NAME= '" . $_REQUEST[first_name] . "' AND LAST_NAME= '" . $_REQUEST[last_name] . "' AND EMAIL_ADDRESS= '" . $_REQUEST[email_address] . "' AND CITY= '" . $_REQUEST[city] . "' AND STATE= '" . $_REQUEST[state] . "' AND ZIP= '" . $_REQUEST[zip] . "' AND PICTURE= '" . $encoded . "'
- LIMIT 0 , 30";
- if (!mysql_query($my_sql_string,$con))
- {
- die('Error: ' . mysql_error());
- // echo 'Errors reported' . mysql_error();
- }
- else
- {
- // echo 'Your SQL query is: ' .$my_sql_string;
- echo "<form action='registered.php' method='post'>";
- $someVar = mysql_query($my_sql_string,$con);
- $i = '1';
- while($row = mysql_fetch_array($someVar))
- {
- echo "<input type='textfield' name='shows" .$i. "' value='" .$row['SHOWS'] . "'><input type='textfield' name='gender" .$i. "' value='" .$row['GENDER'] . "'><input type='textfield' name='age" .$i. "' value='" .$row['AGE'] . "'><input type='textfield' name='first_name" .$i. "' value='" . $row['FIRST_NAME']. "'><input type='textfield' name='last_name" .$i. "' value='" . $row['LAST_NAME']. "'><br /><input type='textfield' name='email_address" .$i. "' value='" . $row['EMAIL_ADDRESS']. "'><input type='textfield' name='phone_number" .$i. "' value='" . $row['PHONE_NUMBER']. "'><input type='textfield' name='city" .$i. "' value='" . $row['CITY']. "'><input type='textfield' name='state" .$i. "' value='" . $row['STATE']. "'><input type='textfield' name='zip" .$i. "' value='" . $row['ZIP']. "'><br /><img src='gateway.php?picture='" .$encoded . "'><br />";
- echo "<input type='hidden' name='hidden_registered_id" .$i. "' value='" .$row['REGISTERED_ID'] . "'><input type='hidden' name='hidden_shows" .$i. "' value='" .$row['SHOWS'] . "' id='hidden_shows" .$i. "' value='" .$row['SHOWS'] . "'><input type='hidden' name='hidden_gender" .$i. "' value='" .$row['GENDER'] . "' id='hidden_gender" .$i. "' value='" .$row['GENDER'] . "'><input type='hidden' name='hidden_age" .$i. "' value='" .$row['AGE'] . "' id='hidden_age" .$i. "' value='" .$row['AGE'] . "'><input type='hidden' name='hidden_first_name" .$i. "' value='" . $row['FIRST_NAME']. "' id='hidden_first_name" .$i. "' value='" . $row['FIRST_NAME']. "'><input type='hidden' name='hidden_last_name" .$i. "' value='" . $row['LAST_NAME']. "' id='hidden_last_name" .$i. "' value='" . $row['LAST_NAME']. "'><input type='hidden' name='hidden_email_address" .$i. "' value='" . $row['EMAIL_ADDRESS']. "' id='hidden_email_address" .$i. "' value='" . $row['EMAIL_ADDRESS']. "'><input type='hidden' name='hidden_phone_number" .$i. "' value='" . $row['PHONE_NUMBER']. "' id='hidden_phone_number" .$i. "' value='" . $row['PHONE_NUMBER']. "'><input type='hidden' name='hidden_city" .$i. "' value='" . $row['CITY']. "' id='hidden_city" .$i. "' value='" . $row['CITY']. "'><input type='hidden' name='hidden_state" .$i. "' value='" . $row['STATE']. "' id='hidden_state" .$i. "' value='" . $row['STATE']. "'><input type='hidden' name='hidden_zip" .$i. "' value='" . $row['ZIP']. "' id='hidden_phone_zip" .$i. "' value='" . $row['ZIP']. "'><p>";
- $i++;
- }
- echo "<input type='hidden' name='my_i' value='" .$i. "'><input type='submit' name='update_button' value='Update Record'>";
- echo "</form>";
- }
- // echo 'Errors reported' . mysql_error();
- mysql_close($con);
- }
- function welcome_writing_function()
- {
- echo 'Thank you, ';
- echo $_REQUEST['first_name'];
- echo ' ';
- echo $_REQUEST['last_name'];
- echo ', for registering to the casting department of ';
- echo ' ';
- echo $_REQUEST['shows'];
- echo ' ';
- }
- function comments_writing_function()
- {
- echo $_REQUEST['picture'];
- echo '<p />';
- echo 'We will contact you at: ';
- echo $_REQUEST['email_address'];
- echo '<br />';
- echo $_REQUEST['phone_number'];
- echo '<br />';
- }
- function first_half_writing_function()
- {
- echo $_REQUEST['gender'];
- echo ' ';
- echo $_REQUEST['age'];
- echo ' ';
- echo $_REQUEST['first_name'];
- echo ' ';
- echo $_REQUEST['last_name'];
- echo '<br />';
- echo $_REQUEST['email_address'];
- echo '<br />';
- echo $_REQUEST['phone_number'];
- echo '<br />';
- echo $_REQUEST['city'];
- echo '<br />';
- echo $_REQUEST['state'];
- echo '<br />';
- echo $_REQUEST['zip'];
- echo '<br />';
- echo $_REQUEST['picture'];
- echo ' ';
- }
- function second_half_writing_function()
- {
- $words1 = ' on ';
- $words2 = date('m-d-y');
- $words3 = date('G') - 3;
- $words4 = date(':i:s');
- $time_right_now = $words1. ' ' .$words2. ' ' .$words3.$words4. ' PST';
- echo $time_right_now;
- }
- </script>
- <div style="position:absolute; display:inline; top:500px; left:70px;">
- <script language="php">
- welcome_writing_function();
- my_insert_to_mysql_function($encoded);
- my_select_to_mysql_function($encoded);
- </script>
- </div>
Expand|Select|Wrap|Line Numbers
- <?php
- $con = mysql_connect("localhost","username","password");
- if (!$con)
- {
- die('Could not connect: ' . mysql_error());
- }
- mysql_select_db("username", $con);
- $my_sql_string = "select picture from casting_registration where registered_id ='" . $_REQUEST['registered_id'] . "'";
- if (!mysql_query($my_sql_string,$con))
- {
- die('Error: ' . mysql_error());
- }
- else
- {
- // echo 'Your SQL query is: ' .$my_sql_string;
- $someVar = mysql_query($my_sql_string,$con);
- $i = '1';
- while($row = mysql_fetch_array($someVar))
- {
- $encodeddata = $row[picture];
- }
- }
- // echo 'Errors reported' . mysql_error();
- mysql_close($con);
- header("Content-type: image/jpeg");
- echo base64_decode($encodeddata);
- ?>
Why can't I get this? Please, someone help! I've been trying for a week now and I do not understand what else I can do.