📄 upproduct.asp
字号:
<%@LANGUAGE="VBSCRIPT"%>
<!--#include file="Connections/conn.asp" -->
<%
' *** Restrict Access To Page: Grant or deny access to this page
MM_authorizedUsers="admin,class,product"
MM_authFailedURL="adminloginerr.asp"
MM_grantAccess=false
If Session("MM_Username") <> "" Then
If (false Or CStr(Session("MM_UserAuthorization"))="") Or _
(InStr(1,MM_authorizedUsers,Session("MM_UserAuthorization"))>=1) Then
MM_grantAccess = true
End If
End If
If Not MM_grantAccess Then
MM_qsChar = "?"
If (InStr(1,MM_authFailedURL,"?") >= 1) Then MM_qsChar = "&"
MM_referrer = Request.ServerVariables("URL")
if (Len(Request.QueryString()) > 0) Then MM_referrer = MM_referrer & "?" & Request.QueryString()
MM_authFailedURL = MM_authFailedURL & MM_qsChar & "accessdenied=" & Server.URLEncode(MM_referrer)
Response.Redirect(MM_authFailedURL)
End If
%>
<%
' *** Edit Operations: declare variables
MM_editAction = CStr(Request("URL"))
If (Request.QueryString <> "") Then
MM_editAction = MM_editAction & "?" & Request.QueryString
End If
' boolean to abort record edit
MM_abortEdit = false
' query string to execute
MM_editQuery = ""
%>
<%
' *** Update Record: set variables
If (CStr(Request("MM_update")) <> "" And CStr(Request("MM_recordId")) <> "") Then
MM_editConnection = MM_conn_STRING
MM_editTable = "product"
MM_editColumn = "productid"
MM_recordId = "'" + Request.Form("MM_recordId") + "'"
MM_editRedirectUrl = "addproductok.asp"
MM_fieldsStr = "productname|value|productisbn|value|cdate|value|changshang|value|classid|value|Nclassid|value|yprice|value|xprice|value|radiobutton|value|radiobutton1|value|shuliang|value|weight|value|productjs|value"
MM_columnsStr = "productname|',none,''|productid|',none,''|cdate|',none,''|changshang|',none,''|bclassid|none,none,NULL|sclassid|none,none,NULL|yprice|',none,''|xprice|',none,''|dazhe|none,none,NULL|tuijian|none,none,NULL|Stock|none,none,NULL|weight|',none,''|productjs|',none,''"
' create the MM_fields and MM_columns arrays
MM_fields = Split(MM_fieldsStr, "|")
MM_columns = Split(MM_columnsStr, "|")
' set the form values
For i = LBound(MM_fields) To UBound(MM_fields) Step 2
MM_fields(i+1) = CStr(Request.Form(MM_fields(i)))
Next
' append the query string to the redirect URL
If (MM_editRedirectUrl <> "" And Request.QueryString <> "") Then
If (InStr(1, MM_editRedirectUrl, "?", vbTextCompare) = 0 And Request.QueryString <> "") Then
MM_editRedirectUrl = MM_editRedirectUrl & "?" & Request.QueryString
Else
MM_editRedirectUrl = MM_editRedirectUrl & "&" & Request.QueryString
End If
End If
End If
%>
<%
' *** Update Record: construct a sql update statement and execute it
If (CStr(Request("MM_update")) <> "" And CStr(Request("MM_recordId")) <> "") Then
' create the sql update statement
MM_editQuery = "update " & MM_editTable & " set "
For i = LBound(MM_fields) To UBound(MM_fields) Step 2
FormVal = MM_fields(i+1)
MM_typeArray = Split(MM_columns(i+1),",")
Delim = MM_typeArray(0)
If (Delim = "none") Then Delim = ""
AltVal = MM_typeArray(1)
If (AltVal = "none") Then AltVal = ""
EmptyVal = MM_typeArray(2)
If (EmptyVal = "none") Then EmptyVal = ""
If (FormVal = "") Then
FormVal = EmptyVal
Else
If (AltVal <> "") Then
FormVal = AltVal
ElseIf (Delim = "'") Then ' escape quotes
FormVal = "'" & Replace(FormVal,"'","''") & "'"
Else
FormVal = Delim + FormVal + Delim
End If
End If
If (i <> LBound(MM_fields)) Then
MM_editQuery = MM_editQuery & ","
End If
MM_editQuery = MM_editQuery & MM_columns(i) & " = " & FormVal
Next
MM_editQuery = MM_editQuery & " where " & MM_editColumn & " = " & MM_recordId
If (Not MM_abortEdit) Then
' execute the update
Set MM_editCmd = Server.CreateObject("ADODB.Command")
MM_editCmd.ActiveConnection = MM_editConnection
MM_editCmd.CommandText = MM_editQuery
MM_editCmd.Execute
MM_editCmd.ActiveConnection.Close
If (MM_editRedirectUrl <> "") Then
Response.Redirect(MM_editRedirectUrl)
End If
End If
End If
%>
<%
set rs1 = Server.CreateObject("ADODB.Recordset")
rs1.ActiveConnection = MM_conn_STRING
rs1.Source = "SELECT * FROM bclass"
rs1.CursorType = 0
rs1.CursorLocation = 2
rs1.LockType = 3
rs1.Open()
rs1_numRows = 0
%>
<%
set rs = Server.CreateObject("ADODB.Recordset")
rs.ActiveConnection = MM_conn_STRING
rs.Source = "SELECT * FROM sclass"
rs.CursorType = 0
rs.CursorLocation = 2
rs.LockType = 3
rs.Open()
rs_numRows = 0
%>
<%
Dim Recordset1__MMColParam
Recordset1__MMColParam = "1"
if (Request.QueryString("productid") <> "") then Recordset1__MMColParam = Request.QueryString("productid")
%>
<%
set Recordset1 = Server.CreateObject("ADODB.Recordset")
Recordset1.ActiveConnection = MM_conn_STRING
Recordset1.Source = "SELECT * FROM product WHERE productid = '" + Replace(Recordset1__MMColParam, "'", "''") + "'"
Recordset1.CursorType = 0
Recordset1.CursorLocation = 2
Recordset1.LockType = 3
Recordset1.Open()
Recordset1_numRows = 0
%>
<%
Dim Recordset2__MMColParam
Recordset2__MMColParam = "1"
if (Request.QueryString("productid") <> "") then Recordset2__MMColParam = Request.QueryString("productid")
%>
<%
set Recordset2 = Server.CreateObject("ADODB.Recordset")
Recordset2.ActiveConnection = MM_conn_STRING
Recordset2.Source = "SELECT * FROM product inner join bclass on product.bclassid=bclass.bclassid WHERE productid = '" + Replace(Recordset2__MMColParam, "'", "''") + "'"
Recordset2.CursorType = 0
Recordset2.CursorLocation = 2
Recordset2.LockType = 3
Recordset2.Open()
Recordset2_numRows = 0
%>
<%
Dim Recordset3__MMColParam
Recordset3__MMColParam = "1"
if (Request.QueryString("productid") <> "") then Recordset3__MMColParam = Request.QueryString("productid")
%>
<%
set Recordset3 = Server.CreateObject("ADODB.Recordset")
Recordset3.ActiveConnection = MM_conn_STRING
Recordset3.Source = "SELECT * FROM product inner join sclass on product.sclassid=sclass.sclassid WHERE productid = '" + Replace(Recordset3__MMColParam, "'", "''") + "'"
Recordset3.CursorType = 0
Recordset3.CursorLocation = 2
Recordset3.LockType = 3
Recordset3.Open()
Recordset3_numRows = 0
%>
<html>
<head>
<title>更新商品</title>
<script language = "JavaScript">
<!--
var onecount;
onecount=0;
subcat = new Array();
<%
count = 0
do while not rs.eof
%>
subcat[<%=count%>] = new Array("<%= (rs("sclassname"))%>","<%= (rs("bclassid"))%>","<%= trim(rs("sclassid"))%>");
<%
count = count + 1
rs.movenext
loop
%>
onecount=<%=count%>;
function changelocation(locationid)
{
document.myform.Nclassid.length = 0;
var locationid=locationid;
var i;
for (i=0;i < onecount; i++)
{
if (subcat[i][1] == locationid)
{
document.myform.Nclassid.options[document.myform.Nclassid.length] = new Option(subcat[i][0], subcat[i][2]);
}
}
}
function MM_openBrWindow(theURL,winName,features) { //v2.0
window.open(theURL,winName,features);
}
//-->
</script>
<meta http-equiv="Content-Type" content="text/html; charset=gb2312">
<link rel="stylesheet" href="ddd.css" type="text/css">
<script language="JavaScript">
<!--
function checkdata() {
if (document.myform.productname.value=="") {
window.alert ("请输入商品名称 !")
return false
}
if (document.myform.productisbn.value=="") {
window.alert ("请输入商品编号 !")
return false
}
if (document.myform.cdate.value=="") {
window.alert ("请输入商品出厂日期 !")
return false
}
if (document.myform.changshang.value=="") {
window.alert ("请输入商品的制造厂商!")
return false
}
if (document.myform.classid.value=="") {
window.alert ("请选择商品大类 !")
return false
}
if (document.myform.yprice.value=="") {
window.alert ("请输入商品原价 !")
return false
}
if (document.myform.xprice.value=="") {
window.alert ("请输入商品现价 !")
return false
}
if (document.myform.shuliang.value=="") {
window.alert ("请输入商品库存 !")
return false
}
if (document.myform.weight.value=="") {
window.alert ("请输入商品重量 !")
return false
}
if (document.myform.productjs.value=="") {
window.alert ("请输入商品介绍 !")
return false
}
return true
}
//-->
</script>
</head>
<body bgcolor="#FFFFFF" text="#000000" topmargin="0">
<!--#include file="manage.asp" -->
<!--#include file="top.asp" -->
<table width="771" border="0" cellspacing="0" cellpadding="0" align="center" class="bk">
<tr>
<td>
<form ACTION="<%=MM_editAction%>" METHOD="POST" name="myform" onSubmit="return checkdata()">
<br>
<table width="63%" border="1" cellspacing="2" cellpadding="0" align="center" bordercolor="#FFFFFF" class="dfont">
<tr>
<td background="images/bg22.gif" bordercolor="#000000">
<div align="center"><b><font color="#000000" size="2">更新商品</font></b></div>
</td>
</tr>
<tr>
<td bordercolor="#000000">产品名称:
<input type="text" name="productname" value="<%=(Recordset1.Fields.Item("productname").Value)%>">
</td>
</tr>
<tr>
<td bordercolor="#000000">产品序号:
<input type="text" name="productisbn" value="<%=(Recordset1.Fields.Item("productid").Value)%>">
</td>
</tr>
<tr>
<td bordercolor="#000000">出厂时间:
<input type="text" name="cdate" value="<%=(Recordset1.Fields.Item("cdate").Value)%>">
</td>
</tr>
<tr>
<td bordercolor="#000000">制造厂商:
<input type="text" name="changshang" value="<%=(Recordset1.Fields.Item("changshang").Value)%>">
</td>
</tr>
<tr>
<td bordercolor="#000000"> 选择产品分类:
<select name="classid" onChange="changelocation(document.myform.classid.options[document.myform.classid.selectedIndex].value)">
<option>请选择大类</option>
<%
While (NOT rs1.EOF)
%>
<option value="<%=trim(rs1.Fields.Item("bclassid").Value)%>" ><%=trim(rs1.Fields.Item("bclassname").Value)%></option>
<%
rs1.MoveNext()
Wend
If (rs1.CursorType > 0) Then
rs1.MoveFirst
Else
rs1.Requery
End If
%>
<option value="<%=(Recordset1.Fields.Item("bclassid").Value)%>" selected><%=(Recordset2.Fields.Item("bclassname").Value)%></option>
</select>
<select name="Nclassid">
<option>请先选择大类</option>
<%
While (NOT rs.EOF)
%>
<option value="<%=trim(rs.Fields.Item("sclassid").Value)%>" ><%=trim(rs.Fields.Item("sclassname").Value)%></option>
<%
rs.MoveNext()
Wend
If (rs.CursorType > 0) Then
rs.MoveFirst
Else
rs.Requery
End If
%>
<option value="<%=(Recordset1.Fields.Item("sclassid").Value)%>" selected><%=(Recordset3.Fields.Item("sclassname").Value)%></option>
</select>
</td>
</tr>
<tr>
<td bordercolor="#000000">原价:
<input type="text" name="yprice" value="<%=(Recordset1.Fields.Item("yprice").Value)%>">
</td>
</tr>
<tr>
<td bordercolor="#000000">现价:
<input type="text" name="xprice" value="<%=(Recordset1.Fields.Item("xprice").Value)%>">
</td>
</tr>
<tr>
<td bordercolor="#000000">是否打折:
<% if recordset1.fields.item("dazhe").value=(-1) then %>
<input type="radio" name="radiobutton" value="-1" checked>
是
<input type="radio" name="radiobutton" value="0">
否
<% else %>
<input type="radio" name="radiobutton" value="-1">
是
<input type="radio" name="radiobutton" value="0" checked>
否
<% end if %>
</td>
</tr>
<tr>
<td bordercolor="#000000">是否推荐:
<% if recordset1.fields.item("tuijian").value=(-1) then %>
<input type="radio" name="radiobutton1" value="-1" checked>
是
<input type="radio" name="radiobutton1" value="0">
否
<% else %>
<input type="radio" name="radiobutton1" value="-1">
是
<input type="radio" name="radiobutton1" value="0" checked>
否
<% end if %>
</td>
</tr>
<tr>
<td bordercolor="#000000">库存:
<input type="text" name="shuliang" value="<%=(Recordset1.Fields.Item("Stock").Value)%>">
</td>
</tr>
<tr>
<td bordercolor="#000000">重量:
<input type="text" name="weight" value="<%=(Recordset1.Fields.Item("weight").Value)%>">
KG </td>
</tr>
<tr>
<td bordercolor="#000000">已有图片:<img src="images/product/<%=(Recordset1.Fields.Item("images").Value)%>">
<a href="#" onClick="MM_openBrWindow('upproductimg.asp?productid=<%=(Recordset1.Fields.Item("productid").Value)%>','','width=400,height=300')">重新上传</a></td>
</tr>
<tr>
<td bordercolor="#000000">商品描述:</td>
</tr>
<tr>
<td bordercolor="#000000">
<div align="center">
<textarea name="productjs" cols="60" rows="7"><%=(Recordset1.Fields.Item("productjs").Value)%></textarea>
</div>
</td>
</tr>
<tr>
<td bordercolor="#000000">
<div align="center">
<input type="submit" value="更新">
<a href="managesp.asp">返回</a></div>
</td>
</tr>
</table>
<br>
<input type="hidden" name="MM_recordId" value="<%= Recordset1.Fields.Item("productid").Value %>">
<input type="hidden" name="MM_update" value="true">
</form>
</td>
</tr>
</table>
<br>
<!--#include file="bottom.asp" -->
</body>
</html>
<%
rs1.Close()
%>
<%
rs.Close()
%>
<%
Recordset1.Close()
%>
<%
Recordset2.Close()
%>
<%
Recordset3.Close()
%>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -