📄 update.php
字号:
<?php
header( "Content-Type: text/html; charset=gb2312" );
include_once( "inc/auth.php" );
include_once( "inc/utility_sms1.php" );
$connection = openconnection( );
switch ( $_REQUEST['handle'] )
{
case "update" :
if ( !get_magic_quotes_gpc( ) )
{
$explains = addslashes( $_REQUEST['explains'] );
}
else
{
$explains = $_REQUEST['explains'];
}
$query = "insert into officeitem_take (TAKE_DATE,TAKE_BILL,APPELLATION_ID,TAKE_AMOUNT,TAKE_STOCKPILE,MODES,MODE_TIME,EXPLAINS,TAKE_OPERATOR) VALUES('".$_REQUEST['take_date']."', '".$_REQUEST['take_bill']."', ".$_REQUEST['appellation_id'].", ".$_REQUEST['take_amount'].", ".$_REQUEST['storeroom_stockpile'].", ".$_REQUEST['modes'].", '".$_REQUEST['mode_time']."', '".$explains."','".$_SESSION['LOGIN_USER_ID']."')";
exequery( $connection, $query );
$privflow = ",74,";
$privflowno = "264,265,266,267,268,269,";
$sql = " \r\n\t\t\t\t SELECT USER_PRIV FROM user_priv \r\n\t\t\t\t\t\t WHERE INSTR(FUNC_ID_STR,'".$privflow."') > 0\r\n\t\t\t\t\t\t ";
$rs = exequery( $connection, $sql );
while ( $row = mysql_fetch_array( $rs ) )
{
$user_priv = $row['USER_PRIV'];
$sql2 = "SELECT USER_ID FROM user WHERE USER_PRIV='".$user_priv."'";
$rs2 = exequery( $connection, $sql2 );
if ( $row2 = mysql_fetch_array( $rs2 ) )
{
$user_id = $row2['USER_ID'];
$FROM_ID = "系统提醒";
$TO_ID = $user_id;
$CONTENT = "办公用品 <<".$_REQUEST['appellation'].">> 被申请使用,请您尽快查看!";
send_sms( $connection, $FROM_ID, $TO_ID, 16, $CONTENT );
}
}
header( "location: ./" );
break;
case "delete" :
if ( $_REQUEST['option'] == "back" )
{
$sql = "SELECT * FROM officeitem_take WHERE TAKE_ID=".$_REQUEST['take_id'];
$rs = exequery( $connection, $sql );
$row = mysql_fetch_array( $rs );
$aid = $row['APPELLATION_ID'];
$tamount = $row['TAKE_AMOUNT'];
$sql = "SELECT * FROM officeitem_appellation WHERE APPELLATION_ID=".$aid;
$rs = exequery( $connection, $sql );
$row = mysql_fetch_array( $rs );
$camount = $row['STOCKPILE'];
$total_amount = $tamount + $camount;
$sql = "UPDATE officeitem_appellation SET STOCKPILE='".$total_amount."' WHERE APPELLATION_ID=".$aid;
exequery( $connection, $sql );
$query = "update officeitem_take set CONCEAL=1 where TAKE_ID=".$_REQUEST['take_id']." limit 1";
exequery( $connection, $query );
}
else
{
$query = "DELETE FROM officeitem_take where TAKE_ID=".$_REQUEST['take_id']." ";
exequery( $connection, $query );
}
header( "location: ./" );
}
?>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -