HEX
Server: Microsoft-IIS/8.5
System: Windows NT YDAWBH120 6.3 build 9600 (Windows Server 2012 R2 Standard Edition) AMD64
User: tentjecom_web (0)
PHP: 7.4.14
Disabled: NONE
Upload Files
File: D:/HostingSpaces/SBogers10/rooymans.komma-mediadesign.nl/wwwroot/kms/portfoliofoto_verwijderen.php
<?php

$foto_id = $_GET['foto_id'];

$foto_id = checkData($foto_id);
	
$q_cases = sprintf("SELECT kms_portfolio_images.portfolio_id, kms_portfolio_images.icon_dir FROM kms_portfolio_images WHERE kms_portfolio_images.foto_id='%s'", $foto_id);
$r_cases = mysql_query($q_cases);
$rec_cases = mysql_fetch_assoc($r_cases);

$portfolio_id = $rec_cases['portfolio_id'];
$image = $rec_cases['icon_dir'];

$q_article_naam = sprintf("SELECT kms_portfolio.naam, kms_portfolio.image_dir FROM kms_portfolio WHERE kms_portfolio.portfolio_id='%s' LIMIT 0,1", $portfolio_id);
$r_article_naam = mysql_query($q_article_naam);
$rec_article_naam = mysql_fetch_assoc($r_article_naam);

$article_naam = html_entity_decode($rec_article_naam['naam']);
$dirname = $rec_article_naam['image_dir'];

if(isset($_POST['verzenden'])){
	$verzenden = true;
}

if($verzenden){
	
	$q_cases_delete = sprintf("DELETE FROM kms_portfolio_images WHERE kms_portfolio_images.foto_id='%s' LIMIT 1", $foto_id);
	$r_cases_delete = mysql_query($q_cases_delete);
	
	$root = $_SERVER['DOCUMENT_ROOT']."/";
	
	$image = trim($image);
	$dirname = trim($dirname);
	if(!empty($image)){
		unlink($root . '/portfolio_images/'. $dirname.'/foto_'. $image.'.jpg');
        unlink($root . '/portfolio_images/'. $dirname.'/thumb_'. $image.'.jpg');
	}
	
	if($r_cases_delete){	
	
	 	$query = "SELECT kms_portfolio_images.foto_id FROM kms_portfolio_images WHERE kms_portfolio_images.portfolio_id ='".$portfolio_id."' ORDER BY kms_portfolio_images.sort_order ASC";
  		$result = mysql_query($query);
  		
		if(mysql_num_rows($result)) {
	    	$order = array();
   			while($item = mysql_fetch_assoc($result)) {
		      $order[] = $item['foto_id'];
    		}
		}
	  	foreach($order as $index=>$id) {
			$id = (int) $id;
			if($id != '') {
				$query = 'UPDATE kms_portfolio_images SET sort_order = '.($index + 1).' WHERE kms_portfolio_images.foto_id = '.$id;
				$result = mysql_query($query) or die(mysql_error().': '.$query);
			}
		} 
	
		echo("Foto succesvol verwijderd!<br /><br />");
		echo("<a href=\"index.php?p=portfoliofoto_overzicht&amp;portfolio_id=".$portfolio_id."\" title=\"Terug naar het overzicht\">Terug naar het overzicht</a>");
	}else{
		echo("Er is iets fout gegaan.");
	}
	
}else{
?>

<h1>Foto verwijderen bij portfolio <?php echo($article_naam);?></h1>
<p>Wilt u onderstaande foto verwijderen?</p>

<p>

Afbeelding: <br /><br /><img src="/portfolio_images/<?php echo($dirname); ?>/foto_<?php echo($image); ?>.jpg" />

<form action="<?php $_SERVER['PHP_SELF']; ?>" id="aanmelden" name="aanmelden" method="post">
    	    
	<div>
		<input type="hidden" value="delete" />
        <input name="verzenden" type="submit" value="Foto verwijderen" class="submit" style="margin-left:0" />
        <a class="submit_annuleren" href="index.php?p=portfoliofoto_overzicht&amp;portfolio_id=<?php echo($portfolio_id); ?>" title="Annuleren">Annuleren</a>
	</div>
    
</form>

<?php
}
?>