HEX
Server: Microsoft-IIS/8.5
System: Windows NT YDAWBH120 6.3 build 9600 (Windows Server 2012 R2 Standard Edition) AMD64
User: tentjecom_web (0)
PHP: 7.4.14
Disabled: NONE
Upload Files
File: D:/HostingSpaces/SBogers25/superbedrukt.nl/wwwroot/kms/artikel_verwijderen.php
<?php

$artikel_id = $_GET['artikel_id'];

$artikel_id = checkData($artikel_id);
	
$q_nieuws = sprintf("SELECT kms_articles.article_name, kms_articles.article_number, kms_articles.brand_id, kms_articles.subcategorie_id, kms_articles.gender_id, 
kms_articles.description, kms_articles.size_from, kms_articles.size_to, kms_articles.image_dir, kms_articles.popular FROM kms_articles WHERE article_id='%s'", $artikel_id);
$r_nieuws = mysql_query($q_nieuws);
$rec_nieuws = mysql_fetch_array($r_nieuws);

$naam = $rec_nieuws['article_name'];
$artikelnr = $rec_nieuws['article_number'];
$merk = $rec_nieuws['brand_id'];
$subcategorie = $rec_nieuws['subcategorie_id'];
$geslacht = $rec_nieuws['gender_id'];
$omschrijving = $rec_nieuws['description'];
$maat_van = $rec_nieuws['size_from'];
$maat_tot = $rec_nieuws['size_to'];
$image = $rec_nieuws['image_dir'];
$populair = $rec_nieuws['popular'];

$subcategorie_id = $rec_nieuws['subcategorie_id'];

$q_subcategorie = sprintf("SELECT kms_subcategories.subcategorie_name FROM kms_subcategories WHERE subcategorie_id='%s'", $subcategorie);
$r_subcategorie = mysql_query($q_subcategorie);
$rec_subcategorie = mysql_fetch_array($r_subcategorie);

$subcategorie = $rec_subcategorie['subcategorie_name'];

$q_gender = sprintf("SELECT kms_genders.gender_name FROM kms_genders WHERE gender_id='%s'", $geslacht);
$r_gender = mysql_query($q_gender);
$rec_gender = mysql_fetch_array($r_gender);

$geslacht = $rec_gender['gender_name'];

$q_brand = sprintf("SELECT kms_brands.brand_name FROM kms_brands WHERE brand_id='%s'", $merk);
$r_brand = mysql_query($q_brand);
$rec_brand = mysql_fetch_array($r_brand);

$merk = $rec_brand['brand_name'];


if(isset($_POST['verzenden'])){
	$verzenden = true;
}

if($verzenden){
	
	$q_nieuws_delete = sprintf("DELETE FROM kms_articles WHERE kms_articles.article_id='%s' LIMIT 1", $artikel_id);
	$r_nieuws_delete = mysql_query($q_nieuws_delete);
	
	$root = $_SERVER['DOCUMENT_ROOT']."/";
	
	$image = trim($image);
	
	if(!empty($image)){
		
		$q_kleuren = sprintf("SELECT kms_colors.color_id, kms_colors.icon_dir FROM kms_colors WHERE article_id='%s'", $artikel_id);
		$r_kleuren = mysql_query($q_kleuren);
			
		while($rec_kleuren = mysql_fetch_array($r_kleuren)){
			unlink($root . '/article_images/'. $image.'/kleur_'.$rec_kleuren[1].'.jpg');
			$q_kleur_delete = sprintf("DELETE FROM kms_colors WHERE kms_colors.color_id='%s' LIMIT 1", $rec_kleuren[0]);
			$r_kleur_delete = mysql_query($q_kleur_delete);  
		}
		
		unlink($root . '/article_images/'. $image.'/image.jpg');
		unlink($root . '/article_images/'. $image.'/populair.jpg');
		unlink($root . '/article_images/'. $image.'/thumb.jpg');
		rmdir($root . '/article_images/'. $image);
	}
		
	if($r_nieuws_delete){	
	
		$subcat_id = $_POST['subcategorie'];
	
	 	$query = "SELECT kms_articles.article_id FROM kms_articles WHERE kms_articles.subcategorie_id ='".$subcat_id."' ORDER BY kms_articles.sort_order ASC";
  		$result = mysql_query($query);
  		
		if(mysql_num_rows($result)) {
	    	$order = array();
   			while($item = mysql_fetch_assoc($result)) {
		      $order[] = $item['article_id'];
    		}
		}
	  	foreach($order as $index=>$id) {
			$id = (int) $id;
			if($id != '') {
				$query = 'UPDATE kms_articles SET sort_order = '.($index + 1).' WHERE kms_articles.article_id = '.$id;
				$result = mysql_query($query) or die(mysql_error().': '.$query);
			}
		} 
	
		echo("Artikel succesvol verwijderd!<br /><br />");
		echo("<a href=\"index.php?p=artikel_overzicht\" title=\"Terug naar het overzicht\">Terug naar het overzicht</a>");
		
	}else{
		echo("Er is iets fout gegaan.");
	}
	
}else{
?>

<h1>Artikel verwijderen</h1>

<p>Wilt u het onderstaande artikel verwijderen?</p>

<p>
Naam: <?php echo(html_entity_decode($naam)); ?> <br />
Artikelnummer: <?php echo(html_entity_decode($artikelnr)); ?><br />
Merk: <?php echo(html_entity_decode($merk)); ?><br />
Subcategorie: <?php echo(html_entity_decode($subcategorie)); ?><br />
Geslacht: <?php echo(html_entity_decode($geslacht)); ?><br />
Maat van: <?php echo(html_entity_decode($maat_van)); ?> tot <?php echo(html_entity_decode($maat_tot)); ?><br />
Populair: <?php echo(html_entity_decode($populair)); ?><br /><br />
Omschrijving: <?php echo(html_entity_decode($omschrijving)); ?><br /><br />
<?php if(!empty($image)){ ?>
Foto: <br /><br /><img src="../article_images/<?php echo($image); ?>/populair.jpg" alt="<?php echo($naam); ?>"/><br /><br />
<?php } ?>

Kleuren: <br /><br />

<?php 

	$q_kleuren = sprintf("SELECT kms_colors.color_id, kms_colors.color_name, kms_colors.icon_dir FROM kms_colors WHERE article_id='%s' ORDER BY kms_colors.color_name ASC", $artikel_id);
	$r_kleuren = mysql_query($q_kleuren);
		
	while($rec_kleuren = mysql_fetch_array($r_kleuren)){ ?>
    	<img src="../article_images/<?php echo($image); ?>/kleur_<?php echo($rec_kleuren[2]); ?>.jpg" alt="<?php echo($rec_kleuren[1]); ?>"/>&nbsp;&nbsp;&nbsp;    
    <?php } ?>

<br /><br />
</p>

<form action="<?php $_SERVER['PHP_SELF']; ?>" id="aanmelden" name="aanmelden" method="post">
    	    
	<div>
		<input type="hidden" value="delete" />
        <input type="hidden" name="subcategorie" value="<?php echo($subcategorie_id); ?>" />
        <input name="verzenden" type="submit" value="Dit artikel verwijderen" class="submit" style="margin-left:0" />
        <a class="submit_annuleren" href="index.php?p=artikel_overzicht" title="Annuleren">Annuleren</a>
	</div>
    
</form>

<?php
}
?>