function upload_movie() { if(array_key_exists('add',$_POST)) { $title = htmlentities($_POST); $entitle = htmlentities($_POST); $full_description = htmlentities($_POST); $cid = intval($_POST); $file_link = htmlentities($_POST); $uploader_id = $this->member; $time = time(); $img = $_POST; mysql_query("INSERT INTO team_movies(`title`,`entitle`,`full_description`,`upload_time`,`file_link`,`cid`,`uploader_id`,`status`,`img`) VALUES(\"$title\",\"$entitle\",\"$full_description\",'$time','$file_link','$cid','$uploader_id','pending','$img')")or die(mysql_error()); echo "הסרט הועלה בהצלחה וכעת נמצא בהמתנה לאישור המנהל."; } else { $val = "add"; $val = "הוסף!"; $this->uploadm_form($val); } } function select_cat($cid) { $ret = ''; $ret .= '<select name="cid">'; $Get = mysql_query("SELECT * FROM movies_cats ORDER BY name ASC"); while($cat = mysql_fetch_array($Get) ) { $ret .= "<option value='".$cat."'"; if($cat == $cid) $ret .= " SELECTED"; $ret .= ">".$cat."</option>"; } $ret .= '</select>'; return $ret; } function uploadm_form($val) { $selectCat = $this->select_cat($val); echo <<<HTML <FORM method='post' enctype="multipart/form-data" action=""> <input type="hidden" name="MAX_FILE_SIZE" value="70000"> <table> <tr> <td class='title'>שם הסרט:</td> <td><input type='text' name='title' value="{$val}" size="25"></td> </tr> <tr> <td class='title'>שם הסרט באנגלית:<br /><small>אל תשתמש ב"-"</small></td> <td><input type='text' name='entitle' value="{$val}" size="25"></td> </tr> <tr> <td class='title'>הקישור לסרט:</td> <td><input type='text' name='file_link' value="{$val}" size="50"></td> </tr> <tr> <td class='title'>תיאור הסרט:</td> <td><textArea cols='50' rows='10' name='full_description'>{$val}</td> </tr> <tr> <td class='title'>תמונת הסרט:</td> <td><input type='text' name='img' size='40'></tD> </tr> <tr> <td class='title'>בחר ז'אנר:</td> <td>{$selectCat}</td> </tr> <tr> <td colspan='2'><input type='submit' name='{$val}' value='{$val}'></td> </tr> </table> </form> HTML; }
|