Forum Moderators: coopster
<body>
<html>
<body bgcolor="000001" text="tan">
<h2>example.com administrative list of shows</h2>
<hr>
<table border="0" width="95%">
<tr>
<td width="555" valign="top">
<blockquote>
<p><b>Add a new show here:</b></p>
<form action="admin-shows.php" method="post">
<table border="0">
<tr>
<td>
Date:
</td>
<td>
<input type="text" size="1" maxlength="2" name="MONTH"> / <input type="text" size="1" maxlength="2" name="DAY"> / <input type="text" size="2" maxlength="4" value="2010" name="YEAR"><br><font size="1">month/day/year</font>
</td>
</tr>
<tr><td> </td><td> </td></tr>
<tr>
<td>
Time:
</td>
<td>
<input type="text" size="1" maxlength="2" name="HOUR"> <b>:</b> <input type="text" size="1" maxlength="2" name="MINUTE"> AM:<input type="radio" name="time" value="0"> PM:<input type="radio" name="time" value="12" checked>
</td>
</tr>
</table>
<br /><br />
<?php
$con = mysql_connect("localhost","useromitted","passomitted");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("d60648383", $con);
$result = mysql_query("SELECT * FROM VENUES ORDER BY VENUENAME");
echo "Venue: <SELECT NAME='VENUE'>";
while($row = mysql_fetch_array($result))
{
echo "<option value='" . $row['VENUEID'] . "'><font face='Arial' size='1'>" . $row['VENUENAME'] . "</font></option>";
}
echo "<br>";
mysql_close($con);
?>
</SELECT> <br />
<p><a href="http://example.com/admin/admin-venue.php" class="bluelinks">(add a venue)</a><br /></p>
Title: <input type="text" name="TITLE" size="45" />
<br /><br />
<table border="0"><tr><td valign="top"> </td><td valign="top">Description:<br><textarea name="DESCRIPTION" rows="5" cols="40"></textarea></td></tr></table><br>
Age: <input type="radio" name="AGE" value="all ages">all ages <input type="radio" name="AGE" value="18+">18+ <input type="radio" name="AGE" value="21+">21+<br><br>
Cost of admission: <input type="text" name="COST" size="5" value="$">
<input type="submit" value="Add Show" /><br><br>
</form>
</blockquote>
</td>
<td valign="top">
<?php
$con = mysql_connect("localhost","u70715871","5c9003");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("d60648383", $con);
$hour = $_POST[HOUR] + $_POST[time];
$minute = $_POST[MINUTE];
$second = "00";
$month = $_POST[MONTH];
$day = $_POST[DAY];
$year = $_POST[YEAR];
$showdatetime = "$year-$month-$day $hour:$minute:$second";
$sql="INSERT INTO SHOWS (DATETIME, VENUE, TITLE, DESCRIPTION, AGE, COST) VALUES ('$showdatetime','$_POST[VENUE]','$_POST[TITLE]','$_POST[DESCRIPTION]','$_POST[AGE]','$_POST[COST]')";
if(isset($_POST['TITLE'])) {
if (!mysql_query($sql,$con))
{
die('Error: ' . mysql_error());
}
echo "<br><br><b>1 show added to example.com</b><br><br>";
print $sql."<br><br>".$showdatetime."<HR>";
}
echo "<br><br><table border='0' align='center' cellpadding='3' cellspacing='1' width='85%'>
<tr>
<th>ID</th>
<th>Date</th>
<th>Time</th>
<th>Venue</th>
<th>Title</th>
<th>Description</th>
<th>Age</th>
<th>Admission</th>
</tr>";
$result = mysql_query("SELECT * FROM SHOWS ORDER BY ID DESC");
while($row = mysql_fetch_array($result))
{
$showdate = date("m/d/y",$row['DATETIME']);
$showtime = date("h:i A",$row['DATETIME']);
$venueid = $row['VENUE'];
$getvenue = "SELECT DISTINCT VENUENAME FROM VENUES WHERE VENUEID = $venueid";
$venuename = mysql_query($getvenue);
$vname = mysql_fetch_array($venuename);
$venue = $vname['VENUENAME'];
echo "<tr>";
echo "<td bgcolor='016111'><font face='Arial' size='1'>" . $row['ID'] . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $showdate . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'><nobr>" . $showtime . "</nobr></font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $venue . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $row['TITLE'] . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $row['DESCRIPTION'] . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $row['AGE'] . "</font></td>";
echo "<td bgcolor='111111' align='center'><font face='Arial' size='1'>" . $row['COST'] . "</font></td>";
echo "</tr>";
echo "<tr>";
echo "<td bgcolor='00000f' align='right' valign='top' colspan='3'><font face='Arial' size='1'><b>URL:</b></font></td><td colspan='5' bgcolor='00000f'><a href='http://example.com/shows/index.php?id=" . $row['ID'] . "' class='bluelinks'>http://example.com/shows/index.php?id=" . $row['ID'] . "</font><br><br></td>";
echo "</tr>";
}
echo "</table>";
mysql_close($con);
?>
</td>
</tr>
</table>
$hour = $_POST[HOUR] + $_POST[time];
$minute = $_POST[MINUTE];
$second = "00";
$month = $_POST[MONTH];
$day = $_POST[DAY];
$year = $_POST[YEAR];
$hour = $_POST['HOUR'] + $_POST['time'];
$minute = $_POST['MINUTE'];
$second = "00";
$month = $_POST['MONTH'];
$day = $_POST['DAY'];
$year = $_POST['YEAR'];
is not being passed to DATETIME field that i named DATETIME
<table border="0" width="95%">
<tr>
<td width="555" valign="top">
<blockquote>
<p><b>Add a new show here:</b></p>
<form action="admin-shows.php" method="post">
<table border="0">
<tr>
<td>
Date:
</td>
<td>
<input type="text" size="1" maxlength="2" name="MONTH"> / <input type="text" size="1" maxlength="2" name="DAY"> / <input type="text" size="2" maxlength="4" value="2010" name="YEAR"><br><font size="1">month/day/year</font>
</td>
</tr>
<tr><td> </td><td> </td></tr>
<tr>
<td>
Time:
</td>
<td>
<input type="text" size="1" maxlength="2" name="HOUR"> <b>:</b> <input type="text" size="1" maxlength="2" name="MINUTE"> AM:<input type="radio" name="time" value="0"> PM:<input type="radio" name="time" value="12" checked>
</td>
</tr>
</table>
<br /><br />
<?php
$con = mysql_connect("localhost","u70715871","5c9003");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("d60648383", $con);
$result = mysql_query("SELECT * FROM VENUES ORDER BY VENUENAME");
echo "Venue: <SELECT NAME='VENUE'>";
while($row = mysql_fetch_array($result))
{
echo "<option value='" . $row['VENUEID'] . "'><font face='Arial' size='1'>" . $row['VENUENAME'] . "</font></option>";
}
echo "<br>";
mysql_close($con);
?>
</SELECT> <br />
<p><a href="http://example.com/admin/admin-venue.php" class="bluelinks">(add a venue)</a><br /></p>
Title: <input type="text" name="TITLE" size="45" />
<br /><br />
<table border="0"><tr><td valign="top"> </td><td valign="top">Description:<br><textarea name="DESCRIPTION" rows="5" cols="40"></textarea></td></tr></table><br>
Age: <input type="radio" name="AGE" value="all ages">all ages <input type="radio" name="AGE" value="18+">18+ <input type="radio" name="AGE" value="21+">21+<br><br>
Cost of admission: <input type="text" name="COST" size="5" value="$">
<input type="submit" value="Add Show" /><br><br>
</form>
</blockquote>
</td>
<td valign="top">
<?php
$con = mysql_connect("localhost","u70715871","5c9003");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("d60648383", $con);
$hour = $_POST['HOUR'] + $_POST['time'];
$minute = $_POST['MINUTE'];
$second = '00';
$month = $_POST['MONTH'];
$day = $_POST['DAY'];
$year = $_POST['YEAR'];
$showdatetime = "$year-$month-$day $hour:$minute:$second";
$sql="INSERT INTO SHOWS (SHOWTIME, VENUE, TITLE, DESCRIPTION, AGE, COST) VALUES ('$showdatetime','$_POST[VENUE]','$_POST[TITLE]','$_POST[DESCRIPTION]','$_POST[AGE]','$_POST[COST]')";
if(isset($_POST['TITLE'])) {
if (!mysql_query($sql,$con))
{
die('Error: ' . mysql_error());
}
echo "<br><br><b>1 show added to example.com</b><br><br>";
print $sql."<br><br>".$showdatetime."<HR>";
}
echo "<br><br><table border='0' align='center' cellpadding='3' cellspacing='1' width='85%'>
<tr>
<th>ID</th>
<th>Date</th>
<th>Time</th>
<th>Venue</th>
<th>Title</th>
<th>Description</th>
<th>Age</th>
<th>Admission</th>
</tr>";
$result = mysql_query("SELECT * FROM SHOWS ORDER BY ID DESC");
while($row = mysql_fetch_array($result))
{
$showdate = date("m/d/y",$row['SHOWTIME']);
$showtime = date("h:i A",$row['SHOWTIME']);
$venueid = $row['VENUE'];
$getvenue = "SELECT DISTINCT VENUENAME FROM VENUES WHERE VENUEID = $venueid";
$venuename = mysql_query($getvenue);
$vname = mysql_fetch_array($venuename);
$venue = $vname['VENUENAME'];
echo "<tr>";
echo "<td bgcolor='016111'><font face='Arial' size='1'>" . $row['ID'] . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $showdate . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'><nobr>" . $showtime . "</nobr></font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $venue . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $row['TITLE'] . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $row['DESCRIPTION'] . "</font></td>";
echo "<td bgcolor='111111'><font face='Arial' size='1'>" . $row['AGE'] . "</font></td>";
echo "<td bgcolor='111111' align='center'><font face='Arial' size='1'>" . $row['COST'] . "</font></td>";
echo "</tr>";
echo "<tr>";
echo "<td bgcolor='00000f' align='right' valign='top' colspan='3'><font face='Arial' size='1'><b>URL:</b></font></td><td colspan='5' bgcolor='00000f'><a href='http://example.com/shows/index.php?id=" . $row['ID'] . "' class='bluelinks'>http://example.com/shows/index.php?id=" . $row['ID'] . "</font><br><br></td>";
echo "</tr>";
}
echo "</table>";
mysql_close($con);
?>
</td>
</tr>
</table>
</body>
</html>
$sql="INSERT INTO SHOWS (`SHOWTIME`, VENUE`, `TITLE`, `DESCRIPTION`, `AGE`, `COST`) VALUES ('".$showdatetime."','".$_POST['VENUE']."','".$_POST['TITLE']."','".$_POST['DESCRIPTION']."',
'".$_POST['AGE']."','".$_POST['COST']."') ";