Sunda Cyber Army


* Sunda Cyber Army 2k17 *
Indonesia Defacer ~


Path : /home/dent/studentexams/jhongyih/
File Upload :
Current File : /home/dent/studentexams/jhongyih/results.php

<?php

if(empty($_REQUEST['device_name'])AND empty($_REQUEST['system_id'])AND empty($_REQUEST['manufacturer_id']) AND empty($_REQUEST['type_id'])) {
    echo "drop-down value missing";

    exit();
}

?>


<!DOCTYPE html>
<html>
<head>
    <meta charset="UTF-8">
    <title>Acad276 Practical Exam: Results</title>
    <style>
        .container {
            width:  600px;
            margin: auto;
        }
        h1 {
            margin: auto;
            text-align: center;
            background-color:   #900;
            color:  #FC0;
            height: 60px;
            line-height: 60px;
        }
        .num-results {
            margin: 20px 10px;
        }
        table {
            margin: auto;
            margin-bottom: 20px;
            width:  80%;
            border-collapse: collapse;
        }
        th, td {
            border: 1px solid #900;
            border-collapse: collapse;
            padding:    10px;
            text-align: center;
        }
        img {
            width: 100px;
        }
        .nav-link{
            margin: 10px 0px;
            font-size: 14px;
        }
    </style>
</head>
<?php
$host = "webdev.iyaclasses.com";
$user = "dent_guest";
$userpw = "Acad276_Ttrojan_Dev2Ex@m";
$db = "dent_exam";

$mysql = new mysqli($host, $user,$userpw,$db);

if($mysql->connect_errno){
    echo "ERROR in Database connection:";
    echo $mysql -> connect_error;
    exit();
}

//-----
$sql = "SELECT * FROM devices WHERE 1=1 ";

if($_REQUEST["device_name"] != ""){
    $sql .= "AND device_name ='" .$_REQUEST["device_name"]."'";
}
if($_REQUEST["manufacturer_id"] != "ALL"){
    $sql .= "AND manufacturer_id ='" .$_REQUEST["manufacturer_id"]."'";
}

if($_REQUEST["system_id"] != "ALL") {
    $sql .= "AND system_id = '" .$_REQUEST["system_id"]."'";
}
if($_REQUEST["type_id"] != "ALL") {
    $sql .= "AND type_id = '" .$_REQUEST["type_id"]."'";
}

//echo $sql;
$results = $mysql->query($sql);
if(!$results){
    echo "ERROR:" .$mysql->error;
    exit();
}
echo "<em>You searched for Device: " . $_REQUEST['device_name'] . " and Manufacturer: " . $_REQUEST['manufacturer_id'] . " and Operating System:" .$_REQUEST['system_id']. " and Type: " . $_REQUEST['type_id'] . "</em><br>";

echo "your search returned " .$results->num_rows." records<br>";

echo $sql;

while($currentrow = $results->fetch_assoc()){
    echo $currentrow["device_id"].
        "<a href='details.php?id='" . $currentrow["device_id"].
        ">view</a>".
        "<br>";
}
//while($currentrow = $results->fetch_assoc()) {
//    echo "<div class='table'><strong>" .
//        $currentrow['devices'] .
//        "</strong>".
//        " (<em>Manufacturer " . $currentrow['manufacturer_id'] . "</em>) </div>" .
//        "<div class='link''>" .
//        "<a href = 'details.php?id=".
//        $currentrow["schedule_id"]. "'>".
//        "update" .
//        "</a> ".
//
//        "</div>"  .
//        "<br style='clear:both;'>";
//}

//?>
<!--<body>-->
<!--<div class="container">-->
<!--    <h1>Mobile Device Database: Search Results</h1>-->
<!--    <div class="nav-link">-->
<!--        <a href="search.php"><< Back to Search Page</a>-->
<!--    </div>-->
<!--    <div class="num-results">-->
<!--        Your search returned-->
<!--        <strong>3</strong>-->
<!--        results.-->
<!--    </div>-->
<!---->
<!--    <table>-->
<!--        <tr>-->
<!--            <th>Name</th>-->
<!--            <th>Price</th>-->
<!--            <th>Manufacturer</th>-->
<!--            <th>System</th>-->
<!--            <th>Type</th>-->
<!--        </tr>-->
<!---->
<!--        <!---->
<!--        ****** SAMPLE OUTPUT ROW ******-->
<!--        -->-->
<!--        <tr>-->
<!--            <td><a href="details.php?id=10">Pixel</a></td>-->
<!--            <td>549.00</td>-->
<!--            <td>Google</td>-->
<!--            <td>Android</td>-->
<!--            <td>Smartphone</td>-->
<!--        </tr>-->
<!--        <tr>-->
<!--            <td><a href="details.php?id=11">Pixel 2</a></td>-->
<!--            <td>649.00</td>-->
<!--            <td>Google</td>-->
<!--            <td>Android</td>-->
<!--            <td>Smartphone</td>-->
<!--        </tr>-->
<!--        <tr>-->
<!--            <td><a href="details.php?id=12">Pixelbook</a></td>-->
<!--            <td>999.00</td>-->
<!--            <td>Google</td>-->
<!--            <td>Android</td>-->
<!--            <td>Laptop</td>-->
<!--        </tr>-->
<!--    </table>-->
<!--</div>-->
<!--</body>-->
</html>