Uname : Linux V-ShopU01 4.18.0-348.20.1.el8_5.x86_64 #1 SMP Thu Mar 10 20:59:28 UTC 2022 x86_64
Server : Apache/2.4.37 (rocky) OpenSSL/1.1.1k
Whoami : apache
Safe Mode : OFF
DOCUMENT ROOT : /var/www/html/site_shopudiet
Disable Function :
Path : /var/www/html/site_shopudiet/admin/

Server IP : 65.20.74.164 Client IP : 3.135.216.160
Current File : /var/www/html/site_shopudiet/admin/add_product.php
    <?php
    include 'dbconnect.php';
 include 'lib/ImageResize.php';
      use \Gumlet\ImageResize;
    $cat =$_POST['category_name'];
    $cat_id =$_POST['category_id'];
    $product_code=$_POST['product_code'];
    $sub_cat=implode(',', $_POST['subcategory']);
    $p_name=addslashes($_POST['product_name']);
    $price=$_POST['price'];
    $orgnon =$_POST['orgnon'];
    $purchase_total =$_POST['purchase_total'];
    $purchase_amount =$_POST['purchase_amount'];
    $purchase_gst =$_POST['purchase_gst'];
    $hashtag = implode(',',$_POST['hashtag']);
    $super_category = $_POST['super_category'];
    $delivery_time = $_POST['delivery_time'];
    $st =$_POST['stock'];
        $cgst = $_POST['cgst'];
        $sgst = $_POST['sgst'];
        $gst = $cgst+$sgst;
    
   if(isset($_POST['new_arrival'])) {
        $new_arrival = $_POST['new_arrival'];
    }
    else { $new_arrival = 0;  }
    if($st == '') { $stock = 20;} else { $stock = $st;}
      $discount=$_POST['discount'];
      if(empty($discount)){
        $disc_rate=0;
      }
      else{
        $disc_rate1=$price-($price*($discount/100));
      }
     
      $disc_rate=round($disc_rate1);
      
      
       $weight=$_POST['weight'];

      $desc=addslashes($_POST['description']);
      $manuf_name=addslashes($_POST['manuf']);
      $sql = mysqli_query($conn,"SELECT * FROM brand WHERE brand_name='$manuf_name'");
                            while($row1 = mysqli_fetch_array($sql)) {
                                $brand_id = $row1['id'];
                            }
    
      if(basename($_FILES["file1"]["name"])) $uniquesavename=time().uniqid(rand()); else $uniquesavename='';
      $file_name1 = $uniquesavename;
      $target_file =  "img/".$uniquesavename;
      move_uploaded_file($_FILES["file1"]["tmp_name"], $target_file);

if(basename($_FILES["file2"]["name"])) $uniquesavename9=time().uniqid(rand()); else $uniquesavename9='';
      $file_name2 = $uniquesavename9;
      $target_file =  "img/".$uniquesavename9;
      move_uploaded_file($_FILES["file2"]["tmp_name"], $target_file);

if(basename($_FILES["file3"]["name"])) $uniquesavename8=time().uniqid(rand()); else $uniquesavename8='';      
      $file_name3 = $uniquesavename8;
      $target_file =  "img/".$uniquesavename8;
      move_uploaded_file($_FILES["file3"]["tmp_name"], $target_file);

if(basename($_FILES["file4"]["name"])) $uniquesavename7=time().uniqid(rand()); else $uniquesavename7='';      
      $file_name4 = $uniquesavename7;
      $target_file =  "img/".$uniquesavename7;
      move_uploaded_file($_FILES["file4"]["tmp_name"], $target_file);
     
if(basename($_FILES["file5"]["name"])) $uniquesavename6=time().uniqid(rand()); else $uniquesavename6='';
      $file_name5 = $uniquesavename6;
      $target_file =  "img/".$uniquesavename6;
      move_uploaded_file($_FILES["file5"]["tmp_name"], $target_file);
 
if(basename($_FILES["doc1"]["name"])) $uniquesavename5=time().uniqid(rand()); else $uniquesavename5='';
      $doc1 = $uniquesavename5;
      $target_file =  "img/".$uniquesavename5;
      move_uploaded_file($_FILES["doc1"]["tmp_name"], $target_file);

if(basename($_FILES["doc2"]["name"])) $uniquesavename4=time().uniqid(rand()); else $uniquesavename4='';
      $doc2 = $uniquesavename4;
      $target_file =  "img/".$uniquesavename4;
      move_uploaded_file($_FILES["doc2"]["tmp_name"], $target_file);

if(basename($_FILES["doc3"]["name"])) $uniquesavename3=time().uniqid(rand()); else $uniquesavename3='';
      $doc3 = $uniquesavename3;
      $target_file =  "img/".$uniquesavename3;
      move_uploaded_file($_FILES["doc3"]["tmp_name"], $target_file);

if(basename($_FILES["doc4"]["name"])) $uniquesavename2=time().uniqid(rand()); else $uniquesavename2='';
      $doc4 = $uniquesavename2;
      $target_file =  "img/".$uniquesavename2;
      move_uploaded_file($_FILES["doc4"]["tmp_name"], $target_file);

if(basename($_FILES["doc5"]["name"])) $uniquesavename1=time().uniqid(rand()); else $uniquesavename1='';
      $doc5 = $uniquesavename1;
      $target_file =  "img/".$uniquesavename1;
      move_uploaded_file($_FILES["doc5"]["tmp_name"], $target_file);
     $sql = "INSERT INTO product(brand_id,category_name,category_id,sub_category,product_name,price,weight,description,file1,file2,file3,prdct_code,manuf_name,doc1,doc2,doc3,doc4,doc5,discount,mrp,file4,file5,org_status,stock,cgst,sgst,gst,purchase_amount,purchase_total,purchase_gst,super_category,hashtag,delivery_time,new_arrival)
       VALUES('$manuf_name','$cat','$cat_id','$sub_cat','$p_name','$price','$weight','$desc','$file_name1','$file_name2','$file_name3','$product_code','$manuf_name','$doc1','$doc2','$doc3','$doc4','$doc5','$discount','$disc_rate','$file_name4','$file_name5','$orgnon','$stock','$cgst','$sgst','$gst','$purchase_amount','$purchase_total','$purchase_gst','$super_category','$hashtag','$delivery_time','$new_arrival')";
       $data = $conn->query($sql);
       $images=array(
        'img/'.$file_name1,
        'img/'.$file_name2,
        'img/'.$file_name3,
        'img/'.$file_name4,
        'img/'.$file_name5,
        'img/'.$doc1,
        'img/'.$doc2,
        'img/'.$doc3,
        'img/'.$doc4,
        'img/'.$doc5,
       );

      foreach ( $images as $key => $images) {
        if($images!='img/'){
          $image = new ImageResize($images);
          $image->scale(50);
          $image->save('mobile/'.$images);
        }
      }
echo "<script> alert('Successfull'); window.location.href='product_list.php'; </script>";
     /*  if ($conn->query($sql) === TRUE)
         {
              echo "<script> alert('Successfull'); window.location.href='product_list.php'; </script>";

        } 
      else 
         {
           echo "Error: " . $sql . "<br>" . $conn->error;
         }
*/

    ?>