Sunda Cyber Army


* Sunda Cyber Army 2k17 *
Indonesia Defacer ~


Path : /home/dent/public_html/exam2/
File Upload :
Current File : /home/dent/public_html/exam2/results.php

<?php
$host = "webdev.iyaserver.com";
$userid = "dent_guest";
$userpw = "Acad276_Dev2Ex@m";
$db = "dent_exam";
// include "../pdloginvariables.php";
$mysql = new mysqli(
    $host,
    $userid,
    $userpw,
    $db
);

if($mysql->connect_errno) {
    echo "db connection error : " . $mysql->connect_error;
    exit();
}

$sql = "    SELECT devices.*, manufacturers.manufacturer, systems.system, types.type" .
        "   FROM  devices, manufacturers, systems, types
            WHERE devices.manufacturer_id = manufacturers.manufacturer_ID AND devices.type_id = types.type_id AND devices.system_id = systems.system_id";
if($_REQUEST['manufacturer_id'] != "all") {
    $sql .= " AND devices.manufacturer_id = " . $_REQUEST['manufacturer_id'];
}
if($_REQUEST['type_id'] != "all") {
    $sql .= " AND devices.type_id = " . $_REQUEST['type_id'];
}
if($_REQUEST['system_id'] != "all") {
    $sql .= " AND devices.system_id = " . $_REQUEST['system_id'];
}
if(!empty($_REQUEST['device_name'])) {
    $sql .= " AND devices.name LIKE '%" . $_REQUEST['device_name'] . "%'";
}

?>
<!DOCTYPE html>
<html>
<head lang="en">
    <meta charset="UTF-8">
    <title>Acad276 Practical  Exam: Results</title>
    <style>
        .container {
            width:  600px;
            margin: auto;
        }
        h1 {
            margin: auto;
            text-align: center;
            background-color:   #900;
            color:  #FC0;
            height: 60px;
            line-height: 60px;
        }
        .num-results {
            margin: 20px 10px;
        }
        table {
            margin: auto;
            margin-bottom: 20px;
            width:  80%;
            border-collapse: collapse;
        }
        th, td {
            border: 1px solid #900;
            border-collapse: collapse;
            padding:    10px;
            text-align: center;
        }
        img {
            width: 100px;
        }
        .nav-link{
            margin: 10px 0px;
            font-size: 14px;
        }
    </style>
</head>
<body>
<div class="container">
<h1>Mobile Device Database: Search Results</h1>
    <div class="nav-link">
        <a href="search.php"><< Back to Search Page</a>
    </div>
    <?php
    $results = $mysql->query($sql);
    if(!$results){
        echo $mysql->error;
        exit();
    }
    ?>
    <div class="num-results">
        Your search returned
        <strong><?php echo $results->num_rows ?></strong>
        results.
    </div>

    <table>
        <tr>
            <th>Name</th>
            <th>Price</th>
            <th>Manufacturer</th>
            <th>System</th>
            <th>Type</th>
        </tr>

        <!--
        ****** SAMPLE OUTPUT ROW ******
        -->
<?php
while($current = $results->fetch_assoc()){
?>        <tr>
            <td><a href="details.php?id=<?php echo $current['device_id']; ?>"><?php echo $current['name']; ?></a></td>
            <td><?php echo $current['price']; ?></td>
            <td><?php echo $current['manufacturer']; ?></td>
            <td><?php echo $current['system']; ?></td>
            <td><?php echo $current['type']; ?></td>
        </tr>
<?php
}
?>
    </table>
</div>
</body>
</html>