open();$sel_tmp=$db->fetch_object($db->get($sql, $cn));$db->close($cn); if(empty($sel_tmp->id)){ $sql="INSERT INTO tbl_tmp_orders (id, date, cus_id, total_t, total_e) VALUES ('$tmp_id', '".date("d/m/Y G:i:s")."', '$_SESSION[user_id]', 0, 0);"; $cn=$db->open();$db->set($sql, $cn);$db->close($cn); }else{ $sql="UPDATE tbl_tmp_orders SET cus_id= '$_SESSION[user_id]' WHERE id='$tmp_id';"; $cn=$db->open();$db->set($sql, $cn);$db->close($cn); } switch($argv[2]){ default; case "view": include("views/order.php"); break; case "add": print(" "); $sql="SELECT * FROM `tbl_app_products_items` WHERE(id='$argv[3]');"; $cn=$db->open();$sel_item=$db->fetch_object($db->get($sql, $cn));$db->close($cn); $sql="INSERT INTO tbl_tmp_orders_items (id, item_id, price_t, price_e, qty) VALUES ('$tmp_id', '$argv[3]', $sel_item->price_t, $sel_item->price_e, 1);"; $cn=$db->open();$db->set($sql, $cn);$db->close($cn); print(" "); break; case "update": print(" "); $sql="UPDATE tbl_tmp_orders_items SET $argv[4]= $argv[5] WHERE(id='$tmp_id' AND item_id='$argv[3]');"; $cn=$db->open();$db->set($sql, $cn);$db->close($cn); print(""); break; case "delete": print(" "); $sql="DELETE FROM tbl_tmp_orders_items WHERE(id='$tmp_id' AND item_id='$argv[3]');"; $cn=$db->open();$db->set($sql, $cn);$db->close($cn); print(""); break; case "submit": if(empty($_SESSION[user_id]) || $_SESSION[user_id]=="guest"){ print(""); }else{ switch($argv[3]){ case 1:include("forms/shipping.php");break; case 2: $sql="UPDATE tbl_tmp_orders SET cus_name= '$name', cus_company= '$company', cus_addr1= '$addr1', cus_addr2= '$addr2', cus_addr3= '$addr3', cus_province= '$province', cus_zipcode= '$zipcode', cus_phone= '$phone' WHERE id='$tmp_id' AND cus_id='$_SESSION[user_id]'"; $cn=$db->open();$db->set($sql, $cn);$db->close($cn); include("forms/payment.php"); break; case 3: if(empty($payment)){ print(""); } $sql="UPDATE tbl_tmp_orders SET payment= $payment WHERE id='$tmp_id' AND cus_id='$_SESSION[user_id]'"; $cn=$db->open();$db->set($sql, $cn);$db->close($cn); include("views/checkall.php"); break; case 4: $cn=$db->open(); $sql="UPDATE tbl_tmp_orders SET status= 1 WHERE id='$tmp_id' AND cus_id='$_SESSION[user_id]'"; $db->set($sql, $cn); $sql="INSERT INTO tbl_orders (id, tmp_id, date, total_t, total_e, cus_id, cus_name, cus_company, cus_addr1, cus_addr2, cus_addr3, cus_province, cus_zipcode, cus_phone, payment, status) SELECT NULL, id, date, total_t, total_e, cus_id, cus_name, cus_company, cus_addr1, cus_addr2, cus_addr3, cus_province, cus_zipcode, cus_phone, payment, status FROM tbl_tmp_orders WHERE(id='$tmp_id')"; $db->set($sql, $cn); $sql="INSERT INTO tbl_orders_items SELECT * FROM tbl_tmp_orders_items WHERE(id='$tmp_id');"; $db->set($sql, $cn); $sql="DELETE FROM tbl_tmp_orders WHERE id='$tmp_id';"; $db->set($sql, $cn); $sql="DELETE FROM tbl_tmp_orders_items WHERE id='$tmp_id';"; $db->set($sql, $cn); session_unregister("tmp_id"); $db->close($cn); print(""); break; } } break; } ?>