query("select * from azonics_blog where page_status<>'0' AND page_category='".$_SESSION['catfilter']."';"); return $result; } public function loadBlog() { $page_id = $this->escapeString($_REQUEST['id']); $row = $this->query("select * from azonics_blog where page_id='".$page_id."';"); return $row[0]; } public function saveBlog() { $data = $this->escapeArray($_REQUEST); if ($data['page_id']!='') { if ($_FILES['page_banner']['tmp_name']!=='') { $fname = 'banner_'.time().'.jpg'; $path = 'static/uploads/thumbs/'; move_uploaded_file($_FILES['page_banner']['tmp_name'],$path.$fname); $this->execute("UPDATE azonics_blog SET page_banner='".$path.$fname."' WHERE page_id='".$data['page_id']."';"); } if ($_FILES['page_hero']['tmp_name']!=='') { $fname = 'hero_'.time().'.jpg'; $path = 'static/uploads/thumbs/'; move_uploaded_file($_FILES['page_hero']['tmp_name'],$path.$fname); $this->execute("UPDATE azonics_blog SET page_hero='".$path.$fname."' WHERE page_id='".$data['page_id']."';"); } $data['page_title'] = $this->escapeString($data['page_title']); $data['page_title_en'] = $this->escapeString($data['page_title_en']); $data['page_content'] = $this->escapeString($data['page_content']); $data['page_content_en'] = $this->escapeString($data['page_content_en']); $data['seo_keywords'] = $this->escapeString($data['seo_keywords']); $data['seo_keywords_en'] = $this->escapeString($data['seo_keywords_en']); $data['seo_description'] = $this->escapeString($data['seo_description']); $data['seo_description_en'] = $this->escapeString($data['seo_description_en']); $this->execute("update azonics_blog set " . "page_category='".$data['page_category']."', " . "page_title='".$data['page_title']."', " . "page_title_en='".$data['page_title_en']."', " . "page_content='".$data['page_content']."', " . "page_content_en='".$data['page_content_en']."', " . "right_title='".$data['right_title']."', " . "seo_keywords='".$data['seo_keywords']."', " . "seo_description='".$data['seo_description']."', " . "seo_keywords_en='".$data['seo_keywords_en']."', " . "seo_description_en='".$data['seo_description_en']."', " . "right_content='".$data['right_content']."' " . "where page_id='".$data['page_id']."';"); return true; } else { if ($_FILES['page_banner']['tmp_name']!=='') { $fname = 'banner_'.time().'.jpg'; $path = 'static/uploads/thumbs/'; move_uploaded_file($_FILES['page_banner']['tmp_name'],$path.$fname); } if ($_FILES['page_hero']['tmp_name']!=='') { $fname2 = 'hero_'.time().'.jpg'; $path2 = 'static/uploads/thumbs/'; move_uploaded_file($_FILES['page_hero']['tmp_name'],$path2.$fname2); } $data['page_title'] = $this->escapeString($data['page_title']); $data['page_title_en'] = $this->escapeString($data['page_title_en']); $data['page_content'] = $this->escapeString($data['page_content']); $data['page_content_en'] = $this->escapeString($data['page_content_en']); $data['seo_keywords'] = $this->escapeString($data['seo_keywords']); $data['seo_keywords_en'] = $this->escapeString($data['seo_keywords_en']); $data['seo_description'] = $this->escapeString($data['seo_description']); $data['seo_description_en'] = $this->escapeString($data['seo_description_en']); $this->execute("insert into azonics_blog set " . "page_slug='".$data['page_slug']."', " . "page_category='".$data['page_category']."', " . "page_title='".$data['page_title']."', " . "page_title_en='".$data['page_title_en']."', " . "page_content='".$data['page_content']."', " . "page_content_en='".$data['page_content_en']."', " . "right_title='".$data['right_title']."', " . "right_content='".$data['right_content']."', " . "seo_keywords='".$data['seo_keywords']."', " . "seo_description='".$data['seo_description']."', " . "seo_keywords_en='".$data['seo_keywords_en']."', " . "seo_description_en='".$data['seo_description_en']."', " . "page_status='1', page_banner='".$path.$fname."', page_hero='".$path2.$fname2."', " . "page_user='".$_SESSION['admin_user']->admin_id."';"); return true; } } public function setArticeState($id, $state) { $page_id = $this->escapeString($id); $this->execute("update azonics_blog set page_status='".$state."' where page_id='".$id."';"); return true; } public function deleteBlog() { $page_id = $this->escapeString($_REQUEST['id']); $this->execute("update azonics_blog set page_status='0' where page_id='".$page_id."';"); return true; } }