01.
<?
02.
$tb
=
"admin"
;
03.
$admin_id
=
$_GET
[
'admin_id'
];
04.
$AddEdit
=
$_GET
[
'AddEdit'
];
05.
06.
07.
$User
=
$_POST
[
'user'
];
08.
$Passwd
=
$_POST
[
'passwd'
];
09.
$Name
=
$_POST
[
'name'
];
10.
$Type
=
$_POST
[type'];
11.
12.
if
(
$AddEdit
==
"edit"
) {
13.
$sql2
=
"SELECT * FROM $tb WHERE admin_id=$admin_id"
;
14.
$result2
=mysql_query(
$sql2
);
15.
$db
=mysql_fetch_array(
$result2
);
16.
$admin_id2
=
$db
[
"admin_id"
];
17.
$username2
=
$db
[
"username"
];
18.
$password2
=
$db
[
"password"
];
19.
$admin_name2
=
$db
[
"admin_name"
];
20.
$admin_type2
=
$db
[
"admin_type"
];
21.
}
22.
23.
if
(
$AddEdit
<>
"edit"
){
24.
$ins
=
"INSERT INTO "
.
$tb
.
" VALUES('', '$User', '$Passwd', '$Name', '$Type') LIMIT 1"
;
25.
$Query_ins
= mysql_query(
$ins
);
26.
}
else
if
(
$AddEdit
==
"edit"
){
27.
$up
=
"UPDATE "
.
$tb
.
" SET username = '$User', password = '$Passwd', admin_name = '$Name', admin_type = '$Type' WHERE admin_id = '$admin_id2' LIMIT 1"
;
28.
$Query_up
= mysql_query(
$up
);
29.
}
30.
?>