require_once("../../common.inc.php");
// page variable name
$page_field = "product";
include("config.php");
//check login session
if (empty($_SESSION["backend_sysid"])) {
header("Location: ../error.php");
exit;
}
getget();
getpost();
$sql = "UPDATE `node` SET `levelone` = '1' WHERE `tag` = '2' OR `tag` = '3' OR `tag` = '4' OR `tag` = '5' OR `tag` = '7' OR `tag` = '9' OR `tag` = '10' OR `tag` = '11' OR `tag` = '12' OR `tag` = '13' OR `tag` = '14' OR `tag` = '15' OR `tag` = '16' OR `tag` = '17' OR `tag` = '18' OR `tag` = '19' OR `tag` = '20'";
// search
if (empty($keepSession))
{
$_SESSION["si_".$page_field ."_keyword"] = "";
$_SESSION["si_".$page_field ."_levelone"] = "";
$_SESSION["si_".$page_field ."_leveltwo"] = "";
$_SESSION["si_".$page_field ."_levelthree"] = "";
$_SESSION["si_".$page_field ."_levelfour"] = "";
$_SESSION["si_".$page_field ."_levelfive"] = "";
$_SESSION["si_".$page_field ."_levelsix"] = "";
}
if (!empty($search_keyword))
{
$_SESSION["si_".$page_field ."_keyword"] = $search_keyword;
}
if (!empty($search_levelone))
{
$_SESSION["si_".$page_field ."_levelone"] = $search_levelone;
}
if (!empty($search_leveltwo))
{
$_SESSION["si_".$page_field ."_leveltwo"] = $search_leveltwo;
}
if (!empty($search_levelthree))
{
$_SESSION["si_".$page_field ."_levelthree"] = $search_levelthree;
}
if (!empty($search_levelfour))
{
$_SESSION["si_".$page_field ."_levelfour"] = $search_levelfour;
}
if (!empty($search_levelfive))
{
$_SESSION["si_".$page_field ."_levelfive"] = $search_levelfive;
}
if (!empty($search_levelsix))
{
$_SESSION["si_".$page_field ."_levelsix"] = $search_levelsix;
}
$search_keyword = $_SESSION["si_".$page_field ."_keyword"];
$search_levelone = $_SESSION["si_".$page_field ."_levelone"];
$search_leveltwo = $_SESSION["si_".$page_field ."_leveltwo"];
$search_levelthree = $_SESSION["si_".$page_field ."_levelthree"];
//sorting
if($_GET["sort"] != ""){
if($_GET["sort"] == $_SESSION["si_".$page_field ."sort"]){
$sort = $sort." DESC";
}
$_SESSION["si_".$page_field ."sort"]=$sort;
$my_QUERY_STRING = "";
foreach($_GET as $key => $value) {
if ($key != "sort"){
if($my_QUERY_STRING==""){
$my_QUERY_STRING .= "?".$key."=".$value;
}else{
$my_QUERY_STRING .= "&".$key."=".$value;
}
}
}
$myscript_name=$_SERVER["SCRIPT_NAME"].$my_QUERY_STRING;
header("Location: $myscript_name");
}else{
$sort=$_SESSION["si_".$page_field ."sort"];
}
if($sort != ""){
$order = " ".$sort;
}else{
$order = " `node`.`title` ASC";
}
$sort_link["title"]="?sort=title"."&".$_SERVER["QUERY_STRING"];
$sort_link["item_no"]="?sort=item_no"."&".$_SERVER["QUERY_STRING"];
$sort_link["popular"]="?sort=popular"."&".$_SERVER["QUERY_STRING"];
if(strstr($sort,"DESC")){
$sort_field=split(" ",$sort);
$sort_field=$sort_field[0];
$sort_image[$sort_field]="
";
}else{
$sort_image[$sort]="
";
}
//Load list
if (empty($search_keyword)) {
$search_keyword = "";
}
if (empty($page)) {
$page = 1;
}
$sql_start_pos = ($page-1) * $sys_perpage;
//$sql = "SELECT `".$page_tbname."`.*, `brand`.`tc_name` as `cname`, `type`.`tc_name` as `scname` FROM `".$page_tbname."` LEFT JOIN `brand` ON `".$page_tbname."`.`brand_id` = `brand`.`id` LEFT JOIN `type` ON `".$page_tbname."`.`type_id` = `type`.`id` WHERE 1 ";
$sql = "SELECT `node`.*, `tag`.`name` as leveltwo_name, `levelone`.`name` as levelone_name
FROM `node`
LEFT JOIN `tag` ON `node`.`tag` = `tag`.`id`
LEFT JOIN `levelone` ON `node`.`levelone` = `levelone`.`id`
WHERE `node`.`type` = 'book' AND `node`.`status` = '1' ";
if (!empty($search_keyword)) {
$sql .= " and (`".$page_tbname."`.`title` LIKE '%".$search_keyword."%')";
}
if ($search_levelone != "") {
$sql .= " AND `".$page_tbname."`.`levelone` = '".$search_levelone."'";
}
if ($search_leveltwo != "") {
$sql .= " AND `".$page_tbname."`.`tag` = '".$search_leveltwo."'";
}
if ($search_levelthree != "") {
$sql .= " AND `".$page_tbname."`.`publisher` = '".$search_levelthree."'";
}
if ($order != "") {
$sql .= " ORDER BY ".$order;
} else {
$sql .= " ORDER BY `node`.`title` ASC";
}
$sql_limit = " LIMIT ".$sql_start_pos.", ".$sys_perpage;
$count = 1;
$list = "";
$result = $db->query($sql.$sql_limit);
while ($row = $db->fetch_array($result)) {
if($count%2==0){
$rowsClass="row1";
}else{
$rowsClass="row2";
}
$level = "";
if($row["levelone_name"]){
$level .= "".$row["levelone_name"]."";
}
if($row["leveltwo_name"]){
$level .= " > "."".$row["leveltwo_name"]."";
}
$sql_a="SELECT `attachment_id` AS aid, `path`, `file_name` FROM `attachment` WHERE `table_id`=".$row["id"]. " AND table_name='products' ORDER BY `sorting` LIMIT 1";
$result_a=mysql_query($sql_a);
$row_a=$db->fetch_array($result_a);
$list .= '
