include "../../dbcon.inc";
$query=mysql_query("select * from $tname where num='$num'");
if (!$row=mysql_fetch_array($query)){
?>
}
else{
if ($sess_name!=$row[name] && $sess_sadmin!="o"){
?>
}
else{
$title=addslashes($title);
if ($file!=""){
$save_dir="../study_data";
$isUploaded=FALSE;
$upload_file=$file;
$upload_file1=$row[file];
if($upload_file1!=""){
$file=$save_dir."/".$upload_file1;
unlink($file);
}
if(!strcmp($upload_file,"none")){
continue;
}else{
$upload_file_name=$file_name;
$upload_file_size=$file_size;
$upload_file_type=$file_type;
if ( $upload_file_size >= (300*1024)){
?>
}else{
$filename=explode(".",$upload_file_name);
$extension=$filename[sizeof($filename)-1];
if(!strcmp($extension,"php")||!strcmp($extension,"phtml")||!strcmp($extension,"inc")||!strcmp($extension,"asp"))
{
continue;
}
$dest=$save_dir."/".$upload_file_name;
if ($upload_file_name!=""){
copy($upload_file,$dest);
}
$isUploaded=TRUE;
}
}
$query="update $tname set school='$school',term='$term',subject='$subject',Bunit='$Bunit',Sunit='$Sunit',title='$title',file='$file_name',file_size='$file_size' where num='$num'";
mysql_query($query);
}else{
$query="update $tname set school='$school',term='$term',subject='$subject',Bunit='$Bunit',Sunit='$Sunit',title='$title' where num='$num'";
mysql_query($query);
}
echo("");
}
}
?>