include "../cdbcon.inc";
$query=mysql_query("select * from homework_presentation where num='$num'");
if (!$row=mysql_fetch_array($query)){
?>
}
else{
$query=mysql_query("select sname from homework_presentation where num='$num'");
$rw=mysql_fetch_array($query);
if ($sess_name!=$rw[sname] && $sess_X!="o"){
?>
}
else{
$title=addslashes($title);
$content=addslashes($content);
if ($file!=""){
$save_dir="../../".$home."/homework";
$isUploaded=FALSE;
$upload_file=$file;
$upload_file1=$row[file];
if($upload_file1!=""){
$file=$save_dir."/".$upload_file1;
unlink($file);
}
if(!strcmp($upload_file,"none")){
continue;
}else{
$upload_file_name=$file_name;
$upload_file_size=$file_size;
$upload_file_type=$file_type;
if ( $upload_file_size >= (300*1024)){
?>
}else{
$filename=explode(".",$upload_file_name);
$extension=$filename[sizeof($filename)-1];
if(!strcmp($extension,"php")||!strcmp($extension,"phtml")||!strcmp($extension,"inc")||!strcmp($extension,"asp"))
{
continue;
}
$dest=$save_dir."/".$upload_file_name;
if ($upload_file_name!=""){
copy($upload_file,$dest);
}
$isUploaded=TRUE;
}
}
$query="update homework_presentation set title='$title',content='$content',file='$file_name',file_size='$file_size' where num='$num'";
mysql_query($query);
}else{
$query="update homework_presentation set title='$title',content='$content' where num='$num'";
mysql_query($query);
}
echo("");
}
}
?>