Code: Select all
<? session_start();?>
<?php
set_time_limit(0);
$logged_in = $_SESSION['logged_in'];
$level = $_SESSION['level'];
$dbhost='***';
$dbusername='***';
$dbuserpass='***';
$dbname3='music';
$submit = $_POST['submit'];
if ($logged_in && $level <= 2) {
if (isset($submit)) {
$artist = $_POST['artist'];
$title = $_POST['title'];
$genre = $_POST['genre'];
$length = $_POST['min'].':'.$_POST['sec'];
$quality = $_POST['quality'];
$url = "music/songs/" . $_FILES['userfile']['name'];
if (copy($_FILES['userfile']['tmp_name'], "music/songs/" . $_FILES['userfile']['name'])) {
mysql_connect($dbhost,$dbusername,$dbuserpass) or die("MySQL Error");
@mysql_select_db($dbname3) or die("Cannot select database");
$query = "INSERT INTO `tracks` VALUES ('','$artist','$title','$genre','$length','$quality','$url')";
mysql_query($query);
mysql_close;
echo '<h3>Add Music</h3><br><center><b>The song '.$title.' by '.$artist.' was successfully added</b></center>';
} else {
echo '<h3>Add Music</h3><br><center><b>Error uploading '.$title.' by '.$artist.'</b></center>';
}
} else {
echo '<form enctype="multipart/form-data" action="index.php?id=music&page=add" method="post">
<h3>Add Music</h3>
<table border="0" align="center">
<tr>
<td>
<b>Artist:</b>
</td>
<td>
<input type="text" name="artist" />
</tr>
<tr>
<td>
<b>Title:</b>
</td>
<td>
<input type="text" name="title" />
</tr>
<tr>
<td>
<b>Genre:</b>
</td>
<td>
<select name="genre"><option value="" selected><option value="Abstract">Abstract</option><option value="Ambient">Ambient</option><option value="Breakbeat">Breakbeat</option></option><option value="Drum and Bass">Drum and Bass</option><option value="Electronic">Electronic</option><option value="Experimental">Experimental</option><option name="Hardcore">Hardcore</option><option value="Hip-Hop">Hip-Hop</option><option value="House">House</option><option value="Techno">Techno</option><option value="Trance">Trance</option></select>
</td>
</tr>
<tr>
<td>
<b>Length:</b>
</td>
<td>
<input type="text" name="min" size="1" maxlength="2" /><span>:</span><input type="text" name="sec" size="1" maxlength="2" />
</td>
</tr>
<tr>
<td>
<b>Quality:</b>
</td>
<td>
<input type="text" name="quality" />
</td>
</tr>
<tr>
<td colspan="2">
<input type="file" name="userfile" class="file" />
</td>
</tr>
<tr>
<td colspan="2" align="center">
<input type="submit" name="submit" value="Submit" />
</td>
</tr>
<tr>
<td colspan="2" align="center">
<a href="index.php?">Cancel</a>
</td>
</tr>
</table></form>';
}
} else {
echo '<h1>Forbidden</h1><p class="logintxt">You are not authorized to view this page</p>';
}
?>