-
Notifications
You must be signed in to change notification settings - Fork 4
Expand file tree
/
Copy pathDeleteMember.php
More file actions
153 lines (122 loc) · 3.57 KB
/
DeleteMember.php
File metadata and controls
153 lines (122 loc) · 3.57 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
<?php
/*|-------------------------------------------------------------------------
*| CMPS 460 Spring 2015
*| Ryan Adair
*| 4/28/15
*|
*| The following code is the work of the author named above.
*|-----------------------------------------------------------------------
*| This script generates a webpage with the appropriate fields
*| displayed to allow an admin to delete a member from the
*| Member table in the database.
*|-----------------------------------------------------------------------*/
include "login.php";
if(isset($_SESSION["userType"]) == false)
{
echo "Not logged in!";
echo '<br><br>';
echo '<a href ="LoginPage.php">Go Log In</a>';
die();
}
?>
<html>
<head>
<title>
Delete a Member
</title>
</head>
<h3>
Delete a Member
</h3>
<body>
<?php
$sessionUser = $_SESSION['userType'];
// restrict access only to certain userTypes
if($sessionUser != "admin")
{
echo 'You do not have permission to view this page.';
echo '<br><br>';
echo '<a href ="LoginPage.php">Go Log In</a>';
die();
}
echo "Logged in as: $sessionUser";
if($sessionUser == "member")
{
echo "<br>Membership ID: " . $_SESSION['memberID'] . "<br>";
}
$date = $_SESSION["today"];
echo "<br>";
echo "Today's date: $date";
?>
<br>
<br>
<?php
if(isset($_POST['memberToDelete']))
{
$memberID = $_POST['memberToDelete'];
$primaryMemberQuery = "select AcctNum from Membership where PrimaryMemberID=$memberID";
$primaryMemberResult = mysql_query($primaryMemberQuery);
if(mysql_num_rows($primaryMemberResult))
{
if ($membershipRow = mysql_fetch_array($primaryMemberResult))
{
$acctNum = $membershipRow['AcctNum'];
//echo "Member $memberID is the primary membership holder. Membership $acctNum has been successfully removed.<br>";
$deleteMembershipQuery = "delete from Membership where AcctNum=$acctNum;";
if(mysql_query($deleteMembershipQuery) or die(mysql_error()))
{
echo "Member ID: $memberID is the primary membership ID. Membership ID: $acctNum has been successfully removed.<br>";
}
else
{
echo "<br>Could not delete member.";
echo '<br><a href ="DeleteMember.php">Go Back</a>';
}
}
}
else
{
$deleteMemberQuery = "delete from Member where ID=$memberID;";
if(mysql_query($deleteMemberQuery) or die(mysql_error()))
{
echo "Member successfully deleted!<br>";
}
else
{
echo "<br>Could not delete member.";
echo '<br><a href ="DeleteMember.php">Go Back</a>';
}
}
}
else
{
$memberQueryResult = mysql_query("select * from Member order by MemberAcctNum;") or die(mysql_error());
if(mysql_num_rows($memberQueryResult))
{
echo "<form action='DeleteMember.php' method='post'>";
echo "Delete Member: ";
echo "<select name='memberToDelete'>";
while($memberRow = mysql_fetch_array($memberQueryResult))
{
$memberID = $memberRow['ID'];
$memberName = $memberRow['Name'];
$memberAcctNum = $memberRow['MemberAcctNum'];
echo "<option value='$memberID'>($memberAcctNum-$memberID) $memberName</option>";
}
echo "</select> (AcctNum-MemberID) Name";
echo "<br><br>";
echo "<input type='submit' value='Delete Member'>";
echo "</form>";
}
else
{
echo "No existing members.<br>";
}
}
echo "<br>";
echo "<form action ='index.php'>";
echo "<input type ='submit' value = 'Go back to index' >";
echo "</form>";
?>
</body>
</html>