MSV FM

dot.antimicrobial@66.96.161.157: ~ $
Path : /hermes/bosweb/b1705/absoluteresultstechnologies.net/public_html/louisvilleramchallenge/
File Upload :
Current < : /hermes/bosweb/b1705/absoluteresultstechnologies.net/public_html/louisvilleramchallenge/sales.php

<?php
	session_start();
	error_reporting(0);
	include_once('mysqlUtils.php');
	
	if(isset($_GET['logout']))
	{
		unset($_SESSION['pschallenge']);
		header("location: index.php");
		exit;
	}
	if(!isset($_SESSION['pschallenge']['loggedIn']) || !$_SESSION['pschallenge']['loggedIn'])
	{
		unset($_SESSION['pschallenge']);
		header("location: login.php");
		exit;
	}
	
	$apptTbl = 'ps_appointments_' . date("my",strtotime($_SESSION['pschallenge']['eventInfo']['saleStartDate']));
	
	$sql = 'CREATE TABLE IF NOT EXISTS ' . $apptTbl . ' LIKE ps_appointments';
	mysql_query($sql);
	
	if(isset($_GET['back'])) $_SESSION['pschallenge']['page']--;
	if(isset($_GET['forward'])) $_SESSION['pschallenge']['page']++;
	
	
	if(isset($_GET['del']))
	{
		mysql_query('DELETE FROM ' . $apptTbl . ' WHERE appointmentID = ' . $_GET['del']);
		header("location: sales.php");
		exit;		
	}
	
	if(isset($_POST['editSalesrep']))
	{
		if($_POST['delete'] == 'Delete')
		{
			$sql = 'DELETE FROM ps_salesrep WHERE salesrepID = ' . $_POST['editSalesrep'];
			if(mysql_query($sql))
			{
				$_SESSION['pschallenge']['page'] = 1;
				$_SESSION['pschallenge']['error'] = '* Sales rep was deleted successfully.';
			}	
			else
			{
				$_SESSION['pschallenge']['error'] = $sql.'* An error occurred. The salesrep was not deleted';
			}	
		}
		else
		{
			$sql = 'UPDATE ps_salesrep
					SET name = "' . $_POST['name'] . '",
					    goal = "' . $_POST['goal'] . '"
					WHERE salesrepID = ' . $_POST['editSalesrep'];
			if(mysql_query($sql))
			{
				$_SESSION['pschallenge']['page'] = 1;
				$_SESSION['pschallenge']['error'] = '* Sales rep was edited successfully.';
			}	
			else
			{
				$_SESSION['pschallenge']['error'] = $sql.'* An error occurred. The salesrep was not edited';
			}	
		}
		header("location: sales.php");
		exit;
	}
	
	if(isset($_POST['addSalesrep']))
	{
		$sql = 'INSERT INTO ps_salesrep (name,goal,dealerID)
				VALUES ("' . $_POST['name'] . '","' . $_POST['goal'] . '","' . $_SESSION['pschallenge']['eventInfo']['dealerID'] . '")';
		if(mysql_query($sql))
		{
			$_SESSION['pschallenge']['page'] = 1;
			$_SESSION['pschallenge']['error'] = '* Sales rep was added successfully.';
		}	
		else
		{
			$_SESSION['pschallenge']['error'] = $sql.'* An error occurred. The salesrep was not added';
		}	
		header("location: sales.php");
		exit;
	}
	
	if(isset($_POST['firstName']))
	{
		if(trim($_POST['firstName']) == "" ) $_SESSION['pschallenge']['error'] = '* Please enter the customer\'s first name';
		else if(trim($_POST['lastName']) == "" ) $_SESSION['pschallenge']['error'] = '* Please enter the customer\'s last name';
		else if(trim($_POST['postalCode']) == "" ) $_SESSION['pschallenge']['error'] = '* Please enter the customer\'s postal code';
		else if(trim($_POST['salesman']) == "" ) $_SESSION['pschallenge']['error'] = '* Please enter the salesperson';
		else
		{
			$sql = 'INSERT INTO ' . $apptTbl . ' (firstName,
												lastName,
												postalCode,
												mainPhone,
												eventID,
												sold1,
												year1,
												model1,
												newUsed1,
												challengeSalesrep,
												salesrep1) VALUES ("' . trim($_POST['firstName']) . '",
																  "' . trim($_POST['lastName']) . '",
																  "' . trim($_POST['postalCode']) . '",
																  "' . trim($_POST['mainPhone']) . '",
																  ' . $_SESSION['pschallenge']['eventInfo']['eventID'] . ',
																  "y",
																  "' . trim($_POST['year1']) . '",
																  "' . trim($_POST['model1']) . '",
																  "' . trim($_POST['newUsed1']) . '",
																  "' . $_POST['salesman'] . '",
																  "' . $_POST['salesman'] . '")';
			if(mysql_query($sql))
			{
				$_SESSION['pschallenge']['page'] = 1;
				$_SESSION['pschallenge']['error'] = '* The entry was added successfully.';
			}	
			else
			{
				$_SESSION['pschallenge']['error'] = $sql.'* An error occurred. The entry was not added';
			}																			   
		}
		
		header("location: sales.php");
		exit;
	}
	
	$salespersonResults = mysql_query('SELECT * FROM ps_salesrep WHERE dealerID = ' . $_SESSION['pschallenge']['eventInfo']['dealerID'] . ' ORDER BY name ASC');
	$salesmanArray = array();
	while($salesman = mysql_fetch_assoc($salespersonResults)) $salesmanArray[$salesman['name']] = $salesman;
	
	$perPage = 40;
	$salesResults = mysql_query('SELECT * FROM ' . $apptTbl . ' WHERE eventID = ' . $_SESSION['pschallenge']['eventInfo']['eventID'] . '  AND sold1="y"');
	//$salesResults = mysql_query('SELECT * FROM pschallenge_sales');
	$totalSales = mysql_num_rows($salesResults);
	$maxPage = ceil(mysql_num_rows($salesResults)/$perPage);
	$maxPage = max($maxPage,1);
	
	if(!isset($_SESSION['pschallenge']['page'])) $_SESSION['pschallenge']['page'] = 0;
	if($_SESSION['pschallenge']['page'] > $maxPage) $_SESSION['pschallenge']['page'] = $maxPage;
	if($_SESSION['pschallenge']['page'] < 1) $_SESSION['pschallenge']['page'] = 1;
	
	$salesResults = mysql_query('SELECT * FROM ' . $apptTbl . ' WHERE eventID = ' . $_SESSION['pschallenge']['eventInfo']['eventID'] . ' AND sold1="y" ORDER BY appointmentID DESC LIMIT ' . $perPage*($_SESSION['pschallenge']['page']-1) . ',' . $perPage);
	//echo 'SELECT * FROM pschallenge_sales WHERE salespersonID in (' . implode(',',array_keys($salesmanArray)). ') ORDER BY salesID DESC LIMIT ' . $perPage*($_SESSION['pschallenge']['page']-1) . ',' . $perPage;
	mysql_data_seek($salespersonResults,0);
	
	include_once('header.php');
	
	

?>
<script>
	function deleteEntry(salesID)
	{
		if(confirm("Are you sure you want to delete this entry?"))
		{
			location.href = "?del=" + salesID;
		}
		return false;
	}
</script>	
<style>	
	.formTbl th {color:#eeeeee;text-align:left;font-size:10pt;vertical-align:middle;padding:5px 5px;font-weight:normal}
	.formTbl input {font-size:8pt}
	.headerTbl {}
	.headerTbl a{color:white;text-decoration:none;}
	.pageTbl a,.listTbl a {color:white;text-decoration:none;font-weight:bold}
	.pageTbl td {color:white;width:20px;text-align:center;font-weight:bold}
	.listTbl {width:800px;border:1px solid #333333;}
	.listTbl th {color:#eeeeee;background-image:url('images/thBG.jpg');font-size:9pt;height:20px;vertical-align:middle}
	.listTbl td {color:white;border-bottom:1px solid #cccccc;height:20px;vertical-align:middle;text-align:center}
	.addTbl td {padding:5px 10px 5px 0px;text-align:left;border:0px}
	.addTbl td input {width:125px}
</style>	
<table cellspacing="0" cellpadding="0" class="contentTbl">
	<tr>
		<td style="width:800px;text-align:center">
			<!--
			<img src="images/eastwest.jpg">
			<br><br>
			<table cellspacing="0" cellpadding="0" class="headerTbl">
				<tr>
					<td style="font-weight:bold;vertical-align:bottom;color:white">
						&nbsp;
						<a href="index.php">Salesperson Board</a>
						
<?php
	if($_SESSION['pschallenge']['loggedInAdmin'])
	{
?>									
						&nbsp;|&nbsp;
						<a href="sales.php">Sales Log</a>
<?php
	}
?>									
						&nbsp;|&nbsp;
						<a href="?logout">Logout</a>
					</td>
				</tr>
			</table>
			
			<br><br>
						<img src="images/challenger.jpg" usemap="#arlink" border="0">
						<map name="arlink">
  							<area shape="rect" coords="201,59,349,110" href="http://www.absoluteresults.com" alt="Sun" />
  						</map>
  						
			-->
		</td>
	</tr>
</table>
<br>
<br>		
<table cellspacing="0" cellpadding="0" style="width:100%">
	<tr>
		<td style="text-align:left;font-weight:bold;color:red">
			<?= $_SESSION['pschallenge']['error'] ?>
			<?php unset($_SESSION['pschallenge']['error']) ?>
		</td>
	</tr>	
</table>
<form method="POST">
	<table cellspacing="0" cellpadding="0" class="listTbl">	
		<tr>
			<th style="text-align:left;padding-left:10px">Add A New Sale</td>
		</tr>
		<tr>
			<td style="text-align:left;padding:10px">
				<table cellspacing="0" cellpadding="0" style="width:100%">	
					<tr>
						<td style="border:0px">
							<table cellspacing="0" cellpadding="0" class="addTbl">	
								<tr>
									<td>First Name</td>
									<td><input type="text" name="firstName"></td>
								</tr>
								<tr>
									<td>Last Name</td>
									<td><input type="text" name="lastName"></td>
								</tr>
							</table>
						</td>
						<td style="border:0px">
							<table cellspacing="0" cellpadding="0" class="addTbl">	
								<tr>
									<td>Phone</td>
									<td><input style="width:100px" type="text" name="mainPhone"></td>
								</tr>
								<tr>
									<td>Postal Code</td>
									<td><input style="width:100px" type="text" name="postalCode"></td>
								</tr>
							</table>
						</td>
						<td style="border:0px;text-align:left">
							<table cellspacing="0" cellpadding="0" class="addTbl">	
								<tr>
									<td>Year</td>
									<td><input style="width:50px" type="text" name="year1"></td>
									<td>Vehicle</td>
									<td><input style="width:200px" type="text" name="model1"></td>
								</tr>
							</table>
							<table cellspacing="0" cellpadding="0" class="addTbl">	
								<tr>
									<td>New/Used</td>
									<td>
										<select name="newUsed1">
											<option></option>
											<option value="new">New</option>
											<option value="used">Used</option>
										</select>
									</td>
									<td>Salesperson</td>
									<td>
										<select name="salesman">
											<option></option>
							<?php
								while($salesperson = mysql_fetch_assoc($salespersonResults))
								{
							?>
											<option value="<?= $salesperson['name'] ?>"><?= $salesperson['name'] ?></option>
							<?php
								}
								mysql_data_seek($salespersonResults,0);
							?>
										</select>
									</td>
								</tr>
							</table>
						</td>
					</tr>
					<tr>
						<td style="text-align:center;border:0px;padding-top:5px" colspan="3"><input type="submit" value="Add" style="width:100px"></td>
					</tr>
				</table>
			</td>
		</tr>
	</table>
</form>
			<br><br>
				<table cellspacing="0" cellpadding="0" class="headerTbl">
					<tr>
						<td style="font-weight:bold;vertical-align:bottom;color:white">
							&nbsp;
							<a href="index.php">Salesperson Board</a>		
							&nbsp;|&nbsp;
							<a href="sales.php">Sales Log</a>
							<!--	
							&nbsp;|&nbsp;
							<a href="http://96.53.92.6:8080/appointments/index.php?e=northpittsburghchallenge" target="_blank">Appointments Board</a>
							
							&nbsp;|&nbsp;
							<a href="map.html" target="_blank">Sales Map</a>
							-->
							&nbsp;|&nbsp;
							<a href="?logout">Logout</a>
						</td>
					</tr>
				</table>
<br><br>
<table cellspacing="0" cellpadding="0" style="width:100%">	
	<tr>
		<td style="font-weight:bold">Total: <?= $totalSales ?> sales</td>
		<td style="text-align:right;font-weight:bold">
			<table cellspacing="0" cellpadding="0" class="pageTbl">	
				<tr>
					<td>
<?php
	if($_SESSION['pschallenge']['page'] > 1)
	{
?>
			<a href="?back"><<</a>
<?php
	}
?>		
					</td>
					<td style="width:80px">
						Page <?= $_SESSION['pschallenge']['page'] . ' / ' . $maxPage ?>
					</td>
					<td>
<?php
	if($_SESSION['pschallenge']['page'] < $maxPage)
	{
?>
			<a href="?forward">>></a>
<?php
	}
?>	
					</td>
				</tr>
			</table>		
		</td>
	</tr>
</table>

<table cellspacing="0" cellpadding="0" class="listTbl">	
	<tr>
		<th style="width:15%">First Name</th>
		<th style="width:15%">Last Name</th>
		<th style="width:10%">Phone</th>
		<th style="width:15%">Postal Code</th>
		<th style="width:25%">Vehicle</th>
		<th style="width:15%">Salesman</th>
		<th style="width:5%">&nbsp;</th>		
	</tr>
<?php
	while($sale = mysql_fetch_assoc($salesResults))
	{
?>
	<tr>
		<td><?= $sale['firstName'] ?></td>
		<td><?= $sale['lastName'] ?></td>
		<td><?= $sale['mainPhone'] ?></td>
		<td><?= $sale['postalCode'] ?></td>
		<td><?= trim($sale['year1'] . ' ' . $sale['model1']) ?></td>
		<td><?= $sale['salesperson'] ?></td>
		<td style="padding-right:5px"><a href="#" onClick="return deleteEntry(<?= $sale['appointmentID'] ?>)">X</a></td>
	</tr>
<?php
	}
?>	
</table>
<br><br><br>
<table cellspacing="0" cellpadding="0" class="listTbl">
	<tr>
		<th style="width:100%">Sales Rep Info</th>		
	</tr>
<?php
	mysql_data_seek($salespersonResults,0);
	
	while($sp = mysql_fetch_assoc($salespersonResults))
	{
?>

		<tr>
			<td style="text-align:left;padding:0px;border:0px">
				<form method="POST">
					<input type="hidden" name="editSalesrep" value="<?= $sp['salesrepID'] ?>">
					<table cellspacing="0" cellpadding="0" style="width:100%">	
						<tr>
							<td style="border:0px">
								<table cellspacing="0" cellpadding="0" class="addTbl">	
									<tr>
										<td>Salesrep Name</td>
										<td><input type="text" name="name" value="<?= $sp['name'] ?>"></td>
										<td>Goal</td>
										<td><input type="text" name="goal" value="<?= $sp['goal'] ?>"></td>
										<td style="text-align:center;border:0px;padding-top:5px" colspan="3"><input type="submit" value="Edit" style="width:100px"></td>
										<td style="text-align:center;border:0px;padding-top:5px" colspan="3"><input type="submit" name="delete" value="Delete" style="width:100px" onClick="return confirm('Are you sure you want to delete this salesrep?');"></td>
									</tr>
								</table>
							</td>
						</tr>
					</table>
				</form>
			</td>
		</tr>
<?php
	}
?>
		<tr>
			<td style="text-align:left;padding:0px;border:0px">
				<form method="POST">
					<input type="hidden" name="addSalesrep" value="true">
					<table cellspacing="0" cellpadding="0" style="width:100%">	
						<tr>
							<td style="border:0px">
								<table cellspacing="0" cellpadding="0" class="addTbl">	
									<tr>
										<td>Salesrep Name</td>
										<td><input type="text" name="name" value="<?= $sp['name'] ?>"></td>
										<td>Goal</td>
										<td><input type="text" name="goal" value="<?= $sp['goal'] ?>"></td>
										<td style="text-align:center;border:0px;padding-top:5px" colspan="3"><input type="submit" value="Add" style="width:100px"></td>
									</tr>
								</table>
							</td>
						</tr>
					</table>
				</form>
			</td>
		</tr>
	</table>

<?php
	include_once('footer.php');
?>