<?php header("Access-Control-Allow-Origin: *"); $target_dir = "d/"; $id=$_POST["idx"]; $firstName = $_POST["postdata"]; //$sdir=$_GET['sdir']; $sdir=$_POST["sdirx"]; $target_dir = "$sdir/"; if(isset($_FILES['file']['name'])){ // file name $filename = $_FILES['file']['name']; // Location $location = $target_dir .$filename; // file extension $file_extension = pathinfo($location, PATHINFO_EXTENSION); $file_extension = strtolower($file_extension); // Valid extensions $valid_ext = array("pdf","doc","docx","jpg","png","jpeg","html","txt","mp4","mkv","webm"); // $file_ext=strtolower(end(explode('.',$_FILES['file']['name']))); $expensions= array("jpeg","jpg","png"); $imageProperties = getimageSize($_FILES['file']['tmp_name']); if (in_array($file_ext, $expensions)) $file_type=$imageProperties['mime']; $fn= $filename ; $file_size =$_FILES['file']['size']; $file_tmp =$_FILES['file']['tmp_name']; $file_type=$_FILES['file']['type']; $is_dir = is_dir($sdir); if (!$is_dir) mkdir ($sdir); $pfile_name="./".$sdir."/".$filename; $dotext=".".$file_ext; $fr=str_replace($dotext,"",$pfile_name); $nfile_name=$fr."_".date('Ymdhia').".".$file_ext; $cfile_name=$nfile_name; // require_once "configs.php"; // $id=$_GET["id"]; if(in_array($file_extension,$valid_ext)){ $sql="INSERT INTO files(name,type,size) VALUES('$pfile_name','$file_type','$file_size')"; //echo "on process--$pfile_name=--$fn--||$cfile_name||--".$imgData; $res = $db->query($sql); } // $sql="update ansa set attachment='$pfile_name', hid=0 where id=".$id; //echo "on process--$fixaid=--$hid--||$pfile_name||--".$imgData; $res = $db->query($sql); // $jj='{"code":"1","file":"'.$pfile_name.'"}'; if(in_array($file_extension,$valid_ext)){ // Upload file if(move_uploaded_file($_FILES['file']['tmp_name'],$location)){ $response = "1"; } //else $response = 0; } // echo 'done';//{"code":"1","file","$pfile_name"}'; echo base64_encode($jj); // echo $jj; exit; } ?>
Edit file:uln.php2460