<?
mysql_connect("localhost","test","test");
mysql_select_db("ict");
if(!isset($cmd))
{
$result = mysql_query("select * from policies order by id");
while($r=mysql_fetch_array($result))
{
$title=$r["title"];
$id=$r["id"];
echo "<a href='edit.php?cmd=edit&id=$id'>$title - Edit</a>";
echo "<br>";
}
}
?>
<?
if($_GET["cmd"]=="edit" || $_POST["cmd"]=="edit")
{
if (!isset($_POST["submit"]))
{
$id = $_GET["id"];
$sql = "SELECT * FROM policies WHERE id=$id";
$result = mysql_query($sql);
$myrow = mysql_fetch_array($result);
?>
<form action="edit.php" method="post">
<input type=hidden name="id" value="<?php echo $myrow["id"] ?>">
Title:<INPUT TYPE="TEXT" NAME="title" VALUE="<?php echo $myrow["title"] ?>" SIZE=30><br>
Content:<TEXTAREA NAME="content" ROWS=20 COLS=60><? echo $myrow["content"] ?></TEXTAREA><br>
Date:<INPUT TYPE="TEXT" NAME="content" VALUE="<?php echo $myrow["date"] ?>" SIZE=30><br>
<input type="hidden" name="cmd" value="edit">
<input type="submit" name="submit" value="submit">
</form>
<? } ?>
<?
if ($_POST["$submit"])
{
$title = $_POST["title"];
$content = $_POST["content"];
$date = $_POST["date"];
$sql = "UPDATE policies SET title='$title',date='$date',content='$content' WHERE id=$id";
$result = mysql_query($sql);
echo "Information updated.";
}
}
?>