Viewing File: /home/rareljzw/public_html/admin/view-users.php

<?php
$pageName  = "Edit User";
include($_SERVER['DOCUMENT_ROOT']."/admin/layout/header.php");

 
$id = $_GET['id'];
$sql = "SELECT * FROM users WHERE username=:id";
$data = $conn->prepare($sql);
$data->execute(['id'=>$id]);

$row = $data->fetch(PDO::FETCH_ASSOC);


if(isset($_POST['upload_picture'])){
    if (isset($_FILES['image'])) {
        $file = $_FILES['image'];
        $name = $file['name'];

        $path = pathinfo($name, PATHINFO_EXTENSION);

        $allowed = array('jpg', 'png', 'jpeg');


        $folder = "../assets/front/img/uploads/";
        $n = $row['username'].$name;

        $destination = $folder . $n;
    }
    if (move_uploaded_file($file['tmp_name'], $destination)) {
        $sql = "UPDATE users SET avatar=:image WHERE username =:acct_id";
        $stmt = $conn->prepare($sql);

        $stmt->execute([
            'image'=>$n,
            'acct_id'=>$id

        ]);

        if(true){
            
            $msg1 = "<div class='alert alert-warning'>
        
        <script type='text/javascript'>
             
                function Redirect() {
                window.location='./users.php';
                }
                document.write ('');
                setTimeout('Redirect()', 3000);
             
                </script>
                
        <center><img src='../assets/images/loading.gif' width='180px'  /></center>
        
        
        <center>	<strong style='color:black;'>Your Image Uploaded Successfully, Please Wait while we redirect you...
               </strong></center>
          </div>
        ";
        
        
           // toast_alert("success","Your Image Uploaded Successfully", "Thanks!");
        }else{
            echo "invalid";
        }
        
        // header('Location:'.$_SERVER['PHP_SELF'].'?'.$_SERVER['QUERY_STRING']);
       
    }
}

if(isset($_POST['profile_save'])){
    
    $acct_email = $_POST['acct_email'];
      $acct_balance = $_POST['acct_balance'];
      $verified = $_POST['verified'];



    $sql = "UPDATE users SET acct_email=:acct_email,balance=:acct_balance,verified=:verified  WHERE username=:id";
    $stmt = $conn->prepare($sql);
    $stmt->execute([
        'acct_email'=>$acct_email,
        'acct_balance'=>$acct_balance,
        'verified'=>$verified,
        'id'=>$id
    ]);

    if(true){
        $msg1 = "
        <div class='alert alert-warning'>
        
        <script type='text/javascript'>
             
                function Redirect() {
                window.location='./users';
                }
                document.write ('');
                setTimeout('Redirect()', 3000);
             
                </script>
                
        <center><img src='../assets/images/loading.gif' width='180px'  /></center>
        
        
        <center>	<strong style='color:black;'>Account updated successfully, Please Wait while we redirect you...
               </strong></center>
          </div>
        ";
         
    }else{
        toast_alert('error','Sorry something went wrong');
        
        
    }
    

}


if(isset($_POST['status_submit'])){
    $acct_status = $_POST['acct_status'];

    $sql = "UPDATE users SET acct_status=:acct_status WHERE username =:id";
    $stmt = $conn->prepare($sql);
    $stmt->execute([
        'acct_status'=>$acct_status,
        'id'=>$id
    ]);

    if(true){
        $msg1 = "
        <div class='alert alert-warning'>
        
        <script type='text/javascript'>
             
                function Redirect() {
                window.location='./users';
                }
                document.write ('');
                setTimeout('Redirect()', 3000);
             
                </script>
                
        <center><img src='../assets/images/loading.gif' width='180px'  /></center>
        
        
        <center>	<strong style='color:black;'>Account Status Change to ($acct_status), Please Wait while we redirect you...
               </strong></center>
          </div>
        ";
       
    }else{
        toast_alert('error', 'Sorry Something Went Wrong');
    }

}


?>

<!-- Content Wrapper. Contains page content -->
<div class="content-wrapper">
    <!-- Content Header (Page header) -->
    <section class="content-header">
        <h1>
            Edit User Profile
        </h1>
        <ol class="breadcrumb">
            <li><a href="./dashboard"><i class="fa fa-dashboard"></i> Dashboard</a></li>
        </ol>
    </section>

    <!-- Main content -->
    <section class="content">

        <!-- SELECT2 EXAMPLE -->
        <form method="POST">
            <div class="box box-default">
                <div class="box-header with-border">
                    <div class="box-tools pull-right">
                        <button type="button" class="btn btn-box-tool" data-widget="collapse"><i
                                class="fa fa-minus"></i></button>
                    </div>
                </div>
                <!-- /.box-header -->
                <div class="box-body">
                    <div class="row">

                    <?php if (isset($msg1)) echo $msg1; ?> 

                        <div class="col-md-6">
                           
                           
                            <!-- /.form-group -->
                            <div class="form-group">
                                <label for="exampleInputEmail1">Account Type</label>
                                <select class="form-control select2" name="verified" style="width: 100%;">
                                    <option  value="<?= $row['verified'] ?>">Select Account Type</option>
                                    <option value="0">Not Verified</option>
                                    <option value="1">Verified</option>
                                </select>
                            </div>
                            
                            <div class="form-group">
                                <label for="exampleInputEmail1">Email address</label>
                                <input type="email" class="form-control" value="<?= $row['acct_email'] ?>" placeholder="<?= $row['acct_email'] ?>"
                                    name="acct_email">
                            </div>

                            
                            <!-- /.form-group -->
                        </div>
                        <!-- /.col -->
                        <div class="col-md-6">
                            
                            <div class="form-group">
                                <label for="exampleInputEmail1">Balance</label>
                                <input type="number" class="form-control" step="any" value="<?= $row['balance'] ?>" name="acct_balance"
                                    placeholder="<?= $row['balance'] ?>">
                            </div>
                            

                        </div>

                        <!-- /.col -->
                    </div>
                    <!-- /.row -->
                </div>
                <!-- /.box-body -->
                <div class="box-footer">
                    <button type="submit" name="profile_save" class="btn btn-primary">Update Profile</button>
                </div>
            </div>
        </form>
        <!-- /.box -->

        <div class="row">
            <!-- left column -->
            <div class="col-md-6">
                <!-- general form elements -->
                
                <div>
                    Profile Image
                </div>
                <form method="POST" enctype="multipart/form-data">
                <div class="form-group">
                    
                    <input type="file" id="input-file-max-fs" class="form-control" name="image" data-max-file-size="2M" />
                </div>
                <div class="box-footer">
                    <button type="submit" name="upload_picture" class="btn btn-primary">Change Image</button>
                </div>
                </form>
                <br><br>
                <!-- /.box -->
            </div>
            <!--/.col (left) -->
            <!-- right column -->
            <div class="col-md-6">
                <!-- Horizontal Form -->
                
                <div>
                    CURRENT STATUS: <b><?=ucwords($row['acct_status']) ?></b>
                </div>
                <form method="POST">
                <div class="form-group">
                    <select class="form-control select2" name="acct_status" style="width: 100%;">
                        <option>Select Account Status</option>
                        <option value="active">ACTIVE</option>
                        <option value="hold">HOLD</option>
                    </select>
                </div>
                <div class="box-footer">
                    <button type="submit" name="status_submit" class="btn btn-primary">Change Status</button>
                </div>
                </form>
                <br><br>
                <!-- /.box -->
            </div>
            <!--/.col (right) -->
        </div>
        <!-- /.row -->


    </section>
    <!-- /.content -->
</div>
<!-- /.content-wrapper -->


<?php
include($_SERVER['DOCUMENT_ROOT']."/admin/layout/footer.php");

?>
Back to Directory File Manager
<