//relocate( _link('path=Movies&action=Search&search='.trim($_POST['search'])) );
}
$vars = New Variables();
$REWRITE = $vars->LoadVariables('get');
function caracter($theString){
$j = mb_strlen($theString);
for ($k = 0; $k < $j; $k++) {
$char = mb_substr($theString, $k, 1);
if (ord($char)>127){$char="".ord($char).";";}
$string2.=$char;
}
return $string2;
}
mysql_query("update movies set hits=hits+1 where m_id='".$REWRITE[2]."'");
//echo $caracter()
$page_title = basename(str_replace( '_', ' ', $REWRITE[1])). " Movie";
//$page_title="Kidô keisatsu patorebâ: The Movie";
include('header.php');
//debug($REWRITE);
if(isset($_POST['university_name'])) {
if(trim($_POST['name']) != '') {
$name = addslashes(trim($_POST['name']));
} else {
$errors[] = 'Please enter a name.
';
}
if(trim($_POST['comment']) != '') {
$comment = addslashes(trim($_POST['comment']));
} else {
$errors[] = 'Please enter a comment
';
}
if(check_email(trim($_POST['email']))) {
$email = trim($_POST['email']);
} else {
$errors[] = 'Wrong email format
';
}
if($_POST['securityCode'] != $_SESSION['security_code']) {
$errors[] = 'Wrong security code
';
}
if(empty($errors)) {
$do = new Query;
$sql = "INSERT INTO movie_reviews (mr_movie_id, mr_content, mr_from, mr_entry_date, mr_email)
VALUES ('".addslashes(trim($REWRITE[2]))."','".$comment."','".$name."',NOW(),'".$email."')";
$do->doQuery($sql);
//relocate( _link('path=Movie&movie='.trim($REWRITE[1]).'&mId='.trim($REWRITE[2])) );
}
}
$sql_movie_details = "SELECT * FROM movies WHERE m_id = '".$REWRITE[2]."'";
$do->doQuery($sql_movie_details);
$row = $do->getRows();
$movieDetails = $row;
?>
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||