Modificare il file:
\iwgallery\admin\pictures_delete.asp
<%@LANGUAGE="VBSCRIPT" CODEPAGE="1252"%> <!--#include virtual="/iwgallery/Connections/connIWGallery.asp" --> <!--#include virtual="/iwgallery/ScriptLibrary/incPUAddOn.asp" --> <% ' *** Edit Operations: declare variables Dim MM_editAction Dim MM_abortEdit Dim MM_editQuery Dim MM_editCmd Dim MM_editConnection Dim MM_editTable Dim MM_editRedirectUrl Dim MM_editColumn Dim MM_recordId Dim MM_fieldsStr Dim MM_columnsStr Dim MM_fields Dim MM_columns Dim MM_typeArray Dim MM_formVal Dim MM_delim Dim MM_altVal Dim MM_emptyVal Dim MM_i MM_editAction = CStr(Request.ServerVariables("SCRIPT_NAME")) If (Request.QueryString <> "") Then MM_editAction = MM_editAction & "?" & Server.HTMLEncode(Request.QueryString) End If ' boolean to abort record edit MM_abortEdit = false ' query string to execute MM_editQuery = "" %> <% ' *** Delete Record: declare variables if (CStr(Request("MM_delete")) = "form1" And CStr(Request("MM_recordId")) <> "") Then MM_editConnection = MM_connIWGallery_STRING MM_editTable = "PICTURES" MM_editColumn = "PIC_ID" MM_recordId = "" + Request.Form("MM_recordId") + "" MM_editRedirectUrl = "pictures_listing.asp" If Request.Form("PIC_APPROVED") = "0" Then MM_editRedirectUrl = "home.asp" ' append the query string to the redirect URL If (MM_editRedirectUrl <> "" And Request.QueryString <> "") Then If (InStr(1, MM_editRedirectUrl, "?", vbTextCompare) = 0 And Request.QueryString <> "") Then MM_editRedirectUrl = MM_editRedirectUrl & "?" & Request.QueryString Else MM_editRedirectUrl = MM_editRedirectUrl & "&" & Request.QueryString End If End If End If %> <% ' *** Delete File Before Delete Record 1.6.0 If (CStr(Request("MM_delete")) <> "" And CStr(Request("MM_recordId")) <> "") Then Dim DF_filesStr, DF_path, DF_suffix DF_filesStr = "PIC_FILE" DF_path = strPublicPath DF_suffix = "_small" DeleteFileBeforeRecord DF_filesStr,DF_path,MM_editConnection,MM_editTable,MM_editColumn,MM_recordId,DF_suffix end if %> <% ' *** Delete Record: construct a sql delete statement and execute it If (CStr(Request("MM_delete")) <> "" And CStr(Request("MM_recordId")) <> "") Then ' create the sql delete statement MM_editQuery = "delete from " & MM_editTable & " where " & MM_editColumn & " = " & MM_recordId If (Not MM_abortEdit) Then set cmdDelete = Server.CreateObject("ADODB.Command") cmdDelete.ActiveConnection = MM_connIWGallery_STRING cmdDelete.CommandText = "DELETE FROM RATES WHERE RAT_PICTURE = " & Request("MM_recordId") cmdDelete.CommandType = 1 cmdDelete.CommandTimeout = 0 cmdDelete.Prepared = true cmdDelete.Execute() ' execute the delete Set MM_editCmd = Server.CreateObject("ADODB.Command") MM_editCmd.ActiveConnection = MM_editConnection MM_editCmd.CommandText = MM_editQuery MM_editCmd.Execute MM_editCmd.ActiveConnection.Close If (MM_editRedirectUrl <> "") Then Response.Redirect(MM_editRedirectUrl) End If End If End If %> <% Dim rsPicture__iData rsPicture__iData = "0" If (Request.QueryString("iData") <> "") Then rsPicture__iData = Request.QueryString("iData") End If %> <% Dim rsPicture Dim rsPicture_numRows Set rsPicture = Server.CreateObject("ADODB.Recordset") rsPicture.ActiveConnection = MM_connIWGallery_STRING rsPicture.Source = "SELECT * FROM PICTURES WHERE PIC_ID = " + Replace(rsPicture__iData, "'", "''") + "" rsPicture.CursorType = 0 rsPicture.CursorLocation = 2 rsPicture.LockType = 1 rsPicture.Open() rsPicture_numRows = 0 %> <body onLoad="document.form1.submit();"> <form name="form1" method="POST" action="<%=MM_editAction%>"> <input type="hidden" name="MM_delete" value="form1"> <input type="hidden" name="MM_recordId" value="<%= rsPicture.Fields.Item("PIC_ID").Value %>"> <input name="PIC_APPROVED" type="hidden" id="PIC_APPROVED" value="<%=(rsPicture.Fields.Item("PIC_APPROVED").Value)%>"> </form> </body> <% rsPicture.Close() Set rsPicture = Nothing %>
[
Íàçàä
]