diff --git a/admin/sponsors.php b/admin/sponsors.php index 2fbce439..4bc7bc1f 100644 --- a/admin/sponsors.php +++ b/admin/sponsors.php @@ -26,11 +26,248 @@ require_once("../user.inc.php"); user_auth_required('committee', 'admin'); + switch($_GET['action']) { + case 'organizationinfo_load': + $q=mysql_query("SELECT * FROM sponsors WHERE id='".intval($_GET['id'])."'"); + $ret=mysql_fetch_assoc($q); + echo json_encode($ret); + exit; + break; + + case 'organizationinfo_save': + $id=$_POST['sponsor_id']; + if($id) { + $exec="UPDATE sponsors SET ". + "organization='".mysql_escape_string(stripslashes($_POST['organization']))."', ". + "address='".mysql_escape_string(stripslashes($_POST['address']))."', ". + "city='".mysql_escape_string(stripslashes($_POST['city']))."', ". + "province_code='".mysql_escape_string(stripslashes($_POST['province_code']))."', ". + "postalcode='".mysql_escape_string(stripslashes($_POST['postalcode']))."', ". + "phone='".mysql_escape_string(stripslashes($_POST['phone']))."', ". + "tollfree='".mysql_escape_string(stripslashes($_POST['tollfree']))."', ". + "fax='".mysql_escape_string(stripslashes($_POST['fax']))."', ". + "email='".mysql_escape_string(stripslashes($_POST['email']))."', ". + "website='".mysql_escape_string(stripslashes($_POST['website']))."', ". + "notes='".mysql_escape_string(stripslashes($_POST['notes']))."', ". + "donationpolicyurl='".mysql_escape_string(stripslashes($_POST['donationpolicyurl']))."', ". + "fundingselectiondate='".mysql_escape_string(stripslashes($_POST['fundingselectiondate']))."', ". + "waiveraccepted='".mysql_escape_string(stripslashes($_POST['waiveraccepted']))."', ". + "taxreceiptrequired='".mysql_escape_string(stripslashes($_POST['taxreceiptrequired']))."' ". + "WHERE id='$id'"; + mysql_query($exec); + + //FIXME accept the logo + //"logo='".mysql_escape_string(stripslashes($_POST['logo']))."', ". + + happy_("Organization Info Saved"); + } + exit; + break; + + case 'sponsorshipinfo_load': + $ret=array(); + echo json_encode($ret); + exit; + break; + + } + send_header("Sponsors", array('Committee Main' => 'committee_main.php', 'Administration' => 'admin/index.php', 'Fundraising Main' => 'admin/fundraising.php') ); + +?> + +
+ + + if($_POST['save']=="edit" || $_POST['save']=="add") { @@ -160,7 +397,8 @@ while($r=mysql_fetch_object($q)) { echo "