include "../admin/connect.php3";
if (!$sid) {
$errors = "Sorry - required parameters not passed.";
}
else {
$sql = "select * from Sid where sid='$sid'";
$result = mysql($database, $sql);
$num = mysql_numrows($result);
if ($num == 0) {
$errors = "Sorry - invalid sid.";
}
else {
$companyID = mysql_result($result,0,"companyID");
$sql = "select * from Company where companyID=$companyID";
$result = mysql($database, $sql);
$num = mysql_numrows($result);
if ($num == 0) {
$errors = "Sorry - invalid companyID.";
}
else {
$company = mysql_result($result,0,"company");
$sql = "select * from CompanyDeluxe where companyID=$companyID";
$result = mysql($database, $sql);
$num = mysql_numrows($result);
if ($num > 0 && !$submit) {
$companyDeluxeID = mysql_result($result,0,"companyDeluxeID");
$description = mysql_result($result,0,"description");
$image = mysql_result($result,0,"image");
}
}
}
}
if ($submit) {
if (!$errors) {
$now = Date("Y-m-d h:m:s");
if (!$companyDeluxeID) {
$sql = "insert into CompanyDeluxe values ('', $companyID, '$image', '', '$description', '$now', '', 0, 0)";
}
else {
$sql = "update CompanyDeluxe set description='$description', dateModified='$now' where companyDeluxeID=$companyDeluxeID";
}
$result = mysql($database, $sql);
$seminarID = mysql_insert_id();
$message = "Thank you! Your company deluxe listing has been sent.
Please allow for up to 3 days for approval.";
$encMessage = UrlEncode($message);
Header("Location: ./index.php3?sid=$sid&message=$encMessage\n\n");
exit;
}
}
if ($errors) { $errors = "