Modificare il file:
\Admin\proList.asp
<%@LANGUAGE="VBSCRIPT" CODEPAGE="1252"%> <!--#include file="ecommerce.asp" --> <% ' *** Edit Operations: declare variables Dim MM_editAction Dim MM_abortEdit Dim MM_editQuery Dim MM_editCmd Dim MM_editConnection Dim MM_editTable Dim MM_editRedirectUrl Dim MM_editColumn Dim MM_recordId Dim MM_fieldsStr Dim MM_columnsStr Dim MM_fields Dim MM_columns Dim MM_typeArray Dim MM_formVal Dim MM_delim Dim MM_altVal Dim MM_emptyVal Dim MM_i MM_editAction = CStr(Request.ServerVariables("SCRIPT_NAME")) If (Request.QueryString <> "") Then MM_editAction = MM_editAction & "?" & Server.HTMLEncode(Request.QueryString) End If ' boolean to abort record edit MM_abortEdit = false ' query string to execute MM_editQuery = "" %> <% ' *** Delete Record: declare variables if (CStr(Request("MM_delete")) = "form2" And CStr(Request("MM_recordId")) <> "") Then MM_editConnection = MM_ecommerce_STRING MM_editTable = "Prodotti" MM_editColumn = "ID" MM_recordId = "" + Request.Form("MM_recordId") + "" MM_editRedirectUrl = "" ' append the query string to the redirect URL If (MM_editRedirectUrl <> "" And Request.QueryString <> "") Then If (InStr(1, MM_editRedirectUrl, "?", vbTextCompare) = 0 And Request.QueryString <> "") Then MM_editRedirectUrl = MM_editRedirectUrl & "?" & Request.QueryString Else MM_editRedirectUrl = MM_editRedirectUrl & "&" & Request.QueryString End If End If End If %> <% ' *** Delete Record: construct a sql delete statement and execute it If (CStr(Request("MM_delete")) <> "" And CStr(Request("MM_recordId")) <> "") Then ' create the sql delete statement MM_editQuery = "delete from " & MM_editTable & " where " & MM_editColumn & " = " & MM_recordId If (Not MM_abortEdit) Then ' execute the delete Set MM_editCmd = Server.CreateObject("ADODB.Command") MM_editCmd.ActiveConnection = MM_editConnection MM_editCmd.CommandText = MM_editQuery MM_editCmd.Execute MM_editCmd.ActiveConnection.Close If (MM_editRedirectUrl <> "") Then Response.Redirect(MM_editRedirectUrl) End If End If End If %> <% ' *** Restrict Access To Page: Grant or deny access to this page MM_authorizedUsers="" MM_authFailedURL="login.asp" MM_grantAccess=false If Session("MM_UsernameDaMaSOFTLista") <> "" Then If (true Or CStr(Session("MM_UserAuthorization"))="") Or _ (InStr(1,MM_authorizedUsers,Session("MM_UserAuthorization"))>=1) Then MM_grantAccess = true End If End If If Not MM_grantAccess Then MM_qsChar = "?" If (InStr(1,MM_authFailedURL,"?") >= 1) Then MM_qsChar = "&" MM_referrer = Request.ServerVariables("URL") if (Len(Request.QueryString()) > 0) Then MM_referrer = MM_referrer & "?" & Request.QueryString() MM_authFailedURL = MM_authFailedURL & MM_qsChar & "accessdenied=" & Server.URLEncode(MM_referrer) Response.Redirect(MM_authFailedURL) End If %> <% Dim marca Dim marca_numRows Set marca = Server.CreateObject("ADODB.Recordset") marca.ActiveConnection = MM_ecommerce_STRING marca.Source = "SELECT DISTINCT Marca FROM Prodotti" marca.CursorType = 0 marca.CursorLocation = 2 marca.LockType = 1 marca.Open() marca_numRows = 0 %> <% Dim Tipo Dim Tipo_numRows Set Tipo = Server.CreateObject("ADODB.Recordset") Tipo.ActiveConnection = MM_ecommerce_STRING Tipo.Source = "SELECT DISTINCT Classe FROM Prodotti" Tipo.CursorType = 0 Tipo.CursorLocation = 2 Tipo.LockType = 1 Tipo.Open() Tipo_numRows = 0 %> <% Dim Lista Dim Lista_numRows Set Lista = Server.CreateObject("ADODB.Recordset") Lista.ActiveConnection = MM_ecommerce_STRING Lista.Source = "SELECT * FROM Prodotti WHERE " + Request.QueryString("Campo") + " LIKE '%" + Request.QueryString("Cosa") + "%'" Lista.CursorType = 0 Lista.CursorLocation = 2 Lista.LockType = 1 Lista.Open() Lista_numRows = 0 %> <% Dim Repeat1__numRows Dim Repeat1__index Repeat1__numRows = -1 Repeat1__index = 0 Tipo_numRows = Tipo_numRows + Repeat1__numRows %> <% Dim Repeat2__numRows Dim Repeat2__index Repeat2__numRows = -1 Repeat2__index = 0 marca_numRows = marca_numRows + Repeat2__numRows %> <% Dim Repeat3__numRows Dim Repeat3__index Repeat3__numRows = -1 Repeat3__index = 0 Lista_numRows = Lista_numRows + Repeat3__numRows %> <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd"> <html> <head> <title>Lista Nascite - Amministrazione</title> <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1"> <link href="../CSS/style.css" rel="stylesheet" type="text/css"> <script language="JavaScript" type="text/JavaScript"> <!-- function MM_goToURL() { //v3.0 var i, args=MM_goToURL.arguments; document.MM_returnValue = false; for (i=0; i<(args.length-1); i+=2) eval(args[i]+".location='"+args[i+1]+"'"); } //--> </script> </head> <body> <div align="center" class="Stile1"> <p><img border="0" src="../immagini/Art_inseriti.jpg" width="254" height="79"></p> <p> <input name="Submit2" type="button" style="font-family: Verdana; font-size: 10px; border: 1px solid #C0C0C0" onClick="MM_goToURL('parent','default.asp');return document.MM_returnValue" value="Indietro"> </p> <table width="623" border="1" class="Stile3"> <tr bgcolor="#CCCCCC"> <td width="248">Per Lista Nascite: </td> <td width="349">Cerca:</td> </tr> <tr bordercolor="#000000"> <td> <% While ((Repeat2__numRows <> 0) AND (NOT marca.EOF)) %> <div align="left"><a href="proList.asp?campo=Marca&cosa=<%=(Marca.Fields.Item("Marca").Value)%>"><%=(marca.Fields.Item("Marca").Value)%></a><br> </div> <% Repeat2__index=Repeat2__index+1 Repeat2__numRows=Repeat2__numRows-1 marca.MoveNext() Wend %></td> <td><div align="left"> <form name="form1" method="get" action="proList.asp"> Campo: <select name="Campo" size="1" id="Campo" style="font-family: Verdana; font-size: 10px"> <option value="Nome" <%If (Not isNull(Request.QueryString("campo"))) Then If ("Nome" = CStr(Request.QueryString("campo"))) Then Response.Write("SELECTED") : Response.Write("")%>>Articolo</option> <option value="Descrizione" <%If (Not isNull(Request.QueryString("campo"))) Then If ("Descrizione" = CStr(Request.QueryString("campo"))) Then Response.Write("SELECTED") : Response.Write("")%>>Descrizione</option> <option value="Prezzo" <%If (Not isNull(Request.QueryString("campo"))) Then If ("Prezzo" = CStr(Request.QueryString("campo"))) Then Response.Write("SELECTED") : Response.Write("")%>>Prezzo</option> <option value="Cod" <%If (Not isNull(Request.QueryString("campo"))) Then If ("Cod" = CStr(Request.QueryString("campo"))) Then Response.Write("SELECTED") : Response.Write("")%>>Codice</option> </select> Cosa: <input type="text" name="cosa" size="20" style="font-family: Verdana; font-size: 10px; border: 1px solid #C0C0C0"> <input type="submit" name="Submit" value="Cerca" style="font-family: Verdana; font-size: 10px; border: 1px solid #C0C0C0"> </form> </div></td> </tr> </table> <p> </p> <p> </p> <% If Not Lista.EOF Or Not Lista.BOF Then %> <table border="0" class="Stile3"> <tr bgcolor="#CCCCCC"> <td>ID</td> <td>Cod.</td> <td width="113">Articolo</td> <td>Descrizione</td> <td>Prezzo</td> <td>Foto</td> <td>Lista Nascita</td> <!-- <td>Cod</td> --> <td>Prenotato da</td> <td>Disp.</td> <!-- ######################################### <!-- AGGIUNTA 20/08/2013 <!-- ######################################### --> <td>E-mail</td> <td>Eliminazione</td> </tr> <% While ((Repeat3__numRows <> 0) AND (NOT Lista.EOF)) %> <tr bgcolor="<% If (Repeat3__numRows Mod 2) Then Response.Write("#ffcc66") Else Response.Write("#ffff66") End IF %>"> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("ID").Value)%></a></div></td> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Cod").Value)%></a></div></td> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Nome").Value)%></a></div></td> <td width="213"><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Descrizione").Value)%></a></div></td> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=FormatCurrency((Lista.Fields.Item("Prezzo").Value))%></a></div></td> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Foto").Value)%></a></div></td> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Marca").Value)%></a></div></td> <!-- <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Classe").Value)%></a></div></td> --> <!-- <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Cod").Value)%></a></div></td> --> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Prenotato").Value)%></a></div></td> <td><div align="left"><a href="hitProd.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("Dispo").Value)%></a></div></td> <!-- ######################################### <!-- AGGIUNTA 20/08/2013 <!-- ######################################### --> <td><div align="left"><a href="hitProd_noz.asp?IDp=<%=(Lista.Fields.Item("ID").Value)%>&campo=<%=Request.QueryString("campo")%>&cosa=<%=Request.QueryString("cosa")%>"><%=(Lista.Fields.Item("email").Value)%></a></div></td> <td><form name="form2" method="POST" action="<%=MM_editAction%>"> <input type="submit" name="Submit3" value="Elimina" style="font-family: Verdana; font-size: 10px; border: 1px solid #C0C0C0"> <input type="hidden" name="MM_delete" value="form2"> <input type="hidden" name="MM_recordId" value="<%= Lista.Fields.Item("ID").Value %>"> </form></td> </tr> <% Repeat3__index=Repeat3__index+1 Repeat3__numRows=Repeat3__numRows-1 Lista.MoveNext() Wend %> </table> <% End If ' end Not Lista.EOF Or NOT Lista.BOF %> </div> </body> </html> <% marca.Close() Set marca = Nothing %> <% Tipo.Close() Set Tipo = Nothing %> <% Lista.Close() Set Lista = Nothing %>
[
Íàçàä
]