1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
|
<?php
include ("checkuser.php");
?>
<?php
error_reporting(E_ALL);
mysql_connect("localhost", "root", "");
mysql_select_db("erp");
$St_Name1 = "";
$St_Name2 = "";
$St_Straße = "";
$St_Hausnummer = "";
$St_Postleitzahl = "";
$St_Wohnort = "";
$St_Telefon = "";
$St_Fax = "";
$Ls_Name1 = "";
$Ls_Name2 = "";
$Ls_Straße = "";
$Ls_Postleitzahl = "";
$Ls_Wohnort = "";
$Rs_Name1 = "";
$Rs_Name2 = "";
$Rs_Straße = "";
$Rs_Postleitzahl = "";
$Rs_Wohnort = "";
$Zb_Skonto = "";
$Zb_Netto = "";
$Kp_Name = "";
$Kp_Telefon = "";
$sql = "INSERT INTO kunden
(St_Name1, St_Name2, St_Straße, St_Hausnummer, St_Postleitzahl, St_Wohnort, St_Telefon, St_Fax, Ls_Name1, Ls_Name2, Ls_Straße, Ls_Postleitzahl, Ls_Wohnort, Rs_Name1, Rs_Name2, Rs_Straße, Rs_Postleitzahl, Rs_Wohnort, Zb_Skonto, Zb_Netto, Kp_Name, Kp_Telefon)
VALUES
('".addslashes(htmlspecialchars($_POST['St_Name1']))."',
'".addslashes(htmlspecialchars($_POST['St_Name2']))."',
'".addslashes(htmlspecialchars($_POST['St_Straße']))."',
'".addslashes(htmlspecialchars($_POST['St_Hausnummer']))."',
'".addslashes(htmlspecialchars($_POST['St_Postleitzahl']))."',
'".addslashes(htmlspecialchars($_POST['St_Wohnort']))."',
'".addslashes(htmlspecialchars($_POST['St_Telefon']))."',
'".addslashes(htmlspecialchars($_POST['St_Fax']))."',
'".addslashes(htmlspecialchars($_POST['Ls_Name1']))."',
'".addslashes(htmlspecialchars($_POST['Ls_Name2']))."',
'".addslashes(htmlspecialchars($_POST['Ls_Straße']))."',
'".addslashes(htmlspecialchars($_POST['Ls_Postleitzahl']))."',
'".addslashes(htmlspecialchars($_POST['Ls_Wohnort']))."',
'".addslashes(htmlspecialchars($_POST['Rs_Name1']))."',
'".addslashes(htmlspecialchars($_POST['Rs_Name2']))."',
'".addslashes(htmlspecialchars($_POST['Rs_Straße']))."',
'".addslashes(htmlspecialchars($_POST['Rs_Postleitzahl']))."',
'".addslashes(htmlspecialchars($_POST['Rs_Wohnort']))."',',
'".addslashes(htmlspecialchars($_POST['Zb_Skonto']))."',
'".addslashes(htmlspecialchars($_POST['Zb_Netto']))."',
'".addslashes(htmlspecialchars($_POST['Kp_Name']))."',
'".addslashes(htmlspecialchars($_POST['Kp_Telefon']))."',
NOW())";
mysql_query($sql) OR die(mysql_error());
echo "Datensatz hinzugefügt";
?>
|