CasperSecurity
<?php
session_start();
include '../../../../web/connection/connection.php';
include '../../../../web/connection/con.php';
include '../../../../web/connection/functions/encryption.php';
$sales_order_no = $_POST['sales_order_no'];
$sales_invoice_date = $_POST['sales_invoice_date'];
$customer_id = $_POST['customer_id'];
$jj = $_SESSION['LAST_NO'];
for($i=1;$i<$jj;$i++){
$daily_production_batch_detail_id = $_POST['daily_production_batch_detail_id_'.$i];
$mfg_date = $_POST['mfg_date_'.$i];
$batch_no = $_POST['batch_no_'.$i];
$expiry_date = $_POST['expiry_date_'.$i];
$balance_quantity = $_POST['balance_quantity_'.$i];
$sold_quantity = $_POST['sold_quantity_'.$i];
$invoice_quantity = $_POST['invoice_quantity_'.$i];
//$total_invoice_quantity += $invoice_quantity;
$total_sold_quantity = $sold_quantity+ $invoice_quantity;
$total_balance_quantity = $balance_quantity - $invoice_quantity;
$db_handle = new DBController();
$newInsertt = $db_handle->tableinsert("INSERT INTO sales_item_batch(daily_production_batch_detail_id,batch_no,mfg_date,expiry_date)
VALUES ('$daily_production_batch_detail_id','$batch_no','$mfg_date','$expiry_date')");
$db_handle = new DBController();
$newUpdate = $db_handle->runMyUpdate("UPDATE daily_production_batch_detail SET sold_quantity = '$total_sold_quantity',balance_quantity = '$total_balance_quantity',invoice_quantity = '$invoice_quantity' WHERE daily_production_batch_detail_id = '$daily_production_batch_detail_id'");
}
//$total_invoice_quantityz =amebi_crypt($total_invoice_quantity,e);
//$sales_order_noya =amebi_crypt($sales_order_no,e);
//$sales_invoice_dateya =amebi_crypt($sales_invoice_date,e);
$customer_idy =amebi_crypt($customer_id,e);
if($newUpdate === TRUE){
//$_SESSION['ERROR_MSG'] = "Success";
//$_SESSION['MSG_ALRT'] = "TRUE";
header('location:../../../../web/home/modules/sales/sales_invoice/sales_invoice.php?sales_order_no='.$sales_order_no.'&sales_invoice_date='.$sales_invoice_date.'&customer_id='.$customer_idy);
}else{
//$_SESSION['ERROR_MSG'] = "Unsuccess";
//$_SESSION['MSG_ALRT'] = "FALSE";
header('location:../../../../web/home/modules/sales/sales_invoice/sales_invoice.php?sales_order_no='.$sales_order_no.'&sales_invoice_date='.$sales_invoice_date.'&customer_id='.$customer_idy);
//header('location:../../../../web/home/modules/sales/sales_invoice/sales_invoice.php?sales_order_no='.$sales_order_noya.'&sales_invoice_date='.$sales_invoice_dateya.'&total_invoice_quantitya='.$total_invoice_quantityz.'&customer_id='.$customer_idy);
}