alert('两次密码输入不一致');history.back();"; exit; } if($isEdit) { $query = "SELECT * FROM employee WHERE id=$id"; $result = $conn->query($query); if($result->num_rows > 0) { $password_sql = $nullPwd ? "" : ",em_password='".md5($em_password)."'"; $sql = "UPDATE employee SET em_user='$em_user'$password_sql,em_role=$em_role, em_code='$em_code',em_email='$em_email',em_tel='$em_tel',em_permission_role_id=$em_permission_role_id WHERE id=$id"; $conn->query($sql); } $page = $_GET['Page'] ?? ''; $keys = urlencode($_GET['Keys'] ?? ''); $ord = urlencode($_GET['Ord'] ?? ''); header("Location: ?keys=$keys&Ord=$ord&Page=$page"); exit; } else { if($nullPwd) { $em_password = "MTB".$em_code; } $sql = "INSERT INTO employee(em_user,em_password,em_role,em_code,em_email,em_tel,em_permission_role_id) VALUES('$em_user','".md5($em_password)."',$em_role,'$em_code','$em_email','$em_tel',$em_permission_role_id)"; $conn->query($sql); header("Location: ?"); exit; } } if($act == "postchk") { $keys = urlencode($_GET['Keys'] ?? ''); $ord = urlencode($_GET['Ord'] ?? ''); $page = $_GET['Page'] ?? ''; $chkact = $_POST['chkact'] ?? ''; if(isset($_POST['chkbox']) && is_array($_POST['chkbox'])) { $sqlStr = "DELETE FROM employee WHERE id IN (" . implode(',', $_POST['chkbox']) . ")"; $conn->query($sqlStr); } header("Location: ?Keys=$keys&Ord=$ord&Page=$page"); exit; } // Now start HTML output ?>