Thank you.
"; } else { if (isset($errormsg)) { echo ""; } ?> } ?>
include("/home/cbhprope/_inc/dbconnect.inc"); $q = "SELECT * FROM ConciergeServices ORDER BY ServiceCode"; $result = mysql_query($q); $num_results = mysql_num_rows($result); if ($num_results != 0) { for ($i = 0; $i < $num_results; $i++) { $row = mysql_fetch_array($result); $code = stripslashes($row["Id"]); $name = stripslashes($row["ServiceName"]); $services[$i] = $name; } } if ($_SERVER['REQUEST_METHOD'] == "POST") { include("/home/cbhprope/_inc/mail/Mail.php"); include("/home/cbhprope/_inc/securimage/securimage.php"); $bizname = isset($_POST['bizname']) && strlen($_POST['bizname']) > 0 ? $_POST['bizname'] : NULL; $bizstreet1 = $_POST['bizstreet1']; $bizstreet2 = $_POST['bizstreet2']; $bizcity = isset($_POST['bizcity']) && strlen($_POST['bizcity']) > 0 ? $_POST['bizcity'] : NULL; $bizstate = isset($_POST['bizstate']) && strlen($_POST['bizstate']) > 0 ? $_POST['bizstate'] : NULL; $bizzip = isset($_POST['bizzip']) && strlen($_POST['bizzip']) > 0 ? $_POST['bizzip'] : NULL; $bizphone = isset($_POST['bizphone']) && strlen($_POST['bizphone']) > 0 ? $_POST['bizphone'] : NULL; $bizemail = isset($_POST['bizemail']) && strlen($_POST['bizemail']) > 0 ? $_POST['bizemail'] : NULL; $bizwebsite = isset($_POST['bizwebsite']) && strlen($_POST['bizwebsite']) > 0 ? $_POST['bizwebsite'] : NULL; $contact = isset($_POST['contact']) && strlen($_POST['contact']) > 0 ? $_POST['contact'] : NULL; $contactphone = $_POST['contactphone']; $contactemail = $_POST['contactemail']; $bizservices = $_POST['bizservice']; $bizserviceother = $_POST['bizserviceother']; $comments = $_POST['comments']; $code = $_POST['code']; if (isset($code) == false) { $errormsg = "Please validate the security code"; } else { $img = new Securimage(); $valid = $img->check($code); if($valid == false) { $errormsg = "Sorry, the Security Code you entered was invalid, please try again."; } } if (isset($errormsg) == false) { if (isset($bizname) == false || isset($bizcity) == false || isset($bizstate) == false || isset($bizzip) == false || isset($bizphone) == false || isset($bizemail) == false || isset($contact) == false || (isset($bizservices) == false || count($bizservices) == 0)) { $errormsg = "Please fill in all required fields"; } else { $q = "INSERT INTO ConciergeBusiness (BusinessName, BusinessStreet1, BusinessStreet2, " . "BusinessCity, BusinessState, BusinessZip, BusinessPhone, BusinessEmail, BusinessWebsite, ". "PrimaryContact, ContactPhone, ContactEmail, Comments) VALUES (" . "'".mysql_real_escape_string($bizname)."', ". "'".mysql_real_escape_string($bizstreet1)."', ". "'".mysql_real_escape_string($bizstreet2)."', ". "'".mysql_real_escape_string($bizcity)."', ". "'".mysql_real_escape_string($bizstate)."', ". "'".mysql_real_escape_string($bizzip)."', ". "'".mysql_real_escape_string($bizphone)."', ". "'".mysql_real_escape_string($bizemail)."', ". "'".mysql_real_escape_string($bizwebsite)."', ". "'".mysql_real_escape_string($contact)."', ". "'".mysql_real_escape_string($contactphone)."', ". "'".mysql_real_escape_string($contactemail)."', ". "'".mysql_real_escape_string($comments)."')"; $result = mysql_query($q); if ($result) { $bizId = mysql_insert_id(); $to = "beadling@cbhearthside.com"; //$to = "statephan@yahoo.com"; $cc = "statephan@yahoo.com"; $recipients = $to.",".$cc; $headers['From'] = 'website@cbhearthside.com'; //$headers['From'] = 'beadling@cbhearthside.com'; $headers['To'] = $to; $headers['Cc'] = $cc; $headers['Subject'] = "Concierge Request"; $msg = "Concierge form submission date - ".date("m-d-Y H:i:s")."\n" . "Business Name: $bizname\n" . "Business Street 1: $bizstreet1\n" . "Business Street 2: $bizstreet2\n" . "Business City: $bizcity\n" . "Business State: $bizstate\n" . "Business Zip: $bizzip\n" . "Business Phone: $bizphone\n" . "Business Email: $bizemail\n" . "Business Website: $bizwebsite\n" . "Primary Contact: $contact\n" . "Contact Phone: $contactphone\n" . "Contact Email: $contactemail\n\n" . "Services:\n==================\n"; foreach($bizservices as $key => $value) { $q = "INSERT INTO ConciergeBusinessService (BusinessId, ServiceId, ServiceName) VALUES (" . "$bizId, $value, "; if ($value == "-1") { $msg .= "Other: $bizserviceother"; $q .= "'".mysql_real_escape_string($bizserviceother)."'"; } else { $msg .= $services[$value]; $q .= "'".mysql_real_escape_string($services[$value])."'"; } $q .= ")"; $result = mysql_query($q); if ($result) { } else { echo $q; exit; } $msg .= "\n"; } $msg .= "\nComments:\n==================\n$comments"; // Create the mail object using the Mail::factory method $mail_object =& Mail::factory('smtp', $params); $send = $mail_object->send($recipients, $headers, $msg); if (PEAR::isError($send)) { $errormsg = "There was a problem"; } else { $emailsent = "Y"; } } } } } ?>

Thank you.
"; } else { if (isset($errormsg)) { echo "