<%@ Language=VBScript %> <% Response.Buffer=true Dim LaunConn Dim CookCartID Dim objFSO Set LaunConn=Server.CreateObject("ADODB.Connection") LaunConn.Open "DSN=LaundryCarts;" CustID = CInt(Request.querystring("CustID")) If Level >= 1 Then Response.Redirect ("AdminMenu.asp") End If if request.form("SelOrdStatus") <> "" then 'modifying records, here we go cartid = request.querystring("cartid") strSQL = "SELECT CartID, Status, PartID, Quantity, Price, PartDesc, Quantity * Price AS Price1 FROM CartItems WHERE CartID LIKE '" & cartid & "'" Set RsCartItem = LaunConn.Execute(strSQL) If Not RsCartItem.EOF Then RsCartItem.Movefirst counter = 1 do while not rscartitem.eof strsql = "UPDATE CartItems SET Status = '" & request.form("itemstatus" & counter) & "' WHERE CartID = " & cartid & " AND partid = '" & rscartitem("partid") & "';" LaunConn.Execute(strSQL) rscartitem.movenext counter = counter + 1 loop rscartitem.close Set rscartitem = Nothing End If strsql = "UPDATE Cart Set comments = '" & request.form("comments") & "', status = " & request.form("SelOrdStatus") & " WHERE cartid = " & cartid & ";" LaunConn.Execute(strSQL) 'done processing, redirect them so the page is updated LaunConn.Close Set LaunConn = Nothing Response.redirect("modorder.asp?cartid=" & request.querystring("cartid") & "&custid=" & request.querystring("custid")) end if %> Laundry Carts <% Set LaunConn=Server.CreateObject("ADODB.Connection") LaunConn.Open "DSN=LaundryCarts;" CookCartID = Session("CookCartID") CustID = Session("CustID") %>
&custid=<%=request.querystring("custid")%>" method="post" name="form1">
Customer Order
<% if Session("level") < 2 Then Response.Redirect ("AdminLogin.asp") End If StrSQL = "SELECT Cart.OrderDate, Cart.Status, Cart.Comments, OrdStat.StatusName, Cart.CustID, Cart.OrderDate, Cart.OrderDate, Cart.Ordered, Cart.TotalPrice, Cart.ShippingCost, Cart.SalesTax, Cart.TotalQuant, Cart.CartID, Cart.SpecInst" strSQL = strSQL & " FROM OrdStat INNER JOIN Cart ON OrdStat.OrdStatID = Cart.Status" strSQL = strSQL & " WHERE (((Cart.CartID)LIKE '" & request.querystring("cartid") &"'))" strSQL = strSQL & " ORDER BY OrdStat.StatusOrder,Cart.OrderDate DESC;" Set RsCart = LaunConn.Execute(strSQL) 'Response.Write strSQL If NOT RsCart.EOF Then RsCart.MoveFirst Do While Not RsCart.EOF Response.Write ("") Response.Write ("") Response.Write ("") Response.Write ("") Response.Write (" <% Response.Write ("") Response.Write ("") Response.Write ("") Response.Write ("") Response.Write ("
Order Number:" & RsCart("CartID") & "Ordered On:" & RsCart("OrderDate") & "Status:
Special Instructions:
") Response.write RsCart("SpecInst") Response.Write ("
Comments:
") Response.write "" Response.Write ("
") ' Start the shopping cart table Response.Write "
" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" ' Start the form for updating the cart 'Response.Write "" 'Response.Write "" ' Select all parts from the user's cart strSQL = "SELECT CartID, Status, PartID, Quantity, Price, PartDesc, Quantity * Price AS Price1 FROM CartItems WHERE CartID LIKE '" & RsCart("CartID") & "'" Set RsCartItem = LaunConn.Execute(strSQL) If NOT RsCartItem.EOF Then RsCartItem.MoveFirst counter = 1 Do While NOT RsCartItem.EOF Response.Write "" Response.Write "" ' Set these next form inputs to be named spesifically to the part they are for. ' Refer higher up to read about how this is my favorite work. Response.Write "" %> <% Response.Write "" RsCartItem.MoveNext counter = counter + 1 Loop End If RsCartItem.Close Set RsCartItem = Nothing ' If there are no items in the cart, say so! 'strSQL = "SELECT TotalPrice FROM Cart WHERE CustID LIKE '" & Request.Cookies("costcookie")("CustID") & " AND Ordered LIKE 'TRUE' ORDER BY OrderDate" 'Set Costls1 = CostConn.Execute(strSQL) Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "
Part NumberDescriptionQuantityItem StatusPrice
" & RsCartItem("PartID") &"" & RsCartItem("PartDesc") &"" & RsCartItem("Quantity") & " $" & formatnumber(RsCartItem("Price"),2) &" " & QuantUpdate & "
   Price:$" & formatnumber(RsCart("TotalPrice"),2) & "
   Sales Tax:$" & formatnumber(RsCart("SalesTax"),2) & "
   Shipping:$" & formatnumber(RsCart("ShippingCost"),2) & "
   Total Price:$" & formatnumber(RsCart("TotalPrice")+RsCart("SalesTax")+RsCart("ShippingCost"), 2) & "

" RsCart.MoveNext Loop %>
<% Else Response.Write "

Sorry, We have no record of orders placed.
" End If RsCart.Close Set RsCart = Nothing strSQL = "SELECT * FROM Customer WHERE CustomerID = " & request.querystring("custid") & ";" Set RsCust = LaunConn.Execute(strSQL) If Not RsCust.EOF Then RsCust.MoveFirst Response.Write "
" Response.Write "" Response.Write "
" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "
Billing Information" Response.Write "
" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "
First Name: " Response.Write RsCust("BFirstName") & "Last Name: " Response.Write RsCust("BLastName") & "
Business Name: " Response.Write RsCust("BBusiness") & "
Address 1: " Response.Write RsCust("BAddress1") & "
Address 2: " Response.Write RsCust("BAddress2") & "
City: " Response.Write RsCust("BCity") & "State: " Response.Write RsCust("BState") & "
ZIP/Postal Code: " Response.Write RsCust("BZip") & "
Phone: " Response.Write RsCust("BPhone") & "
E-Mail: " Response.Write RsCust("Email") & "
Shipping Information
" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "" Response.Write "
Ship to: " Response.Write RsCust("Shipto") & "
First Name: " Response.Write RsCust("SFirstName") & "Last Name: " Response.Write RsCust("SLastName") & "
Business Name: " Response.Write RsCust("SBusiness") & "
Address 1: " Response.Write RsCust("SAddress1") & "
Address 2: " Response.Write RsCust("SAddress2") & "
City: " Response.Write RsCust("SCity") & "State: " Response.Write RsCust("SState") & "
ZIP/Postal Code: " Response.Write RsCust("SZip") & "
Phone: " Response.Write RsCust("SPhone") & "
Payment Options
" Response.Write "" Response.Write "" Response.Write "" Response.Write "
Cardholder's Name: " Response.Write RsCust("CCName") & "
Payment Type: " Response.Write RsCust("CCType") & "Card Number: " Response.Write RsCust("CCNumber") & "
Exp. Date: " Response.Write RsCust("CCDate") & "Sec. Code: " Response.Write RsCust("CCCode") & "
" Response.Write "
Password
" Response.Write "" Response.Write "" Response.Write "" Response.Write "
Password: " Response.Write RsCust("password") Response.Write "
Heard about us: " Response.Write RsCust("HearUs") Response.Write "
" Else Response.Write "Bad" End If RsCust.Close Set RsCust = Nothing LaunConn.Close Set LaunConn = Nothing %>