} if ($_SESSION["custID"] == "") { if (@$_GET["rnd"] == "") {$strAction = "vsadmin/adduser.php?update=false";} else {$strAction = "vsadmin/adduser.php?update=true&rnd=".@$_GET["rnd"];} } else { $strAction = "vsadmin/adduser.php?update=true"; } if ($_SESSION["custID"] == "") { if (@$_GET["rnd"] == "") { if (@$_COOKIE["id1"]!="" && @$_COOKIE["id2"]!="" && is_int(@$_COOKIE["id1"]) && is_int(@$_COOKIE["id2"]) ) { //on error resume next $sSQL = "SELECT ordName,ordAddress,ordCity,ordState,ordZip,ordCountry,ordEmail,ordPhone,ordShipName,ordShipAddress,ordShipCity,ordShipState,ordShipZip,ordShipCountry,ordPayProvider,ordComLoc,ordExtra1,ordExtra2,ordExtra3,ordExtra4,ordExtra5,ordAddInfo FROM orders WHERE ordID=".@$_COOKIE["id1"]." AND ordSessionID=".@$_COOKIE["id2"]; $rs=mysql_query($sSQL); $num_res=mysql_num_rows($rs); if ($num_res!=0) { $row=mysql_fetch_array($rs); $name = $row["ordName"]; $address = $row["ordAddress"]; $city = $row["ordCity"]; $state = $row["ordState"]; $zip = $row["ordZip"]; $country = $row["ordCountry"]; $email = $row["ordEmail"]; $phone = $row["ordPhone"]; $shipname = $row["ordShipName"]; $shipaddress = $row["ordShipAddress"]; $shipcity = $row["ordShipCity"]; $shipstate = $row["ordShipState"]; $shipzip = $row["ordShipZip"]; $shipcountry = $row["ordShipCountry"]; $payprovider = $row["ordPayProvider"]; $comloc = $row["ordComLoc"]; $ordExtra1 = $row["ordExtra1"]; $ordExtra2 = $row["ordExtra2"]; $ordExtra3 = $row["ordExtra3"]; $ordExtra4 = $row["ordExtra4"]; $ordExtra5 = $row["ordExtra5"]; $addInfo = $row["ordAddInfo"]; $password = $_SESSION["custPassword"]; $vpassword = $_SESSION["custPassword"]; } } } Else { $sSQL = "SELECT * FROM customers WHERE custRnd=".@$_GET["rnd"]; $rs=mysql_query($sSQL); $num_res=mysql_num_rows($rs); if ($num_res!=0) { $row=mysql_fetch_array($rs); $name = $row["Name"]; $address = $row["Address"]; $city = $row["City"]; $state = htmlspecialchars(stripslashes($row["State"])); $zip = $row["Zip"]; $country = htmlspecialchars(stripslashes($row["Country"])); $email = $row["Email"]; $phone = $row["Phone"]; $shipname = $row["ShipName"]; $shipaddress = $row["ShipAddress"]; $shipcity = $row["ShipCity"]; $shipstate = htmlspecialchars(stripslashes($row["ShipState"])); $shipzip = $row["ShipZip"]; $shipcountry = htmlspecialchars(stripslashes($row["ShipCountry"])); $password = $row["custPassword"]; $comments = $row["Comments"]; $ordExtra1 = $row["ordExtra1"]; $ordExtra2 = $row["ordExtra2"]; $ordExtra3 = $row["ordExtra3"]; $ordExtra4 = $row["ordExtra4"]; $ordExtra5 = $row["ordExtra5"]; } } } else { $email = $_SESSION["Email"]; $name = $_SESSION["Name"]; $address = $_SESSION["Address"]; $city = $_SESSION["City"]; $state = $_SESSION["State"]; $state2 = $_SESSION["State"]; $zip = $_SESSION["Zip"]; $country = $_SESSION["Country"]; $phone = $_SESSION["Phone"]; $shipname = $_SESSION["ShipName"]; $shipaddress = $_SESSION["ShipAddress"]; $shipcity = $_SESSION["ShipCity"]; $shipstate = $_SESSION["ShipState"]; $shipstate2 = $_SESSION["ShipState"]; $shipzip = $_SESSION["ShipZip"]; $shipcountry = $_SESSION["ShipCountry"]; $password = $_SESSION["custPassword"]; $vpassword = $_SESSION["custPassword"]; $comments = $_SESSION["Comments"]; $ordExtra1 = $_SESSION["ordExtra1"]; $ordExtra2 = $_SESSION["ordExtra2"]; $ordExtra3 = $_SESSION["ordExtra3"]; $ordExtra4 = $_SESSION["ordExtra4"]; $ordExtra5 = $_SESSION["ordExtra5"]; } //echo $ordExtra5; //exit(); ?>