Code: Select all
<?php
include_once 'connect.php';
 session_start();
 include_once 'logo.php';
?>
<link href="style.css" rel="stylesheet" type="text/css" />
<?php
if (isset($_SESSION['player']))
{
  $player=$_SESSION['player'];
}
else
{
  echo "Not Logged in <br><br> <A href='index.php'>Login</a>";
  exit;
}
if(isset($_GET['id'])) {$id=$_GET['id'];}
$playerinfo="SELECT * from players where name='$player'";
$playerinfo2=mysql_query($playerinfo) or die("could not get player stats!");
$playerinfo3=mysql_fetch_array($playerinfo2);
include_once 'statpanel.php';
?>
<div id="table">
<?php
$playerid = $playerinfo3['id'];
$iteminfo="SELECT * from weapons where id='$id'";
$iteminfo2=mysql_query($iteminfo) or die("could not get item stats!");
$iteminfo3=mysql_fetch_array($iteminfo2);
if ($playerinfo3['derim'] < $iteminfo3['price'])
{
 echo "You do not have enough Derim for this purchase!";
  echo "<center><a href='battle.php'>Go Back</center>";
  exit;
}
$playerid = $iteminfo3['pid'];
$name = $iteminfo3['name'];
$descr = $iteminfo3['description'];
$dexterity = $iteminfo3['dexterity'];
$price = $iteminfo3['price'];
$hittext = $iteminfo3['hittext'];
$damage = $iteminfo3['damage'];
$inventor = $iteminfo3['inventor'];
$randid = rand(1000,999999999);
$itembought = "INSERT into playerweapons(pid, name, description, dexterity, price, hittext,damage, inventor, randid) VALUES ('$playerid','$name','$descr','$dexterity','$price','$hittext','$damage','$inventor','$randid')";
mysql_query($itembought) or die("could not insert weapon into backpack");
$updateplayer="update players set derim=derim-'$iteminfo3[price]' where name='$player'";
  mysql_query($updateplayer) or die("Could not update player");
echo $name . " Purchased";
 echo "<center><a href='equipment.php'>Go Back</center>";
  
  
  ?>
 </div>

 well i feel sheepish. Thanks
 well i feel sheepish. Thanks