public ActionResult inbox(aip.Models.scompose model) { string dt = DateTime.Now.ToShortDateString(); SqlConnection con = new SqlConnection(System.Configuration.ConfigurationManager.ConnectionStrings["kiit"].ConnectionString); con.Open(); SqlCommand cmd1 = new SqlCommand("select senderid,subjects,msg from cmessage where userid='" + Session["userid"] + "'", con); int i = cmd1.ExecuteNonQuery(); return(View(model)); }
public ActionResult compose(aip.Models.scompose model) { string dt = DateTime.Now.ToShortDateString(); SqlConnection con = new SqlConnection(System.Configuration.ConfigurationManager.ConnectionStrings["kiit"].ConnectionString); con.Open(); SqlCommand cmd1 = new SqlCommand("insert into cmessage values('" + Session["userid"] + "','" + model.receiverid + "','" + model.subjects + "','" + model.msg + "','" + dt + "')", con); int i = cmd1.ExecuteNonQuery(); if (i > 0) { ViewBag.msg1 = "YOUR MESSAGE SENT SUCCESSFULLY"; } return(View(model)); }