public ActionResult CommitSellerEdit(gunSeller gs) { string query = "update shooters.gunSeller" + " set sAddress = '" + gs.sAddress + "'," + " sCity = '" + gs.sCity + "'," + " sCountry = '" + gs.sCountry + "'," + " sState = '" + gs.sState + "'," + " sZip = '" + gs.sZip + "'" + " where sName = '" + gs.sName + "'"; setSuccess(QueryUtils.query(query)); return(RedirectToAction("Guns")); }
public ActionResult CommitGPChanges(gunPurchase g) { gunSeller _obj = TableUtils.queryToObject <gunSeller>("select * from shooters.gunSeller where sName = '" + g.sName + "'"); if (_obj.sName == null) { //if seller does not exist in sellers, create it. QueryUtils.query("insert into shooters.gunSeller (sName) values ('" + g.sName + "')"); } string query = "update shooters.gunPurchase" + " set sName = '" + g.sName + "'," + " gpDate = '" + g.gpDate + "'," + " gpCost = '" + g.gpCost + "'," + " gName = '" + g.gName + "'," + " gpDesc = '" + g.gpDesc + "'" + " where gpId = '" + g.gpId + "'"; setSuccess(QueryUtils.query(query)); return(RedirectToAction("Guns")); }