<?php

session_start();

require_once "../database/dbconn.php";


$session_id = session_id();

$cust_id = $_SESSION['custid'];

require_once "../database/dbconn.php";

$conn = connect ();

$action = $_GET['action'];

switch ($action)
{
case 'update':
{
$session_id = $_POST['sid'];
$customer_id = $_POST['cid'];
$product_id = $_POST['pid'];
$quantity = $_POST['quantity'];

$query = "UPDATE cart set quantity = '$quantity' where session_id = '$session_id' and customer_id = '$cust_id' and product_id = '$product_id'";

$result = mysqli_query($conn, $query);
$row = mysqli_affected_rows($conn);

if ($row > 0)
{
include "shopcart.php";
}
else
{
echo "error";
}
break;
}
case 'remove';
{
$session_id = $_GET['sid'];
$customer_id = $_GET['cid'];
$product_id = $_GET['pid'];

$query = 'DELETE from cart where session_id = '$session_id' and customer_id = '$cust_id' and product_id = '$product_id'';

$result = mysqli_query ($conn, $query);
$row = mysqli_affected_rows($conn);

if ($row > 0)
{
include "shopcart.php";
}
else
{
echo "error";
}
break;
}
}
