prepare( "select * from students where regno = '$reg' ") ; $sq->execute() ; //if($ex) // if($sq->rowcount() > 0) { $Destination = 'uploads'; if(!isset($_FILES['ImageFile']) || !is_uploaded_file($_FILES['ImageFile']['tmp_name'])) { $msg[] = 'Please Browse and Select the picture Before Uploading' ; } // Check file size if ($_FILES['ImageFile']["size"] > 100000) { $msg[] = 'Sorry, your file is too large.' ; } else { $RandomNum = rand(0, 9999999999); $ImageName = str_replace(' ','-',strtolower($_FILES['ImageFile']['name'])); $ImageType = $_FILES['ImageFile']['type']; //"image/png", image/jpeg etc. $ImageExt = substr($ImageName, strrpos($ImageName, '.')); $ImageExt = str_replace('.','',$ImageExt); $ImageName = preg_replace("/\.[^.\s]{3,4}$/", "", $ImageName); //Create new image name (with random number added). $NewImageName = $ImageName.'-'.$RandomNum.'.'.$ImageExt; if(empty($msg)) { $sql = $DBcon->prepare("update students set avatar = '$NewImageName' where regno = '$reg'") ; $sql->execute() ; move_uploaded_file($_FILES['ImageFile']['tmp_name'], "$Destination/$NewImageName"); } /* echo '