Try this:
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<title>Search for Administrators</title>
</head>
<body bgcolor="#FF9900" text="#FFFFCC" link="#FFFFFF" vlink="#FF3300" alink="#FFFF00">
<table width="1080">
<tr>
<td width="710">
<p>Search For Administrators
<hr size="1"> <p/>
<form action="admin_loggedin_search_admin.php" method="post">
Search by :
<select name="searchby">
<option value="" SELECTED>-Select One-</option>
<option value="name" >Name</option>
<option value="state">State</option>
<option value="username">Username</option>
</select>
<input type="text" name="query" size="10" maxlength="100" >
<input type="submit" name="submit" value="submit">
<?php
$con = mysql_connect("localhost","root","");
if(!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("polling",$con);
$query1 = 'SELECT * FROM `administrator` WHERE `'.mysql_real_escape_string($_POST['searchby']).'` LIKE "%'.mysql_real_escape_string($_POST['query']).'%"';
mysql_query($query1) or die('SQL Syntax Error - query was: <u>'.$query.'</u><hr>'.mysql_error());
$found=0;
while($sri=mysql_fetch_array($result))
{
if($sri['name']!="")
{
$found++;
echo "<br /> ".$sri['name']."->".$sri['username'];
}
}
if($found!=0)
{echo "<br />Found ".$found." results!";}
/*if(!mysql_query($sri,$con))
{
die('Error: '.mysql_error());
}*/
mysql_close($con)
?>
<td width="270">
<td width="170">
<p>Search For
<hr size="1">
</p>
<a href="admin_loggedin_search_voter.php" title="Search for Voters" >Voters</a>
<p><a href="admin_loggedin_search_candidate.php" title="Search for Candidates" >Candidates</a></p>
<p><a href="admin_loggedin_search_officer.php" title="Search for Officers" >Officers</a></p>
<tr/>
</table>
</body>
</html>
Reputation Points: 410
Solved Threads: 258
Occupation: Genius
Offline 3,004 posts
since Sep 2007