403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/admissions3/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/admissions3/edit.php
<?
require_once "connectdb.php";
require_once "tdate.php";
?>
<html>
<head>
<title>-:- ADMIN -:-</title>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="style.css" rel="stylesheet" type="text/css">
</head>

<body bgcolor="#5A697E"  onLoad="javascript:document.getElementById('useradmin').focus();">
<table width="75%" border="0" align="center" cellpadding="0" cellspacing="0">
  <tr> 
    <td bgcolor="#003399">
<div align="center"><font color="#FFFFFF" size="+1"><strong>ฝ่ายบริหารงานวิชาการ<font color="#FFFF00">โรงเรียนกันทรลักษ์วิทยา</font></strong></font></div></td>
  </tr>
  <tr> 
    <td bgcolor="#FFFFFF"><table width="100%" border="0" cellspacing="1" cellpadding="1">
        <tr> 
          <td><div align="right"><font color="#ff0000" size="2"><font color="#333333">ยินดีต้อนรับ 
              :</font> <font color="#ff0000"> <?=$objResult["teachcode"];?> <?=$objResult["name"];?> <?=$objResult["lastname"];?>
              <font color="#666666">เข้าสู่ระบบค่ะ </font></font></font></div></td>
        </tr>
        <tr> 
          <td><div align="right"><font color="#666666" size="2"><a href="home.php">หน้าหลักระบบ</a> 
              | <a href="logout.php">ออกจากระบบ</a></font></div></td>
        </tr>
        <tr> 
          <td><div align="center">
              <table width="773" border="0" align="center" cellpadding="0" cellspacing="0">
               
              </table>
              <table width="76%" border="0" align="center" cellpadding="1" cellspacing="1">
                <tr> 
                  <td>&nbsp;</td>
                </tr>
                <tr>
                  <td><div align="center"> 
                      <script language="JavaScript">
function checkpost()
{
      var v1 = document.webForm.name.value;
var v2 = document.webForm.surname.value;
var v3 = document.webForm.room.value;

if( v1.length==0)
           {
           alert("กรุณาใส่ชื่อคุณด้วยค่ะ");
           document.webForm.name.focus();           
           return false;
           }
else  if( v2.length==0)
           {
           alert("กรุณาใส่ นามสกุล คุณด้วยค่ะ");
           document.webForm.surname.focus();           
           return false;
           }
else  if( v3.length==99)
           {
           alert("กรุณาใส่ ห้อง คุณด้วยค่ะ");
           document.webForm.room.focus();           
           return false;
           }
         else
           return true;
}
</script>
                      <font size="+1"><strong><font color="#003366" size="2">
                      <?php
						  $sql_1="select * from member where id = '$_GET[id]'";
						  $db_query=mysql_db_query($db,$sql_1);
						  $result1=mysql_fetch_array($db_query);
						  $idmember  =$result1['id'];
						  $name  =$result1['name'];
						   $surname  =$result1['surname'];
							$email  =$result1['email'];
							$distric  =$result1['distric'];
							$idtest  =$result1['idtest'];
							$room  =$result1['room'];
							$room2  =$result1['room2'];
							$schoolout  =$result1['schoolout'];
							$pin  =$result1['pin'];
							$sex  =$result1['sex'];
							$statuss  =$result1['statuss'];
							$prefix  =$result1['prefix'];
							$gpa  =$result1['gpa'];
							$gpam  =$result1['gpam'];
							$gpasi  =$result1['gpasi'];
							$gpae =$result1['gpae'];
							$idstudent =$result1['idstudent'];
							$namesipet=$result1['pan'];

							$crsql="SELECT (tpy_report) FROM tpyroom where 	tpy_id='$namesipet' ";
						$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
						$dcrd = mysql_fetch_array($slr);
						$nameset=$dcrd[0];

						$crsql="SELECT (idtpy_name) FROM tpyad where idtpy_id='$idstudent' ";
						    $slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
						    $dcrd = mysql_fetch_array($slr);
						    $namestu=$dcrd[0];


							

						?>



						<?
	
	$strSQL = "SELECT * FROM uploadsimg11 where userpic='$_GET[id]'";
	$objQuery = mysql_query($strSQL) or die ("Error Query [".$strSQL."]");
?>

<?
	while($objResult = mysql_fetch_array($objQuery))
	{
		$namepic=$objResult["image_name"];
		$idup=$objResult["upload_id"];
?>
<?
	}
?>

<?
	
	$strSQL = "SELECT * FROM uploadsimg12 where userpic='$_GET[id]'";
	$objQuery = mysql_query($strSQL) or die ("Error Query [".$strSQL."]");
?>

<?
	while($objResult = mysql_fetch_array($objQuery))
	{
		$namepic2=$objResult["image_name"];
		$idup2=$objResult["upload_id"];
?>
<?
	}
?>


<?
	
	$strSQL = "SELECT * FROM uploadsimg13 where userpic='$_GET[id]'";
	$objQuery = mysql_query($strSQL) or die ("Error Query [".$strSQL."]");
?>

<?
	while($objResult = mysql_fetch_array($objQuery))
	{
		$namepic3=$objResult["image_name"];
		$idup3=$objResult["upload_id"];
?>
<?
	}
?>

<table>

<td width="211"><font color="#003366" size="2">
									
									<center>
<style type="text/css">
img.resize  {
	width: 200px;
	height: 200px;
	border: 0;
}
img:hover.resize  {
	width: 800px;
	height: 500px;
	border: 0;
}
</style>
<a href="up/indexedit.php?id=<? echo $idmember;?>">
<img src="login/up/images/<? echo $namepic;?>" class="resize" />
									
									
									
									
									
									</font></td>
                                    <td width="159"><font color="#003366" size="2">
									
									<center>
<a href="up/indexedit.php?id=<? echo $idmember;?>">
<img src="login/up/images2/<? echo $namepic2;?>" class="resize" />
									
									
									</font></td>
									<td width="159"><font color="#003366" size="2">
									
						<a href="up/indexedit.php?id=<? echo $idmember;?>">
<img src="login/up/images3/<? echo $namepic3;?>" class="resize" />			
									
									
									</font></td>


</table>


                      </font></strong></font> </div>
                    <table width="100%" border="0" align="center" cellpadding="1" cellspacing="1">
                      <form method="post" action="editsave.php"  name="webForm" onSubmit="return checkpost()">
                        <tr> 
                          <td><div align="right"><font color="#333333" size="2">คำนำหน้า
                              :</font></div></td>
                          <td><font size="3">
                            <input name=prefix id=prefix type=text class="input" size=35 value='<? echo $prefix; ?>'>
                            </font></td>
                        </tr>
						<tr> 

                          <td width="140"><div align="right"><font color="#333333" size="2">เลือกประเภท
                              </font></div></td>
                        
                          <td align="left">
	<select name="idstudent">
			<option value="<? echo "$idstudent"; ?>"><-<? echo "$idstudent"; ?>-<? echo $namestu; ?>-></option>
			<?php
			//$strSQL = "SELECT * FROM tpyad where idtpy!=3";
			$strSQL = "SELECT * FROM tpyad  where idtpy_status='1' order by idtpy asc";
			$objQuery = mysql_query($strSQL);
			while($objResuut = mysql_fetch_array($objQuery))
			{
				
			?>
			<option value="<?php echo $objResuut["idtpy"];?>"><?php echo $objResuut["idtpy_name"]." ".$objResuut["idtpy"];?></option>
			<?php
			
			}
			?>
		  </select>
		</td>
						</tr>


<tr> 
                          <td width="140"><div align="right"><font color="red" size="+2">แผนการเรียน
                              :</font></div></td>
                          <td align="left">
	<select name="pan">
	       <option value="<? echo $namesipet; ?>"><? echo $namesipet; ?>&nbsp;&nbsp;<? echo $nameset; ?></option>
			<?php
			$strSQL = "SELECT * FROM tpyroom where tpy_open='5'";
			$objQuery = mysql_query($strSQL);
			while($objResuut = mysql_fetch_array($objQuery))
			{
				
			?>
			<option value="<?php echo $objResuut["tpy_id"];?>"><?php echo $objResuut["tpy_report"];?></option>
			<?php
			
			}
			?>
		  </select>
		</td>

             </tr>




						<tr> 
                          <td width="140"><div align="right"><font color="#333333" size="2">ชื่อ 
                              :</font></div></td>
                          <td width="355"><font size="3"> 
                            <input name=name id=name type=text class="input" size=35 value='<? echo $name; ?>'>
                            <input type="hidden" name="idmember" value=<? echo "$idmember"; ?>>
                            </font></td>
                             :</font></div></td>
                          <td><font size="3">
                            <input name=surname id=surname type=text class="input" size=35 value='<? echo $surname; ?>'>
                            </font></td>
						</tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">เลขประชาชน
                              :</font></div></td>
                          <td><font size="3">
                            <input name=pin id=pin type=text class="input" size=35 value='<? echo $pin; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">เลขที่่นั่งสอบ 
                              :</font></div></td>
                          <td><font size="3">
                            <input name=idtest id=idtest type=text class="input" size=35 value='<? echo $idtest; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">ห้องสอบ 
                              :</font></div></td>
                          <td><font size="3">
                            <input name=room id=room type=text class="input" size=35 value='<? echo $room; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">ห้อง 
                              :</font></div></td>
                          <td><font size="3">
                            <input name=room2 id=room2 type=text class="input" size=35 value='<? echo $room2; ?>'>
                            </font></td>
                        </tr>
                        <tr> 
                          <td><div align="right"><font color="#333333" size="2">โรงเรียนที่จบ 
                              :</font></div></td>
                          <td><font size="3">
                            <input name=schoolout id=schoolout type=text class="input" size=35 value='<? echo $schoolout; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">gpa 
                              :</font></div></td>
                          <td><font size="3">
                            <input name=gpa id=gpa type=text class="input" size=35 value='<? echo $gpa; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">gpa คณิต 
                              :</font></div></td>
                          <td><font size="3">
                            <input name=gpam id=gpam type=text class="input" size=35 value='<? echo $gpam; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">gpa วิทย์ 
                              :</font></div></td>
                          <td><font size="3">
                            <input name=gpasi id=gpasi type=text class="input" size=35 value='<? echo $gpasi; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">gpa ภาษา
                              :</font></div></td>
                          <td><font size="3">
                            <input name=gpae id=gpae type=text class="input" size=35 value='<? echo $gpae; ?>'>
                            </font></td>
                        </tr>
						
						<tr> 
                          <td width="300"><div align="right"><font color="#333333" size="2">เพศ 
                              :</font></div></td>
                          <td><font size="3">
                            <input name="sex" type="radio" id="radio1" value="1" <? if($sex=="1"){echo checked;}?> />
  <label for="radio1"> ชาย</label>
  <input name="sex" type="radio" id="radio2" value="2" <? if($sex=="2"){echo checked;}?> />
  <label for="radio2">หญิง</label>
 
  
                            </font></td>
                        </tr>
						<tr> 
                          <td width="300"><div align="right"><font color="#333333" size="2">สถานะ 
                              :</font></div></td>
                          <td><font size="3">
                            <input name="statuss" type="radio" id="radio1" value="1" <? if($statuss=="1"){echo checked;}?> />
  <label for="radio1">ยืนยัน</label>
  <input name="statuss" type="radio" id="radio1" value="" <? if($statuss==""){echo checked;}?> />
  <label for="radio1">ยกเลิกยืนยัน</label>
  
 
  
                            </font></td>
                        </tr>
						
                        <tr> 
                          <td><div align="right"><font size="2">จังหวัด</font></div></td>
                          <td><font size="3">
                            <input name=distric id=distric type=text class="input" size=35 value='<? echo $distric; ?>'>
                            </font></td>
                        </tr>
                        <tr> 
                          <td>&nbsp;</td>
                          <td><font size="3">
                            <input name="submit" type="submit" class="submit" value="แก้ไขรายการ!">
                            </font></td>
                        </tr>
                      </form>
                    </table></td>
                </tr>
              </table>
            </div></td>
        </tr>
        <tr>
          <td>&nbsp;</td>
        </tr>
      </table></td>

	  
  </tr>
  <tr>
    <td><div align="center"><? echo "<font size=2 color=#ffffff>$footerweb</font>"; ?></div></td>
  </tr>
</table>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit