403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/admissions3/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/admissions3/home4x.php
<?
	session_start();
	if($_SESSION['idt'] == "")
	{
		echo "Please Login!";
		exit();
	}

	if($_SESSION['Status'] != "USER")
	{
		echo "This page for User only!";
		exit();
	}	
	
	mysql_connect("localhost","root","klw3322");
	mysql_select_db("klw");
	mysql_query("SET character_set_results=tis620");//ตั้งค่าการดึงข้อมูลออกมาให้เป็น tis620
	mysql_query("SET character_set_client=tis620");//ตั้งค่าการส่งข้อมุลลงฐานข้อมูลออกมาให้ เป็น tis620
	mysql_query("SET character_set_connection=tis620");//ตั้งค่าการติดต่อฐานข้อมูลให้เป็น tis6
	
	$strSQL = "SELECT * FROM teacher WHERE idt = '".$_SESSION['idt']."'  ";
	$objQuery = mysql_query($strSQL);
	$objResult = mysql_fetch_array($objQuery);

?>
<?

require_once "connectdb.php";

$crsql="SELECT (day_at) FROM daytest  where day_id='1'";
$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
$dcrd = mysql_fetch_array($slr);
$day1=$dcrd[0];


$crsql="SELECT (day_at) FROM daytest  where day_id='2'";
$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
$dcrd = mysql_fetch_array($slr);
$day2=$dcrd[0];

$crsql="SELECT (day_at) FROM daytest  where day_id='3'";
$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
$dcrd = mysql_fetch_array($slr);
$day3=$dcrd[0];


$crsql="SELECT (day_at) FROM daytest  where day_id='4'";
$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
$dcrd = mysql_fetch_array($slr);
$day4=$dcrd[0];


$crsql="SELECT (day_at) FROM daytest  where day_id='5'";
$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
$dcrd = mysql_fetch_array($slr);
$day5=$dcrd[0];

?>
<html>
<head>
<title>-:- ADMIN -:-</title>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="style.css" rel="stylesheet" type="text/css">
</head>

<body bgcolor="#FFFFFF"  onLoad="javascript:document.getElementById('useradmin').focus();">
<table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
  <tr> 
    <td bgcolor="#003399">
<div align="center"><font color="#FFFFFF" size="+1"><strong>สถิติรับสมัคร ม.4 รอบสอง <font color="#FFFF00">โรงเรียนกันทรลักษ์วิทยา</font></strong></font></div></td>
  </tr>
  <tr> 
    <td bgcolor="#FFFFFF"><table width="100%" border="0" cellspacing="1" cellpadding="1">
        
        
              </table>



  
<tr> 

              <table width="100%" border="0" align="center" cellpadding="1" cellspacing="1">
                <tr> 
                  <td><table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
                      <tr class="jobscss"> 
                        <td bgcolor="#FFFFFF"> <table width="100%" border="0" cellspacing="0" cellpadding="0">
                            <tr> 
                              <td bgcolor="#000000"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr bgcolor="#006666"> 
                                    <td width="44" height="24"> <div align="center"><font color="#FFFFFF" size="2">#</font></div></td>
                                   
                                    <td width="210"><div align="center"><font color="#FFFFFF" size="2">ประเภทที่เปิดรับสมัคร</font></div></td>
                                    <td width="90"><div align="center"><font color="#FFFFFF" size="2">วันที่ <? echo "$day1"; ?></font></div></td>
                                    <td width="90"> <div align="center"><font color="#FFFFFF" size="2">วันที่ <? echo "$day2"; ?></font></div></td>
									 <td width="90"> <div align="center"><font color="#FFFFFF" size="2">วันที่ <? echo "$day3"; ?></font></div></td>

									  
									  <td width="90"> <div align="center"><font color="#FFFFFF" size="2">วันที่ <? echo "$day4"; ?></font></div></td>

									  <td width="90"> <div align="center"><font color="#FFFFFF" size="2">วันที่ <? echo "$day5"; ?></font></div></td>

									 <td width="90"> <div align="center"><font color="#FFFFFF" size="2">รวม</font></div></td>
									 <td width="90"> <div align="center"><font color="#FFFFFF" size="2">ตรวจสอบ</font></div></td>

									
									 
                                  </tr>
                                </table></td>
                            </tr>
                          </table>






                          <?
$page = $_GET['page'];
$num = 1;
$select_type="select * from member4x  order by id asc";
$query_select=mysql_query($select_type);
$num_rows=mysql_num_rows($query_select);

if($num_rows<1){
echo "<br><br><center><font color=#666666 face=tahoma size=2>ยังไม่มีการเพิ่มข้อมูลค่ะ</font></center>";
}else{
		$select="select * from member4x  order by id asc";
		$q_ry = mysql_query($select);
	 	$num_rows=mysql_num_rows($q_ry);
  		$pagesize=45;
		$rt=$num_rows%$pagesize;
		if($rt!=0)
			{
				$totalpage=floor($num_rows/$pagesize)+1;
			}
		else
			{
				$totalpage=floor($num_rows/$pagesize);
				$toppic_id=1;
			}
		if(empty($page))
			{
				$page=1;
			}
		mysql_free_result($q_ry);
		$goto=($page-1)*$pagesize;
$sql_select_mem="Select * From tpyad4 where idtpy_id=6 order by idtpy asc limit $goto,$pagesize";
		$fect=mysql_query($sql_select_mem);
		if(!$fect)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount=0;
	while($rows=mysql_fetch_array($fect))
	{
$idmember =$rows['idtpy'];
$idstudent  =$rows['idtpy_id'];
$name =$rows['idtpy_name'];
$surname  =$rows['surname'];
$sex  =$rows['sex'];
$pin  =$rows['pin'];
$room  =$rows['room'];
$idtest =$rows['idtest'];

	?>
<?




	$crsql="SELECT count(idstudent) FROM member4x   where idstudent='$idstudent' ";
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
	$numtotal=$dcrd[0];


	$crsql="SELECT count(idstudent) FROM member4x   where idstudent='$idstudent' and signup2='$day1' and idtest>0";
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
	$nums1=$dcrd[0];


	$crsql="SELECT count(idstudent) FROM member4x   where idstudent='$idstudent' and signup2='$day2' and idtest>0";
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
	$nums2=$dcrd[0];


	$crsql="SELECT count(idstudent) FROM member4x   where idstudent='$idstudent' and signup2='$day3' and idtest>0";
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
	$nums3=$dcrd[0];



	$crsql="SELECT count(idstudent) FROM member4x   where idstudent='$idstudent' and signup2='$day4' and idtest>0";
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
	$nums4=$dcrd[0];


	$crsql="SELECT count(idstudent) FROM member4x   where idstudent='$idstudent' and signup2='$day5' and idtest>0";
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
	$nums5=$dcrd[0];

//////////////


?>           
              
                          <table width="100%" border="0" cellspacing="0" cellpadding="0">
                            <tr> 
                              <td bgcolor="#000000"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr bgcolor="#FFFFFF"> 
                                    <td width="44" height="24"> <div align="center"><font color="#990000" size="2"><? echo "$num"; ?></font></div></td>
                                    <td width="210"> <font color="#003366" size="2"><a href=search4x.php?id=<? echo "$idstudent"; ?>   target="_blank"><? echo "$name"; ?></a></font><br> 
                                      <div align="left"></div></td>
                                    <td width="90"><font color="#003366" size="2"><? echo "$nums1"; ?></font>
                

</td>
         
									<td width="90"><font color="#003366" size="2"><? echo "$nums2"; ?>
									
									
									

</td>
									
									
									</font></td>
                                    <td width="90"><div align="center"><? echo "$nums3"; ?>
									
	              

</td>								
									
									
									
									
									</td>
									 <td width="90"><div align="center"><? echo "$nums4"; ?>
									 
									 
				          

</td>					 
									 
									 
									 
									 </td>
									 <td width="90"><div align="center"><? echo "$nums5"; ?></td>
									  <td width="90"><div align="center"><? echo "$numtotal"; ?></td>
									  <td width="90"><div align="center"><a href=editstatus.php?id=<? echo "$idmember"; ?>  target="_blank"><? echo "$numtotal"; ?></a></td>
                                  </tr>
                                </table></td>
                            </tr>
                          </table>
                          <?
$num = $num+1;
}
echo "<div align=center><br>
                    <font color=#999999 size=2><span class=cc> ";
	for($i=1;$i<$page;$i++)
	{
	echo"<a href='$PHP_SELF?page=$i'><font size=2 color='#000000' class=textborder>$i</font></a> ";
	}
	echo"<font size=2 color=#000000><b><font size=2 color='#FF00000' class=textborderok>$page</font></b></font> ";
	for($i=$page+1;$i<=$totalpage;$i++)
	{
	echo"<a href='$PHP_SELF?page=$i'><font size=2 color='#000000' class=textborder>$i</font></a> ";
	}
echo "</span></font> </div>";
}
?>
                        </td>
                      </tr>
                      <tr class="jobscss"> 
                        <td height="19">&nbsp;</td>
                      </tr>
                      <tr> 
                        <td><div align="center"></div></td>
                      </tr>
                    </table></td>
                </tr>
              </table>
            </div></td>
        </tr>
        <tr>
          <td>&nbsp;</td>
        </tr>
      </table></td>
  </tr>



<br>
<br>
</center>
</body>

</html>

Youez - 2016 - github.com/yon3zu
LinuXploit