403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/gpa/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/gpa//subsara.php
<?

require_once "config/connectdbsgs.php";
require_once "head.php";


$signup = (date("Y")+543).date("/n/j");
$th=mktime(gmdate("H")+7,gmdate("i"),gmdate("m"),gmdate("d"),gmdate("Y"));
$format="H:i a";
$str=date($format,$th);
?>
<html>
<head>
<title>-:- ADMIN -:-</title>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="style.css" rel="stylesheet" type="text/css">
</head>

<body bgcolor="#FFFFFF"  onLoad="javascript:document.getElementById('useradmin').focus();">
<table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
  
  <tr> 
    <td bgcolor="#FFFFFF"><table width="100%" border="0" cellspacing="1" cellpadding="1">
        <tr> 
          
        </tr>
        <tr> 
          <td><div align="left"><font color="#666666" size="2"><a href="index.php">หน้าหลักระบบ</a> 
           </div></td>
        </tr>
        <tr> 
          
                <tr> 


                  
                </tr>
              </table>
              <table width="100%" border="0" align="center" cellpadding="1" cellspacing="1">
                <tr> สถิติผลการเรียนประจำปีการศึกษา <? echo $_GET[id]; ?> ภาคเรียนที่ <? echo $_GET[term]; ?> ระดับชั้น ม.<? echo $_GET[cllass]; ?> 
                  <td><table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
                      <tr class="jobscss"> 
                        <td bgcolor="#FFFFFF"> <table width="100%" border="0" cellspacing="0" cellpadding="0">
                            <tr> 
                              <td bgcolor="#000000"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr bgcolor="#006666"> 
                                    <td width="50" height="24"> <div align="center"><font color="#FFFFFF" size="2">#</font></div></td>
                                    <td width="100"> <div align="center"><font color="#FFFFFF" size="2">รหัสวิชา</font></div></td>
                                    <td width="50"><div align="center"><font color="#FFFFFF" size="2">4</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">3.5</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">3</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">2.5</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">2</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">1.5</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">1</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">0</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">ร</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">มส</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">รวม</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">gpax</font></div></td>
									
									
									
                                  </tr>
                                </table></td>
                            </tr>
                          </table>
                          <?
$page = $_GET['page'];
$num = 1;
$select_type="select * from stat";
$query_select=mysql_query($select_type);
$num_rows=mysql_num_rows($query_select);
if($num_rows<1){
echo "<br><br><center><font color=#666666 face=tahoma size=2>ไม่พบข้อมูลทีี่ท่านค้นหาค่ะ</font></center>";
}else{
		$select="select * from stat";
		$q_ry = mysql_query($select);
	 	$num_rows=mysql_num_rows($q_ry);
  		$pagesize=900;
		$rt=$num_rows%$pagesize;
		if($rt!=0)
			{
				$totalpage=floor($num_rows/$pagesize)+1;
			}
		else
			{
				$totalpage=floor($num_rows/$pagesize);
				$toppic_id=1;
			}
		if(empty($page))
			{
				$page=1;
			}
		mysql_free_result($q_ry);
		$goto=($page-1)*$pagesize;
$sql_select_mem="Select * from stat where s_year='$_GET[id]' and s_term='$_GET[term]' and s_class='$_GET[cllass]'
 and s_sara<9 group by s_code order by s_sara asc limit $goto,$pagesize";
		$fect=mysql_query($sql_select_mem);
		if(!$fect)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount=0;
	while($rows=mysql_fetch_array($fect))
	{
$idmember =$rows['s_klw'];
$Username  =$rows['s_year'];
$s_term =$rows['s_term'];
$s_class =$rows['s_class'];
$s_code =$rows['s_code'];














	?>


								<?
									$crsql="SELECT sum(s_g4) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code' and s_sara<9";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade4=$dcrd[0];


									$crsql="SELECT sum(s_g35) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade35=$dcrd[0];


									$crsql="SELECT sum(s_g3) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade3=$dcrd[0];

                                    
									$crsql="SELECT sum(s_g25) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade25=$dcrd[0];




									$crsql="SELECT sum(s_g2) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade2=$dcrd[0];



									$crsql="SELECT sum(s_g15) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade15=$dcrd[0];



									$crsql="SELECT sum(s_g1) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade1=$dcrd[0];


									$crsql="SELECT sum(s_g0) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$grade0=$dcrd[0];


									$crsql="SELECT sum(s_gi) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$gradei=$dcrd[0];



									$crsql="SELECT sum(s_gms) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_code='$s_code'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$gradems=$dcrd[0];




                     $xtotal=$grade4+$grade35+$grade3+$grade25+$grade2+$grade15+$grade1+$grade0+$gradei+$gradems;
					 $gpax=(($grade4*4+$grade35*3.5+$grade3*3+$grade25*2.5+$grade2*2+$grade15*1.5+$grade1*1)/$xtotal);


									

									?>


                          <table width="100%" border="0" cellspacing="0" cellpadding="0">
                            <tr> 
                              <td bgcolor="#000000"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr bgcolor="#FFFFFF"> 
                                    <td width="50" height="24"> <div align="center"><font color="#990000" size="2"><? echo "$num"; ?></font></div></td>
                                    <td width="100"><font color="#003366" size="2"><a href=subsaracode.php?id=<? echo "$Username"; ?>&&term=<? echo "$s_term"; ?>&&cllass=<? echo "$s_class"; ?>&&cod=<? echo "$s_code"; ?>><? echo "$s_code"; ?></a></font><br> <div align="left"></div></td>
                                     
									 <td width="50"><font color="#003366" size="2"><? echo "$grade4"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$grade35"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$grade3"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$grade25"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$grade2"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$grade15"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$grade1"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$grade0"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$gradei"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$gradems"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$xtotal"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo number_format($gpax,2); ?></font></td>
									
							
									
									
									
									
									
                                  </tr>
                                </table></td>

								
                            </tr>

							
                          </table>

                          <?
$num = $num+1;
}
echo "";
	for($i=1;$i<$page;$i++)
	{
	echo"";
	}
	echo"";
	for($i=$page+1;$i<=$totalpage;$i++)
	{
	echo"";
	}
echo "";
}
?>
                        </td>
                      </tr>
                      <tr class="jobscss"> 
                        <td height="19">&nbsp;</td>
                      </tr>
                      <tr> 
                        <td><div align="center"></div></td>
                      </tr>
                    </table></td>
                </tr>
              </table>
			  
              <table width="100%" border="0" align="center" cellpadding="1" cellspacing="1">
                <tr> 
                  <td><table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
                      <tr class="jobscss"> 
                        <td bgcolor="#FFFFFF"> <table width="100%" border="0" cellspacing="0" cellpadding="0">
                            <tr> 
                              <td bgcolor="#000000"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr bgcolor="#006666"> 
                                    <td width="50" height="24"> <div align="center"><font color="#FFFFFF" size="2">#</font></div></td>
                                    <td width="100"> <div align="center"><font color="#FFFFFF" size="2">กลุ่มสาระ</font></div></td>
                                    <td width="50"><div align="center"><font color="#FFFFFF" size="2">4</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">3.5</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">3</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">2.5</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">2</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">1.5</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">1</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">0</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">ร</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">มส</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">รวม</font></div></td>
									<td width="50"><div align="center"><font color="#FFFFFF" size="2">gpax</font></div></td>

									<?
$page = $_GET['page'];
$num = 1;
$select_type="select * from stat";
$query_select=mysql_query($select_type);
$num_rows=mysql_num_rows($query_select);
if($num_rows<1){
echo "<br><br><center><font color=#666666 face=tahoma size=2>ไม่พบข้อมูลทีี่ท่านค้นหาค่ะ</font></center>";
}else{
		$select="select * from stat";
		$q_ry = mysql_query($select);
	 	$num_rows=mysql_num_rows($q_ry);
  		$pagesize=900;
		$rt=$num_rows%$pagesize;
		if($rt!=0)
			{
				$totalpage=floor($num_rows/$pagesize)+1;
			}
		else
			{
				$totalpage=floor($num_rows/$pagesize);
				$toppic_id=1;
			}
		if(empty($page))
			{
				$page=1;
			}
		mysql_free_result($q_ry);
		$goto=($page-1)*$pagesize;
$sql_select_mem="Select * from stat where s_year='$_GET[id]' and s_term='$_GET[term]' group by s_sara order by s_sara asc limit $goto,$pagesize";
		$fect=mysql_query($sql_select_mem);
		if(!$fect)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount=0;
	while($rows=mysql_fetch_array($fect))
	{
$idmember =$rows['s_klw'];
$Username  =$rows['s_year'];
$s_term =$rows['s_term'];
$s_class =$rows['s_class'];
$s_sara =$rows['s_sara'];














	?>


								<?
									$crsql="SELECT sum(s_g4) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' 
									and s_sara='$s_sara' and s_sara<9";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara4=$dcrd[0];


									$crsql="SELECT sum(s_g35) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara35=$dcrd[0];


									$crsql="SELECT sum(s_g3) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara3=$dcrd[0];

                                    
									$crsql="SELECT sum(s_g25) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara25=$dcrd[0];




									$crsql="SELECT sum(s_g2) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]'  and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara2=$dcrd[0];



									$crsql="SELECT sum(s_g15) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara15=$dcrd[0];



									$crsql="SELECT sum(s_g1) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara1=$dcrd[0];


									$crsql="SELECT sum(s_g0) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sara0=$dcrd[0];


									$crsql="SELECT sum(s_gi) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sarai=$dcrd[0];



									$crsql="SELECT sum(s_gms) FROM `stat`
									WHERE s_year='$Username' and s_term = '$s_term' and s_class='$_GET[cllass]' and s_sara='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$sarams=$dcrd[0];



									$crsql="SELECT sara_name FROM `sara`
									WHERE sara_id='$s_sara'";
									$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
									$dcrd = mysql_fetch_array($slr);
									$namesara=$dcrd[0];



                                       



                     $xtotalsara=$sara4+$sara35+$sara3+$sara25+$sara2+$sara15+$sara1+$sara0+$sarai+$sarams;
					 $gpaxsara=(($sara4*4+$sara35*3.5+$sara3*3+$sara25*2.5+$sara2*2+$sara15*1.5+$sara1*1)/$xtotalsara);


									

									?>


                          <table width="100%" border="0" cellspacing="0" cellpadding="0">
                            <tr> 
                              <td bgcolor="#000000"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <tr bgcolor="#FFFFFF"> 
                                    <td width="50" height="24"> <div align="center"><font color="#990000" size="2"><? echo "$num"; ?></font></div></td>
                                    <td width="100"><font color="#003366" size="2"><a href=subsara2.php?id=<? echo "$Username"; ?>&&term=<? echo "$s_term"; ?>&&sara=<? echo "$s_sara"; ?>><? echo "$s_sara"; ?>&nbsp;&nbsp;<? echo "$namesara"; ?></a></font><br> <div align="left"></div></td>
                                     
									 <td width="50"><font color="#003366" size="2"><? echo "$sara4"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sara35"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sara3"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sara25"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sara2"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sara15"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sara1"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sara0"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sarai"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$sarams"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo "$xtotalsara"; ?></font></td>
									<td width="50"><font color="#003366" size="2"><? echo number_format($gpaxsara,2); ?></font></td>
									
							
									
									
									
									
									
                                  </tr>
                                </table></td>

								
                            </tr>

							
                          </table>

                          <?
$num = $num+1;
}
echo "";
	for($i=1;$i<$page;$i++)
	{
	echo"";
	}
	echo"";
	for($i=$page+1;$i<=$totalpage;$i++)
	{
	echo"";
	}
echo "";
}
?>
            </div></td>
        </tr>
        <tr>
          <td>&nbsp;</td>
        </tr>
      </table></td>
  </tr>
  <tr>
    <td><div align="center"><? echo "<font size=2 color=#ffffff>$footerweb</font>"; ?></div></td>
  </tr>
</table>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit