403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/gpa/data/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/gpa/data/nameinstallacti.php
<html>
<head>
<meta http-equiv=Content-Type content="text/html; charset=tis-620">

<title>ฝ่ายบริหารงานวิชาการ</title>

</head>

<body>
<?
require_once "../head.php";
require_once "../config/confiteacher.inc.php";
require_once "../config/connectdb.php";


$year=date(" Y ")+542; 
//*** Update Condition ***//
if($_GET["Action"] == "Save")
{
	for($i=1;$i<=$_POST["hdnLine"];$i++)
	{
		$strSQL = "UPDATE transcripts SET ";
		$strSQL .="total = '".$_POST["txttotal$i"]."' ";
		$strSQL .="WHERE id = '".$_POST["hdnid$i"]."' ";
		
		$objQuery = mysql_query($strSQL);
	}
	//header("location:$_SERVER[PHP_SELF]");
	//exit();
}


$strSQL = "SELECT * FROM  transcripsactivi JOIN klw ON
 klw.Username=transcripsactivi.idstuac WHERE codeac  = '$_GET[id]'";
$objQuery = mysql_query($strSQL) or die ("Error Query [".$strSQL."]");
$i = 1;

?>

<table width="773" border="0" align="center" cellpadding="0" cellspacing="0">
                <tr> 
                  <td width="198"><a href="main.php"><font color="#FF0000" size="2">หน้าหลัก</font></a>
		
				   รหัสวิชา			  </td>
                  <td width="575"><table width="100%" border="0" cellspacing="1" cellpadding="1">

<? echo "$_GET[id]"; ?>&nbsp;&nbsp;
กลุ่มที่&nbsp;&nbsp; 
<? echo "$_GET[grupt]";?>&nbsp;&nbsp;ครู <? echo "$_GET[teachin]";?>	

</table></td>
                </tr>
              </table>
<form name="frmMain" method="post" action="gradesave.php?Action=Save">
<table  width="100%" border="0" bgcolor="#999999">
  <tr bgcolor="#FFFFFF">
    
	 <th width="10"> <div align="center">#</div></th>
    <th width="10"> <div align="center">เลขประจำตัว</div></th>
	 
	 
	 <th width="100"> <div align="center">ชื่อ-นามสกุล</div></th>
	 <th width="50"> <div align="center">ระดับชั้น</div></th>
	 <th width="50"> <div align="center">ห้อง</div></th>
	 <th width="50"> <div align="center">เลขที่</div></th>
    <th width="10"> <div align="center">คะแนน</div></th>
  </tr>
<?
$i =0;

while($objResult = mysql_fetch_array($objQuery))

{
if($bg == "#EEEEEE") { //ส่วนของการ สลับสี 
$bg = "#FFFFFF";
} else {
$bg = "#EEEEEE";
}

	$i = $i + 1;
?>
  <tr bgcolor="<?=$bg?>">
    <td><div align="center">
	<?=$objResult["id"];?>
	<?=$i?></td>
	
	</div></td>
    <td><?=$objResult["idstuac"];?></td>
	
	

	
	<td><?=$objResult["prefix"];?><?=$objResult["Name"];?> <?=$objResult["surname"];?></td>
                                        
	<td><?=$objResult["cllass"];?></td>
	<td><?=$objResult["room"];?></td>
	
	<td><?=$objResult["ordinal"];?></td>
	<td><?=$objResult["gradeac"];?></td>




  </tr>
<?
	  $i = $i;
  }
  ?>
</table>
  
</form>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit