403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/gpa/klwsc/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/gpa/klwsc/indexup.php
<?
require_once "../config/confiteacher.inc.php";
require_once "../config/connectdb.php";

require_once "head.php";
$ttt=$objResult["teachcode"];

	$crsql="SELECT (years) FROM `config`" ;
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
    $years=$dcrd[0];

	$crsql="SELECT (termx) FROM `config`" ;
	$slr=mysql_query($crsql) or die(mysql_error()."<br>".$crsql);
	$dcrd = mysql_fetch_array($slr);
    $termxs=$dcrd[0];
?>
<?php
//index.php
$connect = mysqli_connect("localhost", "root", "klw3322", "klw");
mysqli_query($connect, "SET NAMES UTF8");
$message = '';

if(isset($_POST["upload"]))
{
 if($_FILES['product_file']['name'])
 {
  $filename = explode(".", $_FILES['product_file']['name']);
  if(end($filename) == "csv")
  {
   $handle = fopen($_FILES['product_file']['tmp_name'], "r");
   while($data = fgetcsv($handle))
   {
    $product_id = mysqli_real_escape_string($connect, $data[0]);
	$ids = mysqli_real_escape_string($connect, $data[1]);
    $product_category = mysqli_real_escape_string($connect, $data[7]);  
    $product_name = mysqli_real_escape_string($connect, $data[8]);
    $product_price = mysqli_real_escape_string($connect, $data[9]);
	$k2 = mysqli_real_escape_string($connect, $data[10]);
	$p2 = mysqli_real_escape_string($connect, $data[11]);
	$a2= mysqli_real_escape_string($connect, $data[12]);
	$k3 = mysqli_real_escape_string($connect, $data[13]);
	$p3 = mysqli_real_escape_string($connect, $data[14]);
	$a3= mysqli_real_escape_string($connect, $data[15]);
	$k4 = mysqli_real_escape_string($connect, $data[16]);
	$p4 = mysqli_real_escape_string($connect, $data[17]);
	$a4= mysqli_real_escape_string($connect, $data[18]);
	$k5 = mysqli_real_escape_string($connect, $data[19]);
	$p5 = mysqli_real_escape_string($connect, $data[20]);
	$a5= mysqli_real_escape_string($connect, $data[21]);
	$k6 = mysqli_real_escape_string($connect, $data[22]);
	$p6 = mysqli_real_escape_string($connect, $data[23]);
	$a6= mysqli_real_escape_string($connect, $data[24]);
	$midterm = mysqli_real_escape_string($connect, $data[32]);
	$final= mysqli_real_escape_string($connect, $data[34]);
	
    $query = "
     UPDATE transcripts 
     SET 
	 mid = '$midterm', 
	 final1 = '$final', 
	 scor1k = '$product_category', 
	 scor1p = '$product_name', 
	 scor1a = '$product_price', 
	 scor2k = '$k2', 
	 scor2p = '$p2', 
	 scor2a = '$a2', 
	 scor3k = '$k3', 
	 scor3p = '$p3', 
	 scor3a = '$a3', 
	 scor4k = '$k4', 
	 scor4p = '$p4', 
	 scor4a = '$a4', 
	 scor5k = '$k5', 
	 scor5p = '$p5', 
	 scor5a = '$a5', 
	 scor6k = '$k6', 
     scor6p = '$p6', 
     scor6a = '$a6' 
     WHERE id='$product_id' and IDstudent = '$ids'
    ";
    mysqli_query($connect, $query);
   }
   echo "OK";
	echo "<script>window.alert(\"OK\");history.go (-1);</script>";
  }
  else
  {
   $message = '<label class="text-danger">Please Select CSV File only</label>';
  }
 }
 else
 {
  $message = '<label class="text-danger">Please Select File</label>';
 }
}

if(isset($_GET["updation"]))
{
 $message = '<label class="text-success">Product Updation Done</label>';
}

$query = "SELECT * FROM transcripts join klw on klw.Username=transcripts.IDstudent where xyy='$years' and xterm='$termxs' and teach='$ttt' and room='$_GET[room]' and code LIKE '$_GET[id]' order by ordinal+1 asc";
$result = mysqli_query($connect, $query);
?>
<!DOCTYPE html>
<html>
 <head>
  <title>Update gpa</title>
  <script src="https://ajax.googleapis.com/ajax/libs/jquery/3.1.0/jquery.min.js"></script>
  <link rel="stylesheet" href="https://maxcdn.bootstrapcdn.com/bootstrap/3.3.6/css/bootstrap.min.css" />
  <script src="https://maxcdn.bootstrapcdn.com/bootstrap/3.3.7/js/bootstrap.min.js"></script>
  <meta charset="utf8">
 </head>
 <body>
  <br />
  <div class="container">
   <h2 align="center">Update GPA</a></h2>
   <br />
   <form method="post" enctype='multipart/form-data'>
    <p><label>Please Select File (Only CSV Formate)</label>
    <input type="file" name="product_file" /></p>
    <br />
    <input type="submit" name="upload" class="btn btn-info" value="Upload" />
   </form>
   <br />
   <?php echo $message; ?>
   >>>><a href="../data/sentgpa.php">back</a>
   <br />
   <div class="table-responsive">
    <table class="table table-bordered table-striped">
     <tr>
		<th>x</th>
      <th>code</th>
      <th>Name</th>
      <th>1k</th>
	  <th>1p</th>
	  <th>1a</th>
	  <th>2k</th>
	  <th>2p</th>
	  <th>2a</th>
	  <th>3k</th>
	  <th>3p</th>
	  <th>3a</th>
	  <th>4k</th>
	  <th>4p</th>
	  <th>4a</th>
	  <th>5k</th>
	  <th>5p</th>
	  <th>5a</th>
	  <th>6k</th>
	  <th>6p</th>
	  <th>6a</th>
	  <th>mid</th>
	  <th>Fi</th>
	  <th>total</th>

     </tr>
     <?php
	 $i=1;
     while($row = mysqli_fetch_array($result))
     {
	  $product=$row["code"];
	  $student=$row["IDstudent"];
	  $Name=$row["Name"];
	  $surname=$row["surname"];
	  $xLevel=$row["cllass"];
	  $room=$row["room"];
	  $k1=$row["scor1k"];
	  $p1=$row["scor1p"];
	  $a1=$row["scor1a"];
	  $k2=$row["scor2k"];
	  $p2=$row["scor2p"];
	  $a2=$row["scor2a"];
	  $k3=$row["scor3k"];
	  $p3=$row["scor3p"];
	  $a3=$row["scor3a"];
	  $k4=$row["scor4k"];
	  $p4=$row["scor4p"];
	  $a4=$row["scor4a"];
	  $k5=$row["scor5k"];
	  $p5=$row["scor5p"];
	  $a5=$row["scor5a"];
	  $k6=$row["scor6k"];
	  $p6=$row["scor6p"];
	  $a6=$row["scor6a"];
	  $mid=$row["mid"];
	  $fi=$row["final1"];
	  $sumtotal=$k1+$p1+$a1+$k2+$p2+$a2+$k3+$p3+$a3+$k4+$p4+$a4+$k5+$p5+$a5+$k6+$p5+$a6+$mid+$fi;


      echo '
      <tr>
	  <td>'.$i.'</td>
       <td><a href=uploadex.php?id='.$product.'&&room='.$room.'>'.$product.'</td>
       <td>'.$student.' '.$Name.'  '.$surname.' '.$xLevel.'/'.$room.'</td>
       <td>'.$k1.'</td>
	   <td>'.$p1.'</td>
	   <td>'.$a1.'</td>
	   <td>'.$k2.'</td>
	   <td>'.$p2.'</td>
	   <td>'.$a2.'</td>
	   <td>'.$k3.'</td>
	   <td>'.$p3.'</td>
	   <td>'.$a3.'</td>
	   <td>'.$k4.'</td>
	   <td>'.$p4.'</td>
	   <td>'.$a4.'</td>
	   <td>'.$k5.'</td>
	   <td>'.$p5.'</td>
	   <td>'.$a5.'</td>
	   <td>'.$k6.'</td>
	   <td>'.$p6.'</td>
	   <td>'.$a6.'</td>
	   <td>'.$mid.'</td>
	   <td>'.$fi.'</td>
	   <td>'.$sumtotal.'</td>
      
	  </tr>
      ';
	  $i++;
     }
     ?>
	 
    </table>
   </div>
  </div>
 </body>

Youez - 2016 - github.com/yon3zu
LinuXploit