403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/gpa/pic/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/gpa/pic/upload_gallery.php
<html>
<head>
<title>ThaiCreate.Com Tutorial</title>
</head>
<body>
<?
	$objConnect = mysql_connect("localhost","root","klw3322") or die("Error Connect to Database");
	$objDB = mysql_select_db("albumshot");

	$strSQL = "SELECT * FROM album WHERE AlbumID = '".$_GET["AlbumID"]."' ";
	$objQuery = mysql_query($strSQL) or die ("Error Query [".$strSQL."]");
	$objResult = mysql_fetch_array($objQuery);
?>
AlbumID : <?=$objResult["AlbumID"];?><br>
<img src="myfile/<?=$objResult["AlbumShot"];?>" width="100" height="100"><br>
<?=$objResult["AlbumName"];?><br><br>
<table width="481" border="1">
<tr>
<th width="136"> <div align="center">Gallery Shot </div></th>
<th width="162"> <div align="center">Gallery Name</div></th>
<th width="83"> <div align="center">Edit</div></th>
<th width="72"> <div align="center">Delete</div></th>
</tr>
<?
	$strSQL2 = "SELECT * FROM gallery WHERE AlbumID = '".$_GET["AlbumID"]."' ORDER BY GalleryID ASC ";
	$objQuery2 = mysql_query($strSQL2) or die ("Error Query [".$strSQL2."]");
	while($objResult2 = mysql_fetch_array($objQuery2))
	{
?>
<tr>
<td><center><a href="myfile/<?=$objResult2["GalleryShot"];?>" target="_blank"><img src="myfile/<?=$objResult2["GalleryShot"];?>" width="100" height="100"></a></center></td>
<td><center><?=$objResult2["GalleryName"];?></center></td>
<td><center><a href="edit_gallery.php?AlbumID=<?=$objResult2["AlbumID"];?>&GalleryID=<?=$objResult2["GalleryID"];?>">Edit</a></center></td>
<td><center><a href="delete_gallery.php?AlbumID=<?=$objResult2["AlbumID"];?>&GalleryID=<?=$objResult2["GalleryID"];?>">Delete</a></center></td>
</tr>
<?
	}
?>
</table>
<?
mysql_close($objConnect);
?>
<a href="create_gallery.php?AlbumID=<?=$_GET["AlbumID"];?>">Create Gallery</a> <br><br> 
<a href="view_album.php">View Album</a>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit