403Webshell
Server IP : 104.21.80.248  /  Your IP : 162.159.115.42
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/myschool/benjama/modules/search/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/myschool/benjama/modules/search/from.php
<?
CheckUser($_SESSION['user_user'], $_SESSION['user_pwd']);
?>
	<TABLE cellSpacing=0 cellPadding=0 width=100% height=500 border=0 align="center">
      <TBODY>
        <TR>
          <TD align="center" vAlign=top><BR>
&nbsp;&nbsp;<font face="'thaisans_neuelight'" COLOR="blue"size=5px>ระบบสืบค้นข้อมูล</FONT>
	<table cellspacing="2" cellpadding="2" align="center"width="700" bgcolor=#FFFFFF border="0">
		 <tr>
		 <td width=200 bgcolor=#FFFF99 align=right>&nbsp;&nbsp;&nbsp;ทะเบียนรับ :</td>
		 <td width=500>
<?
$_GET['category'] = intval($_GET['category']);
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$res[category] = $db->select_query("SELECT * FROM ".TB_YEARS_CAT." ORDER BY id ASC ");
while($arr[category] = $db->fetch($res[category])){
echo '<a href="?name=search&file=tabainrubsema&year='.$arr[category][name].'"><span>'.$arr[category][name].'</a></span></b>&nbsp&nbsp;';
}
?>
</td>
</tr>
		 <tr>
		 <td align=right bgcolor=#FFFF99>  &nbsp;&nbsp;&nbsp;ทะเบียนส่ง :</td>
		 <td>
<?
$_GET['category'] = intval($_GET['category']);
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$res[category] = $db->select_query("SELECT * FROM ".TB_YEARS_CAT." ORDER BY id ASC ");
while($arr[category] = $db->fetch($res[category])){
echo '<a href="?name=search&file=tabainsentsema&op=read&year='.$arr[category][name].'"><span>'.$arr[category][name].'</a></span></b>&nbsp&nbsp;';
}
?>
</td>
</tr>
		 <tr>
		 <td align=right bgcolor=#FFFF99>&nbsp;&nbsp;&nbsp;ทะเบียนคำสั่ง :</td>
		 <td>
<?
$_GET['category'] = intval($_GET['category']);
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$res[category] = $db->select_query("SELECT * FROM ".TB_YEARS_CAT." ORDER BY id ASC ");
while($arr[category] = $db->fetch($res[category])){
echo '<a href="?name=search&file=tabainkamsangsema&op=kamsang_read&year='.$arr[category][name].'"><span>'.$arr[category][name].'</a></span></b>&nbsp&nbsp;';
}
?>
</td>
</tr>
	
		 <tr>
		 <td align=right bgcolor=#FFFF99>&nbsp;&nbsp;&nbsp;ทะเบียนหนังสือเวียน :</td>
		 <td>
<?
$_GET['category'] = intval($_GET['category']);
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$res[category] = $db->select_query("SELECT * FROM ".TB_YEARS_CAT." ORDER BY id ASC ");
while($arr[category] = $db->fetch($res[category])){
echo '<a href="?name=search&file=tabainbook1&op=tkk3_read&year='.$arr[category][name].'"><span>'.$arr[category][name].'</a></span></b>&nbsp&nbsp;';
}
?>
</td>
</tr>

</tr>
	
		 <tr>
		 <td align=right bgcolor=#FFFF99>&nbsp;&nbsp;&nbsp;ทะเบียนบันทึกข้อความ :</td>
		 <td>
<?
$_GET['category'] = intval($_GET['category']);
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$res[category] = $db->select_query("SELECT * FROM ".TB_YEARS_CAT." ORDER BY id ASC ");
while($arr[category] = $db->fetch($res[category])){
echo '<a href="?name=search&file=tabain_buntuk&op=tkk1_read&year='.$arr[category][name].'"><span>'.$arr[category][name].'</a></span></b>&nbsp&nbsp;';
}
?>
</td>
</tr>
</table>
	</td>
	 </tr>
</TABLE>





	
	<?php

	$sqlk2 = "SELECT SUBSTR(`date`,1,7) as m, count(*) as c FROM `web_tkk2`GROUP BY m ORDER by m desc;" ;
	$sqlk4 = "SELECT SUBSTR(`date`,1,7) as m, count(*) as c FROM `web_tkk4`GROUP BY m ORDER by m desc;" ;
	$sqla  = "SELECT SUBSTR(`date`,1,7) as m, count(*) as c FROM `web_approval`GROUP BY m ORDER by m desc;" ;
	$sqlk  = "SELECT SUBSTR(`date`,1,7) as m, count(*) as c FROM `web_kamsang`GROUP BY m ORDER by m desc;" ;

	$res['cnt'] = $db->select_query($sqlk2) ;
	while($row = $db->fetch($res['cnt'])){
		$dat[$row['m']][2] = $row['c'] ;
	}
	
	$res['cnt'] = $db->select_query($sqlk4) ;
	while($row = $db->fetch($res['cnt'])){
		$dat[$row['m']][4] = $row['c'] ;
	}

	$res['cnt'] = $db->select_query($sqla) ;
	while($row = $db->fetch($res['cnt'])){
		$dat[$row['m']][7] = $row['c'] ;
	}

	$res['cnt'] = $db->select_query($sqlk) ;
	while($row = $db->fetch($res['cnt'])){
		$dat[$row['m']][8] = $row['c'] ;
	}

	?>
<center>
	<table border=1 cellspacing=0><tr>
		<td>ปี-เดือน</td><td>ทะเบียนรับหนังสือราชการ</td><td>ทะเบียนส่งหนังสือราชการ</td><td>ทะเบียนไปราชการ</td><td>ทะเบียนคำสั่ง</td>
</tr>
<?php
	foreach( $dat as $k=> $v){
		if(trim($k) =='') continue ;
		echo "<tr align=center>";
		echo "<td>" . $k . "</td>";
		echo "<td>" . $v[2] . "</td>";
		echo "<td>" . $v[4] . "</td>";
		echo "<td>" . $v[7] . "</td>";
		echo "<td>" . $v[8] . "</td>";
		echo "</tr>";
	}

	?>
	    </TABLE>
</center>

		</TD>
        </TR>
      </TBODY>
    </TABLE>



Youez - 2016 - github.com/yon3zu
LinuXploit