403Webshell
Server IP : 104.21.80.248  /  Your IP : 162.159.115.42
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/myschool/sophon/modules/tkk6/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/myschool/sophon/modules/tkk6/readtkk6_1.php
<link href="style_web.css" rel="stylesheet" type="text/css" />
	<TABLE cellSpacing=0 cellPadding=0 width=1005 height=500 border=0 align="center">
      <TBODY>
        <TR>
           <TD vAlign=top>
		  <!-- user -->
				<TABLE width="880" align=center cellSpacing=0 cellPadding=0 bgcolor=FFFFFF border=0>
				<TR>
					<TD>
<?
//	CheckUser($_SESSION['user_user']);
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE username='".$_SESSION['user_user']."' ");
		$arr[user] = $db->fetch($res[user]);
//ดึงค่า
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[yearla] = $db->select_query("SELECT * FROM ".TB_YEARLA_CAT." ORDER BY id ");
		$arr[yearla] = $db->fetch($res[yearla]);	
$_GET['id'] = intval($_GET['id']);
//แสดงข่าวสาร/ประชาสัมพันธ์ 
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$res[tkk6] = $db->select_query("SELECT * FROM ".TB_TKK6." WHERE id='$_GET[id]'  ");
$arr[tkk6] = $db->fetch($res[tkk6]);
$db->closedb ();
{	
?>
<table width="850" align="center"border="0" cellspacing="0" cellpadding="0" bgcolor=ffffff>
    <tr> 
   <td width="850"align="center">
   <BR><B>แบบใบลาป่วย ลาคลอดบุตร ลากิจส่วนตัว</B>
   </td>
   </tr>
   <tr> 
   <td width="850"align="right">
   <BR><BR><B>ที่ &nbsp;&nbsp;<?echo thainumDigit($arr[tkk6][address]);?></B>
   </td>
   </tr>
   <tr>
   <td>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<B>วันที่&nbsp;<?echo thainumDigit("".thai_date_fullmonth(strtotime($arr[tkk6][date]))."" );?>
	<BR>
 <B>เรื่อง&nbsp;<?=$arr[tkk6][topic];?></B>
	<BR>
 <B>เรียน&nbsp; ผู้อำนวยการ<?=WEB_AMP;?></B>
<BR>
 &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<B>ข้าพเจ้า&nbsp;<?=$arr[tkk6][name];?></B>  <B>ตำแหน่ง&nbsp;
<B>ตำแหน่ง&nbsp;&nbsp;<?=$arr[tkk6][position];?> </B>&nbsp;<B>สังกัด&nbsp;<?=WEB_TITLE;?></B><B> ขอลา&nbsp;<?=$arr[tkk6][la];?>&nbsp;<B>เนื่องจาก&nbsp;<?=$arr[tkk6][reason];?></B>  
<B>ตั้งแต่วันที่&nbsp;<?echo thainumDigit("".thai_date_fullmonth(strtotime($arr[tkk6][date1]))."" );?></B>    <B>ถึงวันที่&nbsp;<?echo thainumDigit("".thai_date_fullmonth(strtotime($arr[tkk6][date2]))."" );?></B> <B>มีกำหนด&nbsp;<?echo thainumDigit($arr[tkk6][numpoi]);?>&nbsp;วัน</B>
<?
//	CheckUser($_SESSION['user_user']);
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='".$arr[tkk6][cat]."'  ");
		$arr[user] = $db->fetch($res[user]);

//ดึงค่า
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[yearla] = $db->select_query("SELECT * FROM ".TB_YEARLA_CAT." ORDER BY id ");
		$arr[yearla] = $db->fetch($res[yearla]);	
?>
<?php
$_GET['id'] = intval($_GET['id']);
// Make a MySQL Connection
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$query = "SELECT numpoi SUM(numpoi) FROM web_tkk6  WHERE  cat='".$arr[user][id]."'and yearla='".$arr[yearla][name]."'  "; 
$sql1="select sum(numpoi) as tt1 from web_tkk6 where   cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."' and la='".$arr[tkk6][la]."'  and id<'$_GET[id]' ";
			$dbquery1 = mysql_db_query($dbname, $sql1);
			$result1 = mysql_fetch_array($dbquery1);
			$poi=$result1[tt1];
$sql2="select numpoi as tt2 , la='ป่วย' from web_tkk6 where   cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."' and la='".$arr[tkk6][la]."'  and id='$_GET[id]'   ";
			$dbquery2 = mysql_db_query($dbname, $sql2);
			$num_rows2 = mysql_num_rows($dbquery2);
			$result2 = mysql_fetch_array($dbquery2);
			$poi1=$result2[tt2];
?>
<?
 if($poi==0){ 	  

?>
<B>ข้าพเจ้าลา <?=$arr[tkk6][la];?> 
<B>ครั้งสุดท้ายตั้งแต่วันที่  -  เดือน  -  พ.ศ.  -  ถึงวันที่  -  เดือน  -  พ.ศ.  -  จำนวน  -  วัน
<? }echo ""?>
<?
 if($poi1 > '0'){ 	  

?>
<?
$_GET['id'] = intval($_GET['id']);
	//ดึงค่า
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[tkk6] = $db->select_query("SELECT * FROM ".TB_TKK6." WHERE id='".$_GET[id]."' ");
		$arr[tkk6] = $db->fetch($res[tkk6]);
		$db->closedb ();
	//ดึงค่า
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE level>1 and  id='".$arr[tkk6][cat]."' ");
		while($arr[user] = $db->fetch($res[user])){
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[tkk6] = $db->select_query("SELECT * FROM ".TB_TKK6." WHERE cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."' and la='".$arr[tkk6][la]."' and id<'$_GET[id]'  ORDER BY id DESC LIMIT 1 ");
	$count=0;
	while($arr[tkk6] = $db->fetch($res[tkk6])){
		
?>
<?
 if($arr[tkk6][numpoi]){ 	  
?>
<B>ข้าพเจ้าลา <?=$arr[tkk6][la];?> 
<B>ครั้งสุดท้ายตั้งแต่วันที่

&nbsp;<?echo thainumDigit("".thai_date_fullmonth(strtotime($arr[tkk6][date1]))."" );?> </B>
<? } else {echo "-"; }?>
&nbsp;ถึงวันที่
<?
 if($arr[tkk6][numpoi]){ 	  
?>
&nbsp;<?echo thainumDigit("".thai_date_fullmonth(strtotime($arr[tkk6][date2]))."" );?> 
<? } else { echo "-";}?>
<B>&nbsp;มีกำหนด
<?
 if($arr[tkk6][numpoi]){ 	  
?>
&nbsp;<?echo thainumDigit($arr[tkk6][numpoi]);?></B> 
<? } else { echo "-";}?>
&nbsp;วัน
<?
 } } 
?>
<? }echo ""?>

<?
//ดึงค่า
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[tkk6] = $db->select_query("SELECT * FROM ".TB_TKK6." WHERE id='".$_GET[id]."' ");
		$arr[tkk6] = $db->fetch($res[tkk6]);
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='".$arr[tkk6][cat]."'  ");
		$arr[user] = $db->fetch($res[user]);
		$db->closedb ();
?>
<B>ในระหว่างลาติดต่อข้าพเจ้าได้ที่&nbsp;&nbsp;<?echo thainumDigit($arr[tkk6][satanti]);?></B> &nbsp;&nbsp;โทรศัพท์&nbsp;&nbsp;<?echo thainumDigit($arr[tkk6][tel]);?></B>   
<tr><td align="center"><BR><B>ขอแสดงความนับถือ</B>
</td>
  </tr>

<tr>
<td align="center">
<IMG SRC="laysen/<?=($arr[tkk6][cat]);?>.jpg">
	<BR>
	(<?=$arr[tkk6][name];?>)
	<BR>
	<?=$arr[tkk6][position];?><?=WEB_TITLE;?>

</td>
  </tr>
<tr>
<td>

<?
					 if($arr[tkk6][full_text]){ 	  
?>
<br><FONT COLOR="#990000">เอกสารแนบ</FONT></B>[<a href="data/tkk6/<?=$arr[tkk6][full_text];?>" target="_blank"><b>ไฟล์ที่ 1</b></A>]  
<BR>
		  <? } else {echo "";}?>
</td>
  </tr>
<tr>
<td align="center">
	<BR>
<?
//	CheckUser($_SESSION['user_user']);
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='".$arr[tkk6][cat]."'  ");
		$arr[user] = $db->fetch($res[user]);


//ดึงค่า
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[yearla] = $db->select_query("SELECT * FROM ".TB_YEARLA_CAT." ORDER BY id ");
		$arr[yearla] = $db->fetch($res[yearla]);	
?>
<?php
$_GET['id'] = intval($_GET['id']);
// Make a MySQL Connection
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$query = "SELECT numpoi SUM(numpoi) FROM web_tkk6  WHERE  cat='".$arr[user][id]."'and yearla='".$arr[yearla][name]."'  "; 
$sql1="select sum(numpoi) as tt1 from web_tkk6 where   cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."'  and la='ป่วย' and id<'$_GET[id]' ";
			$dbquery1 = mysql_db_query($dbname, $sql1);
			$result1 = mysql_fetch_array($dbquery1);
			$poi=$result1[tt1];

$sql2="select numpoi as tt2 , la='ป่วย' from web_tkk6 where   cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."' and la='ป่วย' and id='$_GET[id]'   ";
			$dbquery2 = mysql_db_query($dbname, $sql2);
			$num_rows2 = mysql_num_rows($dbquery2);
			$result2 = mysql_fetch_array($dbquery2);
			$lapoi=$result2[tt2];


?>

<?php
// Make a MySQL Connection
$_GET['id'] = intval($_GET['id']);
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$query = "SELECT numpoi SUM(numpoi SUM(numpoi)  FROM web_tkk6  WHERE  cat='".$arr[user][id]."'and yearla='".$arr[yearla][name]."'  and la='กิจส่วนตัว'  "; 
$sql3="select sum(numpoi) as tt3 from web_tkk6 where   cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."' and la='กิจส่วนตัว' and id<'$_GET[id]'  ";
			$dbquery3 = mysql_db_query($dbname, $sql3);
			$result3= mysql_fetch_array($dbquery3);
			$kit=$result3[tt3];

$sql4="select numpoi as tt4 from web_tkk6 where  cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."' and la='กิจส่วนตัว' and id='$_GET[id]' ";
			$dbquery4 = mysql_db_query($dbname, $sql4);
			$result4= mysql_fetch_array($dbquery4);
			$lakit=$result4[tt4];


?>

<?php
$_GET['id'] = intval($_GET['id']);
// Make a MySQL Connection
$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
$query = "SELECT numpoi  SUM(numpoi ) FROM web_tkk6  WHERE  cat='".$arr[user][id]."'and yearla='".$arr[yearla][name]."' and la='คลอดบุตร' and id<'$_GET[id]' "; 
$sql5="select sum(numpoi ) as tt5 from web_tkk6 where   cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."'and la='คลอดบุตร' and id<'$_GET[id]'  ";
			$dbquery5 = mysql_db_query($dbname, $sql5);
			$result5= mysql_fetch_array($dbquery5);
			$klod=$result5[tt5];
$sql6="select numpoi as tt6 from web_tkk6 where  cat='".$arr[user][id]."' and yearla='".$arr[yearla][name]."' and la='คลอดบุตร'and id='$_GET[id]' ";
			$dbquery6 = mysql_db_query($dbname, $sql6);
			$result6= mysql_fetch_array($dbquery6);
			$laklod=$result6[tt6];
?>
<table width="900" border="0" bordercolor="#000000">
  <tr>
    <td width="400"valign="top">
	<table cellspacing="2" cellpadding="2" align="center"width="400" border="1"bordercolor="#000000">
  <tbody>		สถิติการลาในปีงบประมาณนี้
<BR>
    <tr> 
      <td align="center"><B>ประเภทการลา</B></td>
      <td align="center"><B>ลามาแล้ว</B></td>
      <td align="center"><B>ลาครั้งนี้</B></td>
      <td height="25"><B>รวมเป็น</B></td>
    </tr>
 <tr bgcolor="#FFFFCC">
      <td align="left"><B>ลาป่วย</B></td>
<td align="center"><b>(วันทำการ)<BR><?$a=$poi;echo thainumDigit("" .round($a,1));?></b></td>   
 <td align="center"><B>(วันทำการ)<BR><?$a=$lapoi;echo thainumDigit("" .round($a,1));?></B></td>
<td align="center"><B>(วันทำการ)<BR><?$a=$poi+$lapoi;echo thainumDigit( "" .round($a,1));?></B></td>
    </tr>
    <tr bgcolor="#CCFFCC"> 
     <td align="left"><B>ลากิจส่วนตัว</B></td>
<td align="center"><b>(วันทำการ)<BR><?$a=$kit; echo thainumDigit( "" .round($a,1));?></b></td>   
 <td align="center"><B>(วันทำการ)<BR><?$a=$lakit;echo thainumDigit("" .round($a,1));?></B></td>
<td align="center"><B>(วันทำการ)<BR><?$a=$kit+$lakit;echo thainumDigit("" .round($a,1));?></B></td>
    </tr>
    <tr bgcolor="#CCFF99"> 
      <td align="left"><B>ลาคลอดบุตร</B></td>
<td align="center"><b>(วันทำการ)<BR><?$a=$klod;echo thainumDigit("" .round($a,1));?></b></td>   
 <td align="center"><B>(วันทำการ)<BR><?$a=$laklod;echo thainumDigit("" .round($a,1));?></B></td>
<td align="center"><B>(วันทำการ)<BR><?$a=$klod+$laklod;echo thainumDigit("" .round($a,1));?></B></td>
    </tr>
</table>
<?
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='".$arr[tkk6][laysen2]."'  ");
		$arr[user] = $db->fetch($res[user]);
?>
<table width="400" border="0" bordercolor="#000000">
  <tr> 
    <td height="5"></td>
    <td width="271" align="center" rowspan="2">
	<IMG SRC="laysen/<?=($arr[tkk6][laysen2]);?>.jpg">
		<BR>
	(<?=$arr[user][category_name];?>)
	<BR>
	<?=$arr[user][posit];?><?=WEB_AMP;?>
	</td>
    <td height="5"></td>
  </tr>
  <tr> 
    <td width="100" align="right" valign="top">ลงชื่อ</td>
    <td width="100" height="25" align="left" valign="top">ผู้ตรวจสอบ</td>
  </tr>
</table>
</td>
    <td width="500" height="39" valign="top">
	<TABLE cellSpacing=0 cellPadding=0 width=500 border=0 align="center" >
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<B>ความเห็นผู้บังคับบัญชา</B>
<?
if($arr[tkk6][enable_comment]){
//	CheckUser($_SESSION['user_user']);
		$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
		$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE username='".$_SESSION['user_user']."' ");
		$arr[user] = $db->fetch($res[user]);
	//Check Comment
	$db->connectdb(DB_NAME,DB_USERNAME,DB_PASSWORD);
	$res[comment] = $db->select_query("SELECT * FROM ".TB_TKK6_COMMENT." WHERE tkk6_id='".$arr[tkk6][id]."' ORDER BY id ");
	$count=0;
	while($arr[comment] = $db->fetch($res[comment])){

	$res[user] = $db->select_query("SELECT * FROM ".TB_user." WHERE id='".$arr[comment][laysen1]."'  ");
	$arr[user] = $db->fetch($res[user]);
		$count  ++;	
?>	
<?
					 if($arr[comment][comment1]==''){ 	  
?>
<TR>
<TD><div align="center"><B><?=($arr[comment][detail]);?></FONT></B></div>
</TD>
</TR>
<TR>
<TD align="center">
<?=($arr[comment][comment1]);?>
<BR>
<IMG SRC="laysen/<?=($arr[comment][laysen1]);?>.jpg">
<?
					 if($arr[comment][work]==''){ 	  
?>
<BR>
(<?=($arr[user][category_name]);?>)
<BR>
<?=($arr[user][posit]);?><?=WEB_AMP;?>
<? } ?>
<?
					 if($arr[comment][work]=='3'){ 	  
?>
<BR>
(<?=($arr[user][category_name]);?>)
<BR>
<?=($arr[user][posit]);?><?=WEB_AMP;?>
<? } ?>
			</div></TD>
			</TR>
			<TR>
				<TD height="1" class="dotline"></TD>
			</TR>
<? } ?>	
<?
					 if($arr[comment][comment1]=='ส่งคืน'){ 	  
?>
			<TR>
				<TD><div align="center"><B><?=($arr[comment][detail]);?></FONT></B></div></TD>
				</TR>
			<TR><TD align="center"><B><?=($arr[comment][comment1]);?></B>
			<BR><div align="center"><B><IMG SRC="laysen/<?=($arr[comment][laysen1]);?>.jpg">
			</div></TD>
			</TR>
			<TR>
				<TD height="1" class="dotline"></TD>
			</TR>
<? } ?>	
<?
					 if($arr[comment][comment1]=='อนุญาต'){ 	  
?>
			<TR>
				<TD>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<B>คำสั่ง</B><div align="center"><B><?=($arr[comment][detail]);?></FONT></B></div>
				</TD>
				</TR>
			<TR>
			<TD align="left">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<B><IMG SRC="images/tick.png"> <?=($arr[comment][comment1]);?></B>
			<BR>
			<div align="center">
			<IMG SRC="laysen/<?=($arr[comment][laysen1]);?>.jpg">
		<BR>
		(<?=($arr[user][category_name]);?>)
			<BR>
<?
					 if($arr[comment][work]=='1'){ 	  
?>

<?=($arr[user][posit]);?> <?=WEB_P_DIRECTOR;?>
<? } ?>
<?
					 if(($arr[comment][work]=='2')){ 	  
?>
				<?=($arr[user][posit]);?> <?=WEB_R_DIRECTOR;?>
<BR>
<? }?>
<?
					 if($arr[comment][work]=='3'){ 	  
?>

<?=WEB_DIRECTOR;?>
<? } ?>
			</div></TD>
			</TR>
			<TR>
				<TD height="1" class="dotline"></TD>
			</TR>
			<? } ?>
<?}?>
			</TABLE>
<?
	}
	$db->closedb ();
?>
		<!-- Enable Comment -->
<? } ?>
</td>
  </tr>
</table>
	</td>
	 </tr>
			</TABLE>
			<!-- End tkk6 -->
		  </TD>
        </TR>
      </TBODY>
    </TABLE>

Youez - 2016 - github.com/yon3zu
LinuXploit