403Webshell
Server IP : 104.21.80.248  /  Your IP : 172.71.28.155
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/myschool/triamudom/check/checktime/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/myschool/triamudom/check/checktime/function_student_up.php
<?php
@session_start();
$path = "../";
include ($path.'include/config_db.php');
include ($path.'include/class_db.php'); 
include ($path.'include/class_display.php'); 
include ($path.'include/function.php'); 
$CLASS['db']   = new db();
$CLASS['db']->connect(); 
$CLASS['disp']   = new display();
$db   = $CLASS['db']; 
$disp   = $CLASS['disp']; 


$tb_student_id = $_REQUEST['tb_student_id'];
$tb_student_code = $_REQUEST['tb_student_code'];
$tb_student_tname = $_REQUEST['tb_student_tname'];
$tb_student_name = $_REQUEST['tb_student_name'];
$tb_student_sname = $_REQUEST['tb_student_sname'];
$tb_student_phone = $_REQUEST['tb_student_phone'];
$tb_student_idcard = $_REQUEST['tb_student_idcard'];
$tb_student_blood = $_REQUEST['tb_student_blood'];
$tb_student_myphone = $_REQUEST['tb_student_myphone'];

$tb_student_birthday_insert = $_REQUEST['tb_student_birthday_y']."-".$_REQUEST['tb_student_birthday_m']."-".$_REQUEST['tb_student_birthday_d'];


 $query_up = $db->query("UPDATE  tb_students SET tb_student_tname = '".$tb_student_tname."',
  tb_student_name = '".$tb_student_name."',
  tb_student_sname = '".$tb_student_sname."',
  tb_student_phone = '".$tb_student_phone."',
   tb_student_birthday = '".$tb_student_birthday_insert."',
  tb_student_blood = '".$tb_student_blood."',
  tb_student_myphone = '".$tb_student_myphone."',
  tb_student_idcard = '".$tb_student_idcard."'
 WHERE tb_student_id = '".$tb_student_id."'");
 

	print "
	<script language='javascript'>
		alert('update !!!');
		window.location.href='display_student_update.php';
	</script>
	";
?>

Youez - 2016 - github.com/yon3zu
LinuXploit