403Webshell
Server IP : 104.21.80.248  /  Your IP : 172.71.28.156
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/myschool/triamudom/check/sdq/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/myschool/triamudom/check/sdq/function_sdq_student.php
<?php
session_start();
$path = "../";
include ($path.'include/config_db.php');
include ($path.'include/class_db.php'); 
include ($path.'include/class_display.php'); 
include ($path.'include/class_application.php'); 
include ($path.'include/function.php'); 

$CLASS['db']   = new db();
$CLASS['db']->connect (); 
$CLASS['disp']   = new display();
$db   = $CLASS['db']; 
$disp   = $CLASS['disp']; 

$tb_student_id  = $_REQUEST['tb_student_id'];
$tb_student_idcard  = $_REQUEST['tb_student_idcard'];

$tb_student_birthday  = convert_date_insertthai($_REQUEST['dateInput']);

$tb_sdq_student_q1  = $_REQUEST['tb_sdq_student_q1'];
$tb_sdq_student_q2  = $_REQUEST['tb_sdq_student_q2'];
$tb_sdq_student_q3  = $_REQUEST['tb_sdq_student_q3'];
$tb_sdq_student_q4  = $_REQUEST['tb_sdq_student_q4'];
$tb_sdq_student_q5  = $_REQUEST['tb_sdq_student_q5'];
$tb_sdq_student_q6  = $_REQUEST['tb_sdq_student_q6'];
$tb_sdq_student_q7  = $_REQUEST['tb_sdq_student_q7'];
$tb_sdq_student_q8  = $_REQUEST['tb_sdq_student_q8'];
$tb_sdq_student_q9  = $_REQUEST['tb_sdq_student_q9'];
$tb_sdq_student_q10  = $_REQUEST['tb_sdq_student_q10'];
$tb_sdq_student_q11  = $_REQUEST['tb_sdq_student_q11'];
$tb_sdq_student_q12  = $_REQUEST['tb_sdq_student_q12'];
$tb_sdq_student_q13  = $_REQUEST['tb_sdq_student_q13'];
$tb_sdq_student_q14  = $_REQUEST['tb_sdq_student_q14'];
$tb_sdq_student_q15  = $_REQUEST['tb_sdq_student_q15'];
$tb_sdq_student_q16  = $_REQUEST['tb_sdq_student_q16'];
$tb_sdq_student_q17  = $_REQUEST['tb_sdq_student_q17'];
$tb_sdq_student_q18  = $_REQUEST['tb_sdq_student_q18'];
$tb_sdq_student_q19  = $_REQUEST['tb_sdq_student_q19'];
$tb_sdq_student_q20  = $_REQUEST['tb_sdq_student_q20'];
$tb_sdq_student_q21  = $_REQUEST['tb_sdq_student_q21'];
$tb_sdq_student_q22  = $_REQUEST['tb_sdq_student_q22'];
$tb_sdq_student_q23  = $_REQUEST['tb_sdq_student_q23'];
$tb_sdq_student_q24  = $_REQUEST['tb_sdq_student_q24'];
$tb_sdq_student_q25  = $_REQUEST['tb_sdq_student_q25'];
$tb_sdq_student_qother  = $_REQUEST['tb_sdq_student_qother'];
$tb_sdq_student_qo1  = $_REQUEST['tb_sdq_student_qo1'];
$tb_sdq_student_qo2  = $_REQUEST['tb_sdq_student_qo2'];
$tb_sdq_student_qo31  = $_REQUEST['tb_sdq_student_qo31'];
$tb_sdq_student_qo32  = $_REQUEST['tb_sdq_student_qo32'];
$tb_sdq_student_qo4  = $_REQUEST['tb_sdq_student_qo4'];
$tb_sdq_student_q_time  = $_REQUEST['tb_sdq_student_q_time'];

?>
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<title>แบบประเมินจุดแข็งและจุดอ่อน Strengths and Difficulties Questionnaire (SDQ)</title>
</head>

<body>
<?php
	$query_update = $db->query("UPDATE tb_students SET  tb_student_birthday='".$tb_student_birthday."', tb_student_idcard='".$tb_student_idcard."' WHERE  tb_student_id='".$tb_student_id."' ");
	
	$query_del = $db->query("delete from tb_sdq_student where tb_student_id='".$tb_student_id."' ");
	$query_int = $db->query("INSERT INTO  tb_sdq_student
            (tb_sdq_student_id,
             tb_student_id,
             tb_room_id,
             tb_sdq_student_code,
             tb_sdq_student_q1,
             tb_sdq_student_q2,
             tb_sdq_student_q3,
             tb_sdq_student_q4,
             tb_sdq_student_q5,
             tb_sdq_student_q6,
             tb_sdq_student_q7,
             tb_sdq_student_q8,
             tb_sdq_student_q9,
             tb_sdq_student_q10,
             tb_sdq_student_q11,
             tb_sdq_student_q12,
             tb_sdq_student_q13,
             tb_sdq_student_q14,
             tb_sdq_student_q15,
             tb_sdq_student_q16,
             tb_sdq_student_q17,
             tb_sdq_student_q18,
             tb_sdq_student_q19,
             tb_sdq_student_q20,
             tb_sdq_student_q21,
             tb_sdq_student_q22,
             tb_sdq_student_q23,
             tb_sdq_student_q24,
             tb_sdq_student_q25,
             tb_sdq_student_qother,
             tb_sdq_student_qo1,
             tb_sdq_student_qo2,
             tb_sdq_student_qo31,
             tb_sdq_student_qo32,
             tb_sdq_student_qo4,
             tb_sdq_student_q_time,
             tb_sdq_student_date)
VALUES (NULL,
        '".$tb_student_id."',
        '".$_SESSION['sessionuser_degree']."',
        '".$tb_student_idcard."',
        '".$tb_sdq_student_q1."',
        '".$tb_sdq_student_q2."',
        '".$tb_sdq_student_q3."',
        '".$tb_sdq_student_q4."',
        '".$tb_sdq_student_q5."',
        '".$tb_sdq_student_q6."',
        '".$tb_sdq_student_q7."',
        '".$tb_sdq_student_q8."',
        '".$tb_sdq_student_q9."',
        '".$tb_sdq_student_q10."',
        '".$tb_sdq_student_q11."',
        '".$tb_sdq_student_q12."',
        '".$tb_sdq_student_q13."',
        '".$tb_sdq_student_q14."',
        '".$tb_sdq_student_q15."',
        '".$tb_sdq_student_q16."',
        '".$tb_sdq_student_q17."',
        '".$tb_sdq_student_q18."',
        '".$tb_sdq_student_q19."',
        '".$tb_sdq_student_q20."',
        '".$tb_sdq_student_q21."',
        '".$tb_sdq_student_q22."',
        '".$tb_sdq_student_q23."',
        '".$tb_sdq_student_q24."',
        '".$tb_sdq_student_q25."',
        '".$tb_sdq_student_qother."',
        '".$tb_sdq_student_qo1."',
        '".$tb_sdq_student_qo2."',
        '".$tb_sdq_student_qo31."',
        '".$tb_sdq_student_qo32."',
        '".$tb_sdq_student_qo4."',
        '".$tb_sdq_student_q_time."',
        NOW())");
?>
<script language='javascript'>
		window.location.href='display_stu_report.php?tb_student_id=<?php print $tb_student_id;?>';
</script>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit