403Webshell
Server IP : 172.67.187.206  /  Your IP : 172.71.28.156
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/myschool/triamudom/check/volunteer/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/myschool/triamudom/check/volunteer/display_teacher_viewstudent.php
<?php
@session_start();
$path = "../";
include ($path.'include/config_db.php');
include ($path.'include/class_db.php'); 
include ($path.'include/class_display.php'); 
include ($path.'include/function.php'); 
$CLASS['db']   = new db();
$CLASS['db']->connect(); 
$CLASS['disp']   = new display();
$db   = $CLASS['db']; 
$disp   = $CLASS['disp']; 

$date_day = date("Y-m-d");  

//----------------------------ค่าพื้นฐานระบบเว็บไซต์-----------------------------//
$fetch_public = $db->fetch_array($db->query("select * from tb_public"));

//----------------------------ค่าพื้นฐานระบบเว็บไซต์-----------------------------//
$process = $_REQUEST['process'];
$tb_student_id = $_REQUEST['tb_student_id'];
$tb_student_degree = $_REQUEST['tb_student_degree'];

if($process=="status0"){
	$db->query("update tb_volunteer set tb_volunteer_status='0' where tb_student_id='".$tb_student_id."' ");
}
if($process=="status1"){
	$delete_add = $db->query("DELETE FROM tb_volunteer WHERE tb_student_id = '".$tb_student_id."' ");
	$db->query("INSERT INTO  tb_volunteer (tb_volunteer_id, tb_student_id, tb_student_degree, tb_teacher_id , tb_volunteer_status, tb_volunteer_date)VALUES(NULL,'".$tb_student_id."','".$tb_student_degree."','".$_SESSION['sessiontuser_id']."', '1','".$date_day."')");
}


if($_SESSION['sessiontuser_id']!=""){
//--------------------ส่วนบนใช้สำหรับประกาศตัวแปรและ Config เท่านั้น----------------------------//
?>
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<title><?php print $fetch_public['tb_public_title'];?></title>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<link href="css/style.css"rel="stylesheet" type="text/css">
<script type="text/javascript"  src="../js/format.js" ></script>
<script type="text/javascript"  src="../js/dtree.js"  ></script>
<style type="text/css">
<!--
.style1 {font-size: 24px}
.style3 {font-size: 16}
.style4 {font-size: 14px}
-->
</style>
</head>

<body>
<table width="988" height="100%" border="0" align="center" cellpadding="0" cellspacing="0" bgcolor="#FFFFFF">
  <tr>
    <td height="200" align="center" valign="top"><?php include('header.php');?></td>
  </tr>
  <tr>
    <td valign="top"><table width="100%" height="100%" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td width="209" height="50%" align="center" valign="top"><?php include('com_left.php');?></td>
        <td valign="top" bgcolor="#FFFFFF"><table width="100%" border="0" align="center" cellpadding="0" cellspacing="0">
          <tr>
            <td width="9" height="39"><img src="images/la21/bcontent_03.jpg" width="9" height="39" /></td>
            <td height="39" background="images/la21/bcontent_06.jpg"><img src="images/bar_act.jpg" width="411" height="39" border="0"></td>
            <td width="13" height="39"><img src="images/la21/bcontent_08.jpg" width="13" height="39" /></td>
          </tr>
          <tr>
            <td height="15" background="images/la21/bcontent_13.jpg">&nbsp;</td>
            <td align="center"></td>
            <td height="15" background="images/la21/bcontent_15.jpg">&nbsp;</td>
          </tr>
          <tr>
            <td background="images/la21/bcontent_13.jpg">&nbsp;</td>
            <td align="center"><table width="95%" border="0" align="center" cellpadding="2" cellspacing="1" bgcolor="#5E9829">
              <tr class="headTable">
                <td width="13%" height="30" align="center" nowrap ><span class="style4">ลำดับที่</span></td>
                <td width="20%" align="center" nowrap ><span class="style4">รหัสประจำตัว</span></td>
                <td width="21%" nowrap ><span class="style4">ชื่อ - นามสกุล </span></td>
                <td width="24%" align="center" nowrap >บันทึกกิจกรรม</td>
                <td width="22%" align="center" nowrap >ประเมินผล</td>
              </tr>
              <?php
					$query_disall = $db->query("select * from tb_students where  tb_student_degree='".$_SESSION['sessiontuser_degree']."' and tb_student_status='1' order by tb_student_tname,tb_student_code,tb_student_degree asc ");
					$numrow_disall = $db->num_rows($query_disall);
					if($numrow_disall >0){
						$i = 1;
						while($fetch_disall = $db->fetch_array($query_disall)){
								$fetch_num_logvol = $db->fetch_array($db->query("SELECT COUNT(tb_student_id) AS num_regis FROM tb_volunteer_logs WHERE tb_student_id ='".$fetch_disall['tb_student_id']."'"));
								$fetch_dis_regis = $db->fetch_array($db->query("select * from tb_volunteer  where tb_student_id ='".$fetch_disall['tb_student_id']."' "));
							if($i%2=="1"){
								$bg="rowone";
							}else{
								$bg="rowtwo";
							}
				?>
              <tr class="<?php echo $bg;?>">
                <td height="22" align="center" nowrap ><?php print $i;?>.</td>
                <td align="center" nowrap ><?php print $fetch_disall['tb_student_code'];?>
                    <input name="tb_student_code[]" type="hidden"  id="tb_student_code<?php print $i;?>" value="<?php print $fetch_disall['tb_student_code'];?>"></td>
                <td nowrap ><?php print display_nametype($fetch_disall['tb_student_tname']);?><?php print $fetch_disall['tb_student_name'];?> <?php print $fetch_disall['tb_student_sname'];?></td>
                <td align="center" nowrap >( 
                  <a href="display_regis_logwork_view.php?tb_student_id=<?php print $fetch_disall['tb_student_id']?>" target="_blank">
                  <?php  print $fetch_num_logvol['num_regis'];?> </a>)</td>
                <td align="center" nowrap ><?php 
								  		if($fetch_dis_regis['tb_volunteer_status']=='1'){
								  ?>
					<a href="<?php print $_SERVER['PHP_SELF'];?>?process=status0&&tb_student_id=<?php print $fetch_disall['tb_student_id']?>&&tb_student_degree=<?php print $fetch_disall['tb_student_degree']?>">
                 <img src="../webadmin/images/check.gif" alt="ใช้งาน" width="16" height="16" border="0" align="absmiddle" /></a>
                  <?php }else{?>
                  <a href="<?php print $_SERVER['PHP_SELF'];?>?process=status1&&tb_student_id=<?php print $fetch_disall['tb_student_id']?>&&tb_student_degree=<?php print $fetch_disall['tb_student_degree']?>"><img src="../webadmin/images/check_gray.gif" alt="ไม่ใช้งาน" width="14" height="14" border="0" align="absmiddle" /></a>
                  <?php }?></td>
              </tr>
              <?php
						$i++;
						}
					}else{
				?>
              <tr class="alertred">
                <td colspan="5" align="center" bgcolor="#FFFFFF">ไม่พบข้อมูล</td>
              </tr>
              <?php
				}
				?>
            </table></td>
            <td background="images/la21/bcontent_15.jpg">&nbsp;</td>
          </tr>
          <tr>
            <td height="15" background="images/la21/bcontent_13.jpg">&nbsp;</td>
            <td align="center"></td>
            <td height="15" background="images/la21/bcontent_15.jpg">&nbsp;</td>
          </tr>
          <tr>
            <td width="9" height="15"><img src="images/la21/bcontent_18.jpg" width="9" height="15" /></td>
            <td height="15" background="images/la21/bcontent_19.jpg"></td>
            <td width="13" height="15"><img src="images/la21/bcontent_20.jpg" width="13" height="15" /></td>
          </tr>
        </table></td>
      </tr>
    </table></td>
  </tr>
  <tr>
    <td height="37" valign="bottom"><?php include('footer.php');?></td>
  </tr>
</table>
</body>
</html>
<?php
}else{
	print "
	<script language='javascript'>
		alert('ยังไม่ได้เข้าสู่ระบบ กรุณาเข้าสู่ระบบก่อนลงทะเบียน');
		window.location.href='teacher_login.php';
	</script>
	";
}
?>

Youez - 2016 - github.com/yon3zu
LinuXploit