403Webshell
Server IP : 172.67.187.206  /  Your IP : 162.159.115.41
Web Server : Apache/2.4.25 (Win32) OpenSSL/1.0.2j PHP/5.6.30
System : Windows NT WIN-ECQAAA40806 6.2 build 9200 (Windows Server 2012 Standard Edition) i586
User : SYSTEM ( 0)
PHP Version : 5.6.30
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  E:/Inetpub/www/news/common/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : E:/Inetpub/www/news/common/navbar.php
<?php 
session_start();

   //print_r($_SESSION);
	//print_r($_GET);

include("db.php"); 

if(!isset($_SESSION['s_username'])){
}else{ 
$username1 = $_SESSION['s_username'];
$user1 = $mysqli->query("SELECT * FROM school WHERE s_username='$username1' LIMIT 1");
$xchk=mysqli_num_rows($user1);
$userrow1 = mysqli_fetch_array($user1);
$_SESSION['uid'] = $userrow1['s_id'];
$_SESSION['xchk'] = $xchk;

	if($_SESSION['uid'] !=  "" &&  $_GET['id'] != '' && $_SESSION['uid'] != $_GET['id']){
		if($_SESSION['s_username'] != "admin"){
			header( "location: index.php");
		}
	}
} 

?>

<header>

    <?php require 'common/head.php';?>

			<div class="top-bar">

			<div id="login-box">
<p align="right" ><br>
<?php if(!isset($_SESSION['s_username'])){?>
<a class="one" href="login.php">เข้าสู่ระบบ&nbsp;&nbsp;</a>
<?php }else{ ?>
ยินดีต้อนรับ <a class="logout" href="edit_user.php?id=<?php echo $userrow1['s_id'];?>"> โรงเรียน<?php echo $userrow1['s_school'];?> (<?php echo $userrow1['s_type'];?>)</a> | <a class="logout" href="logout.php">Logout</a>
<?php }?> </p>
		</div>

			</div>
			

			<nav class="navbar navbar-expand-lg navbar-light bg-light">
			<button class="navbar-toggler" type="button" data-toggle="collapse" data-target="#navbarNav" aria-controls="navbarNav" aria-expanded="false" aria-label="Toggle navigation">
    <span class="navbar-toggler-icon"></span>
  </button>


					<div class="collapse navbar-collapse" id="navbarNav">

						<ul class="navbar-nav mx-auto">

				<?php if(!isset($_SESSION['s_username'])){?>
							<li class="nav-item"><a href="index.php" title="Home">หน้าแรก</a></li>&nbsp;&nbsp;&nbsp;&nbsp;|&nbsp;&nbsp;&nbsp;&nbsp;
							<li class="nav-item"><a href="login.php" title="Home">เข้าสู่ระบบ</a></li>

				<?php } elseif (($userrow1['s_name'] =="") or ($userrow1['s_tel'] =="" )){?>
							<li class="nav-item">
							<a href="index.php" title="Home">หน้าแรก</a>&nbsp;&nbsp;&nbsp;&nbsp;|&nbsp;&nbsp;&nbsp;&nbsp;
							</li>
							
							<li class="nav-item">
							<a href="edit_user.php?id=<?php echo $userrow1['s_id'];?>">แก้ไขข้อมูลส่วนตัว</a>
							</li>


				<?php } elseif ($userrow1['s_type'] =="admin"){?>
							<li class="nav-item">
							<a href="index.php" title="Home">หน้าแรก</a>&nbsp;&nbsp;&nbsp;&nbsp;|&nbsp;&nbsp;&nbsp;&nbsp;
							</li>
							
							<li class="nav-item">
							<a href="school.php">ตรวจสอบการส่งข้อมูล</a>&nbsp;&nbsp;&nbsp;&nbsp;|&nbsp;&nbsp;&nbsp;&nbsp;
							</li>

							<li class="nav-item">
							<a href="resetpass.php">Reset รหัสผ่านโรงเรียน</a>
							</li>

				<?php } else { ?>

							<li class="nav-item">
							<a href="index.php" title="Home">หน้าแรก</a>&nbsp;&nbsp;&nbsp;&nbsp;|&nbsp;&nbsp;&nbsp;&nbsp;
							</li>
							
							<li class="nav-item">
							<a href="edit_user.php?id=<?php echo $userrow1['s_id'];?>">แก้ไขข้อมูลส่วนตัว</a>&nbsp;&nbsp;&nbsp;&nbsp;|&nbsp;&nbsp;&nbsp;&nbsp;
							</li>

<!--							<li class="nav-item">
							<a href="durable.php?id=<?php echo $userrow1['s_id'];?>">ของบครุภัณฑ์</a>&nbsp;&nbsp;&nbsp;&nbsp;|&nbsp;&nbsp;&nbsp;&nbsp;
							</li> 
-->
							<li class="nav-item">
							<a href="building.php?id=<?php echo $userrow1['s_id'];?>">ส่งแบบคำของบประมาณ</a>
							</li> 
  
<?php }?>


						</ul>


				</div>
			</nav>
		</header>
		<!-- END header -->

Youez - 2016 - github.com/yon3zu
LinuXploit