403Webshell
Server IP : 202.29.229.35  /  Your IP : 18.223.121.54
Web Server : Apache
System : Linux aapanel2 4.15.0-213-generic #224-Ubuntu SMP Mon Jun 19 13:30:12 UTC 2023 x86_64
User : www ( 1001)
PHP Version : 5.5.38
Disable Function : passthru,exec,system,putenv,chroot,chgrp,chown,shell_exec,popen,proc_open,pcntl_exec,ini_alter,ini_restore,dl,openlog,syslog,readlink,symlink,popepassthru,pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,imap_open,apache_setenv
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /www/wwwroot/www.ivecr2.ac.th/ncvet5/std2021/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /www/wwwroot/www.ivecr2.ac.th/ncvet5/std2021/admin_check.php
<?php session_start();?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<link href="style.css" type="text/css" rel="stylesheet" />
<title>สมัครเรียนออนไลน์ วท.ลพบุรี [ <?php echo $title[$na]; ?> ] </title>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
</head>
<body>
<?php
	//include("session_config.php");
	$adminUserLogin=$_POST['txtUser']; 
	$adminPasswdLogin=$_POST['txtPass'];
	/*echo $_POST['txtUser'];
	echo $_POST['txtPass'];
	echo "<br>";*/
	
	include("connect/connect.php");
	$sql="select * from tbladmin where  `admin_username`='$adminUserLogin' and `admin_password`='$adminPasswdLogin' ";
	//$sql="select count(admin_id) count_r from tbladmin where  `admin_username`='$adminUserLogin' and `admin_password`='$adminPasswdLogin' ";
	//echo $sql;
	$result=mysql_query($sql) or die(mysql_error());
	$rs=mysql_fetch_assoc($result);
	//echo "==>".$rs["count_r"];
	$num_row=mysql_num_rows($result) ; 
	//echo "แถวที่พบ คือ ".$num_row;
	if ($num_row==1){      
		$_SESSION['r_statuslogin']=1;
		$_SESSION['r_adminGroup']=$rs['admin_group'];
		$_SESSION['r_name']=$rs['admin_fname']." ".$rs['admin_lname'];  
		$_SESSION['r_adminId']=$rs['admin_id']; 
		//echo "group==>".$_SESSION['r_adminGroup'];
		/*if ($rs['status_news'])
				$_SESSION['r_statusloginNews']=1;
		if ($rs['status_calendar'])
				$_SESSION['r_statusloginCalendar']=1;
		if ($rs['status_guestbook'])
				$_SESSION['r_statusloginGuestbook']=1;
		if ($rs['status_comment'])
				$_SESSION['r_statusloginComment']=1;
		if ($rs['status_admin'])
			$_SESSION['r_statusloginAdmin']=1;
		*/
		
		$workid=$rs['work_id'];		
		if($workid=='101') {
			echo "*********";
				 echo"<meta http-equiv=\"refresh\"content=\"0;url=..\\system_report_direct\index.php\">";	
				 exit();
		}
		if($workid=='111') {
			echo "*********";
				 echo"<meta http-equiv=\"refresh\"content=\"0;url=..\\system_deposit\index.php\">";	
				 exit();
		}
		$sql1="select * from tblwork where work_id='$workid'";
		$result1=mysql_query($sql1);
		$rs1=mysql_fetch_array($result1);
		$num_rows = mysql_num_rows($result1);
			$_SESSION['r_workId']=$workid;
			$_SESSION['r_workName']=$rs1['work_name']; 
			
		echo"<meta http-equiv=\"refresh\"content=\"0;url=index.php\">";
	}else{     
		echo "<script language='javascript'>alert('!!  Username หรือ Password ไม่ถูกต้อง')</script>";
		 echo"<meta http-equiv=\"refresh\"content=\"0;url=admin_login_form.php\">";
	}
?>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit