Software: Apache/2.2.3 (CentOS). PHP/5.1.6 uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44 uid=48(apache) gid=48(apache) groups=48(apache) Safe-mode: OFF (not secure) /var/www/html/manage/teacher/ drwxr-xr-x |
Viewing file: Select action/file-type: <?php print_r($_REQUEST); session_start(); /** Define Validate Access */ define( '_VALID_ACCESS', 1 ); /** Check Session User Login */ if( !session_is_registered("valid_user") && !session_is_registered("Priority") ) { echo "<meta http-equiv=\"Content-Type\" content=\"text/html; charset=windows-874\" />"; echo "<p style=padding-top:115px><p align=center><br /><font color=red><strong>กรุณาทำการ Login ก่อน</strong></font></p></p>"; echo "<meta http-equiv=\"refresh\" content=\"1; URL=../login.php\" />"; exit(); } else { /** Configuration */ require_once( "../configuration.php" ); require_once( $_Config_absolute_path . "/includes/framework.php" ); require_once( "../include/Function.php" ); require_once( "../includes/FunctionDB.php" ); /** Create Database Object */ $dbObj = new DBConn; /** Config Table for This Page */ $myTable1 = "personal_tb"; $myTable2 = "people_tb"; $myTable3 = "medical_fee"; $Teacher_code = $_POST['Teacher_code']; $Spouse_name = trim($_POST['Name1']); $Fathe_name = trim($_POST['Name2']); $Mother_name = trim($_POST['Name3']); $Child_name = trim($_POST['Name4']); $Spouse_card = trim($_POST['Idcard1']); $Fathe_card = trim($_POST['Idcard2']); $Mother_card = trim($_POST['Idcard3']); $Child_card = trim($_POST['Idcard4']); $People_birth = dmyE2ymdT($_REQUEST['Birth_date']); $People_rank = trim($_POST['Rank']); if($_POST['People_legal']!=" ") { $People_legal = "Y"; } else { $People_legal = "N"; } if($_POST['People_incom']!=" ") { $People_incom = "Y"; } else { $People_incom = "N"; } // $Date = dmyE2ymdT($_REQUEST['mDate']); // $Training_name = trim( $_POST['Training_name'] ); //ขออนุมัติ /* $query = " SELECT * FROM $myTable2 ORDER BY agreeId DESC "; $result = $dbObj->execQuery($query); $rss= $dbObj->fetchArray($result); $myTable2 = $rss[0]+1 ; // นำค่า id มาเพิ่มให้กับค่ารหัสสมาชิกครั้งละ1 $Noagree = "$Ageer$myTable2" ; $Flag = "Y"; /*-----------------*/ // $Budget_use = 0; // $num = count($_POST['Budget_agree'])-1; /* for($j=0;$j<=$num;$j++) { $Budget_use += $_POST['Budget_agree'][$j]; }*/ InsertFormAgree ($Noagree , $maNo , $Teacher_code, $contId, $Training_code , $MoneyS_C , $Training_name , $Date, $Dayout, $Smtotal, $STtotal , $Vehicletotal, $Crgestotal , $Budget_use ,$Filetex , $Flag , $Year_std ); /* --------------------------------------------------------------------------------- */ /* $agreeId = mysql_insert_id(); $num_values = count($_POST['agreeName'])-1; for($i=0;$i<=$num_values;$i++) { $agreeName = $_POST['agreeName'][$i]; $Budget_agree=$_POST['Budget_agree'][$i]; InsertFormTypeAgree($agreeId , $agreeName , $Budget_agree); } */ } # else ?> <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> <meta http-equiv="Content-Type" content="text/html; charset=windows-874" /> <link href="../css/default.css" rel="stylesheet" type="text/css" /> <script language="javascript" src="../js/utilities.js"></script> <title>MIS -- Teacher</title> </head> <body topmargin="0" rightmargin="0" bottommargin="0" leftmargin="0"> <?php include("../templates/incHeader.php"); ?> <table width="1003" border="0" cellspacing="0" cellpadding="0"> <tr> <td width="203" align="left" valign="top" style="padding:10px 0px 0px 5px"><?php include("./_incMainMenu.php");?></td> <td width="800" height="440" align="center" valign="top" style="padding:10px 0px 5px 10px"><fieldset> <table width="780" border="0" cellspacing="0" cellpadding="0"> <form id="form1" name="form1" method="post" action=""> <tr> <td> </td> </tr> <tr> <td height="30" background="../images/background/bg-head-topic-w780.gif" class="PADDING-LEFT-10"><strong><a href="index.php">หน้าหลัก</a> » <span class="NOTE">ใบขออนุมัติไปราชการ</span></strong></td> </tr> <tr> <td> </td> </tr> <tr> <td height="150" align="center"><span class="TEXT-GREEN10"><strong>ระบบจัดเก็บข้อมูลของท่านเรียบร้อยแล้ว</strong></span><br /> กรุณารอส้กครู่ กำลังเปลี่ยนหน้าอัตโนมัติ<br /> <?php // echo "<meta http-equiv=\"refresh\" content=\"1; URL=FormProjectAgreeList.php?Teacher_code=$Teacher_code\">"; ?></td> </tr> <tr> <td> </td> </tr></form> </table> </fieldset></td> </tr> </table> <?php include("../templates/incFooter.php"); ?> </body> </html> <?php /** Free Resource */ $dbObj->freeresult($result); /** Close the Database */ $dbObj->disconn(); /** Unset Class */ unset($dbObj); ?> |
:: Command execute :: | |
:: Shadow's tricks :D :: | |
Useful Commands
|
:: Preddy's tricks :D :: | |
Php Safe-Mode Bypass (Read Files)
|
--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0062 ]-- |