Software: Apache/2.2.3 (CentOS). PHP/5.1.6 uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44 uid=48(apache) gid=48(apache) groups=48(apache) Safe-mode: OFF (not secure) /var/www/html/manage_22222/ drwxrwxrwx |
Viewing file: Select action/file-type: <?php include("./include/FunctionDB.php"); include("./include/Function.php"); ConnectDB(); $sql = " SELECT * FROM course WHERE courseId='$courseId' "; $result = mysql_query($sql) or die("Select Has Error").mysql_error(); $rs = mysql_fetch_array($result); ?> <meta http-equiv="Content-Type" content="text/html; charset=TIS-620" /> <link href="./css/default.css" rel="stylesheet" type="text/css" /> <body topmargin="0" rightmargin="0" bottommargin="0" leftmargin="0"> <table width="750" border="0" align="center" cellpadding="0" cellspacing="0"> <tr> <td height="10"></td> </tr> </table> <table width="750" border="0" align="center" cellpadding="0" cellspacing="0"> <tr> <td width="744" ><fieldset> <table width="98%" border="0" align="center" cellpadding="1" cellspacing="1" bgcolor="#E8E8E8"> <tr bordercolor="#CCCCCC" bgcolor="#E4EEFA"> <td height="25" colspan="3" align="center" bordercolor="#999999" bgcolor="#F0F0F0" class="TEXT-HEADER11-BLUE"><strong>รายละเอียดวิชา <font color="#993333" size="3" face="Tahoma"><?php echo $rs['courseName']; ?></font></strong></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td height="10" align="left" bordercolor="#999999" bgcolor="#FFFFFF"></td> <td height="10" bgcolor="#FFFFFF"></td> <td height="10" align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"> <font color="#DC143C" face="Tahoma">รหัสวิชาไทย</font></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font size="2" face="Tahoma"> <?php echo $rs['courseCode']; ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"><font color="#DC143C" face="Tahoma">รหัสวิชา</font><span style="color:#003366">อังกฤษ</span></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font size="2" face="Tahoma"><?php echo $rs['courseCodeEng']; ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"> <font color="#DC143C" face="Tahoma">ชื่อวิชา</font><span style="color:#003366">ไทย</span></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font color="#003399" size="2" face="Tahoma"><?php echo $rs['courseName']; ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"> <font color="#DC143C" face="Tahoma">ชื่อวิชา</font><span style="color:#003366">อังกฤษ</span></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font size="2" face="Tahoma"><?php echo $rs['courseNameEng']; ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"> <font color="#DC143C" face="Tahoma">กลุ่มวิชา</font></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font color="#003399" size="2" face="Tahoma"> <?php $Subject_group = $rs['Subject_group']; $sql_1 = " SELECT * FROM subject_group_tb WHERE Subject_group='$Subject_group' "; $result_1 = mysql_query($sql_1) or die("Error".mysql_error());; $rss = mysql_fetch_array($result_1); echo "$rss[Short_name] $rss[Thai_name]"; ?> </font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td width="18%" align="left" bordercolor="#999999" bgcolor="#FFFFFF"> <font color="#DC143C" face="Tahoma">หลักสูตร</font></td> <td width="2%" bgcolor="#FFFFFF"><font size="2" face="Tahoma">:</font></td> <td width="80%" align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font color="#003399" size="2" face="Tahoma"> <?php $Course_code = $rs['Course_code']; $sql = " SELECT * FROM course_tb WHERE Course_code='$Course_code' ORDER BY Course_code " ; $result = mysql_query($sql); $rss = mysql_fetch_array($result); echo "$rss[Course_name]"; ?> </font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"> <font color="#DC143C" face="Tahoma">หมวดวิชา</font></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font size="2" face="Tahoma"> <?php $conditionId = $rs['conditionId']; $sql11 =" SELECT * FROM condition_db WHERE conditionId='$conditionId' "; $result11 = mysql_query($sql11) or die("error".mysql_error());; $rss1 = mysql_fetch_array($result11); echo $rss1['condition']; ?> </font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"><font color="#DC143C" face="Tahoma">จำนวนชั่วโมงทั้งหมด</font></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font color="#003399" size="2" face="Tahoma"><?php echo $rs['Total_hour'];?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"><font color="#DC143C" face="Tahoma">หน่วยกิต</font></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font size="2" face="Tahoma"><?php echo $rs['courseUnit']; ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"><font color="#DC143C" face="Tahoma">วัตถุประสงค์</font></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font color="#003399" size="2" face="Tahoma"><?php echo $rs['Objective']; ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" valign="top" bordercolor="#999999" bgcolor="#FFFFFF"><font color="#DC143C" face="Tahoma">ลักษณะวิชา</font></td> <td valign="top" bgcolor="#FFFFFF"><font size="2" face="Tahoma">:</font></td> <td align="left" valign="top" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font color="#003399" size="2" face="Tahoma"><?php echo htmlspecialchars_decode( nl2br( $rs['description'] ) ); ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#EEEEEE"> <td align="left" bordercolor="#999999" bgcolor="#FFFFFF"><font color="#DC143C" face="Tahoma">สมรรถนะชั้นปี</font></td> <td bgcolor="#FFFFFF">:</td> <td align="left" bordercolor="#CCCCCC" bgcolor="#FFFFFF"><font color="#003399" size="2" face="Tahoma"><?php echo htmlspecialchars_decode( nl2br( $rs['Class_Affect'] ) ); ?></font></td> </tr> <tr bordercolor="#CCCCCC" bgcolor="#E4EEFA"> <td colspan="3" bordercolor="#999999" bgcolor="#FFFFFF"> </td> </tr> </table> </fieldset></td> </tr> <tr> <td > </td> </tr> <tr> <td align="center" ><input type="button" name="Submit" value="ปิดหน้าต่าง" onclick="javascript:parent.close();" class="CURSOR-HAND" /></td> </tr> </table> </body> <?php CloseDB(); ?> |
:: Command execute :: | |
:: Shadow's tricks :D :: | |
Useful Commands
|
:: Preddy's tricks :D :: | |
Php Safe-Mode Bypass (Read Files)
|
--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0056 ]-- |