403Webshell
Server IP : 210.245.233.93  /  Your IP : 216.73.216.226
Web Server : Apache/2.2.15 (CentOS)
System : Linux webserver2.onesolution.com.hk 2.6.32-754.35.1.el6.x86_64 #1 SMP Sat Nov 7 12:42:14 UTC 2020 x86_64
User : apache ( 48)
PHP Version : 5.3.3
Disable Function : exec, shell_exec, system, passthru, popen, proc_open, pcntl_exec
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/(Del)discoverylearning.com.hk/webadmin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/(Del)discoverylearning.com.hk/webadmin/gallerydetail_index.php
<?php
/*error_reporting(E_ALL);
ini_set('display_errors', '1');*/

require 'check_login.php';
if ($logged_in <> 1) {
	header('Location: login.php');
	return;
}
else
{
require("configure.php");
$GalleryCatId		= $_GET['GalleryCatId'];
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<title>Content Management System (CMS) - Powered by One Solution Limited</title>
<link rel="stylesheet" type="text/css" href="css/style.css" />
<!-- Main Menu -->
<link rel="stylesheet" type="text/css" href="css/menu.css" />
<script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js"></script>
<script type="text/javascript" src="js/ddaccordion.js"></script>
<script type="text/javascript" src="js/menuddaccordion.js"></script>
<!-- End Main Menu -->
<script type="text/JavaScript">
<!--
function MM_jumpMenu(targ,selObj,restore){ //v3.0
  eval(targ+".location='"+selObj.options[selObj.selectedIndex].value+"'");
  if (restore) selObj.selectedIndex=0;
}
//-->
</script>
<script type="text/javascript">
function DeleteRowCategory(GalleryCatId,GalleryDetailId)
{
  if (confirm("Are you sure you want to delete this photo?"))
	{
		window.location.href = 'gallerydetail_delete.php?GalleryCatId='+GalleryCatId+'&GalleryDetailId='+GalleryDetailId;	
	}
}
</script>

</head>

<body>
<table width="1000" height="600" border="0" cellpadding="0" cellspacing="0">
  <tr>
    <td width="200" align="left" valign="top"><table width="200" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td height="70" align="left" valign="middle">&nbsp;</td>
	  </tr>
	  <tr>
	  	<td width="200" align="left" valign="top"><!-- Main Menu --><?php require("menu.php");?><!-- End Main Menu --></td>
	</tr>
	</table></td>
	<td width="800" align="left" valign="top"><table width="800" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td><table width="800" border="0" cellspacing="0" cellpadding="0">
            <tr>
              <td height="70" class="pagetitletxt">&nbsp;&nbsp;</td>
              <td width="50" align="center" class="icontxt"><a href="gallerydetail_addform.php?GalleryCatId=<?=$GalleryCatId;?>"><img src="images/iconNew.png" alt="Add" width="32" height="32" border="0" /><br />&nbsp;Add&nbsp;&nbsp;</a></td>
            </tr>
          </table></td>
      </tr>
	 <tr>
        <td class="pagetitletxt">&nbsp;&nbsp;<b><img src="images/iconList.jpg" width="48" height="48" align="absmiddle" /> Gallery Detail </b></td>
      </tr>
      <tr>
        <td height="25" align="left" valign="middle" class="msg"><?php echo $_GET['msg']; ?></td>
      </tr>
	  <tr>
        <td height="35" align="right" valign="middle" class="content">&nbsp;<strong>Gallery Category</strong>
          <select name="GalleryCatId" onChange="MM_jumpMenu('self',this,0)">
		  <option value="gallerydetail_index.php" <? if (($GalleryCatId=='0') || ($GalleryCatId=='')) echo 'selected'; ?>>View All</option>
		  <?php
				$sql1 = "SELECT * FROM GalleryCat cc ORDER BY cc.GalleryCatSort ASC, cc.GalleryCatId DESC  ";
				$result1 = mysql_query($sql1) or die(mysql_error());
				while ($row1 = mysql_fetch_array($result1,MYSQL_ASSOC))
				{
				?>
			<option value="gallerydetail_index.php?GalleryCatId=<?=$row1{'GalleryCatId'}?>" <? if ($GalleryCatId==$row1{'GalleryCatId'}) echo 'selected'; ?> >[<?=$row1{'GalleryCatDate'}?>] <?=$row1{'GalleryCatTitleen'}?></option>
			<?php } ?>
	      </select>
		</td>
      </tr>
      <tr>
        <td align="left" valign="middle"><table width="800" border="0" cellpadding="0" cellspacing="0">
            <tr>
              <td width="10" class="listtitletxt">#</td>
			  <td width="200" class="listtitletxt">Gallery Category</td>
			  <td width="400" class="listtitletxt">Image</td>
			  <td width="20" class="listtitletxt"></td>
			  <td width="20" class="listtitletxt"></td>
            </tr>
            <?php
			if (($GalleryCatId <> "0") && ($GalleryCatId <> "")) {
				$sql = "SELECT * FROM GalleryCat gc INNER JOIN GalleryDetail gd ON gc.GalleryCatId = gd.GalleryCatId WHERE gd.GalleryCatId = '".$GalleryCatId."' ORDER BY gc.GalleryCatSort ASC, gc.GalleryCatId DESC, gd.GalleryDetailId DESC ";
				$result = mysql_query($sql);
			} else {
				$sql = "SELECT * FROM GalleryCat gc INNER JOIN GalleryDetail gd ON gc.GalleryCatId = gd.GalleryCatId ORDER BY gc.GalleryCatSort ASC, gc.GalleryCatId DESC, gd.GalleryDetailId DESC ";
				$result = mysql_query($sql);
			}
			$x=1;
			while ($row = mysql_fetch_array($result,MYSQL_ASSOC))
			{
				print "<tr>";
				print "<td class='listtxt' style='padding-left:5'>&nbsp;".$x.".)&nbsp;</td>";
				print "<td class='listtxt' style='padding-left:5'>".$row{'GalleryCatTitleen'}."</td>";
				print "<td class='listtxt' style='padding-left:5'><img src='galleryimgthumb/".$row{'GalleryDetailFile'}."' border='0'></td>";
				
				// Modify			
				print "<td class='listtxt' align='center'><a href='#' onClick=\"window.location='gallerydetail_modifyform.php?GalleryCatId=".$row{'GalleryCatId'}."&GalleryDetailId=".$row{'GalleryDetailId'}."'\"><img src='images/btnModify.png' title='Modify' alt='Modify' hspace='2' border='0'></a></td>";
				
				// Delete
				print "<td class='listtxt' align='center'><a href='#' onClick=\"DeleteRowCategory(".$row{'GalleryCatId'}.", ".$row{'GalleryDetailId'}.")\"><img src='images/btnDelete.png' title='Delete' alt='Delete' hspace='2' border='0'></a></td>";
				print "</tr>";
			
			$x++;	
			
			}
			mysql_close($dbh);
			?>
        </table></td>
      </tr>
</table>
</td></tr>
</table>
</body>
</html>
<?php
}?>


Youez - 2016 - github.com/yon3zu
LinuXploit