403Webshell
Server IP : 210.245.233.93  /  Your IP : 216.73.216.226
Web Server : Apache/2.2.15 (CentOS)
System : Linux webserver2.onesolution.com.hk 2.6.32-754.35.1.el6.x86_64 #1 SMP Sat Nov 7 12:42:14 UTC 2020 x86_64
User : apache ( 48)
PHP Version : 5.3.3
Disable Function : exec, shell_exec, system, passthru, popen, proc_open, pcntl_exec
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/(Del)standraise.com/admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/(Del)standraise.com/admin/productimageaddform.php
<?
//require 'db_connect.php';
require 'check_login.php';
if ($logged_in <> 1) {
	header('Location: login.php');
	return;
}
else
{
?>
<?php require("configure.php"); 
require("fckeditor/fckeditor.php") ;
?>
<html>
<head>
<link rel="stylesheet" href="main.css" type="text/css">
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
<title>oneCMS - Content Management System</title>
</head>
<body>
<?
$productimageid 	= $_GET['productimageid'];
$productcatid 		= $_GET['productcatid'];
?>
<table border="0" cellpadding="1" cellspacing="1" width="100%">
<tr>
  <td class='pageheader' align="left" valign="middle" height="100"><img src="images/iconProducts.png">&nbsp;<b>New Product </b></td>
	<td class='content' align="center" width="150"><a href="productcatindex.php?pid=<?=$productcatid?>"><img src="images/iconCancel.jpg" alt="Add" border="0"><br>Cancel</a></td>
</tr>
</table>
<form action="productimageadd.php" method="post" name="addform" enctype="multipart/form-data" >
	<input type="hidden" name="productimageid" value="<?=$productimageid?>">
	<input type="hidden" name="productcatid" value="<?=$productcatid?>">
	<table border="0" cellpadding="0" cellspacing="0" width="800">
		<tr><td class='content' align="right" valign="top">Category</td><td class='content' valign="top">:&nbsp;</td>
			<td class='content'>
				<?echo "<p class='content'><b>New product in / ". getLevel($productcatid) ."</b></p>";?>
			</td></tr>
		<tr><td class='content' align="right" valign="top">Sort</td><td class='content' valign="top">:&nbsp;</td>
			<td class='content'><input type="text" class="content" name="sortbyimage" value="<?=$row{'sortbyimage'}?>" size="2"></td></tr>
		<tr><td class='content' align="right" valign="top">Product Name</td><td class='content' valign="top">:&nbsp;</td>
			<td class='content'><input type="text" class="content" name="productname" value="<?=$row{'productname'}?>" size="50" maxlength="50"></td></tr>
		<tr><td class='content' align="right" valign="top">Model</td><td class='content' valign="top">:&nbsp;</td>
			<td class='content'><input type="text" class="content" name="productmodel" value="<?=$row{'productmodel'}?>" size="50" maxlength="50"></td></tr>

		<tr><td class='content' align="right" valign="top">Description</td><td class='content' valign="top">:&nbsp;</td>
			<td class='content'>&nbsp; Dimension: must be smaller than 650px (width) <br><br>
			<?php
			$sBasePath = $_SERVER['PHP_SELF'] ;
			$sBasePath = "fckeditor/";
			
			$oFCKeditor = new FCKeditor('productdesc') ;
			$oFCKeditor->BasePath	= $sBasePath ;
			$oFCKeditor->Value		= "";
			$oFCKeditor->Width 		= 700;
			$oFCKeditor->Height		= 500;
			$oFCKeditor->Create() ;
			
			?>
				
			</td></tr>

<!-- image -->
		<tr><td class='content' align="right" valign="top">Image</td><td class='content' valign="top">:&nbsp;</td>
			<td class='content'><input class="content" type="file" name="image">Click browse to upload a local file  (Max.2M, Allowed extensios: jpg, jpeg, png)</td></tr>
<!-- End image -->

		<tr><td colspan="2"></td><td>
			<input type="submit" value=" Add " class='content'>
		</td></tr>
	</table>
</form>
</body>
</html>
<?
}
?>
<?
function getLevel($p)
{
	$sql1 = "select * from productcat where productcatid = ". $p;
	$result1 = mysql_query($sql1);
	while ($row1 = mysql_fetch_array($result1,MYSQL_ASSOC))
	{
		if ($row1{parentid} <> 0)
		{
			$n =  $n . getLevel($row1{'parentid'}) ." / ". $row1{productcatname};
		}
		else
		{
			$n = $row1{productcatname};
		}
	}
	return $n;
}
?>

Youez - 2016 - github.com/yon3zu
LinuXploit