403Webshell
Server IP : 119.59.102.212  /  Your IP : 3.22.217.190
Web Server : Apache/2
System : Linux narin 2.6.32-042stab142.1 #1 SMP Tue Jan 28 23:44:17 MSK 2020 x86_64
User : yangkam ( 1022)
PHP Version : 5.6.40
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/sponser/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/sponser/manage_header_sponser.php
<?php
session_start();
include ("../../function_sql_query.php");
include ("../../function_form.php");
echo"<meta http-equiv='Content-Type' content='text/html; charset=utf-8'>";
echo"<link href='../../ccs/style.css' rel='stylesheet' type='text/css'>";
echo "<title>จัดการเมนู</title>";
import_request_variables('pG', 'p_');
if($p_oncheck!="")						{	     $oncheck=trim($p_oncheck);				}
if($p_id_top!="")						{	     $id_top=trim($p_id_top);				}
if($p_id_subs!="")						{	     $id_subs=trim($p_id_subs);				}
if($p_namemenu!="")						{	     $namemenu=trim($p_namemenu);			}
if($p_dele!="")							{	     $dele=trim($p_dele);					}
if($p_web_name!="")						{	     $web_name=trim($p_web_name);			}
if($p_module!="")						{	     $module=trim($p_module);				}
if($p_id_type!="")						{	     $id_type=trim($p_id_type);				}
if($p_check_up!="")						{	     $check_up=trim($p_check_up);			}
if($p_id_show!="")						{	     $id_show=trim($p_id_show);				}
if($p_id_order!="")						{	     $id_order=trim($p_id_order);			}
if($p_id_del!="")						{	     $id_del=trim($p_id_del);				}
if($p_name!="")							{	     $name=trim($p_name);					}

if($_SESSION[web_name]=="")		$_SESSION[web_name]=$web_name;
include("../../../$_SESSION[web_name]/connect.php");

if($oncheck==1){	
?>
		<script language="JavaScript"> 
			window.opener.location.href='../../../index.php';
			window.close();
		</script>
<?php
}
// ############################################## เมนูย่อย
// แก้ไขเมนูย่อย
if ($check_up == 2) {
  $sql = "UPDATE `cms_menu_top` SET  name='$name'  WHERE `id_top` ='$id_top'";
  $result = mysql_query($sql) or die(mysql_error());
}
// ซ่อน - แสดง ข้อมูล
if ($id_subs != "" && $id_show == 1) {
  $sql = "UPDATE `cms_link_sponser` SET `status` = '0'  WHERE id_sponser ='$id_subs'";
  $result = mysql_query($sql) or die(mysql_error());
}if ($id_subs != "" && $id_show == 2) {
  $sql = "UPDATE `cms_link_sponser` SET `status` = '1'  WHERE id_sponser ='$id_subs'";
  $result = mysql_query($sql) or die(mysql_error());
}
//  เลื่อนตำแหน่งเมนู ขึ้น-ลง 
if ($id_subs != "" && $id_order != "") {
  $sql = "SELECT * FROM `cms_link_sponser` WHERE  id_sponser='$id_subs'";
  $re = mysql_query($sql) or die(mysql_error());
  $data = mysql_fetch_array($re);
  if ($id_order == 1) {
    $up = $data['position'] - 1;
  }
  if ($id_order == 2) {
    $up = $data['position'] + 1;
  }
  // แก้ไขเลื่อนขึ้น
  $sql = "UPDATE `cms_link_sponser` SET position='$up' WHERE id_sponser ='$data[id_sponser]'";
  $re = mysql_query($sql) or die(mysql_error());
  // แก้ไขเลื่อนลง
  $sql = "UPDATE `cms_link_sponser` SET position='$data[position]'  WHERE id_sponser!='$data[id_sponser]' and position='$up'";
  $re = mysql_query($sql) or die(mysql_error());
}

// ลบข้อมูลทุกอย่างใน โมดูล
if ($id_del != "" && $id_top != "") {
  $sql1 = "select pic_name from cms_link_sponser where id_sponser='$id_del'";
  $result1 = mysql_query($sql1);
  $data1 = mysql_fetch_row($result1);
  if ($data1[0] != "") {
    unlink("../../../$_SESSION[web_name]/module_sponser/$data1[0]");
  }

  $sql = "DELETE FROM `cms_link_sponser`  WHERE id_sponser='$id_del'";
  $re = mysql_query($sql) or die(mysql_error());
}

echo "<fieldset><legend>จัดการเมนู</legend>";
// ####################### แก้ไขชื่อเมนูหลัก #############################
echo "<br><table width='95%' border='0' align='center' cellpadding='1' cellspacing='1'>";
echo "<tr bgcolor='$datatm[color]'><td colspan='2' align=left><b>แก้ไขชื่อเมนูหลัก</b></td></tr>";
echo "<tr height=10><td colspan='2' align=center></td></tr>";
$sql = "SELECT * FROM cms_menu_top WHERE id_top='$id_top'";
$result = mysql_query($sql);
$data = mysql_fetch_array($result);
echo"<FORM METHOD=POST ACTION='manage_header_sponser.php?id_top=$id_top'>";
echo "    <tr>";
echo "     <td width='50%' align=center>&nbsp; &nbsp; &nbsp; &nbsp; &nbsp;&nbsp; &nbsp;<INPUT TYPE='text' NAME='name' value='$data[name]'></td> ";
echo "		<td width='20%'>";
echo"		<INPUT TYPE='submit' value='แก้ไขข้อมูล' onmouseover=this.style.cursor='hand'>";
echo "	<INPUT TYPE='hidden' name='check_up' value='2'>";
echo"</td>";
echo "  </tr>";
echo "<tr height=10><td colspan='2' align=center></td></tr>";
echo"</FORM>";
echo "</table>";

// ############################# แสดงเมนูย่อย #############################
echo "<table width='95%' border='0' align='center' cellpadding='1' cellspacing='1' bgcolor='eeeeee'>";
echo "<tr><td colspan='2' align=left><b>แสดงเมนูย่อย</b></td></tr>";
echo "    <tr>";
echo "     <td width='50%' align=center bgcolor='dddddd'><b>ชื่อเมนู</b></td> ";
echo "		<td width='25%' align=center bgcolor='dddddd'><b>จัดการ</b></td>";
echo "  </tr>";

$sql="SELECT * FROM `cms_link_sponser` WHERE id_top='$id_top' order by position DESC";
$result=mysql_query($sql);
$count_l=1;
while ($data = mysql_fetch_array($result)) {
  echo"<FORM METHOD=POST ACTION='manage_header_sponser.php?id_top=$id_top&id_sponser=$data[id_sponser]'>";
  echo "    <tr>";


// ชื่อ
  echo "     <td align=center>";
  echo "<img src='../../../$_SESSION[web_name]/module_sponser/{$data[pic_name]}'>";
  echo"</td>";

// จัดการ
  echo "		<td align=center>";
  $sql_num = "SELECT count(*) FROM `cms_link_sponser` WHERE id_top='$id_top' order by id_sponser";
  $re_num = mysql_query($sql_num);
  $data_num = mysql_fetch_array($re_num);
  /*
    // Up
    if($count_l>1)	{
    echo "<a href='manage_header_sponser?id_subs=$data[position]&id_order=1&id_top=$id_top'><img src='../../images/up.gif' border='0' title='เลื่อนขึ้น'></a> ";
    }else {
    echo "&nbsp;&nbsp; &nbsp;&nbsp;";
    }
    // Down
    if($count_l<$data_num[0])	{
    echo "<a href='manage_header_sponser?id_subs=$data[position]&id_order=2&id_top=$id_top'><img src='../../images/down.gif' border='0' title='เลื่อนลง'></a> ";
    }else {
    echo "&nbsp;&nbsp; &nbsp;&nbsp;";
    }
   */
  // show -hide
  if ($data[status] == "1")
    echo "<a href='manage_header_sponser.php?id_subs=$data[id_sponser]&id_show=1&id_top=$id_top' title='ซ่อนข้อมูล'><img src='../../images/show.gif' border='0'></a> ";
  else
    echo "<a href='manage_header_sponser.php?id_subs=$data[id_sponser]&id_show=2&id_top=$id_top' title='แสดงข้อมูล'><img src='../../images/hide.gif' border='0'></a> ";

  // Del
  echo " <a href='manage_header_sponser.php?id_del=$data[id_sponser]&id_top=$id_top'><img src='../../images/del1.gif' border='0' title='ลบข้อมูล'  onclick='return goURLdel();'></a><br>";
  echo"</td>";
  echo "  </tr>";
  $count_l++;
  echo"</FORM>";
}

echo "</table>";



// ปิดหน้าต่าง
echo "<br><form  action='manage_header_sponser.php?oncheck=1' method='post' >";
echo "<center><INPUT TYPE='submit' value='ปิดหน้านี้'  onmouseover=this.style.cursor='hand'></center>";
echo"</FORM>";

echo "</fieldset>";
  ?>




<script language="JavaScript">
<!--
function goURLdel() {
var blnLink
blnLink = confirm("Click OK เพื่อยืนยันการลบข้อมูล?")
if (!blnLink) { return false; }
return true;
}
//-->	
</script>

Youez - 2016 - github.com/yon3zu
LinuXploit