403Webshell
Server IP : 119.59.102.212  /  Your IP : 3.133.157.170
Web Server : Apache/2
System : Linux narin 2.6.32-042stab142.1 #1 SMP Tue Jan 28 23:44:17 MSK 2020 x86_64
User : yangkam ( 1022)
PHP Version : 5.6.40
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/user/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/yangkam/domains/yangkam.go.th/public_html/coremain/module/user/edit_user_output.php
<?php
import_request_variables('pG', 'p_');
$navig['manage_user']="ระบบสมาชิก";
$navig['edit_user']="แก้ไขสมาชิกระบบ";
navigator($navig);
echo "<br>";
bar_header("แก้ไขสมาชิกระบบ"); // Bar_Header
fieldset_top("จัดการระบบสมาชิก");
if($p_id_user_edit!="")						{	     $id_user=trim($p_id_user_edit); 	}
if($p_name!="")						 		{	     $name=trim($p_name); 				}
if($p_surname!="")							{	     $surname=trim($p_surname); 		}
if($p_tel!="")								{	     $tel=trim($p_tel); 				}
if($p_email!="")							{	     $email=trim($p_email); 			}
if($p_address!="")							{	     $address=trim($p_address); 		}
if($p_sex!="")								{	     $sex=trim($p_sex); 				}
if($p_change_pass!="")						{	     $change_pass=trim($p_change_pass); 		}
if($p_new_pass!="")							{	     $new_pass=trim($p_new_pass); 				}
if($p_new_pass2!="")						{	     $new_pass2=trim($p_new_pass); 				}
$picture=trim($_FILES['picture_file']['name']);

if($picture!="")			{	check_pic($picture,1);	}

$fail_case = -1;
// get profile id


$profile_id = select_query_data("profile_id","cms_user_profile","id_user",$id_user);
$pic_name = select_query_data("picture","cms_user_profile","id_user",$id_user);


$piccheck=0;

$sql = "update cms_user_profile SET name='$name', surname='$surname', telephone='$tel', email='$email', address='$address' ,sex='$sex' WHERE profile_id = '$profile_id'";
query($sql);

if ($new_pass2!="" and $new_pass !=""){
	$new_pass = md5($new_pass);
	$sql = "UPDATE cms_main_user SET pass = '$new_pass' WHERE id_user ='$id_user'";
	mysql_query ($sql);
}

// picture upload
if($picture!=""){
$pic_check = 1;

while($fail_case != 0)
{
				   $name1=create_filename($picture);		
					$dlink=$_SESSION['web_name']."/users/$id_user/user_picture/".$name1;
					 $new_pic = $_SESSION['web_name']."/users/$id_user/user_picture/".$name1;
					$temp_name=$_FILES['picture_file']['tmp_name'];
					if (is_uploaded_file($_FILES['picture_file']['tmp_name'])) {
						if($pic_name!="")
						{
							if (file_exists($dlink))
								unlink ($dlink); // delete old file
						}
                        upload_file_to_server($dlink, $_FILES['picture_file'], '', '120', '250');
//						if(!move_uploaded_file($temp_name,$new_pic)){
//							$fail_case = 2;
//							break;
//						}
					}				
	$fail_case = 0;
	break;
 }
}
	if($fail_case==0 or $pic_check == 0)
	{
		if($fail_case == 0)
		{
			$sql_new_pic = "UPDATE cms_user_profile SET picture = '$name1' WHERE profile_id = '$profile_id'";
			mysql_query ($sql_new_pic) or die (mysql_error());
		}
		

		echo "<center><br><br>ข้อมูลได้ถูกแก้ไขแล้ว<br><br></center>"; 
		echo "<meta http-equiv='refresh' content='2; url=index.php'>" ;
	}else{
		if($fail_case==1)
			echo "<center><br><br>ชนิดของรูปต้องเป็น GIF หรือ JPEG เท่านั้น<br><br></center>"; 
		else if ($fail_case==2)
			echo "<center><br><br>ไม่สามารถ Upload ไฟล์ได้ กรุณาติดต่อผู้ดูแลระบบ เพื่อเปิดการเขียนไฟล์<br><br></center>"; 
		else if ($fail_case==3)
			echo "<center><br><br>รูปสูงเกินกว่าขนาดที่กำหนด<br><br></center>"; 
		else if ($fail_case==4)
			echo "<center><br><br>รูปยาวกว่าขนาดที่กำหนด<br><br></center>"; 
		else 
			echo "<center><br><br>เกิดข้อผิดพลาด<br><br></center>"; 
		// refresh	
		echo "<meta http-equiv='refresh' content='2; url=index.php?mod=manage_user&path=user'>" ;
	
	}

fieldset_down();
?>

Youez - 2016 - github.com/yon3zu
LinuXploit