403Webshell
Server IP : 103.234.187.230  /  Your IP : 216.73.216.216
Web Server : Apache
System : Linux lserver42043-ind.megavelocity.net 3.10.0-1160.108.1.el7.x86_64 #1 SMP Thu Jan 25 16:17:31 UTC 2024 x86_64
User : apache ( 48)
PHP Version : 7.4.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/rsdgroup/adminPanel/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/rsdgroup/adminPanel/functions.php
<?php
 foreach ($_REQUEST as $key => $value)
 {
 	 $$key = $value;
 }
 @$action = "";
if(@$action=="passwordchange")
{
$sql=mysql_query("select * from `tblUsers` where `username`='$username' and `password`='$old_password'");
if(mysql_num_rows($sql)>0)
{
  mysql_query("update `tblUsers` set `password`='$new_password' where `username`='$username'");
   $msg="Password has been changed";
 }
  else
  {
   $msg="Password Mismatch";
  }
  return $msg;
}
if($action=="DeleteFaq")
{
mysql_query("delete  from `tblFaq` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteOpportunity")
{
mysql_query("delete  from `tblOpportunity` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteNewsLetter")
{
mysql_query("delete  from `tblNewsLetter` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="deletedistributors")
{
mysql_query("delete  from `tblDistributors` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteBOD")
{
mysql_query("delete  from `tblBoardOfDirectors` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteSpecification")
{
mysql_query("delete  from `tblSpecification` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteTreasure")
{
mysql_query("delete  from `tblTreasureOfNature` where `Treasure_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteCategory")
{
mysql_query("delete  from `tblCategory` where `Category_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}


if($action=="DeleteNewPage")
{
mysql_query("delete  from `tblnewcategory` where `category_id`='$id'");
$msg="Deleted successfully";
return $msg;
}


if($action=="DeletePage")
{
mysql_query("delete  from `tblTextElement` where `id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteRepresentation")
{
	if($file!="") {
	$file="../cat_images/".$file;
	unlink($file);
}
mysql_query("delete  from `tblRepresntation` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteSpecies")
{
if($file!="") {
	$file="../cat_images/".$file;
	unlink($file);
}
mysql_query("delete from `tblSpecies` where `Species_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="DeleteProduct")
{
if($file!="") {
	$file="../cat_images/".$file;
	unlink($file);
}
mysql_query("delete  from `tblProduct` where `Product_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}

if($action=="DeleteWinner")
{
   $winner_id = $_REQUEST['winner_id'];
   $file = $_REQUEST['image'];
if($file!="") {
	$file="../cat_images/".$file;
	unlink($file);
}
mysql_query("delete  from `winner_table` where `winner_id`='$winner_id'");
$msg="Deleted successfully";
return $msg;
}

if($action=="DeleteTestimonial")
{
mysql_query("delete  from `tblTestimonial` where `Testimonial_Id`='$id'");
$msg="Deleted successfully";
return $msg;
}







if($action=="DeleteNews")
{
mysql_query("delete  from `tblNews` where `Id`='$id'");
$msg="Deleted successfully";
return $msg;
}
if($action=="deletejobs")
{
mysql_query("delete  from `tblCareer` where `id`='$id'");
$msg="Deleted successfully";
return $msg;
}
function get_record_data($table_name, $primary_key, $primary_value,$field)
{
	$field_value=0;
	$query = "select `$field` from `$table_name` where `$primary_key` like '$primary_value' limit 0,1";
	 $query;
	$result= mysql_query($query);
	if ($result)
	{
		$row=mysql_fetch_row($result);
		$field_value = stripslashes($row[0]);
	}
	else
	{
		echo "no record found";
	}
	
//	echo $field_value;
	return stripslashes($field_value);
 }
function listdisplaydropdownvalues($dropdownname,$dropdownid,$tablename,$columnname,$field_value)
{  	
	$function_query= "Select `$dropdownid`,`$columnname` from `$tablename`  order by `$columnname` ASC";
	$result = mysql_query($function_query);
	//echo $function_query;
	//echo $field_value;	
	if (!$result)
	{
	   die('Invalid formation of select query in listdisplaydropdownvalues(): ' . mysql_error());
	}
	echo "<select id=\"" . $dropdownid . "\" class=\"textfield\" style=\"width:165px\" name=\"" . $dropdownname . "\">";
	echo "<option class=\"textfield\" value=\"\">" . " -- Select --". "</option>";
	while ($row = mysql_fetch_array($result, MYSQL_BOTH)) 
	{
	  if ($row[0] == $field_value)
		{
			echo "<option value=\"" . $row[0] . "\" SELECTED class=\"textfield\">" . $row[1] .  "</option>";
		}
		else
		{
			echo "<option class=\"textfield\" value=\"" . $row[0] . "\">" . $row[1] . "</option>";
		}
	}		
	echo "</select>";
}
function listdisplaydropdownvaluesspecies($dropdownid,$field_value,$id1)
{  	
	 $function_query= "Select  `Species_Id`,`Species_Name` from `tblSpecies`  order by `Species_Name` ASC";
	$result = mysql_query($function_query);	
	if (!$result)
	{
	   die('Invalid formation of select query in listdisplaydropdownvalues(): ' . mysql_error());
	}
	$id1=$id1;
	echo "<select id=\"" . $dropdownid . "\" class=\"generaltxt\" style=\"width:180px\" name=\"" . $dropdownid . "\" onChange=\"javaScript:getRequest('category.php?id=$id1&Species_Id='+ document.getElementById('".$dropdownid."').value ,'".$id1."','')\" >";
	echo "<option class=\"generaltxt\" value=\"\">" . " -- Select --". "</option>";
	while ($row = mysql_fetch_array($result, MYSQL_BOTH)) 
	{
	  if ($row[0] == $field_value)
		{
			echo "<option value=\"" . $row[0] . "\" SELECTED class=\"generaltxt\">" . $row[1] .  "</option>";
		}
		else
		{
			echo "<option class=\"generaltxt\" value=\"" . $row[0] . "\">" . $row[1] . "</option>";
		}
	}		
	echo "</select>";
}
function listdisplaydropdownvaluescataegory($dropdownid,$field_value,$Species_Id)
{  	
	$function_query= "Select  `Category_Id`,`Category_Name` from `tblCategory` where `Species_Id`='$Species_Id' order by `Category_Name` ASC";
	$result = mysql_query($function_query);	
	echo "<select id=\"" . $dropdownid . "\" class=\"generaltxt\" style=\"width:180px\" name=\"" . $dropdownid . "\" >";
	echo "<option class=\"generaltxt\" value=\"\">" . " -- Select --". "</option>";
	while ($row = mysql_fetch_array($result, MYSQL_BOTH)) 
	{
	  if ($row[0] == $field_value)
		{
			echo "<option value=\"" . $row[0] . "\" SELECTED class=\"generaltxt\">" . $row[1] .  "</option>";
		}
		else
		{
			echo "<option class=\"generaltxt\" value=\"" . $row[0] . "\">" . $row[1] . "</option>";
		}
	}		
	echo "</select>";
}


if($action=="deletecareer"){
	$sql = "SELECT * FROM `tblCareer` where id = ".$id."";
	$result	=	mysql_query($sql) or die (mysql_error());
	$row=mysql_fetch_assoc($result);
	@unlink("../uploadedResumes/".$row['resume']);
	mysql_query("delete  from `tblCareer` where `id`='$id'");
	$msg	=	"Deleted successfully";
	return $msg;
}


if($action=="DeleteRecipeCat"){
	mysql_query("UPDATE `tblRecipeCate` SET `isDeleted` = 'yes', `createdOn`= unix_timestamp() WHERE `id` ='$id' LIMIT 1") or die (mysql_error());
	$msg	=	"Deleted successfully";
	return $msg;
}


if($action=="DeleteRecipe"){
	$sql = "SELECT * FROM `tblRecipe` where Category_Id = ".$id."";
	$result	=	mysql_query($sql) or die (mysql_error());
	$row=mysql_fetch_assoc($result);
	@unlink("../cat_images/recipe/".$row['Category_Image']);
	mysql_query("delete  from `tblRecipe` where `Category_Id`=".$id."")  or die (mysql_error());
	$msg	=	"Deleted successfully";
	return $msg;
}

?>

Youez - 2016 - github.com/yon3zu
LinuXploit