403Webshell
Server IP : 103.234.187.230  /  Your IP : 216.73.216.216
Web Server : Apache
System : Linux lserver42043-ind.megavelocity.net 3.10.0-1160.108.1.el7.x86_64 #1 SMP Thu Jan 25 16:17:31 UTC 2024 x86_64
User : apache ( 48)
PHP Version : 7.4.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/rsdgroup/adminPanel/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/rsdgroup/adminPanel/winner_add.php
<?php
include_once("session.php");
include_once("settings.php");
include_once("functions.php");
//echo '<pre>';
//print_r($_REQUEST); 
if($_REQUEST["mode"]=="Edit")
{
$mode="Edit";
$winner_id = $_REQUEST['winner_id'];
$rs_tblsite=mysql_query("select * from winner_table where `winner_id`='$winner_id'");
$array_tblsite=mysql_fetch_array($rs_tblsite);
//$Id = $array_tblsite['id'];
$name = $array_tblsite['name'];
$award = $array_tblsite['award'];
$location = $array_tblsite['location'];
$image = $array_tblsite['image'];
 }
else
{
$id=$_REQUEST['id'];
$mode="Add";
$mode1="Add";
}
?>
<LINK href="mel.css" type=text/css 
rel=stylesheet><LINK href="sdmenu.css" 
type=text/css rel=stylesheet>
<script>
function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_validateForm() { //v4.0
  var i,p,q,nm,test,num,min,max,errors='',args=MM_validateForm.arguments;
  for (i=0; i<(args.length-2); i+=3) { test=args[i+2]; val=MM_findObj(args[i]);
    if (val) { nm=val.name; if ((val=val.value)!="") {
      if (test.indexOf('isEmail')!=-1) { p=val.indexOf('@');
        if (p<1 || p==(val.length-1)) errors+='- '+nm+' must contain an e-mail address.\n';
      } else if (test!='R') { num = parseFloat(val);
        if (isNaN(val)) errors+='- '+nm+' must contain a number.\n';
        if (test.indexOf('inRange') != -1) { p=test.indexOf(':');
          min=test.substring(8,p); max=test.substring(p+1);
          if (num<min || max<num) errors+='- '+nm+' must contain a number between '+min+' and '+max+'.\n';
    } } } else if (test.charAt(0) == 'R') errors += '- '+nm+' is required.\n'; }
  } if (errors) alert('The following error(s) occurred:\n'+errors);
  document.MM_returnValue = (errors == '');
}

function validateForm() {
    var name = document.forms["add_winner_form"]["name"].value;
    var award = document.forms["add_winner_form"]["award"].value;
    var location = document.forms["add_winner_form"]["location"].value;
    //var winnerpic = document.forms["add_winner_form"]["winnerpic"].value;
    if (name == null || name == "") {
        alert("Name must be filled out");
        return false;
    }else if(award == null || award == ""){
        alert("Award must be filled out");
        return false;
    }else if(location == null || location == ""){
        alert("Location must be filled out");
        return false;
    }
}
//-->
</script>
<link rel="stylesheet" href="date_picker/zebra_datepicker.css" type="text/css">
<script type="text/javascript" src="date_picker/jquery-1.7.2.js"></script>
<script type="text/javascript" src="date_picker/shBrushJScript.js"></script>
<script type="text/javascript" src="date_picker/zebra_datepicker.js"></script>
<script type="text/javascript" src="date_picker/functions.js"></script>

<table width="94%" border="0" cellspacing="0" cellpadding="0">
  <tr> 
    <td><form  name="add_winner_form" enctype="multipart/form-data" action="write_winner.php" method="post" onsubmit="return validateForm()">
        <fieldset>
        <legend>WINNER ADD FORM</legend>
        <table width="97%" border="0" cellspacing="2" cellpadding="0">
          <tr> 
            <td width="26%" height="26" class="general">Name :</td>
            <td width="74%" height="26" > <input name="name" type="text" class="textfield"  value="<?=$name?>" size="50"/></td>
          </tr>
		  <tr> 
            <td width="26%" height="26" class="general">Award :</td>
            <td width="74%" height="26" > <input name="award" type="text" class="textfield"  value="<?=$award?>" size="50"/></td>
          </tr>
		   <tr> 
            <td width="26%" height="26" class="general">Location :</td>
            <td width="74%" height="26" > <input name="location" type="text" class="textfield"  value="<?=$location?>" size="50"/></td>
          </tr>
          <tr> 
            <td height="26" class="general">Winner's Image : </td>
            <td height="26" class="general"> <input type="file" name="winnerpic"> (Width : 117px X Height : 87px) </td>
          </tr>
        
          <tr align="center"> 
            <td height="26" colspan="2"><label for="label"> 
              <input type="hidden" name="id" value="<?=$_REQUEST['id']?>" />
              <input type="hidden" name="winner_id" value="<?=$_REQUEST['winner_id']?>" />
	      <input type="hidden" name="txtType" value="news" />
              <input type="submit" name="Submit" value="  Save  " class="button" />
              &nbsp;&nbsp;&nbsp;&nbsp; 
              <input type="reset" name="Submit" value="Reset" class="button" />
              <input name="mode" type="hidden" id="mode" value="<?=$_REQUEST['mode']?>" />
              <input name="image" type="hidden" id="mode" value="<?=$image?>" />
              </label></td>
          </tr>
        </table>
        </fieldset>
      </form></td>
  </tr>
</table>

Youez - 2016 - github.com/yon3zu
LinuXploit