403Webshell
Server IP : 103.234.187.230  /  Your IP : 216.73.216.216
Web Server : Apache
System : Linux lserver42043-ind.megavelocity.net 3.10.0-1160.108.1.el7.x86_64 #1 SMP Thu Jan 25 16:17:31 UTC 2024 x86_64
User : apache ( 48)
PHP Version : 7.4.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/rsdgroup/adminPanel/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/rsdgroup/adminPanel/write_species.php
<?php
include_once("session.php");
include_once("settings.php");


foreach ($_REQUEST as $key => $value){
	$$key = $value;
}
$Species_Description=addslashes($Species_Description);
$target_path = "../cat_images/products/";
$prefix=time();
$target_path2 = $target_path . basename($prefix.$_FILES['banner_image']['name']);
$target_path1 = $target_path . basename($prefix.$_FILES['imageInner']['name']); 
$target_path = $target_path . basename($prefix.$_FILES['image']['name']); 


if($_REQUEST['mode']=="Edit"){
	
	$Species_Key = sanitize_data(@$Species_Name);
	
	if($_FILES['banner_image']['name']!=""){
		if(move_uploaded_file($_FILES['banner_image']['tmp_name'], $target_path2)) {
			chmod($target_path2,0777); 
			//echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
			$upload_banner_image=basename($prefix.$_FILES['banner_image']['name']);				
		}
		 $sql	=	"update  `tblSpecies` set `Species_Name`='$Species_Name',`species_key`='$Species_Key',`banner_image`='$upload_banner_image',`Species_Description`='$Species_Description',`Modified_On`=unix_timestamp(),`metaDescription`='$metaDescription',`metaTitle`='$metaTitle',`metaKeyword`='$metaKeyword' where `Species_Id`='$id'";
		$result1	=	mysql_query($sql);
	}
	
	
	if($_FILES['image']['name']!=""){
		if(move_uploaded_file($_FILES['image']['tmp_name'], $target_path)) {
			chmod($target_path,0777); 
			//echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
			$upload_image=basename($prefix.$_FILES['image']['name']);				
		}
		 $sql	=	"update  `tblSpecies` set `Species_Name`='$Species_Name',`species_key`='$Species_Key',`Species_Image`='$upload_image',`Species_Description`='$Species_Description',`Modified_On`=unix_timestamp(),`metaDescription`='$metaDescription',`metaTitle`='$metaTitle',`metaKeyword`='$metaKeyword' where `Species_Id`='$id'";
		$result1	=	mysql_query($sql);
	}
	
	if($_FILES['imageInner']['name']!=""){
		if(move_uploaded_file($_FILES['imageInner']['tmp_name'], $target_path1)) {
			chmod($target_path1,0777); 
			//echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
			$image=basename($prefix.$_FILES['imageInner']['name']);				
		}
		$sql	=	"update  `tblSpecies` set `Species_Name`='$Species_Name',`species_key`='$Species_Key',`image`='$image',`Species_Description`='$Species_Description',`Modified_On`=unix_timestamp(),`metaDescription`='$metaDescription',`metaTitle`='$metaTitle',`metaKeyword`='$metaKeyword' where `Species_Id`='$id'";
		$result2	=	mysql_query($sql);
	}
	else{
		$sql	= "update `tblSpecies` set `Species_Name`='$Species_Name',`species_key`='$Species_Key',`Species_Description`='$Species_Description',`Modified_On`=unix_timestamp(),`metaDescription`='$metaDescription',`metaTitle`='$metaTitle',`metaKeyword`='$metaKeyword' where `Species_Id`='$id'";
		$result3	=	mysql_query($sql);
	}	
	
}
else{

    $Species_Key = sanitize_data(@$Species_Name);
	if($_FILES['image']['name']!=""){
		if(move_uploaded_file($_FILES['image']['tmp_name'], $target_path)) {
			chmod($target_path,0777); 
			//echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
			$upload_image=basename($prefix.$_FILES['image']['name']);				
		}		
	}
	if($_FILES['imageInner']['name']!=""){
		if(move_uploaded_file($_FILES['imageInner']['tmp_name'], $target_path1)) {
			chmod($target_path1,0777); 
			//echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
			$image=basename($prefix.$_FILES['imageInner']['name']);				
		}		
	}
	
	if($_FILES['banner_image']['name']!=""){
		if(move_uploaded_file($_FILES['banner_image']['tmp_name'], $target_path2)) {
			chmod($target_path2,0777); 
			//echo "The file ". basename( $_FILES['file']['name']). " has been uploaded";
			$upload_banner_image=basename($prefix.$_FILES['banner_image']['name']);				
		}		
	}
	
	$sql	=	"insert into `tblSpecies` (`Species_Name`,`Species_Name`,`Species_Image`,`banner_image`,`image`,`Species_Description`,`Created_On`,`metaTitle`,`metaKeyword`,`metaDescription`) value ('$Species_Name','$Species_Key','$upload_image','$upload_banner_image','$image','$Species_Description',unix_timestamp(),'$metaTitle','$metaKeyword','$metaDescription')";
	
}

$result	=	mysql_query($sql);
?>
<script>
document.location="species_list.php?page=listspecies";
</script>

Youez - 2016 - github.com/yon3zu
LinuXploit